Activity
From 08/18/2018 to 09/16/2018
09/16/2018
-
11:14 PM Bug #8907 (Resolved): wizard.php - $field['type'] - "Select" doesn't have the attribute "Size" defined
- The file wizard.php - $field['type'] option "Select" doesn't have the attribute "Size" defined.
From:... -
10:33 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
- Posted two PR to fix these issues and add other improvements.
https://github.com/pfsense/FreeBSD-ports/pull/567
h... -
08:11 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
- Steve, Are you sure this is not from pfBlockerNG-devel?
https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pf... -
01:07 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
- This error looks to be triggering an unrequired config update:...
-
10:51 AM pfSense Packages Bug #8903: pfBlockerNG: PHP error
- Sorry clipped the line in the copy there. Actual warning is:...
-
10:50 AM pfSense Packages Bug #8903 (Resolved): pfBlockerNG: PHP error
- Seeing this on a clean install of pfSense-2.4.4.r.20180914.1530 and restoring an existing config....
-
02:45 PM Bug #8905 (Resolved): status_logs_settings.php PHP errors on 2.4.4 snapshots
- Info:
Working on testing the latest snapshots and I'm unable to add remote syslog on 2.4.4 snapshot (pfSense-2.4.4... -
01:08 PM pfSense Packages Bug #8904 (Resolved): Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
- The Shellcmd package is incorrectly removing the pfBlocker early shellcmd entry at each boot....
-
08:16 AM pfSense Packages Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
- Pi Ba wrote:
> Hmm, i suppose your right.
>
> You could add below to the 'global advanced pass thru', that should... -
07:48 AM pfSense Packages Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
- Hmm, i suppose your right.
You could add below to the 'global advanced pass thru', that should solve the issue.
<... -
06:02 AM pfSense Packages Bug #8902 (New): HAproxy package not use custom DNS for lookup on apply new config
- Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13
cat /etc/version
2.4.3... -
07:54 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
- Well, I made some tests :
h2. Basic RADIUS auth (Diag > Auth test)
-> Good (working correctly)
h2. GUI RADI... -
02:53 AM Bug #8880 (Feedback): [PHP7] warning on system_gateways.php and extra item in gateways table
- Keep it open until checking on next build, which contains current patch.
-
01:04 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
-
12:38 AM Bug #8880 (Assigned): [PHP7] warning on system_gateways.php and extra item in gateways table
- Latest 14 Sep RC snapshot does not contain commit @a155dc5ec2278e0a344afa221127b8503d4e225e@ with this patch. But iss...
09/15/2018
-
10:22 PM pfSense Packages Bug #8900: pfBlockerNG
- Fixed: https://github.com/pfsense/FreeBSD-ports/pull/567
-
04:05 PM pfSense Packages Bug #8900 (Resolved): pfBlockerNG
- Crash report begins. Anonymous machine information:
Current Base System 2.4.4.r.20180914.1544
amd64
11.2-RELE... -
03:43 PM Bug #8502: main (top) menu items do not drop down in some cases
- ran arpping package 1.2.2_1, executed ping to mac, hover menu's don't populate, no crash recorded
ran package iperf ... -
02:53 PM pfSense Packages Bug #8899 (Resolved): AWS-ipsec error
- 2.4.4-RC (amd64)
built on Fri Sep 14 15:45:39 EDT 2018
FreeBSD 11.2-RELEASE-p3
Factory install aws-wizard: F... -
11:57 AM Bug #7892: AutoConfigBackup status reported incorrectly
- This seems to be presenting in another way also, where System Log will show a successful backup, despite the backup n...
-
09:20 AM pfSense Packages Feature #8523: make cookie inserted by haproxy secure
- I've added a bunch of cookie options.. Does it work for you?
-
09:19 AM pfSense Packages Bug #8508: Haproxy: Selecting mode tcp with SSL in backend does not activate SSL in the server config
- The server configuration now allows separate activation of ssl for regular traffic and for health-checks. That should...
-
07:02 AM pfSense Packages Bug #8670 (Resolved): HAProxy PHP error
-
07:02 AM pfSense Packages Bug #8670: HAProxy PHP error
- I am no longer seeing these errors.
09/14/2018
-
08:01 PM Revision 9c614946: Always pass the $local variabled to load_loader_conf(), it makes the code easier to read.
- (cherry picked from commit 1ef4cbdbb03791f5c3541df44da5a61d00db6e46)
-
08:01 PM Revision 6b3bff74: Sync the know variables with factory.
- (cherry picked from commit fe7523cbbdee119bf71abb93009f44a9f8e47963)
-
08:01 PM Revision f8d1fe02: Filter properly the know variables in loader.conf.
- The know variables should be used as prefix not as literals.
(cherry picked from commit 21bacf010021d34012f6869ce1d5... -
07:59 PM Revision 1ef4cbdb: Always pass the $local variabled to load_loader_conf(), it makes the code easier to read.
-
07:58 PM Revision fe7523cb: Sync the know variables with factory.
-
07:53 PM Revision 21bacf01: Filter properly the know variables in loader.conf.
- The know variables should be used as prefix not as literals.
-
12:08 PM Bug #8893 (New): Outbound NAT page unnecessarily strips underscores from alias names
- You are right that one page is inconsistent with the rest. They should all be done the same way. Not going to hold ba...
-
11:35 AM Bug #8896 (Not a Bug): Static routes are not added after reboot
- I can't reproduce this. I setup a GRE interface and static routes, rebooted 10 times and every time the routes were t...
-
01:35 AM Bug #8896 (Not a Bug): Static routes are not added after reboot
- Hello,
Version tested: 2.4.3-RELEASE-p1 (amd64)
Steps to reproduce:
1. Add a GRE tunnel
2. Add some static ro... -
11:28 AM Revision 9a904de8: Fix #8895: Increase FD_SETSIZE to 3172 on lang/php72
-
11:28 AM Revision 352d4978: Fix #8895: Increase FD_SETSIZE to 3172 on lang/php72
-
07:44 AM Bug #8897 (Not a Bug): RADIUS WebUI login with RADIUS does not work
- RADIUS auth works fine when configured correctly. The subject is incorrect, or at least misleading. It works with the...
-
04:19 AM Bug #8897 (Not a Bug): RADIUS WebUI login with RADIUS does not work
- Hi all,
I setup FreeRADIUS as a RADIUS server and try to login to the WebUI then.
It is not working since the retur... -
06:35 AM Todo #8898 (Resolved): Update strongswan to 5.7.1
- Update strongswan to 5.7.0
-
06:33 AM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
- Rajil Saraswat wrote:
> I am seeing the same crash on pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180904-1004.img ... -
06:30 AM Bug #8895 (Feedback): You MUST recompile PHP with a larger value of FD_SETSIZE. It is set to 2048, but you have descriptors numbered at least as high as 2161.
- Applied in changeset commit:352d49787dc5742ea53dd81ff82fef5f37b246db.
-
12:08 AM Revision 42c05989: Underscores never hurt nobody
- Also, i18n
09/13/2018
-
10:31 PM Bug #8895 (Resolved): You MUST recompile PHP with a larger value of FD_SETSIZE. It is set to 2048, but you have descriptors numbered at least as high as 2161.
- Deleted issue #8894. This is similar to #8845 but insists on 3172, not 2048.
-
08:58 PM Bug #8893: Outbound NAT page unnecessarily strips underscores from alias names
- The change above substitutes '_' with '_<wbr>' which is the same method used on other NAT pages. The '<wbr>' signals ...
-
08:50 PM Bug #8893 (Not a Bug): Outbound NAT page unnecessarily strips underscores from alias names
- It's done deliberately to avoid long aliases preventing wrapping. #7249
-
08:13 PM Bug #8893 (Resolved): Outbound NAT page unnecessarily strips underscores from alias names
- I notice that underscores are being replaced with spaces in alias names on Firewall > NAT > Outbound.
It's not consi... -
08:26 PM Bug #8892 (Resolved): 2.3.5_2 does not offer update to 2.4.4-RC
-
07:59 PM Bug #8892: 2.3.5_2 does not offer update to 2.4.4-RC
- Tested 2.3.5_2 -> 2.4.4-RC without any manual intervention. Looks good.
-
01:41 PM Bug #8892 (Feedback): 2.3.5_2 does not offer update to 2.4.4-RC
- pfSense-upgrade 0.51 (2.4.x) and 0.27_14 (2.3.5) are fixed
-
01:29 PM Bug #8892: 2.3.5_2 does not offer update to 2.4.4-RC
- After selecting stable 2.4.x updates:...
-
01:26 PM Bug #8892 (Resolved): 2.3.5_2 does not offer update to 2.4.4-RC
- A user on 2.3.5, who upgrades to 2.3.5_2, then tries to upgrade to 2.4.4-RC is not able to see 2.4.4-RC.
Even on t... -
07:04 PM Feature #1189: Gateway: Multiple monitor ips
- Openwrt mwan3 package has multiple monitors which can be tracked, https://wiki.openwrt.org/doc/howto/mwan3#interface_...
-
10:55 AM Feature #1189: Gateway: Multiple monitor ips
- Just going to add to the chorus here.
We encountered routing issues (their side, whole country affected) with one ... -
05:45 PM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
- I am seeing the same crash on pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180904-1004.img running on Supermicro C35...
-
10:24 AM Bug #8876 (Resolved): status_gateway_groups.php: PHP error when there is no gateways array
- Can't reproduce any errors on gateway status in the latest RC build, even without @<gateway></gateway>@ tags in the c...
-
10:22 AM Bug #8889 (Resolved): Setup Wizard PHP error when LAN has no DHCP configuration
- Fix tests OK with a gitsync to RELENG_2_4_4, but the fix is not yet in the RC images, will be in -RELEASE.
-
09:08 AM Bug #8891 (Resolved): PHP error with an empty CRL
- Fixed on latest RC snap.
-
09:07 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
- Blank entries are not displayed on current RC snap and they do not cause PHP errors.
-
09:05 AM Bug #8877 (Resolved): VTI P2 can trigger an endless loop trying to form a P2 ID
- Invalid combinations mentioned here are rejected on current RC snap
-
09:03 AM Bug #8858 (Resolved): IPsec VTI cleanup can accidentally remove valid interfaces
- Can't reproduce on RC snap on the same box where it happened previously. Looks good.
-
08:45 AM Feature #8737 (Resolved): Let users configure PPPoE multilink over single link
-
08:44 AM pfSense Packages Bug #8631 (Resolved): syslog-ng - logrotate incorrectly configured to rotate TLS key
-
08:44 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
- Still waiting on someone that can reproduce it to confirm if it still happens. May be fixed, but we won't know for ce...
-
08:42 AM Bug #8071 (Resolved): DNSimple support for Dynamic DNS no longer working
- No feedback after a month, we do not have accounts there to test. Assuming it's OK based on lack of complaints.
09/12/2018
-
07:57 PM Revision 4868ef35: Initialize DHCP settings in setup wizard. Fixes #8889
- Rather than assume they are present, create the arrays before use.
(cherry picked from commit 7c15c19d76eac725c42133... -
07:46 PM Revision 7c15c19d: Initialize DHCP settings in setup wizard. Fixes #8889
- Rather than assume they are present, create the arrays before use.
-
07:37 PM Bug #8890: Register DHCP leases in the DNS Resolver has no effect
- Also content in /var/unbound/dhcpleases_entries.conf stays unchanged after uncheck the boxes and save, so unbound can...
-
07:34 PM Bug #8890: Register DHCP leases in the DNS Resolver has no effect
- Jim Pingle wrote:
> Those directives are always present. The contents of those files are what matter.
OK, I looke... -
02:58 PM Bug #8890 (Not a Bug): Register DHCP leases in the DNS Resolver has no effect
- Those directives are always present. The contents of those files are what matter.
-
02:48 PM Bug #8890 (Not a Bug): Register DHCP leases in the DNS Resolver has no effect
- uncheck "DHCP Registration" and "Static DHCP" in WebGUI doesn't change unbound's behavior.
@# Static host entries... -
06:17 PM Revision 3d9d84d4: Fix a PHP erorr when a CRL has no certificates
- (cherry picked from commit d9064f0b92452daeaf0cb7f0a0e74561f246ed5b)
-
06:16 PM Revision d9064f0b: Fix a PHP erorr when a CRL has no certificates
-
05:31 PM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
- You should post in the forums.
Something else is wrong with your setup, this affects only you, thus us in the commun... -
11:24 AM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
- Jim Pingle wrote:
> Looks like it's all configuration issues there, not a memory leak, but there is not enough detai... -
10:47 AM Bug #8888 (Not a Bug): Memory Leak/loop 99% used Ramdisk band aid.
- Looks like it's all configuration issues there, not a memory leak, but there is not enough detail to call it a bug by...
-
10:01 AM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
- Sorry those screen shot above turned out like crap
Better one's.
[[https://ibb.co/fMe2X9]]
[[https://ibb.co/mUUf... -
09:46 AM Bug #8888 (Not a Bug): Memory Leak/loop 99% used Ramdisk band aid.
- I am Ruining 2.4.3-p1. I have tried every thing from No Plugins, to Ramdisk Via var. I can Control it if I running a ...
-
03:38 PM Bug #8891 (Resolved): PHP error with an empty CRL
- If a CRL contains no certificates, a PHP error appears in the contents of the page...
-
02:50 PM Bug #8889 (Feedback): Setup Wizard PHP error when LAN has no DHCP configuration
- Applied in changeset commit:7c15c19d76eac725c42133012488cb97e4dcd885.
-
02:44 PM Bug #8889 (Resolved): Setup Wizard PHP error when LAN has no DHCP configuration
- If you remove LAN and then add it back, then run the Setup Wizard, a PHP error will result.
Removing the LAN remov... -
11:40 AM Bug #8868: multiple php errors on update
- Upgrading to 2.4.4-RC from Sept 11, the php errors are still present.
https://netgate.slack.com/files/U32BGSZBP/FC...
09/11/2018
-
08:16 PM Bug #8868: multiple php errors on update
- A while ago I added a code on pfSense-upgrade to cleanup crash report when PHP major version changes. I couldn't repr...
-
08:14 PM Bug #8868: multiple php errors on update
- Steve Wheeler wrote:
> Still seeing one of those PHP warning updating to todays image:
>
> [...]
This one shou... -
05:42 PM Bug #8868: multiple php errors on update
- Still seeing one of those PHP warning updating to todays image:...
-
07:44 PM Revision cf669325: Fix typo
- (cherry picked from commit 3b55fc639cdea2be20d55113055fd511ba193866)
-
07:44 PM Revision 3b55fc63: Fix typo
-
06:59 PM Revision aaf6d7a6: Update translation files
-
06:59 PM Revision b9f02588: Regenerate pot
-
06:55 PM Revision 834b671f: Update translation files
-
06:51 PM Revision 8c5817a9: Regenerate pot
-
05:18 PM pfSense Packages Bug #8887: Squid Proxy Interface not assignee to IPv6
- For fix this issue maybe better not add IP at all if look to documentation: http://www.squid-cache.org/Versions/v3/3....
-
05:06 PM pfSense Packages Bug #8887 (Resolved): Squid Proxy Interface not assignee to IPv6
- Package Version:
squid www 0.4.43_1
Package Dependencies:
squid-3.5.27_3
cat /etc/version
2.4.3-RELEASE
c... -
03:20 PM Todo #8886 (Not a Bug): Update downloads page once hybrid iso/img installers are implemented
- Once hybrid iso/img installers are implemented, we can remove the ISO and just have the hybrid memstick option for t...
-
02:37 PM Bug #8815 (New): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
-
02:37 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
-
02:29 PM pfSense Packages Bug #8885: HAProxy "Log hostname parameter broke local syslog
- Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13
cat /etc/version
2.4.... -
02:14 PM pfSense Packages Bug #8885 (Closed): HAProxy "Log hostname parameter broke local syslog
-
01:41 PM pfSense Packages Bug #8670 (Feedback): HAProxy PHP error
-
10:57 AM Bug #8859 (New): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- Needs more thought/testing than we'll have time for to make 2.4.4. There are workarounds on the linked forum thread f...
-
06:05 AM Bug #8859 (Feedback): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- Applied in changeset commit:59c2e21d4f903ebaed3af861aeecab9b7e94d037.
-
07:53 AM Bug #8883: Default route order set in Routing not honored
- Though, as food for thought: ...
-
07:46 AM Bug #8883: Default route order set in Routing not honored
- Thanks for your time. I'll just keep the changes locally.
-
07:45 AM Bug #8883: Default route order set in Routing not honored
- It may appear to "work" for you but it is not a general fix that will work across all platforms, and may not behave c...
-
07:29 AM Bug #8883: Default route order set in Routing not honored
- I have created a fix (above) so clearly there can be something done in your code. The fix does not break current conf...
-
07:20 AM Bug #8883 (Not a Bug): Default route order set in Routing not honored
- Having two interfaces in the same subnet is not supported, nor is having two interfaces with the same gateway.
The... -
07:16 AM Bug #8883: Default route order set in Routing not honored
- I propose the following fix on /etc/int/system.inc line 755:...
-
06:20 AM Bug #8883: Default route order set in Routing not honored
- this is on amd64, by the way.
-
06:20 AM Bug #8883 (Not a Bug): Default route order set in Routing not honored
- I have two interfaces:
- xn0: 10.0.0.253, gateway 10.0.0.1 (WAN)
- xn1: 10.0.0.254, gateway 10.0.0.1 (WAN2)
If I... -
06:05 AM Bug #8880: [PHP7] warning on system_gateways.php and extra item in gateways table
- Applied in changeset commit:a155dc5ec2278e0a344afa221127b8503d4e225e.
-
06:05 AM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- Applied in changeset commit:885cf6a751f076f43fa89167ba2a79f779244f1b.
-
06:05 AM Bug #8876: status_gateway_groups.php: PHP error when there is no gateways array
- Applied in changeset commit:b54a1af45c5add4e57253bfa0b562dadf3ae10f7.
09/10/2018
-
08:31 PM Bug #8882 (Incomplete): Interface assignments lost on reboot
- I'm running pfsense in AWS and I'm trying to route out of xn1 (second interface) instead of xn0 (using it as a sync i...
- 07:00 PM Revision a155dc5e: Fixed #8880
- 06:58 PM Revision ccabd09f: Merge branch 'master' of gitlab.netgate.com:pfsense/pfsense
-
03:57 PM Revision 6ae28bc3: Revert "Default VTI remote to Address but allow it to change. Fixes #8859"
- This reverts commit da54e84ae79328a87b4a319239bb1b14d7ed2ce6.
-
03:57 PM Revision 59c2e21d: Revert "Default VTI remote to Address but allow it to change. Fixes #8859"
- This reverts commit da54e84ae79328a87b4a319239bb1b14d7ed2ce6.
-
02:01 PM Bug #8880 (Feedback): [PHP7] warning on system_gateways.php and extra item in gateways table
-
06:33 AM Bug #8880: [PHP7] warning on system_gateways.php and extra item in gateways table
- Configs for reproducing bug _only Netgate has access_ https://drive.google.com/file/d/1N8hgWGgN4ccwUB0ldBpjGQFZdRo96m...
-
06:24 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
- 244-RC...
-
01:21 PM Bug #8815 (In Progress): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
-
01:21 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
-
12:51 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
- Based on the discussion in the repo (https://github.com/sspans/ladvd/issues/36), the FreeBSD port has been updated: h...
-
10:57 AM Bug #8859 (In Progress): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- This apparently fails despite previous reports of manual edits working. See
https://forum.netgate.com/post/788458
... -
04:37 AM pfSense Packages Feature #8232: different ssl options based on the sni name
- Hi Pi Ba,
looks like this patch not work with the most recent version of pfsense 2.4.3 P1. Can you check please?...
09/09/2018
-
06:37 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
- The creator of the LADVD package is saying this is likely fixed in his 1.1.2 implementation, and PFSense is still usi...
-
08:06 AM Bug #8527: VLANs losing parent interface on LAGG change
- I still saw this issue on 2.4.4.r.20180905.2249
09/08/2018
-
11:15 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- Should have something up on Monday to try with gitsync at least, hopefully an RC as well.
-
03:36 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- Okay thanks. So wait for a RC build now or gitsync to test.? Seems snapshots don't get updated a.t.m. .
-
03:16 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
- Created issue to track in official repo:
https://github.com/sspans/ladvd/issues/36
09/07/2018
-
04:29 PM Bug #8870: Webgui incorrectly reports "The system is on the latest version".
- Yep I hit this one a couple of days ago, on whatever snap was latest as of 9/5
pkg goes braindead in some way if t... -
01:32 PM pfSense Packages Bug #8103 (Resolved): squid monitor using hard coded logs location
-
01:30 PM pfSense Packages Bug #8103: squid monitor using hard coded logs location
- Issue can be closed, already merged on GitHub
https://github.com/pfsense/FreeBSD-ports/commit/b7c4da7878f8da6169c5... -
12:11 PM Revision 2ee829ae: Prevent a user from selecting VTI for mobile IPsec. Fixes #8877
- (cherry picked from commit 885cf6a751f076f43fa89167ba2a79f779244f1b)
-
12:10 PM Revision 885cf6a7: Prevent a user from selecting VTI for mobile IPsec. Fixes #8877
-
09:14 AM Feature #8879: DHCP options ADD force options
- pfSense uses ISC DHCPD for DHCP, not dnsmasq. ISC DHCPD doesn't have a way to force an option in quite that same mann...
-
09:11 AM Feature #8879 (New): DHCP options ADD force options
- DHCP server offer the possiblilty to add DHCP options.
Maybe add for options the possibility to force the options (w... -
07:13 AM Bug #8877 (Feedback): VTI P2 can trigger an endless loop trying to form a P2 ID
- I just pushed another bit of input validation to prevent VTI from being selected on mobile IPsec. That should hopeful...
09/06/2018
-
09:57 PM Revision af656615: Changes on the parent interfaces will create new interfaces and the existing VLANs needs to be redone.
- Ticket #8527
(cherry picked from commit 6fd6b8536b80316caf0f3b9221ed6af0b3453571) -
09:55 PM Revision 6fd6b853: Changes on the parent interfaces will create new interfaces and the existing VLANs needs to be redone.
- Ticket #8527
-
08:32 PM Revision 39504035: IPsec VTI requires a manually specified network/address. Issue #8877
- Prevent a user from selecting an interface macro like "LAN Network"
which cannot be used with VTI since it does not w... -
08:32 PM Revision 02af1494: IPsec VTI requires a manually specified network/address. Issue #8877
- Prevent a user from selecting an interface macro like "LAN Network"
which cannot be used with VTI since it does not w... -
04:38 PM pfSense Packages Feature #8878 (Resolved): Propagate user's description field into QR code for FreeRADIUS
- Hi,
it is often desirable (esp. when you have more than one identity added in your Google Auth mobile app) to dist... -
04:27 PM Bug #8877 (In Progress): VTI P2 can trigger an endless loop trying to form a P2 ID
- Yeah the mobile case is still a bit undefined. I can shut that down as well. I'm not sure that is feasible since VTI ...
-
04:14 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- i could configure vti on a 'normal' site-to-site vpn so perhaps its just a 'user issue' :) if so then sorry for the n...
-
04:06 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- Perhaps the issue was that i made my mobile-ipsec P2 use vti.. perhaps that does not actually make sense to do.?. it ...
-
03:35 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- I haven't tried setting one up this way but if someone were to have incorrectly selected something like "LAN Network"...
-
03:07 PM Bug #8877 (Feedback): VTI P2 can trigger an endless loop trying to form a P2 ID
- I can maybe see how some combination may lead to a loop here but I can't seem to make it happen on any of mine.
So... -
03:05 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- Its about the vti and it looping around. see screenshot of a stacktrace.
-
02:34 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- I suspect it would have done the same for any other additional interface you add there and VTI was a coincidence. May...
-
02:29 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
- agreed that the lines don't 'directly' point to vti.. however only when i enable 'that' interface its runs for a minu...
-
02:22 PM Bug #8877 (Not a Bug): VTI P2 can trigger an endless loop trying to form a P2 ID
- That doesn't look like it would have anything to do with VTI. The lines you reference are quite different, one is a g...
-
02:03 PM Bug #8877 (Resolved): VTI P2 can trigger an endless loop trying to form a P2 ID
- Enabling a vti OPT1 interface throws me the following errors after a minute while processing the 'apply' button.. lik...
-
04:27 PM Revision 1884979a: Fix a PHP error when upgrading gateways
- (cherry picked from commit bd670efef4c642ebb03b844ef0c38258740a37a1)
-
04:27 PM Revision bd670efe: Fix a PHP error when upgrading gateways
-
03:00 PM Bug #8001: Invalid FQDN in alias causes alias table to fail *silently*
- possibly related bug: https://redmine.pfsense.org/issues/8758
-
03:00 PM Bug #8758: filterdns stops working on a regular basis.
- Ok, I've done that. For anyone else who wants an easy way, I made a patch that you can add via System Patches:
https... -
02:34 PM Bug #8527 (Feedback): VLANs losing parent interface on LAGG change
- Waiting the next -RC build.
-
07:14 AM Todo #6647: Enable Additional Security Headers
- Fixed the subject to be more general since this is covering more than just CSP at this point.
We had someone askin...
09/05/2018
-
09:26 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- You were probably kidding, but my ISP will propose exactly this (40 gig) in 2-3 years ... at least that's the plan.
... -
08:17 PM Revision 7d80bbbe: Init gateway group array before use. Fixes #8876
- (cherry picked from commit b54a1af45c5add4e57253bfa0b562dadf3ae10f7)
-
08:17 PM Revision b54a1af4: Init gateway group array before use. Fixes #8876
-
04:03 PM Bug #8876 (Feedback): status_gateway_groups.php: PHP error when there is no gateways array
- Fix committed, will be in snaps when they are running again.
-
03:08 PM Bug #8876 (Resolved): status_gateway_groups.php: PHP error when there is no gateways array
- ...
-
12:15 PM Feature #6742: OAuth2 authentication for OpenVPN (and for FreeRadius)
- +1 on my side as well. We need this in order to properly implement VPN/IPSec/FreeRadius for our remote workers to int...
-
04:03 AM Feature #8737: Let users configure PPPoE multilink over single link
- Confirm option existing in GUI and in device config
!option.png!... -
02:58 AM Revision 577afc43: Fix default repo
-
12:56 AM Bug #8875 (Duplicate): Separator in DHCP Server
- Hi. Having a seperator in DHCP Server would be nice to allocate ip addresses like in Firewall Rules.
09/04/2018
-
09:43 PM Bug #6263: Encryption options for every P2 on a given P1 are written to each P2 individually inside ipsec.conf with multiple P2 entries + split conn entries
- PJ Goodwin wrote:
> Looked into this and the attached patch appears to fix the issue in 2.4.2. The comparable chang... -
04:28 PM Revision 569b8f21: Use proper variables on pkg repos
-
04:26 PM Revision 3a00b1b2: Rename 2.4.4-RC repo to pfSense-repo-244
-
04:26 PM Revision 3c5d8241: Rename 2.4.4-RC repo to pfSense-repo-244
-
04:25 PM Revision 7241fea9: Rename 2.4.4-RC repo to pfSense-repo-244
-
04:24 PM Revision e500235b: Fix branches
-
04:00 PM Revision 74fefca1: Add 2.4.4-RC repository
-
03:59 PM Revision 3cdfaf4e: Welcome pfSense 2.4.4-RC
-
03:58 PM Revision 834c6697: Bump version to 2.4.5-DEVELOPMENT and add 2.4.4 RC repository
-
02:44 PM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
-
02:25 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
- Working correctly on the last snapshot
This issue can be marked as resolved. -
09:05 AM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
- Applied in changeset commit:7cab6335bb56d2ac372a195719be28c55b2cb252.
-
09:01 AM Bug #8806 (Feedback): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
-
02:41 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
- It's unlikely that is the cause of your problem. Please keep this kind of guesswork/debugging on the forum until a sp...
-
02:38 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
- We detect some network issues between some sites. Look at IPSEC status, we can see some of our tunnels with Phase 2 d...
-
02:36 PM pfSense Packages Bug #8873 (Feedback): PHP7 warning in squidguard
- Fix pushed. 824d08577196346be0e7d24d925bf3338208bd89
also cherry-picked to 2.4.4 3c1f879caabe7f9059e0a0143689d2d0b3c... -
11:15 AM pfSense Packages Bug #8873 (Resolved): PHP7 warning in squidguard
- [02-Sep-2018 21:00:29 Etc/UTC] PHP Warning: Use of undefined constant GIF_BODY - assumed 'GIF_BODY' (this will throw...
-
02:31 PM pfSense Packages Bug #8872: PHP7 error in squid
- Cherry-picked to 2.4.4 as well d47455c16c985d3d98fea422855a0dc7bf78c657
-
02:28 PM pfSense Packages Bug #8872 (Feedback): PHP7 error in squid
- Fix Pushed 90c367bf2f2fcd61ed631bd3c4fd6634a253b5d6.
-
11:14 AM pfSense Packages Bug #8872 (Resolved): PHP7 error in squid
- [02-Sep-2018 21:45:02 Etc/UTC] PHP Fatal error: Uncaught Error: Call to undefined function split() in /usr/local/pkg...
-
02:03 PM Revision 2eeeec06: Fix #8863: Add missing kernel module amdsmn, required by amdtemp
-
01:56 PM Revision 7cab6335: Fix #8806: Configure captive portal on secondary identical as master HA node
-
01:47 PM Bug #8758: filterdns stops working on a regular basis.
- Luke Hamburg wrote:
> I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it wo... -
01:09 PM Bug #8758: filterdns stops working on a regular basis.
- I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it worth sending any sort of...
-
09:10 AM Bug #8758: filterdns stops working on a regular basis.
- Currently unable to reproduce
-
01:31 PM Feature #8160: Accomodate both RADIUS and pool IP addresses in IPsec
- Implementation PR: https://github.com/pfsense/pfsense/pull/3976
-
10:37 AM Bug #8721 (Resolved): DHCP High Availability - Statis assignement Issue on BackUP machine
-
10:35 AM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
- It works well on latest...
-
10:18 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
- Looks like this is PPPoE related issue. I do not see problem with fragmented IPv6 and logging on Ethernet IPv6 forwar...
-
09:34 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
- I've never been able to replicate that locally. It's going to be very difficult to test.
-
09:59 AM Bug #8863 (Resolved): amdtemp.ko module failed to load
- Fixed...
-
09:10 AM Bug #8863: amdtemp.ko module failed to load
- Applied in changeset commit:2eeeec06d7b8d719a8913c69095675a695305918.
-
09:04 AM Bug #8863 (Feedback): amdtemp.ko module failed to load
-
02:51 AM pfSense Packages Bug #8871: Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
- Forgot to set Category -> Suricata.
Running b0703dcab3c(RELENG_2_4_4) (snapshot) with latest Suricata package availa... -
02:50 AM pfSense Packages Bug #8871 (Resolved): Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
- Spotted this today:...
09/03/2018
-
06:17 PM Revision 7fead243: Fix #8721: Call proper filter_configure function from this class
-
02:29 PM Bug #8870 (Resolved): Webgui incorrectly reports "The system is on the latest version".
- In some circumstances the dashboard can report that the system is on the latest version when in fact the pkg system i...
-
01:25 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
- Applied in changeset commit:7fead243f9e6238e0098ea2bdc3c992fa071efeb.
-
01:17 PM Bug #8721 (Feedback): DHCP High Availability - Statis assignement Issue on BackUP machine
-
01:18 PM Bug #8806 (In Progress): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
-
07:20 AM Bug #8866: cleaning backup cache can take VERY long
- It does load/parse them to check that they are valid so it can clean out invalid/broken configurations.
It's behav... -
01:36 AM Bug #8866: cleaning backup cache can take VERY long
- You were right as in i increased that setting. By a lot. We edit config quite often, so 30 backups wasn't feasible an...
09/02/2018
-
10:35 PM pfSense Packages Feature #8869: HAproxy should use RFC 7919 DH parameter files
- It should not let you use a self-generated DH parameter file, but use the stock system DH parameter files which are f...
-
10:20 PM pfSense Packages Feature #8869 (New): HAproxy should use RFC 7919 DH parameter files
- It would be really nice to have a UI option to generate a custom DH parameter file for HAproxy to use.
The origina... -
06:33 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
- One is for DHCPv6, one is for PPPoE. They could be different problems, they could be the same problem, needs more res...
-
12:00 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
- Is this a dupe of #8136?
09/01/2018
-
03:57 PM Feature #8867: interfaces_vlan_edit.php does not display proper interface aliases
- Jim Pingle wrote:
> That is because VLANs are a child of the physical interface, not an assigned interface. The assi... -
02:43 PM Feature #8867 (Not a Bug): interfaces_vlan_edit.php does not display proper interface aliases
- That is because VLANs are a child of the physical interface, not an assigned interface. The assignments and descripti...
-
11:20 AM Feature #8867 (Confirmed): interfaces_vlan_edit.php does not display proper interface aliases
- On /interfaces_vlan_edit.php (Interfaces>Assignments>VLANs>Add), when the parent interface drop-down list is clicked,...
-
02:44 PM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
-
01:11 PM Todo #8860: Change status.php to use "ifconfig -va" for more detail
- On 2.4.4.a.20180831.2010, looks good.
Network-Intefaces shows module information for SFP+... -
01:20 PM Bug #8868 (Not a Bug): multiple php errors on update
- Installed Current Factory System: 2.4.3_1
Added packages: Squid, squidguard, lightsquid, pfblockerng, and Snort
... -
07:59 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
-
04:12 AM Bug #8859: VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- On Fri Aug 31 20:10:51 EDT 2018:
Created P2 with VTI remote network, then changed it to remote address - changes a... -
07:50 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
- By default it only keeps 30 backups. There is no way it would have as many files as you state without being manually ...
-
04:26 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
- Hi,
my pfSense is running on rather sparse CPU ressources (Atom N2800). Rebooting takes up to 30 minutes (actually c... -
05:47 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
-
04:58 AM Bug #8857: PHP error when saving on vpn_ipsec_settings.php
- Reset sg2440 Fri Aug 31 20:10:51 EDT 2018 to factory and then opened vpn_ipsec_settings.php, clicked "save" - no erro...
08/31/2018
-
10:40 PM pfSense Docs Correction #8865 (Rejected): Feedback on Networking Concepts — IPv6 — IPv6 Subnetting
- *Page:* https://www.netgate.com/docs/pfsense/book/network/ipv6-subnets.html
*Feedback:*
IPv6 Subnet Table
IPv6 ... -
08:02 PM Revision b9c2164c: Revert "Attempt to re-enable Telegraf for armv6"
- This reverts commit 46043cbc5a1dd205bcbe53cc31341d27ac06276e.
-
07:35 PM Revision 46043cbc: Attempt to re-enable Telegraf for armv6
-
04:59 PM Bug #8864: SSH Guard Sensitivity/Whitelist on 2.4.4
- Sorry I meant to put 2.4.4.a.20180831.0830 in the topic after 'SSH Guard on 2.4.4.a.20180831.0830'
-
04:58 PM Bug #8864 (Resolved): SSH Guard Sensitivity/Whitelist on 2.4.4
- I am running 2.4.4.a.20180831.0830 and noticed that my Icinga monitoring started to show issues with SSH. When I loo...
-
03:09 PM Bug #8863 (Resolved): amdtemp.ko module failed to load
- amdtemp.ko module failed to load with the following error message
KLD amdtemp.ko: depends on amdsmn - not availabl... -
02:49 PM Bug #8856 (Resolved): IPsec not starting and getting PHP error
-
02:07 PM Bug #8856: IPsec not starting and getting PHP error
- Yes, fsck fixed IPsec issue, now it works, thank you.
** Last Mounted on /
** Root file system
** Phase 1 - Chec... -
08:25 AM Bug #8856 (Feedback): IPsec not starting and getting PHP error
- Applied in changeset commit:b5a4633f9ffeb365aba1d8b451f3638b37452b23.
-
08:06 AM Bug #8856 (In Progress): IPsec not starting and getting PHP error
- I see some room for improvement in that area of the code, but that error appears to come from a disk issue.
Speaki... -
01:23 AM Bug #8856 (Resolved): IPsec not starting and getting PHP error
- on SG3100 Thu Aug 30 00:38:38 EDT 2018
Crash report begins. Anonymous machine information:
arm
11.2-RELEASE-p... -
02:47 PM Revision 836ee3aa: Change status.php to use "ifconfig -v". Implements #8860
- 02:26 PM Revision d145caa8: Revise async_crypto setting
-
02:12 PM Revision da54e84a: Default VTI remote to Address but allow it to change. Fixes #8859
- 02:08 PM Revision d08e8255: Make async_crypto explicit enabled/disabled rather than current isset
-
01:54 PM Revision 74e45438: Move IPsec VTI interface cleanup list. Fixes #8858
- Generate the cleanup list before the P1 loop but after the initial
interface configuration. -
01:22 PM Revision b5a4633f: Use safe_mkdir() for IPsec dirs. Fixes #8856
- Simplifies the process of making IPsec dirs, though it may not correct
the original reported issue since that appears... -
12:29 PM Revision 463b52b6: Initialize IPsec logging array before use. Fixes #8857
-
11:52 AM pfSense Docs Correction #8862 (Resolved): [feedback form] Include configuration examples for IPv6 WANs
- *Page:* https://docs.netgate.com/pfsense/en/latest/interfaces/configure-ipv6.html
*Feedback:* Examples would be ni... -
11:09 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- Repeated the same test with installed squid, bind packages - all good, no delay's in bootup.
-
10:03 AM Feature #8861 (Resolved): Show SFP module details on ``status_interfaces.php``
- Looking at the output of @ifconfig -v@, there is more info we could be showing on status_interfaces.php.
At a mini... -
09:55 AM Todo #8860 (Feedback): Change status.php to use "ifconfig -va" for more detail
- Applied in changeset commit:836ee3aaca674a84dec47dce9a1183b98352ba4f.
-
09:47 AM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
- @ifconfig -v@ will return more info than the @ifconfig@ alone. For @ix(4)@ interfaces it will print information about...
-
09:15 AM Bug #8859 (Feedback): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- Applied in changeset commit:da54e84ae79328a87b4a319239bb1b14d7ed2ce6.
-
09:10 AM Bug #8859 (In Progress): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
-
09:09 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
- Some equipment that supports VTI requires the remote address be set to a network and not the default address, or else...
-
09:05 AM Bug #8858 (Feedback): IPsec VTI cleanup can accidentally remove valid interfaces
- Applied in changeset commit:74e4543842c47efda37e3b078b8e5cc3f54ce9ba.
-
08:56 AM Bug #8858 (In Progress): IPsec VTI cleanup can accidentally remove valid interfaces
-
08:56 AM Bug #8858 (Resolved): IPsec VTI cleanup can accidentally remove valid interfaces
- Then code that cleans up deleted/disabled IPsec VTI interfaces can, with certain configurations, delete a valid inter...
-
07:35 AM Bug #8857 (Feedback): PHP error when saving on vpn_ipsec_settings.php
- Applied in changeset commit:463b52b606d98b72cbaeb2f6d3c348689106c414.
-
07:28 AM Bug #8857 (In Progress): PHP error when saving on vpn_ipsec_settings.php
-
07:26 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
- From a fresh install with no IPsec configuration, clicking Save on vpn_ipsec_settings.php gives a PHP error:...
-
05:36 AM pfSense Packages Bug #8790 (Resolved): getting PHP error regarding HAproxy pkg
-
02:08 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
- Hi!
All OK, thanks!
08/30/2018
-
09:53 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
- On a fresh install of 2.4.4.a.20180830.1356, when snort 3.2.9.7_2 is installed the output is :...
-
09:30 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
-
09:17 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
- On version 3.2.9.7_2, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled...
-
11:37 AM pfSense Packages Bug #8829 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
- This should now work as expected. c5d12ed2814f7ed5c002fb71fae6d992708bc4f9
Snort version 3.2.9.7_2 -
09:49 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
-
09:49 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
- On a fresh install of 2.4.4.a.20180830.1356, when suricata 4.0.13_8 is installed the output is :...
-
05:50 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
- On version 4.0.13_8, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled ...
-
11:17 AM pfSense Packages Bug #8828 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
-
11:17 AM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
- I found that the code to remove the package forgot to use 'write_config()' after removing the Suricata configurations...
-
05:53 PM Revision 255eae76: Remove sshguard and fail2ban
-
05:51 PM Revision b89270b7: Fix #7694: Replace sshlockout_pf by sshguard
-
04:49 PM pfSense Packages Bug #8670: HAProxy PHP error
- This issues with haproxy should be fixed with current 0.59_11 version. If not please let me know the exact error you ...
-
04:47 PM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
- Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens.
-
04:47 PM pfSense Packages Bug #8833: haproxy getarraybyref error
- Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens.
-
12:41 PM Revision 880107d2: Missing line to fix #8850
-
09:39 AM Bug #8767 (Resolved): ID handling problem with DNS Forwarder host override management
-
08:43 AM Feature #8855 (Rejected): View Description field on widget for OpenVPN
- Hi!!!
Its useful add on widget for OpenVpN, view the description field too , for get information about a user when c... -
07:59 AM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
-
07:45 AM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
- Applied in changeset commit:880107d21f5e69201ba810d553d948ca9009f70d.
-
07:39 AM Bug #8850: Packages that start on sync are started multiple times at boot
- Looks like one line of the fix didn't make it into the final commit. Will push a correction momentarily after re-test...
-
07:59 AM pfSense Packages Bug #8620 (Resolved): arpwatch database page is not accessible
-
07:59 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
- Gitsynced, retested - now looks good, no arpwatch duplicated processes
-
07:51 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
- OK to test again after a gitsync or an update to a snapshot which includes my last commit on #8850
-
07:40 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
- Looks like one line of my commit is missing, will push a correction momentarily. The package is OK, the problem is on...
-
04:44 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
- Yup, seeing the same on Wed Aug 29 19:26:24 EDT 2018 with pfSense-pkg-arpwatch-0.1.1:
root 37039 0.0 0.3 ... -
07:20 AM Bug #8726 (Resolved): Lack of input validation on custom GUI/dashboard settings leads to potential XSS
-
06:56 AM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
-
06:56 AM Todo #8851: Change default CA/Cert action to "Create an internal..."
- On factory 2.4.4.a.20180830.0038, SG-3100
Click System -> Cert. Manager, CAs
Default selection is 'Create an i...
08/29/2018
-
11:33 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
- On 2.4.4.a.20180829.1926, tried a XSS injection example as the dashboardcolumns value in the pfSense config.xml, relo...
-
11:16 PM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
-
11:15 PM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
- On 2.4.4.a.20180829.1926, ...
-
08:43 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
- I just tried the latest pfBlockerNG and the is has NOT been resolved!
Please re-open the bug.
-
08:25 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
- On 2.4.4.a.20180829.1926 (gitsync'd to master) with arpwatch version 0.1.1,
Seeing one instance of arpwatch for ea... -
02:10 PM pfSense Packages Bug #8620 (Feedback): arpwatch database page is not accessible
- Should be improved by https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d5640a742bbe77012a5ba626b084 but th...
-
07:59 PM Revision b0a5c280: Set default new CA/Cert action to Create Internal. Implements #8851
-
07:45 PM Todo #8851: Change default CA/Cert action to "Create an internal..."
- On 2.4.4.a.20180829.1429 (gitsync'd to master), looks good. Create CA/Cert is the default behavior now.
-
03:05 PM Todo #8851 (Feedback): Change default CA/Cert action to "Create an internal..."
- Applied in changeset commit:b0a5c280a407ac26af2e6f055ac1049304034672.
-
02:58 PM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
- When the certificate manager was first created, the most common user action was to import and not create. We are long...
-
06:24 PM Revision 5d4f4900: Allow packages to opt out of a forced start. Fixes #8850
- If a package performs its own service start during its sync process,
then add <starts_on_sync/> to its service defini... -
04:35 PM pfSense Docs Correction #8854 (Resolved): [feedback form] Define Broadcast Domain and switch loops
- *Page:* https://docs.netgate.com/pfsense/en/latest/network/broadcast-domains.html
*Feedback:* The section tells w... -
04:32 PM pfSense Docs Correction #8853 (Resolved): [feedback form] Explain what 0:0 means
- *Page:* https://www.netgate.com/docs/pfsense/book/monitoring/firewall-states-gui.html
*Feedback:* What does 0:0 me... -
04:30 PM pfSense Docs Correction #8852 (Resolved): Clarify purpose of "Client Identifier" in DHCP static mapping
- *Page:* https://docs.netgate.com/pfsense/en/latest/services/dhcp/ipv4.html
*Feedback:* I am unclear about "Client ... -
03:23 PM Bug #8518: Rule Error On Upgrade 2.4.3 -> 2.4.3-p1
- Steffen Wagner wrote:
> the above commands fixed it for me as well. An official patch for p1 would be good!
Can y... -
03:03 PM Bug #8767: ID handling problem with DNS Forwarder host override management
- Fixed the illegal string offset error described above. bc91bdffcefd009f4716cce59eab231c2245fb18
I did not notice a... -
02:58 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
- Tested with arpwatch installing fresh, configuring and multiple reboots
-
01:34 PM Bug #8850: Packages that start on sync are started multiple times at boot
- For an example of the change to make on packages, see https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d56...
-
01:30 PM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
- Applied in changeset commit:5d4f49000654fae594144abc36fe8a588a028510.
-
01:19 PM Bug #8850 (In Progress): Packages that start on sync are started multiple times at boot
-
01:19 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
- When @/etc/rc.start_packages@ is run, for example at boot time, it performs a package sync with @sync_package()@ and ...
- 02:26 PM Revision bc91bdff: Fixes #8767 PHP7 syntax error
-
11:40 AM Feature #8849 (Duplicate): DHCP Custom configuration
- I would suggest a field so we can use additional settings. There is the possibility of making several subnet with use...
-
09:44 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- The description and behavior are correct for POSIX style zones. See note 9 above. The "Etc/GMT+4" zone means 4 hours ...
-
09:34 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- Although the description tells how it works, the GMTs are wrong.
The correct GMTs are "+" (before GMT) and "-" (af... -
09:40 AM Bug #8138 (Resolved): Option <spoofmac> is ignored on interfaces without hwaddr
- Tested on a VM with CE:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
... -
09:34 AM Bug #8848: GMT timezones reversed
- Although the description tells how it works, the GMT's on web interface are wrong.
The correct GMTs are "+" (befor... -
09:21 AM Bug #8848 (Rejected): GMT timezones reversed
- The descriptions of the zones make this very clear, they explain the behavior and whether or not they are ahead of or...
-
09:10 AM Bug #8848 (Rejected): GMT timezones reversed
- On System > General Setup, timezones GMT[+-]X are reversed.
If set GMT-4 on web interface, it apllies GMT+4 on sys... -
08:08 AM Feature #8644 (Resolved): IPsec mobile clients DNS enhancement
- I check this Bug on old 2.4.4.a.20180801.0114: DNS from /VPN/IPsec/Mobile Clients menu was set up into '/var/etc/ipse...
-
07:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- Greg M wrote:
> I am on:
> 2.4.4-DEVELOPMENT (amd64)
> built on Wed Aug 29 00:38:57 EDT 2018
> FreeBSD 11.2-RELEA... -
06:32 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- I am on:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
The system is ... -
05:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- Greg M wrote:
> Hi!
>
> Installed, when I open it:
>
> Fatal error: Uncaught Error: Call to undefined function... -
01:13 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- Hi!
Installed, when I open it:
Fatal error: Uncaught Error: Call to undefined function pfsense_pkg\acme\getarra... -
01:14 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
- Same here.
Haproxy is not installed after this error and services are down.
08/28/2018
-
09:55 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
- I'm interested in a fix for this as well. On 2.4.3-p1 I have the same issues -- multiple emails and nothing in the da...
-
08:24 PM Revision 47979f66: Update translation files
-
08:18 PM Revision b2347104: Regenerate pot
-
07:30 PM Revision 45fbd1bd: Fix Minnowboard Turbot model names. SG-2320 -> MBT-2220, SG-2340 -> MBT-4220
- 07:06 PM Revision 0a906fcc: fixes #8837 part 2, initialize as array instead of string for PHP7
-
06:18 PM Revision 4f03ad7a: Fix #8845: Increase PHP FD_SETSIZE
-
05:45 PM Bug #8847 (Resolved): IPsec status "Show Child SA entries" button only expands and never collapses
- I am using version 2.4.4, I noticed that in ipsec status when clicking (+) Show child SA entries is shown the details...
-
05:29 PM Feature #2358: NAT64 support
- Another upvote. At some point in the future we're going to start having needs for v6-only networks. For some of the...
-
04:51 PM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
-
04:26 PM Bug #8837: PHP error when creating alias URL Table (IPs)
- This commit seems to have solved the issue.
-
03:35 PM Bug #8837: PHP error when creating alias URL Table (IPs)
- The `[] operator not supported` error should be fixed in the next snap.
0a906fcc2e120e7dd290ce7faac1ba14a24f731b -
03:55 PM Bug #8683 (Resolved): Unable to add GIF interface (Hurricane Electric IPv6)
- Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Was able to... -
09:03 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
- Result for @gre@ also looks good.
-
08:52 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
- ...
- 03:49 PM Revision 6a2461f0: Bug was fixed in pfsense module and this code is no longer needed so removing.
-
03:22 PM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
- Tested on: 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Haven't ... -
03:12 PM Bug #8823 (Resolved): Dashboard Crash
- Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
No crashes ... -
02:58 PM pfSense Packages Feature #8613 (Feedback): pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- PR merged, should be ready for testing shortly
-
02:47 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
- As long as it doesn't lead to an XSS it should be OK. Try using a typical XSS injection string and then going to a pa...
-
02:43 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
- Tested the above inputs webguicss, webguifixedmenu, webguihostnamemenu, and dashboardcolumns. and was not able to use...
-
01:25 PM Bug #8845 (Feedback): Recompile PHP with a larger value of FD_SETSIZE.
- Applied in changeset commit:4f03ad7a36b6c2f9060f059f167a491b06739acf.
-
01:18 PM Bug #8845 (In Progress): Recompile PHP with a larger value of FD_SETSIZE.
-
02:19 AM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
- Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #72 9d6b703bf... -
01:12 PM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
- In order to be able to install any of the PHP72 related packages you must upgrade to a PHP 7.2 based 2.4.4 snapshot.
-
12:43 PM Revision 57639ced: $wancfg is not a reference to $config. Set $random_mac properly on config and break long lines while here
-
12:41 PM Revision 4cd8424a: Revert ticket #1337
- FreeBSD is not happy with simple set VLAN to use a different MAC
address. Revert it for now and prevent users to chan... -
11:11 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
- Your right. On our side we have our own IPs and BGP with FRR. But our Customers have only one IP from each ISP. Not i...
-
07:51 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
- With 2.4.4 you can use routed IPsec and a routing protocol like OSPF or BGP to accomplish failover. You can build an ...
-
07:45 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
- Cloud is needed more and there is a reliable VPN connection very important. For this case a quick switch on failure i...
-
09:57 AM Bug #8519: pfSense update from the webGUI fails
- All of my hosts that had issues before appear to be OK when upgrading from snaps from early yesterday to the latest a...
-
07:43 AM Bug #8758 (In Progress): filterdns stops working on a regular basis.
-
06:12 AM Bug #8758: filterdns stops working on a regular basis.
- Jim Pingle wrote:
> I had this happen on my edge firewall which is running a snapshot from earlier this week. The pf... -
07:43 AM Feature #1337 (Assigned): VLANs with different MAC address than parent interface
-
07:08 AM Feature #1337 (In Progress): VLANs with different MAC address than parent interface
-
07:15 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
-
06:41 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
- @jimp you can close this
-
04:47 AM Bug #8846 (Resolved): Misleading error message when adding/editing static routes which use a gateway on a disabled interface
- I was adding static route on disabled interface and got the following message:...
-
01:00 AM Feature #8173: dhcp6c - RAW Options
- The improvement request https://redmine.pfsense.org/issues/8173 is essential for IPv6 authentication for Orange (Fran...
08/27/2018
-
10:07 PM pfSense Packages Bug #8844: PFBlockerNG-Dev
- https://www.reddit.com/r/PFSENSE/comments/9a9o8k/php_pfblockerng_related_crashing_in_244development/e4trgk9/
https... -
10:28 AM pfSense Packages Bug #8844 (Duplicate): PFBlockerNG-Dev
- Version: pfBlockerNG-devel 2.2.5_10
When enabling GeoIP the selection goes back to 'disabled'.
Firewall -> pfB... -
06:14 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
-
06:14 PM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
- On 2.4.4.a.20180827.1735, cannot reproduce.
-
06:50 AM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
- Applied in changeset commit:ce04950d94bab271a9904a8bd8cbbe40d7a7d718.
-
06:43 AM Bug #8838 (Feedback): PHP warning when creating an OpenVPN client with invalid setting
-
05:23 PM Revision ab1ef772: Start building fail2ban
-
03:58 PM Revision 2456ecc9: Fix some integer assumptions with calculate_ipv6_delegation_length()
-
02:37 PM Bug #8758: filterdns stops working on a regular basis.
- Sounds good!
-
02:30 PM Bug #8758: filterdns stops working on a regular basis.
- It is at https://github.com/pfsense/FreeBSD-ports/blob/devel/net/filterdns/files/filterdns.c but Renato is already lo...
-
02:17 PM Bug #8758: filterdns stops working on a regular basis.
- Agree it's less than ideal. But until a proper fix can be found a kludge might be safer than nothing, since aliases n...
-
02:00 PM Bug #8758: filterdns stops working on a regular basis.
- That's a rather ugly hack/kludge and it would be better to find out why it's failing and fix it directly.
-
01:58 PM Bug #8758: filterdns stops working on a regular basis.
- Hmm. In that case, how about we add some tests to the alias edit php functions to query pfctl directly after a save a...
-
01:54 PM Bug #8758: filterdns stops working on a regular basis.
- That is a possible side effect. You can kill the @filterdns@ daemon and then trigger a filter reload from *Status > F...
-
01:51 PM Bug #8758: filterdns stops working on a regular basis.
- Would this affect IP alias lists getting "stuck" and not updating? I ran into this last week - editing an Alias, adde...
-
01:47 PM Bug #8758: filterdns stops working on a regular basis.
-
01:42 PM Bug #8519: pfSense update from the webGUI fails
- I had several hitting this in my lab but only just now getting them onto snaps which included the latest fix. Let's g...
-
01:42 PM Bug #8519 (Resolved): pfSense update from the webGUI fails
-
01:30 PM Bug #8519: pfSense update from the webGUI fails
- Not seen any update issues for a few snaps now on a number of boxes.
-
01:34 PM Revision 10f9a4a9: Escape arguments when relinquishing a DHCP lease. Fixes #8843
- (cherry picked from commit 57183ac45c0bfd5acf92c99e30c52bb2ca9417f9)
-
01:34 PM Revision 57183ac4: Escape arguments when relinquishing a DHCP lease. Fixes #8843
-
01:32 PM Revision daedcb94: Escape arguments when relinquishing a DHCP lease. Fixes #8843
- (cherry picked from commit c45cac34db914f175dc3cbfed8119d08d08aa519)
-
01:31 PM Revision c45cac34: Escape arguments when relinquishing a DHCP lease. Fixes #8843
-
01:27 PM Bug #8683 (Feedback): Unable to add GIF interface (Hurricane Electric IPv6)
-
01:26 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
- Steve is working on this one
- 12:27 PM Revision b4e2567f: Fix extra braces
- 11:42 AM Revision ce04950d: Fixed #8838
-
11:37 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
- Even if they were encrypted before being put in there, they are still in plain text in @config.xml@. If you don't lik...
-
10:49 AM Bug #7547: Static routes using aliases are not automatically updated when alias content changes
Also, when you delete a subnet from the alias editing and saving the static alias route doesn't remove the route.
...-
10:28 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
- "Bogus" is a closed/resolved status. It's already been dealt with.
-
09:35 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
- Is there any action from Netgate team requested here?
Can this ticket be marked as resolved? -
09:21 AM Feature #2358: NAT64 support
- TRIPLE UPVOTE!
-
09:00 AM Feature #1191 (Closed): Enable dynamic VLAN assignment at Captive Portal
-
08:59 AM Feature #1191: Enable dynamic VLAN assignment at Captive Portal
- Well, what you are describing is a VLAN-Based captive portal.
There are two kinds of Captive portals in the world:... -
08:23 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
- Looks like this affects all pkgs I got PHP crashes and errors for any pkg install process. Pkgs were installed proper...
-
08:16 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
- Uninstall finished well, but there were some errors during the process, see attachment.
-
08:12 AM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
- I tried to install pfSense-pkg-aws-wizard-php72 for 244 factory built on Wed May 30 14:47:02 EDT 2018 FreeBSD 11.2-BE...
-
07:41 AM Feature #8841: Floating rules : add interface column
- Indeed it has limitations.
Maybe this could be an on/off feature letting people liberty to activate it depending on... -
07:17 AM Feature #8841: Floating rules : add interface column
- This is not entirely feasible because the floating rule could apply to dozens of interfaces and trying to print them ...
-
07:15 AM Feature #8841 (Duplicate): Floating rules : add interface column
- To allow an easier management of floating rules : add the colum inyertrface in the floating rules tab.
For now, AFAI... -
07:13 AM Feature #8840 (Duplicate): Copy multiples rules from one interface to another
- Create a new button on firewall rules tab allowing to copy multiple firewall rules from one interface to another :
... -
07:11 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
- Duplicate of #8832
-
06:31 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
- Workaround:
https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting -
07:10 AM pfSense Packages Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
- See also: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting
-
06:23 AM pfSense Packages Bug #8790 (Assigned): getting PHP error regarding HAproxy pkg
- On 2.4.4.a.20180801.0114 when I installed HAproxy I caught the same crash report.
But on 2.4.4.a.20180826.1232 whe... -
06:18 AM Feature #8173: dhcp6c - RAW Options
- Hello,
view patch https://github.com/opnsense/dhcp6c
his is the WIDE-DHCPv6 client maintained by the OPNsense... -
05:23 AM Bug #8767: ID handling problem with DNS Forwarder host override management
- I tried to reproduce this issue on 2.4.2:
- I added more then 120 DNS Forwarder host overrides
- I didn't see issue...
08/26/2018
-
11:58 PM Bug #8519: pfSense update from the webGUI fails
- Can't reproduce in VM from 2.4.3 CE to 2.4.3_1, or 2.4.3_1 to 2.4.4 latest snapshot. Is there a specific device, desi...
-
11:00 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
- On a recent 2.4.4 snapshot visit VPN > OpenVPN > Client > Add, change Server mode to "Peer to Peer ( Shared Key )" an...
- 04:30 PM Revision d6d46650: Fixed #8837
-
12:09 PM Bug #8837: PHP error when creating alias URL Table (IPs)
- I applied the changes, and I'm still receiving the following PHP error. It looks like the fix got rid of the count() ...
-
11:35 AM Bug #8837: PHP error when creating alias URL Table (IPs)
- Applied in changeset commit:d6d46650d207cf0d37a2551a8a73a83aaf804672.
-
11:31 AM Bug #8837 (Feedback): PHP error when creating alias URL Table (IPs)
-
11:30 AM Bug #8837 (In Progress): PHP error when creating alias URL Table (IPs)
-
11:15 AM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
- I was trying to follow the procedure described here to create a Netflix ipv6 alias.
https://forum.netgate.com/topi... -
10:10 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
- On current 2.4.4-DEV (20180825) I'm able to see "X-Forwarded-For" option when remote client behind proxy connects to ...
-
07:53 AM pfSense Packages Feature #8836 (New): Define ldap group vlan assignment in users file
- There should be a solution to configure vlan-id's for ldap groups.
Something like this: http://lists.freeradius.or... -
07:49 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
- If a user is created in the FreeRadius GUI the password is stored as cleartext in "/usr/local/etc/raddb/users".
Th... -
05:09 AM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
- I checked on 2.4.3_p1 - I saw HTTP_REFERER check fails after changing interface IP address
Then I checked it on 2.4....
08/25/2018
-
09:38 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Same issue as Frederick described - I can't seem to be able to effectively block inter-vlan traffic for IPv6 as the a...
-
08:20 PM Revision c1004c84: Add missing break in IpAddress form class. Fixes #8834
-
05:53 PM Feature #1337: VLANs with different MAC address than parent interface
- James Dekker [6:49 PM]
With SG-5100 and XG-2758 on `2.4.4.a.20180824.1144` (which isn't the *latest* build, but shou... -
03:32 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
-
03:32 PM Bug #8834: NAT > NPt address fields do not match the hover text
- On 2.4.4.a.20180825.0917 (gitsync'd to master) looks good. Hover text accurately reflects the description (shown in t...
-
03:25 PM Bug #8834 (Feedback): NAT > NPt address fields do not match the hover text
- Applied in changeset commit:c1004c847324888fff7252607384f7f39926e815.
-
03:08 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
- Visit Firewall > NAT > NPt, click add, hover over each Address field.
Notice that the first Address field descri... -
02:58 PM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
-
02:58 PM Feature #8812: Add "Select All" to Firewall/NAT rule lists
- Select all works as expected on Firewall > NAT > Port Forward/1:1/Outbound/NPt and at Firewall > Rules on 2.4.4.a.201...
-
08:16 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
- Rule table given ID so selectall control can find it
-
08:05 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
-
08:04 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
- The control is now present on NAT rules but does not seem to actually function. Clicking 'select all' does not select...
-
02:26 PM pfSense Packages Bug #8796 (Resolved): Enabling Automatic SID State Management causes php warning
- Went to Suricata, went to SID management, Enable Automatic SID State Management, no error displayed
Current Base Sy... -
02:06 PM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
- tested on image 2.4.4.a.20180825.0917 this is no longer happening,
Using the OpenVPN wizard as described in this i... -
02:05 PM Bug #7425 (Resolved): dhclient not sending option 77
-
02:04 PM Bug #7425: dhclient not sending option 77
- On 2.4.4.a.20180824.1144, DHCP option 77 (user-class) is sent successfully.
- 01:17 PM Revision fa8ea43e: Fixed #8812
-
11:19 AM Bug #8816 (Resolved): User login does not record the authentication source
-
11:18 AM Bug #8816: User login does not record the authentication source
- On 2.4.4.a.20180825.0917, when the user logs in, the dashboard and console indicate the IP of the user logging in and...
-
10:38 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- As i understood from Intel specification on various chipsets, non-ip traffic like pppoe can't be hashed for RSS to wo...
-
09:08 AM pfSense Packages Bug #8833: haproxy getarraybyref error
- fix kinda pending.. but discussion raised is delaying it being pulled.
https://github.com/pfsense/FreeBSD-ports/pull... -
07:03 AM pfSense Packages Bug #8833 (Resolved): haproxy getarraybyref error
- On update to latest snapshot HA Proxy service fails to start.
Fatal error: Cannot redeclare getarraybyref() (previ... -
07:42 AM Feature #8817 (Resolved): Display login info in System Information widget
- Looks good to me in:...
08/24/2018
-
08:41 PM pfSense Packages Bug #8825: Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
- This will be fixed in the next pfBlockerNG-devel v2.2.5_11 once its merged.
https://github.com/pfsense/FreeBSD-por... -
07:30 PM pfSense Packages Bug #8832 (Resolved): c-icap for Squid 5.1 on 2.4.4 Developer not starting
- See: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting.
Verified his fix w... -
06:07 PM Bug #8831 (Closed): Radvd causes latency spikes
- As already mentioned in this thread https://forum.netgate.com/topic/123554/new-latency-every-30-seconds-with-2-4-2-ca...
-
05:59 PM pfSense Packages Bug #8830 (Resolved): Automatic flowbit resolution setting does not match description
- On 2.4.4.a.20180824.1624, install snort (version 3.2.9.7_1), visit Global Settings, enable some rulesets, visit Updat...
-
04:37 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
-
04:37 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
- Tested on ARM and x86. Looks good, Suricata running correctly after reboot.
pfSense-base: 2.4.4.a.20180823.1619 ->... -
04:06 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
- I have done upgrade at SG-3100 to 2.4.4.a.20180824.1144 base system. Suricata has survived.
-
04:23 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
- On 2.4.4.a.20180824.0955, install Snort, visit Services > Snort. Go to the Global Settings tab, enable some rulesets,...
-
04:16 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
- On 2.4.4.a.20180824.0955, install Suricata, visit Services > Suricata. Go to the Global Settings tab, enable some rul...
-
04:01 PM pfSense Packages Bug #8799 (Resolved): Automatic flowbit resolution setting does not match description
-
04:01 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
- On suricata 4.0.13_17, works as expected.
-
03:17 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
-
03:16 PM Bug #8527: VLANs losing parent interface on LAGG change
-
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
-
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
- This also affects GRE interfaces
-
01:55 PM Revision da8817a6: Enable sshguard build
-
12:40 PM pfSense Packages Bug #8827 (New): Squidguard: ACL redirect modes 'redirect' and 'err page' send unresolvable URLs to the client.
- Squid running in bump mode. Though that should not affect this.
When configuring Common or Group ACLs or applying ... - 11:46 AM Revision 085748d2: Perople were misunderstanding "hint" so changed it to "identifier"
-
11:27 AM Revision 572e46a2: PHP7 fixes: Use of undefined constants
-
06:02 AM Bug #8826 (Closed): PHP7: ACB error at upgrade.
-
12:00 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- ix driver seems to be affected also :
dev.ix.0.queue1.rx_packets: 67
dev.ix.0.queue1.tx_packets: 4107155
dev.ix....
08/23/2018
-
08:03 PM Bug #3124 (Resolved): portal_reply_page called twice in specific circumstance
-
03:53 PM Bug #3124: portal_reply_page called twice in specific circumstance
- Working fine for me with vouchers & with Authentication Server
This issue can be marked as resolved ! -
02:11 PM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
- PR merged
-
08:02 PM Feature #3136 (Closed): Captive Portal Increment Id
-
03:54 PM Feature #3136: Captive Portal Increment Id
- @jimP this can be closed
-
08:02 PM Feature #7707 (Resolved): Captive Portal - Radius Time out configuration field
-
03:56 PM Feature #7707: Captive Portal - Radius Time out configuration field
- https://github.com/pfsense/pfsense/pull/3640 fixes this
This issue can be marked as resolved -
07:10 PM Revision 2c1d7c12: Implement #1335:
- Let VLANs to have a different MAC address than its parent.
While here also fixes #8138 and do not ignore <spoofmac> ... -
07:08 PM Revision cca5b9ef: Do not let users change QinQ mac address
-
07:07 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
- We probably need to test this across an upgrade where the suricata package version doesn't change to be sure.
-
05:04 PM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
-
05:04 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
-
06:58 AM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
- Added a call to ldconfig start on suricata startup script. It should be enough to make sure libraries cache will be u...
-
06:54 PM Bug #8826 (Feedback): PHP7: ACB error at upgrade.
- That's already been fixed but the fix didn't make it into a factory snapshot until after the image you're on. Next on...
-
06:34 PM Bug #8826 (Closed): PHP7: ACB error at upgrade.
- Upgrading pfSense-kernel-pfSense-SG-3100 from 2.4.4.a.20180822.1157 to 2.4.4.a.20180823.1533...
-
04:34 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
- Thanks for the reply Augustin.
I'm still having this issue, perhaps I will try your idea when I upgrade the next tim... -
04:29 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
- This issue is likely comming from the way pfSense and FreeRadius are talking to each other when performing accounting...
-
04:30 PM pfSense Packages Bug #8825 (Resolved): Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
- pfSense version 2.4.4.a.20180822.1157
pfBlockerNG-Deve version 2.2.5_10
Attempting to enable *any* of the GeoIP c... -
02:32 PM pfSense Packages Bug #8797 (Resolved): Visiting Flow/Stream causes a php error to be be shown
- Confirmed, looks good in latest suricata package version.
-
02:17 PM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
- I have tested this issue at SG-4860 | 2.4.4.a.20180823.0720 base system. I can confirm that php warning doesn't appea...
-
02:29 PM pfSense Packages Bug #8798 (Resolved): Visiting App Parsers causes a php error to be be shown
-
02:28 PM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
- Looks good in the latest version of suricata.
-
02:20 PM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
- Applied in changeset commit:2c1d7c12fa4f41a69d6c9267a34b1b767a1da522.
-
02:11 PM Bug #8138 (Feedback): Option <spoofmac> is ignored on interfaces without hwaddr
-
02:11 PM Feature #1337 (Feedback): VLANs with different MAC address than parent interface
-
02:08 PM Feature #1337: VLANs with different MAC address than parent interface
-
01:51 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
- This should be fixed now. 53261ab40f32f234e3432e15f5633f149b36863d
Version 4.0.13_7 -
01:08 PM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
-
12:42 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
- On a fresh install of pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180823-0720, install suricata (version 4.0.13_5),...
-
01:27 PM Bug #8800 (Resolved): Interface group member cannot be deleted, after it's been disabled
-
01:27 PM Bug #8800: Interface group member cannot be deleted, after it's been disabled
- On 2.4.4.a.20180823.0720, the disabled interface is still shown in the interface group, rather than removed.
-
12:42 PM Revision fe57dfe0: Remove not used 'Copy my MAC' button code
-
12:08 PM Bug #8590: sshd does not allow agent forwarding
- @ssbarnea@ please resubmit your PR to the master branch
-
12:00 PM Revision 6a8b4eff: Merge pull request #3974 from Augustin-FL/patch-passthrough
-
11:35 AM Revision 3b47e50d: Update translation files
-
11:28 AM Revision 9a05155b: Regenerate pot
-
11:19 AM Revision d0e7c107: Merge pull request #3973 from PiBa-NL/20180821-getarraybyref
-
10:29 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
- Its been two months now.. are there any news?
-
09:01 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
- Yes it does. Most of the work that is specific to 2.4.4, particularly accommodating PHP7, has been added to the -deve...
-
08:58 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
- pfB still shows latest as 2.1.4_8?
maybe your update hasn't pushed to be visible yet.
does pfB-devel work witho...
08/22/2018
-
10:12 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
- Why was this resolved? There are still no Antartica rules generated when selecting items that have a number > 0 on t...
-
08:25 PM pfSense Packages Bug #7661 (Resolved): pfBlockerNG doesn't make a rule for Antarctica
-
08:24 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
- This can be closed
-
10:11 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- I'm not sure what you mean by "interfaces available". The problem is that there are no options for the L2TP interfac...
-
08:16 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- I am not sure this needs an option? Aren't the interfaces available?
-
08:22 PM pfSense Packages Bug #8318: PFBlockerNG removes alias file when using advanced inverted rule
- Please report back if this issue can be closed. Thanks!
-
08:14 PM pfSense Packages Bug #8651: another php error (broke stable pfBng)
- This should be fixed in the latest pfBlockerNG version.
-
08:14 PM pfSense Packages Bug #8699: 3x PHP in pfblockerng.inc (912/915/4687)
- This should be fixed in the latest pfBlockerNG version.
-
08:12 PM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
- Please update to the latest pfBlockerNG version, and preferably pfBlockerNG-devel and report back if this repeats.
-
08:09 PM pfSense Packages Bug #8811: in pfblockerng when change Rule Order generates duplicate all rules.
- Please update to pfBlockerNG-devel and report back if the same issue repeats.
-
04:38 PM Revision c3c79c8b: Fix syntax and use unlink_if_exists()
- 03:12 PM Revision cb8443e4: Merge pull request #3965 from Hobby-Student/master
- 03:08 PM Revision e8d4004c: Fixed #8823
-
02:32 PM Revision b6f6210a: Use ctype_xdigit() instead of is_numeric() to validate hex. Issue #8824
-
12:22 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
- Fix Pushed: c5901e3e38a7cefdc46f74734586f2f4b868a33f
The checkbox should now default to being checked. -
11:52 AM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
-
10:22 AM pfSense Packages Bug #8790 (Feedback): getting PHP error regarding HAproxy pkg
-
10:22 AM pfSense Packages Bug #8790 (In Progress): getting PHP error regarding HAproxy pkg
-
10:15 AM Bug #8823: Dashboard Crash
- Applied in changeset commit:e8d4004cb491c0eb87edff4db2508d0adcebd465.
-
10:09 AM Bug #8823 (Feedback): Dashboard Crash
- Hard to imagine how this error could be triggered in normal operation, but a file_exists check has been added just in...
-
10:12 AM Feature #8644 (Feedback): IPsec mobile clients DNS enhancement
- PR Merged
-
09:58 AM Bug #8824 (Feedback): is_numeric() on PHP 7 no longer validates hexadecimal values
- interfaces.php is fixed in commit:b6f6210a220bb206fd22ac34b306f007afedb01f -- I can now set a prefix ID of %0%, %1%, ...
-
09:31 AM Bug #8824: is_numeric() on PHP 7 no longer validates hexadecimal values
-
09:31 AM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
- http://php.net/manual/en/function.is-numeric.php
> 7.0.0 Strings in hexadecimal (e.g. 0xf4c3b00c) notation are no...
08/21/2018
-
09:44 PM Revision 62ed56dc: Add the GUI support to set the VLAN Priority for the DHCP requests.
- Ticket #7425
-
08:31 PM Revision 20588aac: Automatically store username of the MAC created pass-through
- 08:18 PM Revision 7dc56c76: Fixes #8800 Interfaces will show up in the group edit page even if disabled so they can be removed
-
06:19 PM Revision 5b93a1f4: Handle HTTP_REFERER better when changing IP addr. Fixes #8822
- Fall back to probing active interface addresses rather than config.xml to allow changed addresses that have not yet b...
-
03:25 PM Bug #8800 (Feedback): Interface group member cannot be deleted, after it's been disabled
- Applied in changeset commit:7dc56c76972cc3d7834572c9d676e3f729f45ad6.
-
01:32 PM Bug #8800 (In Progress): Interface group member cannot be deleted, after it's been disabled
-
02:57 PM pfSense Packages Bug #8631 (Feedback): syslog-ng - logrotate incorrectly configured to rotate TLS key
- Fix pushed, will be up shortly in syslog-ng v 1.15_1
-
02:55 PM Revision 52152e62: Redact lightsquid pw in status output. Fixes #8819
-
02:45 PM Bug #8823 (Resolved): Dashboard Crash
- Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #77 d5d0b259d... -
01:56 PM Revision 80dbe344: Add a missed case for auth source detection. Fixes #8817
-
01:54 PM Bug #7425 (Feedback): dhclient not sending option 77
- It is now possible to set the VLAN Priority for DHCP requests (the same way that is done in DHCPv6).
Please test w... -
01:40 PM Bug #7425 (In Progress): dhclient not sending option 77
-
01:35 PM Bug #7425 (Feedback): dhclient not sending option 77
-
01:30 PM Bug #8822 (Feedback): HTTP_REFERER check fails after changing interface IP address
- Applied in changeset commit:5b93a1f4d1069200ad0a530d4c56edf877d1721d.
-
01:18 PM Bug #8822: HTTP_REFERER check fails after changing interface IP address
-
01:14 PM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
- If you access the GUI from the LAN and change the LAN interface IP address, then after changing the interface IP addr...
- 11:45 AM Revision 4ad34942: Add "select all" control to remaining NAT pages
-
11:08 AM pfSense Packages Bug #8796 (Feedback): Enabling Automatic SID State Management causes php warning
- Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4 -
09:23 AM pfSense Packages Bug #8796 (In Progress): Enabling Automatic SID State Management causes php warning
-
11:08 AM Bug #3124: portal_reply_page called twice in specific circumstance
- The bug reported by Constantine happens when "Add MAC addresses as pass-through" is checked but "include username in ...
-
06:31 AM Bug #3124: portal_reply_page called twice in specific circumstance
-
02:39 AM Bug #3124: portal_reply_page called twice in specific circumstance
- Constantine Kormashev wrote:
> I do not see the issue with doubling message, but see 2 different MACs which use the ... -
01:26 AM Bug #3124: portal_reply_page called twice in specific circumstance
- I do not see the issue with doubling message, but see 2 different MACs which use the same voucher...
-
11:07 AM pfSense Packages Bug #8797 (Feedback): Visiting Flow/Stream causes a php error to be be shown
- Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4 -
09:26 AM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
-
11:07 AM pfSense Packages Bug #8798 (Feedback): Visiting App Parsers causes a php error to be be shown
- Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4 -
09:25 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
-
11:04 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
-
10:27 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Updated to the latest snap shot this morning and retested. The traffic shaper wizard now works as expected with no ...
-
08:56 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- I have retested and don't see any problems. Since I pushed the update in two commits an hour apart, it is possible yo...
-
01:09 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Verified with the latest snapshot that all steps are able to be completed in the traffic shaper wizard with no PHP er...
-
10:07 AM Todo #8821 (Resolved): Remove Growl Notifications
- Growl appears to be abandoned upstream. No updates in ~5 years, and few if any users on pfSense.
At this point it ... -
10:00 AM Bug #8667 (Resolved): VU#857035 - IKE Protocol Vulnerability
- Everything I'm reading says it can't be fixed in implementations since it's a protocol flaw. At this point I believe ...
-
09:26 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
- This appears to be working now. With vouchers disabled, I can load the login page and there is only username/password...
-
01:33 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
- Do not observe the issue, new roll is active after creation without additional actions.
-
09:13 AM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
- Code is not changing any interface that doesn't have `hwaddr` item. I'm working on a fix to save original mac address...
-
05:58 AM Bug #8138 (In Progress): Option <spoofmac> is ignored on interfaces without hwaddr
-
09:05 AM Feature #8817 (Feedback): Display login info in System Information widget
- Applied in changeset commit:80dbe344983666310a762ceab1520d578e3f2722.
-
06:25 AM Feature #8817: Display login info in System Information widget
- Actually if it shows "(/)" after the name I'd say that isn't fine. Somehow the authentication source is entirely empt...
-
01:46 AM Feature #8817 (Resolved): Display login info in System Information widget
- Feature works fine:
User admin@172.21.41.249 (/) -
08:29 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- In a similar vein, but a bit different: it's also important to be able to have multiple <code class=text>id-assoc pd ...
-
06:47 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
- Control has been added to all NAT pages
-
01:43 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
-
01:43 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
- New feature works fine for:
@firewall_nat.php@
@firewall_rules.php@
But does not exist for:
@firewall_nat_1to1.... -
05:58 AM pfSense Packages Bug #8716 (In Progress): Suricata package does not survive pfSense upgrade.
- 12:47 AM Revision 1e0016bb: Make config_array_from_str() function more general
- 12:19 AM Revision 19a99203: Fixed #8803
08/20/2018
- 11:15 PM Revision a436447f: add getarraybyref() utility function for general use (used also to avoid php7 'Cannot create references to/from string offsets' messages)
- 10:52 PM Revision a34bab9f: Fixed #8803
- Don't attempt to access $config elements that don't exist. PHP7 doesn't like it
-
09:29 PM Revision 966835f8: Only show the DHCP6 VLAN Priority settings for VLAN interfaces.
-
08:41 PM Bug #8820 (New): System/Advanced/Misc - "Do not kill connections when schedule expires" UN-checked still leaves existing connections open.
- Orignal bug, marked as resolved but seems to be only partially resolved.
https://redmine.pfsense.org/issues/3558
... -
07:49 PM Revision 1ec79365: Certs: Fix CA subject assumptions. Fixes #8801
- Several areas made assumptions about the number and order of CA subject
fields that were no longer correct after issu... -
06:31 PM Revision 73a4e6cd: Declare variable out of loop
-
06:17 PM Revision 96d05f1d: Try to run upgrade script 3 times
-
06:17 PM Revision b3cd2eb4: Fix #8519
- - Remove possible leftover sockfile before call pfSense-upgrade
- Wait until sockfile exists while process is still r... -
06:17 PM Revision d93b5695: Remove leftover
-
06:17 PM Revision 84c703ca: Make sure to use string starting at __RC= position
-
06:13 PM Revision 545d0b46: on arm and arm64 machines, set kern.shutdown.secure_halt = 1
- the arm systems leave enough running after halt to forward packets.
this is a bad thing. on arm systems, set this sys... -
06:07 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Please confirm that this change eliminates the PHP error messages. The Wizard should now test to see if a required $c...
-
06:00 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
- Applied in changeset commit:a34bab9f4b93091e147bcae18b79e6349c60496c.
-
05:10 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- The offending command is: $thisvar = &$config['ezshaper']['step4']['enable'];
-
04:52 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Sorry, forgot to mention the step… If I check enable for step 3 The “penalty box” and press “next“, that’s where th...
-
04:49 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Thanks for the extra detail. I was able to reproduce this after your clarification.
-
04:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Just to be clear, the error(s) that I encountered which I thought perhaps could be a bug, occurred if any checkbox i...
-
04:42 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Steve, Were you able to get through the entire shaper wizard with no errors when selecting to prioritize other prot...
-
03:59 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
- I am unable to reproduce this.
New VM running "out of the box" pfSense 2.4.4 snapshot from today
Number of wan ... -
03:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
-
05:51 PM Revision a5fd107d: Do not use gettext() on default LAN interface name
-
05:38 PM Revision 0fa7e6bf: Add logged in user to Dashboard sysinfo widget. Implements #8817
-
05:38 PM Revision d629601a: User login source & proxy fwd addr to user data. Fixes #8813 Fixes #8816
- While here, use this info more consistently across log messages and
places where user info is recorded when making ch... - 04:43 PM Revision 619e1950: Fixes #8805 Refresh captive portal zone when vouchers are changed to regenerate captive portal login page
- 03:22 PM Revision dee5b2b7: Revise T&C text area height
-
03:07 PM Bug #8818: Thermal Sensor
- This is on the APU4
-
03:06 PM Bug #8818 (Resolved): Thermal Sensor
- Sensor widget is stucking in updating loop since 2.4.4 but worked fine in 2.4.3
- 02:57 PM Revision 6c87555b: Merge branch 'master' of gitlab.netgate.com:pfsense/pfsense
-
02:55 PM Bug #8801 (Feedback): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
- Applied in changeset commit:1ec79365df1315b51542ec7344e4161d29e6b17f.
-
02:53 PM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
- Fix for this is coming. It affected more than just the OpenVPN wizard. The OpenVPN wizard, cert manager, and User Man...
- 02:49 PM Revision f4eadf36: Fix startup syntax error
-
02:48 PM Revision bd79529b: Fix syntax
-
01:25 PM Bug #8519 (Feedback): pfSense update from the webGUI fails
- Applied in changeset commit:b3cd2eb41666e8c2e35c5ea1d2dea0862d12e6c8.
-
01:01 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
- I have replicated this in em(4) and re(4) (on an APU) but not on mvneta(4).
All on the latest 2.4.4 snapshot. -
12:02 PM Bug #8815 (New): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
- When an interface loses link the IPv4 addresses, including VIPs, can disappear from the interface. If the link is dow...
-
12:45 PM Feature #8817 (Feedback): Display login info in System Information widget
- Applied in changeset commit:0fa7e6bfb5c8dfd07d9f5cf65c834d38d6198393.
-
12:29 PM Feature #8817: Display login info in System Information widget
-
12:27 PM Feature #8817 (Resolved): Display login info in System Information widget
- Add support to the system information widget to show the login name and source for the currently logged in GUI user v...
-
12:45 PM Bug #8816 (Feedback): User login does not record the authentication source
- Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf.
-
12:29 PM Bug #8816: User login does not record the authentication source
-
12:06 PM Bug #8816 (Resolved): User login does not record the authentication source
- When a user logs in, there is no indication if the user logged in locally or from a remote authentication source. Kno...
-
12:45 PM Bug #8813 (Feedback): User login through proxy only logs proxy IP address, not X-Forwarded-For
- Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf.
-
09:11 AM Bug #8813: User login through proxy only logs proxy IP address, not X-Forwarded-For
-
09:11 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
- When a user logs into the GUI through a proxy, only the proxy IP address is logged. If the HTTP request headers inclu...
- 12:00 PM Revision e969408d: Added "select all" control
- Fixed #8812
-
11:50 AM Bug #8805 (Feedback): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
- Applied in changeset commit:619e1950fdd96b606d3bbe8125476ea76a6190d0.
-
11:08 AM Bug #8805 (In Progress): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
-
01:02 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
- login *template (sorry for my spelling)
-
10:45 AM Revision e2328f89: Merge pull request #3972 from Augustin-FL/patch-passthrough
-
10:24 AM Bug #8814 (Rejected): After changing WAN CARP VIP Outbound NAT rules don't import new value but stay with old one and need to be changed manually
- I created HA cluster on 2.4.3_p1 and after changing WAN CARP VIP Outbound NAT rules don't import new value. So I lost...
-
08:41 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
- Still seeing this. On ARM for example:...
-
07:42 AM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
- PR https://github.com/pfsense/pfsense/pull/3972 has been merged.
-
07:10 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
- Applied in changeset commit:e969408dc18a109c224da3feef4bcc69626f25dd.
-
07:01 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
-
06:29 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
- Not a bug, but a feature request. That page has not had a select all mechanism that I could see. Checked back to 2.1.
-
02:34 AM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
- pfSense does not have select all (Firewall -> Rules).
cannot select all rows in firewall rules.
imagine firewall ru... -
02:30 AM pfSense Packages Bug #8811 (Resolved): in pfblockerng when change Rule Order generates duplicate all rules.
- in pfblockerng when change Rule Order generates duplicate all firewall rules.
08/19/2018
-
05:53 PM Bug #8807: HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
- Ooops
I meant these two files are not created on *salve in */var/etc
and also despite public and private keys b... -
05:21 AM Bug #8807 (Resolved): HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
- When HA and vouchers are enabled, vouchers can't be used on the slave because the files used by @/usr/local/bin/vouch...
-
05:43 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
- Oh
My bad then...
I didn't understand the point of this feature. I appologize.
you could close this todo then. -
03:16 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
- These options are with the vouchers because they have to be setup on the secondary and not the primary. The secondary...
-
06:25 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
- related to #8420
-
05:50 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
- When using High Avaliablity, some inconsistant logs are displayed...
-
05:29 PM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
- Made a PR that 'kinda' incorporates this.. A little different than proposed though. It now supports a different chall...
-
03:24 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
- I wonder if this might be the same root cause as #8721
An XMLRPC sync used to trigger filter_configure via XMLRPC ... -
05:11 AM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
- When a CP zone is enabled, slave does not start the captive portal (despite "enabled" setting appear checked on the s...
-
03:15 PM Bug #7553: Captive portal on a parent interface blocks traffic on VLAN interfaces too
- I just tested on two old release (x64-2.1-RELEASE and i386-2.1.5-RELEASE. That's the only deprecated release i could ...
-
03:02 PM Bug #8768 (Resolved): IP Aliases with CARP VIP parent need reinitialized after interface event
-
10:51 AM Bug #8768: IP Aliases with CARP VIP parent need reinitialized after interface event
- Do not observe the issue with IPAlias on CARP after interface down/up via un/plug cable aliases are able to handle tr...
-
03:01 PM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
- The package is there, but what we need is more functional testing. We need to make sure not only that RADIUS authenti...
-
10:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
- It seems ok on latest 244
*php72-pear-Auth_RADIUS-1.1.0_4 PEAR wrapper classes for the RADIUS PECL* -
05:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
- root: pkg info | grep RADIUS
hostapd-2.6_1 IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenti... -
02:56 PM Bug #8791 (Resolved): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
-
11:16 AM Bug #8791: Default IPv6 rules do not allow some devices to perform router or neighbor discovery
- Can see rules:...
-
02:55 PM Bug #8782 (Resolved): Custom dyndns issue: username and password is not sent
-
11:28 AM Bug #8782: Custom dyndns issue: username and password is not sent
- Can see creds in HTTP request:
!screen.png!
Packets in .cap file -
12:44 PM Bug #7532 (Resolved): SG-1000 autonegotiation 10baseT speed and duplex
-
12:44 PM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- This looks fixed on image Current Base System 2.4.4.a.20180819.0052:
2.4.4-DEVELOPMENT][root@pfSense.localdomain]/... -
11:13 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- FreeBSD pf1k.lab 11.2-RELEASE-p2 FreeBSD 11.2-RELEASE-p2 #60 da8baa0ffd8(factory-RELENG_2_4_4): Sun Aug 19 01:19:48 E...
-
12:23 PM Bug #8603: PPP WANs do not work on VLANs on current snapshots
- Solved on 2.4.4.a.20180818.2240.
Thanks for fixing this bug. -
09:33 AM Bug #8527 (Assigned): VLANs losing parent interface on LAGG change
-
09:31 AM Bug #8527: VLANs losing parent interface on LAGG change
- I am able to reproduce the issue on VM with latest dev factory
VLANs have not parent after changing MTU to 9000 on... -
05:55 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
- CE test base xml, and images attached.
base image: https://snapshots.pfsense.org/amd64/pfSense_master/installer/pf... -
05:45 AM Bug #8809 (Resolved): HA sync : changing a voucher roll on master does not reset active tickets on slave.
- Changing the number of tickets in an existing roll is supposed to reset active tickets by flushing the active voucher...
-
05:23 AM Bug #8808 (Resolved): HA sync : When a captiveportal zone is deleted, deletion is not done on the slave.
- Deleting a captiveportal zone on master does not delete the captiveportal on the slave.
-
05:09 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
- Clicking on "save" button of the voucher page does not enable vouchers on the login page.
you currently need to clic... -
01:57 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
- Tested both the multi network and dedicated traffic shaper wizards and it appears that this issue is still occurring...
08/18/2018
-
07:19 PM Bug #8804 (New): Netgate SG-1000 PPPoE Keepalives not prioritized, internet drops
- Hello, I have the Netgate SG-1000 and have Zen VDSL2+ internet in the UK. I have 80Mbps down, 20Mbps up. I am current...
-
03:45 PM Feature #8793 (Resolved): Captive Portal HTML Design and Usability Improvements
- On 2.4.4.a.20180817.2128, works as expected.
-
06:22 AM Feature #8793: Captive Portal HTML Design and Usability Improvements
- Just tested the new changes...It seems fine :)
Maybe i would set a @text-align:center;@ instead of a @text-align:... -
11:28 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- Thanks Dmitry!
The fix is committed, I'll send the instructions.
-
06:12 AM Bug #7532 (Feedback): SG-1000 autonegotiation 10baseT speed and duplex
-
06:11 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- Hi Luiz!
Would you provide instruction to upload the commit?
devel-11 branch?
Thanks,
-Dmitry -
06:07 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- Steve Wheeler, thank you for the idea with switch issue.
This solution resolve issue with transmit (TX) clocking (in... -
10:49 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
- When attempting to save changes in order to proceed to the next step in the wizard following prioritizing VoIP, the ...
-
09:10 AM Bug #8603: PPP WANs do not work on VLANs on current snapshots
- I can confirm this too. Many thanks
-
07:23 AM Bug #8603 (Resolved): PPP WANs do not work on VLANs on current snapshots
- It's working on the latest snapshot, PPPoE connected, interface is up and passing traffic. Thanks!
-
08:01 AM Feature #3136: Captive Portal Increment Id
- I would vote for a "reject"/"won't fix".
What you want is to update pfSense settings using a script, which is comp... -
07:59 AM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
-
12:15 AM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
- Go to System Cert Manager > CAs and make a new CA. Go to VPN > OpenVPN and click Wizards. On the first step choose lo...
-
05:55 AM Feature #8802 (Rejected): DNS Resolver cannot use host alias for IP Address
- https://<pfsense>/services_unbound_host_edit.php
The "Host Override Options" "IP Address" option should accept host ... -
05:25 AM Bug #8792 (Resolved): OpenVPN wizard PHP error
-
01:30 AM Bug #8792: OpenVPN wizard PHP error
- UPD.
If you create CA without Country Code (left it as NONE) and in wizard trying to create new server certificate, ... -
12:31 AM Bug #8792: OpenVPN wizard PHP error
- Created bunch of tunnels with wizard. Used internal server certificates and faced no issue.
-
04:24 AM Bug #8434: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
2.4.4-DEVELOPMENT (amd64)
built on Fri Aug 17 20:20:38 EDT 2018
FreeBSD 11.2-RELEASE-p2
Still dead. :(
-
03:36 AM Bug #8767: ID handling problem with DNS Forwarder host override management
- On 2.4.4 Fri Aug 17 21:29:09 EDT 2018
When testing host edit/delete actions with host overrides in dns forwarder w... -
03:15 AM Bug #6237 (Resolved): RADVD, Route Information Option type 24, Multiple IPv6 gateways
-
03:15 AM Bug #6237: RADVD, Route Information Option type 24, Multiple IPv6 gateways
- On 2.4.3-p1:
Enabled RA, set Router Priority to Low (also tested with High and Normal):
radvd.conf left unchang... -
02:41 AM Feature #7769 (Resolved): DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
- On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Azure DynDNS client present for both IPv4/v6 - configured it with fake acco... -
02:37 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
- On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Shell Output - pkg info | grep RADIUS
freeradius3-3.0.17 Fre... -
02:31 AM Bug #8714 (Resolved): error in services_dhcpv6.php after clicking on Save button in case RA was not setup before enabling DHCPv6
- On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Created new interface, assigned ipv6, enabled, then verified both dhcp6 and... -
02:07 AM Bug #8527: VLANs losing parent interface on LAGG change
- I can't replicate also - created 3 vlan's on a top of Lagg, assigned vlan's and Lagg interfaces, enabled, assigned IP...
-
01:35 AM Bug #8437 (Resolved): invalid outbound nat rules written when using ipv6 rules on interfaces that also have ipv4 adresses..
- On 2.4.3-p1:
nat on $LAN_VLAN11 from 2607:fd48:300::/56 to any -> 192.168.51.1/32 port 1024:65535
On 2.4.4 Fri... -
01:22 AM Bug #7604 (Resolved): Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- On SG4860 2.4.4 build Tue Aug 14 16:55:58 EDT 2018 - restored config.xml, disabled WAN facing switchport, device boot...
-
12:17 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
- screenshot
-
12:16 AM Bug #8800: Interface group member cannot be deleted, after it's been disabled
- screenshots.
Also available in: Atom