Activity
From 04/02/2020 to 05/01/2020
05/01/2020
-
08:26 PM Revision 5e421859: Fix OpenVPN status.php output for 2.4.5 Implements #10350
-
05:32 PM Revision 32cd2d98: Factor existing RAM disk usage into kmem calculation. Fixes #10420
- (cherry picked from commit 355aa65e684431fe435dcf51c92f17659b5b000d)
-
05:31 PM Revision 355aa65e: Factor existing RAM disk usage into kmem calculation. Fixes #10420
-
03:45 PM Revision f63635f9: Fix #10273: Build OpenVPN with ASYNC_PUSH option
-
03:35 PM Feature #10350 (Feedback): Add OpenVPN configuration file(s) to status.php file
- Applied in changeset commit:5e421859b258bccff7eb1e29fd4cff38b1c83123.
-
03:27 PM Feature #10350 (In Progress): Add OpenVPN configuration file(s) to status.php file
- Needs fixed to work on 2.4.5
-
03:27 PM Revision 5eb010e4: Merge pull request #4298 from vktg/ipsecleasesbold
-
12:58 PM Revision 58a8c231: Remove CA prv key fix. Issue #10509
- (Based on 0447f01b1eb02354f5658d535bd33bfa022d6083, Adjusted for RELENG_2_4_5)
-
12:56 PM Revision ac80714d: Merge pull request #4296 from vktg/remprivkey
-
12:55 PM Revision 1941a9cb: Avoid very slow GUI loads when ews.netgate.com can't be resolved #8987
- (cherry picked from commit 3c07f4986e6dfdd552ba8c68bb6ae866dff91dd9)
-
12:40 PM Bug #10420 (Feedback): Miscellaneous page with pre-existing RAM disks config can't be saved
- Applied in changeset commit:355aa65e684431fe435dcf51c92f17659b5b000d.
-
12:32 PM Bug #10420: Miscellaneous page with pre-existing RAM disks config can't be saved
- When I got the actual byte counts and calculated better, the numbers came out much closer, only within a couple MB, s...
-
11:10 AM Bug #3152 (Closed): Updater should fall back to IPv4 if IPv6 fails
- Since this bug was opened we moved to a completely different upgrade model using pkg
-
11:00 AM Bug #7725 (Feedback): Support for iwm
- Added iwm/iwmfw to pfSense kernel
-
11:00 AM Revision 2e292243: IPsec Mobile status/widget online green-bold. Issue #10340
-
10:52 AM Feature #3763 (Rejected): GUI: Packages: add 'non supported' or 'experimental' field
- -devel suffix is used on experimental package name, like pfBlockerNG-devel. It's enough to let users know it's not a...
-
10:50 AM Feature #10273 (Feedback): OpenVPN compile with --enable-async-push
- Applied in changeset commit:f63635f94608b191944e60dc928b8d379316190f.
-
10:46 AM Bug #10331 (Feedback): French language give a Warning: sprintf(): in system_advanced_admin.php
-
10:41 AM Bug #10438 (Feedback): Prepare pfSense-upgrade to deal with pkg 1.13.x+
- Done
-
10:40 AM Todo #10353 (Feedback): Update pkg to 1.13.x
- Already changed to 1.13 on 2.5.0 snapshots and added necessary code on pfSense-upgrade to detect change to metaversio...
-
10:39 AM Bug #10373 (Feedback): Incorrect copyright year
- RELENG_2_4_5 was changed as well
-
10:27 AM Feature #10340 (Feedback): IPsec Mobile GUI Improvement (Dashboard and Status > IPsec > Leases)
- PR has been merged. Thanks!
-
10:26 AM pfSense Packages Feature #9874 (Feedback): safesearch enforcing
- PR has been merged. Thanks!
-
07:27 AM pfSense Packages Feature #9874 (Pull Request Review): safesearch enforcing
-
12:53 AM pfSense Packages Feature #9874: safesearch enforcing
- Grimson Gretzleburg wrote:
> You forgot to add "/www/pfblockerng/pfblockerng_safesearch.php" to the package meta dat... -
10:00 AM Revision 0447f01b: Remove CA prv key fix. Issue #10509
-
09:43 AM Feature #7362 (Resolved): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- OK on 2.5.0.a.20200430.1700
-
09:02 AM Bug #10517: Mobile PSK user mobile-userpool is ignored
- And I'm using the strongSwan app (v 2.2.1) on Android.
Is the ID actually configured as userfqdn in the client? -
08:59 AM Bug #10517: Mobile PSK user mobile-userpool is ignored
- hm, this is strongswan-nm 5.7.2-1 on Debian 10
-
08:31 AM Bug #10517 (Not a Bug): Mobile PSK user mobile-userpool is ignored
- I'm not seeing a problem here....
-
07:20 AM Bug #10517: Mobile PSK user mobile-userpool is ignored
- This was working not long ago, something else must have broken it again.
-
06:13 AM Bug #10517 (Not a Bug): Mobile PSK user mobile-userpool is ignored
- regardless of what you entered in the "Virtual Address Pool" on the VPN / IPsec / Pre-Shared Keys / Edit page,
mobil... -
08:27 AM pfSense Packages Bug #9537: One month offset in displayed data between time changes
- The underlying vnstat correctly reports the monthly data when run from the command line.
This is from vnstat:
v... -
08:18 AM Bug #6579 (Resolved): IPv6 CARP VIPs lost upon config sync where they include non-significant zeros
- successfully tested on 2.5.0.a.20200430.1700 HA cluster
-
08:01 AM Bug #10518 (Rejected): Netmap appears broken in Snort and Suricata packages when Inline IPS Mode enabled
- The latest update to FreeBSD-12.1-STABLE for the pfSense-2.5 snapshots appears to have broken the netmap device used ...
-
07:59 AM Bug #10509 (Feedback): unable to remove CA private key
- PR merged, but didn't apply cleanly to RELENG_2_4_5 so I committed an adjusted version there
-
07:55 AM Bug #8987 (Feedback): Web GUI main page very slow to load if wan interface is enabled but not connected.
-
01:39 AM Bug #8987 (Resolved): Web GUI main page very slow to load if wan interface is enabled but not connected.
- tested on 2.5.0.a.20200430.1700
works as expected, nice feature! -
07:26 AM Bug #9414 (Resolved): Hardware with Intel 82583V interface such as some Watchguard equipment fail to load interface
-
12:25 AM Bug #9414: Hardware with Intel 82583V interface such as some Watchguard equipment fail to load interface
This looks like it was fixed upstream. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=235147 is now closed/fixe...-
03:54 AM pfSense Packages Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- arpwatch 0.2.0_3 - OK
-
03:42 AM pfSense Packages Feature #10479 (Resolved): Keep settings after deinstall option
- 0.15.7_15 works as expected
-
02:05 AM pfSense Packages Bug #9424 (Resolved): arpwatch package logs CARP MAC address changes
- works fine on 2.4.5/2.5 and arpwatch pkg 0.2.0_3
04/30/2020
-
09:17 PM pfSense Packages Bug #10516 (New): FRR Access list
- When using Access list on BGP neighbor> Peer Filtering (in/out) , All routes will be blocked even if the rule was per...
-
09:05 PM Feature #10515 (Rejected): Highlight fields that aren't consistent among all copies of a page
- I don't see this ever being viable. There is no way it could know what you want it to do here, and trying to come up ...
-
07:01 PM Feature #10515 (Rejected): Highlight fields that aren't consistent among all copies of a page
- I'm running multiple VPN clients, and I expect their configurations to be identical except for necessary alterations ...
-
06:32 PM Feature #10514 (New): Add to every page an unparsed Notes field for administrative reference
- I would find it very helpful to have, at the top of the VPN Clients page, a note that said, "If you enable/disable an...
-
06:29 PM pfSense Packages Feature #9874: safesearch enforcing
- You forgot to add "/www/pfblockerng/pfblockerng_safesearch.php" to the package meta data, so it's not included in the...
-
01:36 PM pfSense Packages Feature #9874 (Feedback): safesearch enforcing
- PR has been merged. Thanks!
-
05:55 PM Revision 1a2b1a47: Skip all RRD data on backup. Issue #10508
- (cherry picked from commit 6c1b20af47553b6e95669b9ccc2d4109364c0d4c)
-
05:54 PM Revision 6ada0675: Merge pull request #4297 from vktg/rrdskip
-
05:43 PM Revision c97132ef: EDNS buffer size configuration. Issue #10293
- (cherry picked from commit 09d529a6b3888479b015edba166d31cd214387cc)
-
05:42 PM Revision 4b08280f: DHCP Domain trailing dot validation. Issue #8054
- (cherry picked from commit 8ee5aa03950902e8de301dedaa1fddda4a74e709)
-
05:42 PM Revision 46505ce4: Same gateway naming convention for the console and the WebGUI. Issue #10264
- (cherry picked from commit b504ede55d68d82e84a5c48ff75ddc805b6ce391)
-
05:41 PM Revision 8cac9c25: Add OpenVPN config files to status output. Implements #10350
- This form will only work on 2.5.0 since the directory layout changed.
(cherry picked from commit edc7e81f621805af817... -
05:39 PM Revision 8c57ad63: Port forward dst port Any fix. Issue #7704
- (cherry picked from commit da7f67b8f0b1d55b3b0ebfb99b198abc9e47ff53)
-
05:39 PM Revision af6d81b3: requested changes
- (cherry picked from commit b1c85ec0fc263a0b237bd3364b249eb5f85e35dc)
-
05:39 PM Revision fd5fcb27: Outbound NAT and multiple IPSEC IPs for mobile warriors
- (cherry picked from commit 8897cbce7fc410029ac367eeee7c12261fec896f)
-
05:33 PM Revision 6b01ee93: status.php: Add upgrade_log.latest.txt. Issue #10455
- (cherry picked from commit 6c773de2544d267b8834c09beb40f83d9a1c32d4)
-
05:33 PM Revision 720aab15: OpenVPN/IPsec IPv6 prefix in DNS Resolver access list. Issue #10460
- (cherry picked from commit 79eef195a77d7c05628adaa7418d748c05d862a8)
-
05:32 PM Revision 4f4a2b48: IPsec VTI enable netmask. Issue #10418
- (cherry picked from commit 0bb934e9d7dd8c852bae4b221501b90e8dc1569b)
-
05:32 PM Revision 7e51a68b: IPsec VTI /30 netmask. Issue #10418
- (cherry picked from commit 92ab21bb3f74413654fefd7b7a451641cf7c02a7)
-
05:31 PM Revision 2b902892: Check IPv6 interface aliases for firewall rules. Issue #8256
- (cherry picked from commit 453c3b38407cd5f804d40f0a9946a05297dd3655)
-
05:30 PM Revision 510007ee: DHCPv6 update-static-leases. Issue #10412
- (cherry picked from commit 1a618dc0d1977120810bfd8454fd4deda0a4ed55)
-
05:28 PM Revision e9bf0124: DHCPv6 service Dynamic DNS fix. Issue #10346
- (cherry picked from commit 9fbd8f713449b2315daac91e219e711c8954ce7c)
-
05:27 PM Revision f95442c6: pfSense copynotice.inc copyright 2020. Issue #10373
- (cherry picked from commit 501c65dfb00cbfb737a659c6be0fd3113045980e)
-
05:26 PM Revision a6674a6f: Floating rules tab fix. Issue #4629
- (cherry picked from commit 65d935bfddb2d4d0e4816d344573d03e2b73b464)
-
05:26 PM Revision 85f8eab1: Add Interfaces column to Floating Rules. Issue #4629
- (cherry picked from commit bf83fb9ab93435e605d28b67e0352d32ce63ba2d)
-
05:25 PM Revision 7f4fc779: fix #10499 dark theme autocomplete popup not readable
- (cherry picked from commit 1d06b51d92483b70be11dcb4ca1d78e2f2b5dd15)
-
03:30 PM Bug #10513 (New): State issues with policy routing and HA failover
- Seeing some odd behavior on HA pairs which have multiple WANs and use policy routing. In some cases, the states for a...
-
02:45 PM Bug #10463 (Feedback): The ng_etf module is missing from base in armv6 and aarch64
- I've pushed the changes on arm/arm64 kernels adding it
-
12:48 PM Bug #10463: The ng_etf module is missing from base in armv6 and aarch64
- Luiz told me he'd work on this
-
02:32 PM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- For people suffering from this now, until the next release, this _might_ help:
add the line below to */boot/loader.c... -
12:49 PM Bug #10414 (Feedback): Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- Luiz said the corrections have been made in the src tree
-
01:58 PM pfSense Docs Correction #10512 (Closed): Feedback on Routing and Multi-WAN — Using Multiple IPv4 WAN Connections
- *Page:* https://docs.netgate.com/pfsense/en/latest/routing/multi-wan.html
*Feedback:*
I'm told that when https:... -
12:56 PM Bug #10508 (Feedback): Backup does not skip all RRD data
-
12:55 PM Bug #10508: Backup does not skip all RRD data
- PR Merged & Picked
-
08:56 AM Bug #10508 (Pull Request Review): Backup does not skip all RRD data
-
04:02 AM Bug #10508: Backup does not skip all RRD data
- it's safe to always skip the wrong rrd tags section on export:
https://github.com/pfsense/pfsense/pull/4297 -
12:48 PM pfSense Packages Bug #10444: FRR will not start in 2.4.5 aarch64
- Luiz told me he'd work on this
-
12:48 PM Bug #8256 (Feedback): IPv6 IP Alias VIP not added to Interface Network Macros
-
12:48 PM Bug #10418 (Feedback): IPsec VTI address/mask selection not functional
-
12:47 PM Bug #10460 (Feedback): OpenVPN does not add IPv6 prefix to unbound DNS resolver
-
12:43 PM Feature #10293 (Feedback): DNS flag day - EDNS buffer size recommendation
-
12:43 PM Todo #10423 (Feedback): status.php: Add kernel modules
-
12:42 PM Bug #10424 (Feedback): status.php: Calls using pkg should use pkg-static
-
12:42 PM Bug #8054 (Feedback): DHCP server accepts trailing dot in domain names, DNS resolver adds another and breaks
-
12:42 PM Bug #10264 (Feedback): Gateways created at the console do not apply the naming convention used in the GUI
-
12:41 PM Feature #10350 (Feedback): Add OpenVPN configuration file(s) to status.php file
-
12:39 PM Feature #7704 (Feedback): Destination port range "Any" in Port Forward UI doesn't work
-
12:39 PM Bug #9320 (Feedback): Outbound NAT and multiple IPSEC IPs for mobile warriors
-
12:33 PM Feature #10455 (Feedback): status.php: Add upgrade_log.latest.txt
-
12:27 PM Bug #10373 (New): Incorrect copyright year
- src changes need picked back
-
07:24 AM Bug #10373 (Feedback): Incorrect copyright year
- PR has been merged. Thanks!
-
12:27 PM Revision 22f8462d: Merge pull request #4295 from Marc05/master
-
12:26 PM Revision 983d4b6a: Merge pull request #4294 from vktg/lacpfast
-
12:26 PM Revision cf396c58: Merge pull request #4293 from vktg/defadaptivefields
-
12:25 PM Revision 6823e2d6: Merge pull request #4292 from vktg/ntprrdneg
-
12:25 PM Revision dabc0c87: Merge pull request #4291 from vktg/ntpenablefix
-
12:25 PM Revision 3aeb8600: Merge pull request #4290 from vktg/floatfwfix
-
12:24 PM Revision 9dfd5637: Merge pull request #4289 from vktg/revertpr10433
-
12:24 PM Revision a0c4fc85: Merge pull request #4288 from vktg/dashboardcr2020
-
12:09 PM Bug #8611: unable to receive IPv6 RA's on SG-1000, default route lost
- Viktor Gurov wrote:
> no such issue on pfSense 2.5.0.a.20200205.1753
>
> pfSense 2.4.4-p3 on SG-3100 as DHCP6/RA ... -
09:25 AM pfSense Packages Feature #10479 (Feedback): Keep settings after deinstall option
- PR has been merged. Thanks!
-
08:57 AM pfSense Packages Feature #10479 (Pull Request Review): Keep settings after deinstall option
-
06:28 AM pfSense Packages Feature #10479: Keep settings after deinstall option
- small fix:
https://github.com/pfsense/FreeBSD-ports/pull/855 -
09:22 AM pfSense Packages Bug #9211 (Pull Request Review): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
-
09:17 AM pfSense Packages Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- https://forum.netgate.com/topic/153105/ntopng-update-to-v0-8-13_4-crashes
clean install fix:
https://github.com/p... -
07:33 AM pfSense Packages Bug #9211 (Feedback): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- PR has been merged. Thanks!
-
09:04 AM Feature #10340 (Pull Request Review): IPsec Mobile GUI Improvement (Dashboard and Status > IPsec > Leases)
-
07:50 AM Feature #10340: IPsec Mobile GUI Improvement (Dashboard and Status > IPsec > Leases)
- On the status_ipsec_leases.php sets online status to green bold
and sets the IPsec widget leases tab background-colo... -
08:58 AM Revision 6c1b20af: Skip all RRD data on backup. Issue #10508
-
08:55 AM Bug #10509 (Pull Request Review): unable to remove CA private key
-
03:14 AM Bug #10509: unable to remove CA private key
- https://github.com/pfsense/pfsense/pull/4296
-
03:11 AM Bug #10509 (Resolved): unable to remove CA private key
- https://forum.netgate.com/topic/153020/removing-a-ca-key
If you edit CA and save, the key is still there.
-
07:33 AM pfSense Packages Bug #10475 (Feedback): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- PR has been merged. Thanks!
-
07:27 AM Bug #10499 (Feedback): Dark theme Auto-complete popup field has dark text on dark background
- PR has been merged. Thanks!
-
07:27 AM Feature #10504 (Feedback): Make LACP timeout PDU transmission speed configurable
- PR has been merged. Thanks!
-
07:26 AM Feature #7362 (Feedback): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- PR has been merged. Thanks!
-
07:25 AM Bug #6503 (Feedback): rrd graph for ntp monitoring does not reflect freq when neg (-) value.
- PR has been merged. Thanks!
-
07:25 AM Feature #3567 (Feedback): Option to disable NTP
- PR has been merged. Thanks!
-
07:25 AM Feature #4629 (Feedback): Rules Floating tab doesn't display interfaces
- PR has been merged. Thanks!
-
07:24 AM Bug #10433 (Feedback): addMask() js code resets netmask size to 128/32
- PR has been merged. Thanks!
04/29/2020
-
03:00 PM Revision 06472551: Make LACP timeout PDU transmission speed configurable. Issue #10504
-
11:16 AM Bug #10499: Dark theme Auto-complete popup field has dark text on dark background
- @Jim
Thanks for your patience! -
09:55 AM Bug #10499 (Pull Request Review): Dark theme Auto-complete popup field has dark text on dark background
- PR: https://github.com/pfsense/pfsense/pull/4295
-
11:06 AM Bug #10508: Backup does not skip all RRD data
- If want to make everybody happy:
replace this ... -
10:10 AM Bug #10508: Backup does not skip all RRD data
- If it's an evolution problem, why not filtering wrong tags on export?
If you don't skip you will skip the wrong se... -
09:35 AM Bug #10508 (Not a Bug): Backup does not skip all RRD data
- Your config must have had older data already inside due to a different bug fixed a while back (like #8994) or restori...
-
09:34 AM Bug #10508: Backup does not skip all RRD data
- ...
-
09:08 AM Bug #10508 (Resolved): Backup does not skip all RRD data
- If I backup with skip RRD data enabled I will get this:...
-
09:54 AM Bug #10505: Mobile PSK users have wrong type in swanctl.conf secrets
- The code in @ipsec_setup_userpools()@ explicitly checks for a type of EAP before making a user pool. I'm not sure if ...
-
09:50 AM Bug #10505: Mobile PSK users have wrong type in swanctl.conf secrets
- tested on 2.5.0.a.20200428.1204
now it sets 'psk' prefix correctly, but I don't see the 'mobile-userpool' section ... -
09:31 AM Bug #10505 (Resolved): Mobile PSK users have wrong type in swanctl.conf secrets
- Confirmed working by the original reporter: https://forum.netgate.com/post/908737
-
09:19 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- We have identified the cause of the problem, it is a change made in FreeBSD for a PR: https://bugs.freebsd.org/bugzil...
-
01:41 AM Revision 1d06b51d: fix #10499 dark theme autocomplete popup not readable
-
12:29 AM pfSense Packages Bug #10507 (Resolved): Unable to use forwarders
- When setting the forwarders in the settings tabs, the forwarders are added under the general "options" section.
Howe...
04/28/2020
-
11:58 PM pfSense Packages Bug #10506 (Resolved): Recursion not working on fresh BIND install
- I just installed BIND for the first time on a pfSense 2.4.5. After installation, despite the fact that I created a Vi...
-
05:04 PM Revision f965ba96: Move to devel-12 branch
-
04:02 PM Revision 2c9c2891: Use correct prefix for IPsec user keys. Fixes #10505
-
02:38 PM pfSense Packages Bug #10475: pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- So the bug is the clear database checkbox was not being honored ever? "oops"
-
02:32 PM pfSense Packages Bug #10475 (Pull Request Review): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
-
10:09 AM pfSense Packages Bug #10475 (New): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- fix for https://github.com/pfsense/FreeBSD-ports/pull/844
to correctly check 'clear_database' value
otherwise arpwa... -
02:30 PM Feature #10504 (Pull Request Review): Make LACP timeout PDU transmission speed configurable
-
12:32 PM Feature #10504: Make LACP timeout PDU transmission speed configurable
- https://github.com/pfsense/pfsense/pull/4294
-
09:22 AM Feature #10504 (Resolved): Make LACP timeout PDU transmission speed configurable
- Could the following option from ifconfig be exposed to the WebUI?...
-
12:22 PM pfSense Packages Bug #10429: Status Traffic Total broken 2.4.5
- I can't replicate anything like this. It's been working solid here, and the data is sane.
The only thing I did not... -
11:10 AM Bug #10505 (Feedback): Mobile PSK users have wrong type in swanctl.conf secrets
- Applied in changeset commit:2c9c2891678fc87dc40359726af81468a3570464.
-
11:01 AM Bug #10505 (Resolved): Mobile PSK users have wrong type in swanctl.conf secrets
- When making entries on vpn_ipsec_keys.php, users can be set to a type of PSK or EAP. No matter what the user chooses,...
-
08:46 AM pfSense Packages Bug #9211 (Pull Request Review): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
-
03:31 AM pfSense Packages Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/853 -
08:24 AM pfSense Packages Bug #10503 (New): Flapping any GW in multi-WAN influences restating all IPsec tunnels in FRR which leads to dropping all IPsec VTI static routes and related BGP issues
- There are 2 nodes with a multi-WAN setup: 2 WANs, 2 Gateways. The are 2 IPsec VTI tunnel every working through its ow...
04/27/2020
-
02:07 PM Bug #10236: Cannot add more than 2 VMXNET3 Adapters in vSphere
- I have run into this bug again with a VM and 2.4.5. I am unable to add a second interface at this point, they show u...
-
01:26 PM pfSense Packages Bug #10502: LLDP spamming errors on Netgate XG-7100
- I'm on 2.4.5 now. This error message appears for each ix0-4 and repeat each minute. Lldpd work, at least I can see my...
-
12:07 PM pfSense Packages Bug #10502: LLDP spamming errors on Netgate XG-7100
- Please provide more information about this issue.
Seems like https://redmine.pfsense.org/issues/9635
-
12:21 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- A bit off-topic:
It's funny that throughout all of the years, many people have encountered and posted about the is... -
12:00 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Joel S wrote:
> He specifically comments that "I'm stupid, e49d44f is only for netfilter :( it will change nothing f... -
11:25 AM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- I don't see anything like that in the linked reference. Only confirmation that the issue/commit only apply to netfilt...
-
09:35 AM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Marc05 M wrote:
> Hi Jim. Given you likely understand the issue much better than I, would you help me in making the ... -
11:54 AM Bug #10497: Failed package install (suricata)
- Jim Pingle wrote:
> Not a bug. You must be on 2.4.5 to install the latest packages.
>
> Alternately, you may manu... -
09:43 AM Feature #7362 (Pull Request Review): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
-
03:35 AM Feature #7362: Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- also show default Adaptive Start/End values:
https://github.com/pfsense/pfsense/pull/4293 -
09:40 AM Bug #6503 (Pull Request Review): rrd graph for ntp monitoring does not reflect freq when neg (-) value.
- Might need a note somewhere, perhaps just in the release notes for whatever the next release is with this fix, statin...
-
09:36 AM Feature #3567 (Pull Request Review): Option to disable NTP
-
09:30 AM Feature #4629 (Pull Request Review): Rules Floating tab doesn't display interfaces
-
09:29 AM Bug #10499: Dark theme Auto-complete popup field has dark text on dark background
- Can you submit that change as a pull request on Github?
https://docs.netgate.com/pfsense/en/latest/development/sub... -
09:27 AM Bug #10433 (Pull Request Review): addMask() js code resets netmask size to 128/32
-
09:17 AM Bug #10373 (Pull Request Review): Incorrect copyright year
-
09:14 AM Bug #7380 (Resolved): WAN DHCP Gateway Outside of Subnet Causing Route Issues
- works as expected on 2.5.0.a.20200426.2333
I can see local route to the router ip address, like:... -
08:38 AM Bug #8256 (Resolved): IPv6 IP Alias VIP not added to Interface Network Macros
- works as expected on 2.5.0.a.20200426.2333
-
08:32 AM Revision 6728e5f4: Show default Adaptive Start/End values. Issue #7362
-
07:59 AM Bug #9622 (Resolved): Changing admins membership does not replicate correctly to HA slave
- works as expected on 2.5.0.a.20200426.2333
-
07:57 AM Bug #10418 (Resolved): IPsec VTI address/mask selection not functional
- tested on 2.5.0.a.20200426.2333
now it allows you to select a network mask for VTI interfaces, as before -
05:15 AM Bug #6868 (Resolved): Interface MTU Setting not applied to all IPv6 routes
- works as expected on 2.5.0.a.20200424.1759
-
05:09 AM Bug #9023 (Resolved): is_fqdn() validation
- tested on 2.5.0.a.20200424.1759
looks good:...
04/26/2020
-
07:05 PM pfSense Packages Bug #10502 (In Progress): LLDP spamming errors on Netgate XG-7100
- ...
-
06:19 PM Revision 3ccfb627: NTP rrd graph negative freq. Issue #6503
-
05:29 PM Bug #10501 (Not a Bug): Duplicating OpenVPN client results in "Unable to contact daemon" error
- Not a bug, but a configuration issue. If it didn't start, then you must not have changed settings sufficiently to mak...
-
04:30 PM Bug #10501 (Not a Bug): Duplicating OpenVPN client results in "Unable to contact daemon" error
- On a fresh pfSense install, I create an OpenVPN client and the connection successfully starts (as seen in Status>Open...
-
01:24 PM Bug #6503: rrd graph for ntp monitoring does not reflect freq when neg (-) value.
- https://github.com/pfsense/pfsense/pull/4292
-
01:11 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Marc05 M wrote:
> Hi Jim. Given you likely understand the issue much better than I, would you help me in making the ... -
01:04 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Hi Jim. Given you likely understand the issue much better than I, would you help me in making the request necessary t...
-
12:58 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Nothing on that bug report mentions pf, all of the example commands are for Linux. It may be about masquerade mode is...
-
12:50 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Jim Pingle wrote:
> Marc05 M wrote:
> > Looks like there is some progress on this:
> > "netfilter: addmasqueraderu... -
12:05 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Marc05 M wrote:
> Looks like there is some progress on this:
> "netfilter: addmasqueraderule() even if internal/ext... -
11:55 AM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- If it ends up working for you, would you provide it in a way that I could apply it using the System Patches package? ...
-
09:21 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- So I have the same issue on a Netgate SG3100. It starts when you enable multiple GeoIP regions on pfblockerng for my...
-
02:16 AM pfSense Packages Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- This only apply for HAProxy 2.0 and higher*
-
02:14 AM pfSense Packages Feature #10500 (Resolved): Build HAProxy Package with buildin Prometheus exporter
- Now if you try use in fronend:...
04/25/2020
-
05:30 PM Revision 0b5b700d: NTP disable clean config fix. Issue #3567
-
05:18 PM Revision 65d935bf: Floating rules tab fix. Issue #4629
-
12:56 PM Feature #10484 (Closed): Add Disable/Enable Button for NAT rules
- You can do it already by clicking the blue 'checkmark' icon to the left of the Interface column
-
12:33 PM Feature #3567: Option to disable NTP
- fix for clean NTP configurations which don't have $config['ntpd']['enable'] entry:
https://github.com/pfsense/pfsens... -
12:29 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Jim Pingle wrote:
> That isn't relevant to this feature. It's a different FreeBSD issue. I don't see anything about ... -
12:24 PM Feature #4629: Rules Floating tab doesn't display interfaces
- extra fixes:
https://github.com/pfsense/pfsense/pull/4290 -
12:18 PM Bug #10499 (Resolved): Dark theme Auto-complete popup field has dark text on dark background
- Using pfSense-dark.css, the auto-complete pop-up currently does not specify a background image. This leads to theme.c...
-
12:16 PM Revision 84602d57: Revert addMask() max /31 netmask. Issue 10433
-
12:10 PM Revision 501c65df: pfSense copynotice.inc copyright 2020. Issue #10373
-
07:33 AM Bug #10211 (Resolved): Limiters ECN input validation problem
- tested on 2.5.0.a.20200424.1759
now it correctly sets/unsets _ecn_ option for RED/GRED limiters -
07:20 AM Bug #10433: addMask() js code resets netmask size to 128/32
- revert it:
https://github.com/pfsense/pfsense/pull/4289 -
07:11 AM Bug #10373: Incorrect copyright year
- copynotice.inc fix:
https://github.com/pfsense/pfsense/pull/4288 -
07:07 AM Bug #10373: Incorrect copyright year
- rc.local fix:
https://github.com/pfsense/FreeBSD-src/pull/29 -
03:42 AM Feature #10448 (Resolved): DHCPv6 RA - show default values in certain fields
- tested on 2.5.0.a.20200423.1513
works as expected - shows default values in the _Default valid lifetime, Default p... -
03:36 AM Bug #10460 (Resolved): OpenVPN does not add IPv6 prefix to unbound DNS resolver
- tested on 2.5.0.a.20200423.1513
works as expected - adds IPsec Mobile Virtual IPv6 Address Pool and OpenVPN IPv6 T...
04/24/2020
-
03:13 PM pfSense Docs Correction #10498 (Closed): Feedback on IPsec — Site-to-Site
-
03:11 PM pfSense Docs Correction #10498: Feedback on IPsec — Site-to-Site
- Please ignore, it was a configuration error on my part. I entered the wrong network for remote.
-
01:39 PM pfSense Docs Correction #10498 (Closed): Feedback on IPsec — Site-to-Site
- *Page:* https://docs.netgate.com/pfsense/en/latest/book/ipsec/site-to-site.html
*Feedback:*
Thank you for provi... -
01:12 PM Bug #9615: Connections permitted by a schedule are not killed when that schedule expires.
- *To whom it may concern,*
I have also encountered this bug as documented in this NetGate forum thread:
"https:... -
12:27 PM Bug #10497 (Not a Bug): Failed package install (suricata)
- Not a bug. You must be on 2.4.5 to install the latest packages.
Alternately, you may manually choose the 2.4.4 bra... -
11:46 AM Bug #10497 (Not a Bug): Failed package install (suricata)
- I was on 2.4.4 and tried to install suricata just now, and got an error "pkg-static: Cannot delete vital package: pfS...
-
11:40 AM Bug #9946: package install failed: unset the 'vital' flag with: pkg set -v 0 pfSense
- Hi
I was on 2.4.4 and tried to install suricata just now, and got an error "pkg-static: Cannot delete vital package:... -
10:07 AM Bug #10488 (Resolved): sshguard fails to run on pfSense 2.4.5
- All indications are that this is OK now. I have tested on several different platforms (amd64, SG-1000, SG-1100, SG-31...
-
09:27 AM pfSense Packages Bug #9776 (Resolved): Wrong function in squidguard_log.php
- squidGuard 1.16.18_5 - works fine
-
09:27 AM pfSense Packages Bug #9350 (Resolved): not appear proxy config
- squidGuard 1.16.18_5 - works fine
-
08:42 AM Feature #10455 (Resolved): status.php: Add upgrade_log.latest.txt
- tested on 2.5.0.a.20200423.1513
_OS-Upgrade Log Latest.txt_ in the status_output.tgz file -
08:36 AM pfSense Packages Feature #10474 (Resolved): Suppress notifications for specific MACs
- arpwatch 0.2.0_2 works as expected
-
08:09 AM Bug #9968: Configuration of assigned interfaces is deployed to unassigned ones
- Well, in our enviroment, this is still present and I can reproduce this behavior any time. I can also provide access ...
-
08:04 AM Bug #9801: VTI IPv6 addresses don't get assigned
- It works for others. If it doesn't work for you, you need to post on a place where that can be diagnosed and discusse...
-
07:53 AM Bug #9801: VTI IPv6 addresses don't get assigned
- This not forum question:
My VTI with IPv6 work well only if there no IPv4. And vise versa. -
07:14 AM Bug #9801: VTI IPv6 addresses don't get assigned
- Post on the forum to discuss your problem.
-
06:19 AM Bug #9801: VTI IPv6 addresses don't get assigned
- Tried to configure it and doesn't have working solution on 2.4.5 release. How to accomplish this?
Tried to use uniq ... -
08:02 AM pfSense Packages Bug #10494 (Resolved): Snort package Logs Management process not purging correctly
-
07:46 AM pfSense Packages Bug #10494: Snort package Logs Management process not purging correctly
- The pull requests have been merged. This bug is corrected in the latest Snort package versions 3.2.9.11 (for pfSense-...
-
07:13 AM Feature #10496 (Rejected): Add ability to mass import/export of Firewall Aliases
- It's already present and there is no bug as stated. Post on the forum to discuss whatever your issue might be.
-
03:41 AM Feature #10496: Add ability to mass import/export of Firewall Aliases
- DRago_Angel [InV@DER] wrote:
> I found bug - when you go back to Aliases from Add new record page - import button no... -
03:11 AM Feature #10496: Add ability to mass import/export of Firewall Aliases
- Thank you for your reply, yes indeed it supported.
I found bug - when you go back to Aliases from Add new record pag... -
02:57 AM Feature #10496: Add ability to mass import/export of Firewall Aliases
- Starting from 2.4.5 you can export the list of aliases in text format:
https://redmine.pfsense.org/issues/9816 -
02:47 AM Feature #10496 (Rejected): Add ability to mass import/export of Firewall Aliases
- Now pfSense support import of IPs/Ports etc.
It cool, but it can be more enhanced to support export data as well and... -
07:01 AM Feature #10495: Add support of Pushover API for notifications
- https://pushover.net/
-
12:56 AM Feature #10495 (Resolved): Add support of Pushover API for notifications
-
06:28 AM Bug #10247 (Resolved): Duplicate Outbound NAT entries when creating L2TP server
- now it's ok on 2.5.0.a.20200423.1513
-
06:21 AM Bug #9320 (Resolved): Outbound NAT and multiple IPSEC IPs for mobile warriors
- works as expected on 2.5.0.a.20200423.1513 -
adds IP addresses from VPN / IPsec / Pre-Shared Keys pools to auto Outb... -
05:52 AM Feature #7704 (Resolved): Destination port range "Any" in Port Forward UI doesn't work
- works as expected on 2.5.0.a.20200423.1513
"10.11.11.1 -> 88.88.99.99 tcp any" example:... -
03:54 AM pfSense Packages Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- arpwatch 0.2.0_2 - works as expected
-
02:00 AM pfSense Packages Bug #10369 (Resolved): Remote OpenVPN server protocol definition
- 1.4.22 - legacy client export is OK now
-
01:45 AM pfSense Packages Bug #10490 (Resolved): Syslog-ng syntax test failed
- 1.15_5 works as expected
-
01:41 AM pfSense Packages Feature #9003 (Resolved): Add 'Copy Running to Saved' option to the raw config
- now it works as expected on FRR 0.6.4_4
-
01:36 AM pfSense Packages Bug #10442 (Resolved): ACME: special characters in descriptions trigger silent error and rollback
- tested acme 0.6.7 - now you can use any characters in the Description field
-
01:34 AM pfSense Packages Bug #10452 (Resolved): acme - new DNS-Api namemaster.de in overview hash visible
- acme 0.6.7 - resolved
04/23/2020
-
05:46 PM pfSense Packages Bug #10490: Syslog-ng syntax test failed
- Works OK with version 1.15_5.
Thanks! -
12:40 PM pfSense Packages Bug #10490 (Feedback): Syslog-ng syntax test failed
- PR has been merged. Thanks!
-
07:34 AM pfSense Packages Bug #10490 (Pull Request Review): Syslog-ng syntax test failed
-
02:42 AM pfSense Packages Bug #10490: Syslog-ng syntax test failed
- On initial setup, syslogng_build_cert() tries to get the parameters from $config, but it needs to get it from $post, ...
-
05:28 PM Revision dce43afd: Merge pull request #4287 from vktg/rednoencfix
-
05:27 PM Revision 75df4967: Merge pull request #4285 from vktg/fwdefplaceholder
-
05:26 PM Revision b5410de8: Merge pull request #4286 from vktg/inffloatingtab
-
05:25 PM Revision 41cfa1ce: Merge pull request #4284 from vktg/nol2tp
-
05:24 PM Revision 03b7565d: Merge pull request #4283 from vktg/portforwardanyfix
-
05:23 PM Revision 886426ef: Merge pull request #4277 from vktg/ntpgpsspeedfix
-
05:22 PM Revision ed2e5bf5: Merge pull request #4280 from vktg/ipsecvtirevertback
-
05:21 PM Revision ba639889: Merge pull request #4278 from vktg/radvdshowdefvalues
-
05:20 PM Revision a6e54b89: Merge pull request #4279 from Wasurerarenai/master
-
05:19 PM Revision 9fc75e67: Merge pull request #4276 from vktg/unboundauto6acl
-
05:18 PM Revision cd585183: Merge pull request #4275 from ecovillage/doc-dynamic_pipe_queue_help_text
-
05:17 PM Revision bcc0ba5f: Merge pull request #4274 from hydrian/master
-
05:16 PM Revision e08d8867: Merge pull request #4272 from vktg/statupupdatelatest
-
05:14 PM Revision c01fa17a: Merge pull request #4167 from vktg/discard6request
-
04:10 PM pfSense Packages Bug #10494: Snort package Logs Management process not purging correctly
- Pull requests have been submitted to both the pfSense-2.4.5-RELEASE and pfSense-2.5-DEVEL branches to correct this is...
-
01:19 PM pfSense Packages Bug #10494: Snort package Logs Management process not purging correctly
- If one of the pfSense guys can edit the title of this Issue, please correct my typo in "Management" in the title.
-
01:17 PM pfSense Packages Bug #10494: Snort package Logs Management process not purging correctly
- Creating this and assigning it to me for tracking purposes. The fix for this will be submitted shortly.
Bill -
01:16 PM pfSense Packages Bug #10494 (Resolved): Snort package Logs Management process not purging correctly
- The Logs Management process in Snort, when enabled, does not purge rotated alert logs that have exceeded the configur...
-
03:25 PM Revision 58001982: Ignore user-config-readonly for admin/admins. Fixes #10492
- (cherry picked from commit fa0ed29ef58fe6758f2cdc96f5bf68da32241faf)
-
03:25 PM Revision fa0ed29e: Ignore user-config-readonly for admin/admins. Fixes #10492
-
12:43 PM pfSense Packages Feature #9762 (Feedback): Squid Reverse Proxy Change redir domain(s) to use regex
- PR has been merged. Thanks!
-
12:43 PM pfSense Packages Bug #9776 (Feedback): Wrong function in squidguard_log.php
- PR has been merged. Thanks!
-
12:43 PM pfSense Packages Bug #10369 (Feedback): Remote OpenVPN server protocol definition
- PR has been merged. Thanks!
-
12:42 PM pfSense Packages Feature #10479 (Feedback): Keep settings after deinstall option
- PR has been merged. Thanks!
-
12:41 PM pfSense Packages Feature #9003 (Feedback): Add 'Copy Running to Saved' option to the raw config
- PR has been merged. Thanks!
-
12:40 PM pfSense Packages Bug #10442 (Feedback): ACME: special characters in descriptions trigger silent error and rollback
- PR has been merged. Thanks!
-
12:40 PM pfSense Packages Bug #10452 (Feedback): acme - new DNS-Api namemaster.de in overview hash visible
- PR has been merged. Thanks!
-
07:25 AM pfSense Packages Bug #10452 (Pull Request Review): acme - new DNS-Api namemaster.de in overview hash visible
-
01:52 AM pfSense Packages Bug #10452: acme - new DNS-Api namemaster.de in overview hash visible
- NameMaster.de uses _nm_sha256_ field name for password hash,
but only fields containing _key, secret, password_ or _... -
12:39 PM pfSense Packages Feature #10474 (Feedback): Suppress notifications for specific MACs
- PR has been merged. Thanks!
-
12:39 PM pfSense Packages Bug #10475 (Feedback): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- PR has been merged. Thanks!
-
12:28 PM Bug #10211 (Feedback): Limiters ECN input validation problem
- PR has been merged. Thanks!
-
12:27 PM Feature #7362 (Feedback): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- PR has been merged. Thanks!
-
12:26 PM Feature #4629 (Feedback): Rules Floating tab doesn't display interfaces
- PR has been merged. Thanks!
-
12:25 PM Bug #10247 (Feedback): Duplicate Outbound NAT entries when creating L2TP server
- PR has been merged. Thanks!
-
12:24 PM Feature #7704 (Feedback): Destination port range "Any" in Port Forward UI doesn't work
- PR has been merged. Thanks!
-
12:23 PM Feature #7284 (Feedback): NTPd Autoset GPS device baud rate
- PR has been merged. Thanks!
-
12:22 PM Bug #10418 (Feedback): IPsec VTI address/mask selection not functional
- PR has been merged. Thanks!
-
12:21 PM Feature #10448 (Feedback): DHCPv6 RA - show default values in certain fields
- PR has been merged. Thanks!
-
12:20 PM Feature #10374 (Feedback): Add ARM32/64 network booting support to dhcpd
- PR has been merged. Thanks!
-
12:20 PM Bug #10398: RFC1918 external address in miniupnp does not work after upgrade to 2.4.5
- Steve Wheeler wrote:
> There us a patch available to remove that behavior in miniupnpd that needs testing:
> https:... -
12:19 PM Bug #10460 (Feedback): OpenVPN does not add IPv6 prefix to unbound DNS resolver
- PR has been merged. Thanks!
-
12:17 PM Feature #10459 (Feedback): Improved DynDNS Logging
- PR has been merged. Thanks!
-
12:16 PM Feature #10455 (Feedback): status.php: Add upgrade_log.latest.txt
- PR has been merged. Thanks!
-
12:15 PM Bug #9634 (Feedback): rc.newwanipv6 is called although dhcp6c should discard Request messages
- PR has been merged. Thanks!
-
10:35 AM Bug #10492 (Feedback): LDAP groups conflict in privileges
- Applied in changeset commit:fa0ed29ef58fe6758f2cdc96f5bf68da32241faf.
-
10:01 AM Bug #10492: LDAP groups conflict in privileges
- > In my opinion, if a user has the "WebCfg - All pages" privilege, pfSense should overwrite any lower right from bein...
-
09:26 AM Bug #10492 (In Progress): LDAP groups conflict in privileges
-
01:27 AM Bug #10492 (Resolved): LDAP groups conflict in privileges
- I am running pfSense 2.4.5-RELEASE with a 389 Directory Server for LDAP user authentication.
I have configured th... -
09:02 AM Bug #10493: filter_get_vpns_list() issues
- > 2) Because of filter_get_vpns_list() returns not only IPsec networks, IPsec MSS clamping option will affect unneces...
-
08:47 AM Bug #10493 (New): filter_get_vpns_list() issues
- 1) filter_get_vpns_list() returns only:
IPsec Mobile IPv4 subnet
IPsec site-to-site networks
OpenVPN client/ser...
04/22/2020
-
09:11 PM Bug #10488: sshguard fails to run on pfSense 2.4.5
- Yes, now its working as expected.
-
03:08 PM Bug #10488 (Feedback): sshguard fails to run on pfSense 2.4.5
- The sshguard port is now working and a new version has been built from it.
To obtain the corrected version of @ss... -
01:34 PM Bug #10488: sshguard fails to run on pfSense 2.4.5
- I have a lead on what happened. Somehow the @sshguard@ port is missing at least one patch, @files/patch-src_sshguard....
-
12:58 PM Bug #10488 (Confirmed): sshguard fails to run on pfSense 2.4.5
- We've been able to confirm this internally now, but it isn't consistent. Some work, some do not, across all platforms...
-
09:05 AM Bug #10488 (Feedback): sshguard fails to run on pfSense 2.4.5
- I can't reproduce this here on amd64, it blocks me when I try. I am on the default settings of 20/120/1800, but I als...
-
02:52 PM Bug #10211 (Pull Request Review): Limiters ECN input validation problem
-
01:00 PM Bug #10491: Upgrade to 2.4.5 broke 802.1x RADIUS WiFi over VPN
- Sorry, I didn't see the Reporting Issues page. I will start there.
-
12:56 PM Bug #10491 (Not a Bug): Upgrade to 2.4.5 broke 802.1x RADIUS WiFi over VPN
- There isn't enough information here to concretely say this is a bug in pfSense, and this site is not for support or d...
-
12:51 PM Bug #10491 (Not a Bug): Upgrade to 2.4.5 broke 802.1x RADIUS WiFi over VPN
- Updating my OpenVPN host from pfSense 2.4.4-p3 to 2.4.5 broke 802.1x WPA2-Enterprise WiFi at the remote sites. The pr...
-
12:38 PM pfSense Packages Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- Jim Pingle wrote:
> This site is not for support or diagnostic discussion.
>
> For assistance in solving problems... -
12:20 PM pfSense Packages Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
12:14 PM pfSense Packages Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- Jim Pingle wrote:
> This is already possible with the syslog-ng package. The base system syslog daemon does not supp... -
12:09 PM pfSense Packages Bug #10490 (Resolved): Syslog-ng syntax test failed
- Steps to reproduce:
-Install syslog-ng on a new pfSense instance, version 1.15_4;
-go to Package->Services: Syslog-... -
11:50 AM pfSense Docs New Content #10489 (Resolved): Feedback on System Monitoring — Remote Logging with Syslog
- *Page:* https://docs.netgate.com/pfsense/en/latest/monitoring/logs/remote.html
*Feedback:*
1. Add paragraph in d... -
11:43 AM pfSense Packages Bug #10476: Services - Acme - Certificates using loopia API
- Tobias Müllauer wrote:
> Jim Pingle wrote:
> > The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":htt... -
11:11 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- +1
in my case it is the Filter Reload. I had this high CPU load every 15 minutes. All cores go to 100% for seconds. ...
04/21/2020
-
09:33 PM Revision 75fb1d57: RED/GRED limiters do not have noecn option. Issue #10211
-
08:41 PM Bug #10488 (Resolved): sshguard fails to run on pfSense 2.4.5
- After upgrade to 2.4.5 sshguard stop working.
To check this bug, I tried to connect using the user test. Screenshot ... -
08:04 PM Revision 7e107c67: Add the default values of the TCP and UDP Timeouts on the WebUI. Issue #7362
-
04:39 PM Bug #10211: Limiters ECN input validation problem
- RED/GRED limiters do not have _noecn_ option, https://www.freebsd.org/cgi/man.cgi?ipfw(8):...
-
01:07 PM pfSense Packages Bug #10487 (New): Telegraf package not sending logs to influxdb server
- On SG-1100, running 2.4.5-RELEASE, with pfSense-pkg-Telegraf-0.9_3, the Telegraf package does not function as expecte...
-
11:02 AM pfSense Packages Feature #10486 (Rejected): Feature Request: Ability to transmit to remote syslog server via TCP
- This is already possible with the syslog-ng package. The base system syslog daemon does not support TCP.
-
10:58 AM pfSense Packages Feature #10486 (Rejected): Feature Request: Ability to transmit to remote syslog server via TCP
- For those of us who care about our logs and want to ensure we don't drop events, it's standard practice to configure ...
-
11:00 AM pfSense Packages Feature #10485 (Rejected): Feature Request: Ability to leverage a blocklist by domain name or URL, such as at https://www.cyberthreatcoalition.org/ -- the new Cyber Threat Coalition site.
- pfBlockerNG can already reject by domain -- reach out on the forum and raise the topic there: https://forum.netgate.c...
-
10:56 AM pfSense Packages Feature #10485 (Rejected): Feature Request: Ability to leverage a blocklist by domain name or URL, such as at https://www.cyberthreatcoalition.org/ -- the new Cyber Threat Coalition site.
- There's a blocklist by domain name or URL at https://www.cyberthreatcoalition.org/
-- the new Cyber Threat Coalition... -
10:12 AM Revision bf83fb9a: Add Interfaces column to Floating Rules. Issue #4629
-
09:35 AM Revision 8f74c44e: L2TP duplicate outbound NAT fix. Issue 10247
-
08:45 AM Feature #4629 (Pull Request Review): Rules Floating tab doesn't display interfaces
-
05:15 AM Feature #4629: Rules Floating tab doesn't display interfaces
- Jim Pingle wrote:
> Though the PR at https://github.com/pfsense/pfsense/pull/1616 was merged a long time ago, it doe... -
08:02 AM pfSense Packages Feature #9003 (Pull Request Review): Add 'Copy Running to Saved' option to the raw config
-
03:50 AM pfSense Packages Feature #9003: Add 'Copy Running to Saved' option to the raw config
- Renato Botelho wrote:
> PR has been merged. Thanks!
js function configCheck() is does not exist
This PR adds it... -
07:54 AM Bug #10465: possible routing performance regression due to non use of ip_tryforward
- The issue I believe has always been with FreeBSD base - and not pfSense defaults.
The MFC patch (https://svnweb.f... -
07:37 AM Bug #10465: possible routing performance regression due to non use of ip_tryforward
- ICMP redirects have been on by default in pfSense for as long as I can remember, though there may have been a bug or ...
-
07:03 AM Bug #10465: possible routing performance regression due to non use of ip_tryforward
- I understand your reluctance to vary FreeBSD defaults... however here is a brief summary of pfSense / FreeBSD behavio...
-
07:53 AM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- This issue should be adressed in the near future, as it may prevent the use of IPv6 in some instances, where filterin...
-
04:53 AM Feature #10484 (Closed): Add Disable/Enable Button for NAT rules
- On pfSense GUI on firewall rules there is a graphical ENABLE/DISABLE button which allows to switch quickly between di...
-
04:24 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- Not much to add, but getting same issue.
Not virtual - SG3100.
IPV6 enabled.
Snort + Pfblocker enabled.
Bogan b...
04/20/2020
-
10:13 AM pfSense Packages Feature #10479 (Pull Request Review): Keep settings after deinstall option
-
09:41 AM pfSense Packages Feature #10479: Keep settings after deinstall option
- https://github.com/pfsense/FreeBSD-ports/pull/845
-
10:11 AM pfSense Packages Bug #10476: Services - Acme - Certificates using loopia API
- Jim Pingle wrote:
> The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":https://github.com/acmesh-offic... -
08:57 AM pfSense Packages Bug #10476 (Needs Patch): Services - Acme - Certificates using loopia API
- The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":https://github.com/acmesh-official/acme.sh/blob/mast...
-
10:00 AM Feature #10483 (Duplicate): Add UI for EAP configuration for WLAN interfaces
- When using a Wi-Fi network as an uplink, EAP can be selected as the security mode, but there is nowhere in the UI to ...
-
09:11 AM Bug #10465: possible routing performance regression due to non use of ip_tryforward
- I'm not sure we should change the default to disable ICMP redirects. A modest performance gain would be nice but most...
-
09:05 AM Todo #10135: help.php: Update links
- There are some suggestions for specific link replacements on #10481
-
09:04 AM Bug #10481 (Duplicate): Update doc links in WebGUI to reflect proper docs URLs
- The help links are already covered under #10135
There are only two non-book non-help links in the code, and that's... -
09:00 AM Feature #10480 (Rejected): Support for Atheros AR8328 network controller
- That kind of request needs to be raised upstream with FreeBSD. If they add it, eventually it will make its way into p...
-
08:52 AM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Rules shouldn't be needed for each individual L2TP interface. There is an interface group called "l2tp" which handles...
-
08:50 AM Bug #10433 (New): addMask() js code resets netmask size to 128/32
- Viktor Gurov wrote:
> This change has broken IPv6 port forward and NAT 1:1 - now it is not possible to enter netmask... -
08:48 AM pfSense Packages Feature #10474 (Pull Request Review): Suppress notifications for specific MACs
-
08:33 AM Feature #7362 (Pull Request Review): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
-
08:29 AM pfSense Packages Bug #10475 (Pull Request Review): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
-
08:21 AM Bug #10247 (Pull Request Review): Duplicate Outbound NAT entries when creating L2TP server
-
08:19 AM Bug #4727 (Not a Bug): Rules on L2TP VPN Tab are ignored. All traffic from clients always allowed.
- There is an interface _group_ for l2tp, to which rules are applied. This works fine as-is....
-
08:12 AM Feature #7704 (Pull Request Review): Destination port range "Any" in Port Forward UI doesn't work
04/19/2020
-
11:12 PM Bug #10465: possible routing performance regression due to non use of ip_tryforward
- Another rudimentary analysis for single TCP connection LAN IP -> LAN VLAN IP (ie same interface routing)
Sample vm... -
02:31 PM pfSense Docs Correction #10482 (Closed): In AWS, Get System Log may not show output and Get Instance Screenshot may need to be used
- On https://docs.netgate.com/pfsense/en/latest/solutions/aws-vpn-appliance/faq.html
we recommend users use the opti... -
12:31 PM Bug #10481 (Resolved): Update doc links in WebGUI to reflect proper docs URLs
- Attached is a list of updates that need to take place.
The list is not comprehensive (and some have been updated a... -
11:02 AM Feature #10480 (Rejected): Support for Atheros AR8328 network controller
- Stormshield got some routers/firewalls with an Atheros AR8328 network controller.
It would be nice if pfSense can su... -
03:59 AM Bug #10477 (Closed): Cannot create an IPsec P2 VTI with a disabled state
- fixed in #10190
-
03:57 AM Bug #10478 (Closed): No way of specifying the tunnel subnet mask for IPsec VTI
- Duplicate of #10418
-
03:30 AM pfSense Packages Bug #10385 (Resolved): Pb with Username authorized characters when OTP is disabled
- tested on 2.4.5/2.5 with freeradius3 0.15.7_13
works as expected - allows you to use special characters in the use... -
03:21 AM pfSense Packages Feature #10479 (Resolved): Keep settings after deinstall option
- Currently, it is not possible to clear FreeRADIUS settings except with the backup / restore configuration.
It will...
04/18/2020
-
10:15 PM Bug #10478 (Closed): No way of specifying the tunnel subnet mask for IPsec VTI
- When creating an IPsec P2 with VTI, both "Local network" and "Remote network" fields are greyed out on the "Address" ...
-
09:47 PM Bug #10477 (Closed): Cannot create an IPsec P2 VTI with a disabled state
- I have created an IPsec P1 with a Disabled state. Now I am trying to create a P2 VTI under the disabled P1, also with...
-
05:55 PM pfSense Packages Bug #10476 (Resolved): Services - Acme - Certificates using loopia API
- Hello i am trying to add certificate from letsecrypt using Acme.
I try diferent setup but it seams Acme try to ad... -
05:36 PM Feature #7362: Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- https://github.com/pfsense/pfsense/pull/4285
-
01:28 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Something still needs to be fixed.
Either the rule needs to be applied to any/all L2TP interfaces created, or the ... -
06:35 AM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Mpd5 will create new L2TP interfaces for each client:
l2tp0, l2tp1, l2tp2 etc..
The only way to apply firewall ru... -
12:44 PM pfSense Packages Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- I was surprised to find that upgrading the pfSense-pkg-arpwatch package today nuked all of my .dat files. There is an...
-
11:30 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- I am having the same issue here running pfsense on Proxmox. Enabling pfBlocker makes the network unusable as the CPU ...
-
09:51 AM pfSense Packages Feature #10474: Suppress notifications for specific MACs
- https://github.com/pfsense/FreeBSD-ports/pull/843
-
09:46 AM pfSense Packages Feature #10474 (Resolved): Suppress notifications for specific MACs
- From https://forum.netgate.com/topic/151832/suppress-arpwatch-flip-flop-emails-for-bonjour-sleep-proxy:
I just set u... -
09:35 AM Revision da7f67b8: Port forward dst port Any fix. Issue #7704
-
09:34 AM pfSense Packages Bug #10261 (Resolved): Arpwatch fails to download ethercodes.dat
- Tobias Müllauer wrote:
> This is still a issue !!
>
> I have all vendors as unknown.
>
> I fix it and after a... -
09:32 AM pfSense Packages Bug #10432 (Resolved): Arpwatch show unknown vendor
- shows correct vendors on 2.4.5/2.5 with arpwatch 0.2.0_1
-
06:08 AM Bug #10247: Duplicate Outbound NAT entries when creating L2TP server
- Fix:
https://github.com/pfsense/pfsense/pull/4284
see also https://redmine.pfsense.org/issues/4727 -
06:07 AM Bug #4727: Rules on L2TP VPN Tab are ignored. All traffic from clients always allowed.
- https://github.com/pfsense/pfsense/pull/4284
-
05:37 AM Bug #4727: Rules on L2TP VPN Tab are ignored. All traffic from clients always allowed.
- https://github.com/pfsense/pfsense/blob/ca676aa35482c4e4fd64bfdcee9afe6d33b6c5fe/src/etc/inc/filter.inc#L1182:...
-
04:44 AM Bug #10433: addMask() js code resets netmask size to 128/32
- This change has broken IPv6 port forward and NAT 1:1 - now it is not possible to enter netmask >31 on these pages
... -
04:40 AM Feature #7704: Destination port range "Any" in Port Forward UI doesn't work
- This PR sets the port range from 1 to 65535, the redirect port to 1 and hide 'Redirect target port' input if "Any" is...
-
02:25 AM Feature #7260: Source OS / p0f Database Missing Modern Operating Systems
- Last update of the original pf.os is 2016/09/03:
https://github.com/openbsd/src/blob/master/etc/pf.os
p0f fingerp... -
12:14 AM Bug #10471 (Closed): Host Resources module is mandatory for PF SNMP module
04/17/2020
-
04:19 PM Revision cec1d944: NTPd GPS baud rate set fix. Issue #7284
-
02:49 PM Bug #10471: Host Resources module is mandatory for PF SNMP module
- i have done some research and i found this http://www.circitor.fr/Mibs/Html/B/BEGEMOT-PF-MIB.php#begemotPf
i have di... -
02:48 PM Bug #10471 (Pull Request Review): Host Resources module is mandatory for PF SNMP module
-
10:42 AM Bug #10471: Host Resources module is mandatory for PF SNMP module
- Fix:
https://github.com/pfsense/pfsense/pull/4282 -
10:24 AM Bug #10471 (Closed): Host Resources module is mandatory for PF SNMP module
- If you select _PF_ module without _Host Resources_ module on the Services / SNMP page
bsnmp doesn't return PF BEGEMO... -
02:37 PM Bug #10473 (Rejected): Unbound DNS Resolver not working.
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
02:35 PM Bug #10473 (Rejected): Unbound DNS Resolver not working.
- i am facing this problem since morning. After restarting the service of unbound DNS Resolver it didnt start. i am get...
-
12:46 PM pfSense Packages Feature #10472: Blocked host alert table break out by timestamp and type to allow sorting by date
- Allowing filter by date & time would also be a handy feature on that page as well if that's easier or another thought...
-
12:36 PM pfSense Packages Feature #10472 (Resolved): Blocked host alert table break out by timestamp and type to allow sorting by date
- The blocked list doesn't by nature sort by last hit or date of creation so I have to read every entry for the most re...
-
10:29 AM Bug #10470 (Duplicate): SNMP pf object is missing (bsnmpd)
- Duplicated by #10471 but it has better info.
-
10:17 AM Bug #10470 (Duplicate): SNMP pf object is missing (bsnmpd)
- discussion here https://forum.netgate.com/topic/152640/snmp-pf-object-missing-bsnmpd
pf object is missing if you d... -
07:28 AM Feature #10469 (Resolved): Same RADIUS Cisco-AVPair parser code for both OpenVPN/IPsec
- Currently OpenVPN and IPsec uses two different but mostly identical files to parse RADIUS user attributes
openvpn.at... -
07:27 AM Bug #10418 (Pull Request Review): IPsec VTI address/mask selection not functional
-
01:51 AM Bug #10418: IPsec VTI address/mask selection not functional
- It seems reasonable to revert back PR #4140 changes
to allow VTI netmask select
PR:
https://github.com/pfsense/p... -
06:44 AM Revision 0bb934e9: IPsec VTI enable netmask. Issue #10418
-
06:25 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- I've had to revert back to 2.4.4-p3 because the workaround doesn't work if you need to keep using pfBlockerNG. There ...
-
06:19 AM Revision 4d7bdf64: DHCPv6 RA show default values in certain fields. Issue #10448
-
06:18 AM pfSense Packages Feature #9774: Squid logs / remote logs
- Allow to download log files from WebGUI feature:
https://redmine.pfsense.org/issues/10468 -
06:17 AM Feature #10468: Allow to download log files from WebGUI
- https://github.com/pfsense/pfsense/pull/4281
-
06:12 AM Feature #10468 (New): Allow to download log files from WebGUI
- It could be nice to have ability to download separate log files from the Status / System Logs pages.
Can be useful... -
03:31 AM Feature #10467 (New): Email alert functionality for system health
- Email alerting is not well documented and not very inclusive.
I recently experienced an issue where services were ... -
03:10 AM pfSense Packages Feature #10466 (New): Add checkbox to Suricata blocked host view to resolve all resolvable IP's automatically
- Manually resolving individual IP's is cumbersome when I want to get a holistic view of the blocked hosts. Also, resol...
-
12:28 AM Bug #10465 (Resolved): possible routing performance regression due to non use of ip_tryforward
- A few years back Netgate sponsored upstream enhancements to FreeBSD which replaced ip_fastforward() with ip_tryforwar...
04/16/2020
-
08:55 PM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- +1 exactly the same issue here.
-
05:00 PM Todo #10464 (Closed): Don't change the current update repo when new releases are available
- I use a SG-1100 that was running 2.4.4-p3 and I noticed today there were updates for a couple of packages I had insta...
-
11:38 AM Revision abded4e4: Add ARM netboot services_dhcp_edit.php refs #10374
-
11:30 AM Revision dd7188a8: Add ARM netboot to services_dhcp.php. refs #10374
-
11:18 AM Revision 4c85579b: Add ARM32/64 netboot to services.inc. refs #10374
-
08:52 AM Bug #10463 (Resolved): The ng_etf module is missing from base in armv6 and aarch64
- ng_etf was available as a package in 2.4.4 for all architectures. In 2.4.5 it was included in base and hence not buil...
-
08:14 AM Feature #10448 (Pull Request Review): DHCPv6 RA - show default values in certain fields
-
05:31 AM Feature #10448: DHCPv6 RA - show default values in certain fields
- PR:
https://github.com/pfsense/pfsense/pull/4278
It shows default values from services.inc
what about Router lif... -
08:10 AM Feature #7284 (Pull Request Review): NTPd Autoset GPS device baud rate
-
04:54 AM Feature #7284: NTPd Autoset GPS device baud rate
- tested and working on my 2.5.0
previusly speed was always set to 4800 now it work with this patch... -
04:38 AM Feature #7284: NTPd Autoset GPS device baud rate
- Fix to correctly set GPS baud rate
see https://forum.netgate.com/topic/152369/ntp-gps-settings-serial-port-speed
... -
08:08 AM pfSense Packages Bug #10369 (Pull Request Review): Remote OpenVPN server protocol definition
-
03:14 AM pfSense Packages Bug #10369: Remote OpenVPN server protocol definition
- OpenVPN < 2.4 doesn't support remote IPv4/IPv6 protocol definition (udp4/udp6/tcp4/tcp6),
If checkbox **Legacy Clien... -
08:06 AM Bug #10460 (Pull Request Review): OpenVPN does not add IPv6 prefix to unbound DNS resolver
-
01:40 AM Bug #10460: OpenVPN does not add IPv6 prefix to unbound DNS resolver
- Fix:
https://github.com/pfsense/pfsense/pull/4276
It adds OpenVPN IPv6 Tunnel Networks and IPsec Mobile Virtual I... -
08:04 AM Bug #10461 (Not a Bug): Serial Installation fails if already on disk
- There isn't enough information here to state definitively if there is a bug. Please post on the forum and describe th...
-
01:00 AM Bug #10461 (Not a Bug): Serial Installation fails if already on disk
- Having installed pfSense 2.4.5 on an PC Engines APU2E4 Board with 16GB SSD and 4GB of RAM. Due to some misconfigurati...
-
07:44 AM Bug #9187 (Resolved): Status->Interfaces doesn't show useful data for lagg
- now it shows LAGG members and MASTER/ACTIVE status (failover mode) on the dashboard widget and Status / Interface pag...
-
06:54 AM Feature #10374: Add ARM32/64 network booting support to dhcpd
- Previous PR#4250 closed (was targeting stable release branch). New PR #4279 entered targeting master branch. Commit m...
-
06:32 AM Revision 79eef195: OpenVPN/IPsec IPv6 prefix in DNS Resolver access list. Issue #10460
-
05:07 AM Bug #10386 (Resolved): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
- input validation on 2.5.0.a.20200415.0942 is correct
-
01:05 AM pfSense Packages Feature #10462 (Resolved): CPU Temp Screen
- Hello, is it possible to add to the lcdproc package on pfsense a screen with the CPU-Temperature? I know that is not ...
04/15/2020
-
08:51 PM Revision f338b271: Improve help message for limiter/queue masks.
- The user-facing most important change is that when setting masks on
Queues, we are not creating dynamic pipes (but qu... -
07:17 PM Bug #10460 (Resolved): OpenVPN does not add IPv6 prefix to unbound DNS resolver
- I added a private local IPv6 network (fd32:..../64) on the OpenVPN server setup. The idea was to avoid any real IP an...
- 06:34 PM Revision 11360468: Fixed syntax issues
- 06:16 PM Revision 0bdae0b4: fixed tab issue
- Fixed tab issue
- 05:59 PM Revision 30c7b89b: Adding DynDNS response logging
- When verbose logging is enabled for a dynamic DNS provider, the DynDNS code will now write the HTTP response to the s...
-
01:42 PM Revision bee76575: More safety belts for upgrade_174_to_175(). Fixes #10458
- (cherry picked from commit ca676aa35482c4e4fd64bfdcee9afe6d33b6c5fe)
-
01:41 PM Revision ca676aa3: More safety belts for upgrade_174_to_175(). Fixes #10458
-
01:27 PM Feature #10459 (Pull Request Review): Improved DynDNS Logging
- OK, that looks good then.
-
01:20 PM Feature #10459: Improved DynDNS Logging
- I updated the code to add the logging.
https://github.com/pfsense/pfsense/pull/4274 -
01:20 PM Feature #10459: Improved DynDNS Logging
- I know but that verbose logging doesn't show the HTTP responses, only the request. The only way to get it the respons...
-
01:17 PM Feature #10459 (Rejected): Improved DynDNS Logging
- There is already a "verbose logging" checkbox on dyndns entries to do this.
-
01:10 PM Feature #10459 (Resolved): Improved DynDNS Logging
- Add improved DynDNS debugging log message. Currently, dynamic DNS HTTP API responses are not logged so it can't be de...
-
10:44 AM pfSense Packages Bug #9350 (Pull Request Review): not appear proxy config
-
10:24 AM pfSense Packages Bug #9350: not appear proxy config
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/841 -
10:43 AM pfSense Packages Bug #9776 (Pull Request Review): Wrong function in squidguard_log.php
-
10:24 AM pfSense Packages Bug #9776: Wrong function in squidguard_log.php
- PR: https://github.com/pfsense/FreeBSD-ports/pull/841
it also fixes https://redmine.pfsense.org/issues/9350 -
10:41 AM Feature #10454 (Pull Request Review): OpenVPN+RADIUS+Cisco-AVPair IPv6 ACL
- Viktor Gurov wrote:
> I think is better to have one vpn.attributes.php for both OpenVPN and IPsec
That should be ... -
10:28 AM Feature #10454: OpenVPN+RADIUS+Cisco-AVPair IPv6 ACL
- I think is better to have one vpn.attributes.php for both OpenVPN and IPsec
-
09:18 AM Bug #10456 (Not a Bug): WAN DHCP6 Gateway pending in status
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
12:05 AM Bug #10456 (Not a Bug): WAN DHCP6 Gateway pending in status
- I have here an cosmetic bug. Everything is working fine since 2.4.x
In Status / Gateways the WAN DHCP6 Gateway is ... -
09:08 AM Bug #10433 (Resolved): addMask() js code resets netmask size to 128/32
- tested on 2.5.0.a.20200414.1347
works as expected - now doesn't allow to select /32 netmask on the firewall_nat_1t... -
09:05 AM Feature #10449 (Resolved): Aggressive NSEC option
- tested on 2.5.0.a.20200414.1347
works as expected,
I can see _aggressive-nsec: yes/no_ option in /var/unbound/un... -
08:50 AM Bug #10458 (Feedback): Config update error: /etc/inc/upgrade_config.inc:5492
- Applied in changeset commit:ca676aa35482c4e4fd64bfdcee9afe6d33b6c5fe.
-
08:23 AM Bug #10458 (Resolved): Config update error: /etc/inc/upgrade_config.inc:5492
- Importing an older config, v11.9 here, that contains:...
-
08:08 AM Bug #10457 (Not a Bug): Alias list freezes when trying to make edits
- There is no limit that would act in the way you describe. That behavior is from your browser having problems renderin...
-
08:00 AM Bug #10457 (Not a Bug): Alias list freezes when trying to make edits
- I have an alias that has grown and when I try to load the page to make edits it freezes for ages. I'm on 2.4.5-RELEAS...
-
04:13 AM pfSense Packages Feature #9762: Squid Reverse Proxy Change redir domain(s) to use regex
- Updated PR with checkbox switch:
https://github.com/pfsense/FreeBSD-ports/pull/840
04/14/2020
-
07:16 PM Revision 6c773de2: status.php: Add upgrade_log.latest.txt. Issue #10455
-
05:47 PM Revision 722e0b13: Merge pull request #4269 from vktg/ntpsrvnamevalidation
-
05:47 PM Revision f403b470: Merge pull request #4270 from vktg/ntpdisablefix
-
05:47 PM Revision 2fb29e99: Merge pull request #4271 from vktg/aggressivensec
-
04:49 PM Feature #10454: OpenVPN+RADIUS+Cisco-AVPair IPv6 ACL
- https://github.com/pfsense/pfsense/pull/4273
-
02:06 PM Feature #10454 (Resolved): OpenVPN+RADIUS+Cisco-AVPair IPv6 ACL
- openvpn.attributes.php currently only supports Cisco-AVPair IPv4 ACL parsing,
Need to add IPv6 ACL support, to par... -
02:21 PM Feature #10455 (Pull Request Review): status.php: Add upgrade_log.latest.txt
-
02:17 PM Feature #10455: status.php: Add upgrade_log.latest.txt
- https://github.com/pfsense/pfsense/pull/4272
-
02:14 PM Feature #10455 (Resolved): status.php: Add upgrade_log.latest.txt
- upgrade_log.latest.txt contains more informative data than upgrade_log.txt, and is very useful for analyzing update i...
-
02:00 PM Feature #9206 (Resolved): OpenVPN+RADIUS+Cisco AVPair ACL Enhancements/BugFixes
- works as expected on 2.5.0.a.20200414.0021
test radius attributes:... -
01:45 PM Feature #9156: OpenVPN: Add tickbox for 'nopool' directive
- Although, even nicer to just be able to define the pool as well in the GUI.
-
01:43 PM Feature #9156: OpenVPN: Add tickbox for 'nopool' directive
- This would be very nice to have.
-
01:02 PM pfSense Packages Feature #10428 (Resolved): LCDProc: Add the EZIO driver to the lcdproc config page
- Looks good. Tested using an EZIO-300
Tested package: 0.10.6_10 in: 2.4.5-rel -
12:42 PM pfSense Packages Feature #10428 (Feedback): LCDProc: Add the EZIO driver to the lcdproc config page
- PR has been merged. Thanks!
-
12:57 PM pfSense Packages Feature #10356 (Feedback): Support for additional Notification Support
- PR has been merged. Thanks!
-
12:47 PM Feature #10449 (Feedback): Aggressive NSEC option
- PR has been merged. Thanks!
-
12:47 PM Feature #3567 (Feedback): Option to disable NTP
- PR has been merged. Thanks!
-
12:47 PM Bug #10386 (Feedback): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
- PR has been merged. Thanks!
-
12:43 PM pfSense Packages Feature #10297 (Feedback): IPv6 user attributes
- PR has been merged. Thanks!
-
12:37 PM pfSense Packages Bug #10450 (Feedback): Squid reverse proxy switching peers
- PR has been merged. Thanks!
-
11:40 AM Bug #10453 (Duplicate): Debugging output can be collected to share with pfSense developers or others providing support or assistance.
- Duplicate of #9975
If you still have problems, please post on the "Netgate Forum":https://forum.netgate.com or the... -
11:35 AM Bug #10453 (Duplicate): Debugging output can be collected to share with pfSense developers or others providing support or assistance.
- Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p10
FreeBSD 11.2-RELEASE-p10 #9 4a2bfdce... -
11:22 AM pfSense Packages Bug #10452 (Resolved): acme - new DNS-Api namemaster.de in overview hash visible
- Hi,
the new dnsapi-plugin for namemaster.de made it into my pfsense with package version 0.6.6
in Services / Ac... -
09:30 AM Bug #10398: RFC1918 external address in miniupnp does not work after upgrade to 2.4.5
- There us a patch available to remove that behavior in miniupnpd that needs testing:
https://github.com/miniupnp/mini... -
01:39 AM Bug #7721 (Closed): NTPd stops using external peers if listening on one interface only in a muliwan setup
- no such issue on 2.4.5 and 2.5.0.a.20200409.0657
seems to be fixed in ntpd upstream
04/13/2020
-
09:24 PM Revision 89757dbe: Revert "Disable ntopng until it's fixed on armv7"
- This reverts commit 4243cb0553f46f3b3568bb49effb1a45f04f7daf.
-
06:29 PM Revision 4243cb05: Disable ntopng until it's fixed on armv7
-
03:16 PM Revision 7e9d72cf: Aggressive NSEC option. Issue #10449
-
02:05 PM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- I can verify this issue.
CPU Type Intel(R) Xeon(R) CPU E5645 @ 2.40GHz
12 CPUs: 2 package(s) x 6 core(s)
Memory ... -
12:03 PM Feature #10449: Aggressive NSEC option
- +1
-
09:41 AM Feature #10449 (Pull Request Review): Aggressive NSEC option
-
02:30 AM Feature #10449: Aggressive NSEC option
- https://github.com/pfsense/pfsense/pull/4271
-
02:27 AM Feature #10449 (Resolved): Aggressive NSEC option
- Very nice feature for DNS optimization, which can reduce the number of queries to authoritative name servers.
See ht... -
11:25 AM Bug #7614 (Resolved): Port forwards where the destination is a network alias can create invalid refection rules if multiple subnets are in that alias.
- resolved by https://redmine.pfsense.org/issues/10246
tested on 2.4.5 and 2.5.0.a.20200409.0657 -
10:54 AM pfSense Docs Correction #10451 (Closed): Feedback on Releases — Versions of pfSense and FreeBSD
- *Page:* https://docs.netgate.com/pfsense/en/latest/releases/versions-of-pfsense-and-freebsd.html
*Feedback:*
Th... -
09:42 AM pfSense Packages Bug #7797 (Pull Request Review): Squid Reverse Proxy alternating between destinations
- PR: https://github.com/pfsense/FreeBSD-ports/pull/839
-
09:42 AM pfSense Packages Bug #10450 (Pull Request Review): Squid reverse proxy switching peers
-
05:28 AM pfSense Packages Bug #10450: Squid reverse proxy switching peers
- https://github.com/pfsense/FreeBSD-ports/pull/839
-
05:25 AM pfSense Packages Bug #10450 (Feedback): Squid reverse proxy switching peers
- https://forum.netgate.com/topic/118255/squid-reverse-proxy-switching-peers:
I want Squid to direct incoming requests...
04/12/2020
-
09:28 PM Bug #9610: picture.widget.php: Arbitrary file read/write
- Hello,
I request the CVEID CVE-2019-16915.
and my id is LoRexxar@knownsec 404team.
I hope to change my id to... -
09:27 PM Bug #9609: Reflective xss in services_captiveportal_mac.php
- Hello,
I request the CVEID CVE-2019-16914.
and my id is LoRexxar@knownsec 404team.
I hope to change my id to... -
05:57 PM pfSense Packages Bug #10427 (Resolved): LCDproc: Handle multiple lcdproc clients
- This works in as far as it avoids blowing up if there is more than one client. It now successfully kills all php clie...
-
10:43 AM pfSense Packages Bug #10320 (Resolved): lcdproc Crash report begins
- Looks good. Enabling the 'Addresses by traffic' screen shows the correct data and no longer throws a php error.
Te... -
10:36 AM pfSense Packages Feature #10243 (Resolved): rawserial driver for lcdproc
- Looks good. Size, speed and port are passed correctly to the conf file:...
-
10:21 AM pfSense Packages Feature #8198 (Resolved): pfSense-pkg-LCDproc: Add a link status screen for each interface
- Looks good. Tested in lcdproc 0.10.6_9, pfSense 2.4.5-rel
04/11/2020
-
11:45 AM Feature #10448 (Resolved): DHCPv6 RA - show default values in certain fields
- In Services -> DHCPv6 Server & RA -> Router Advertisements there are some fields - Minimum RA interval, Maximum RA in...
-
02:42 AM pfSense Packages Feature #9217 (Resolved): Squid LDAP Authentication - spaces in ldif values
- squid pkg 0.4.44_21 - works as expected
-
02:40 AM pfSense Packages Feature #10434 (Resolved): Squid whitelist/blacklist with IDN hostnames
- squid pkg 0.4.44_21 works as expected
-
02:39 AM pfSense Packages Bug #10440 (Resolved): Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- squid pkg 0.4.44_21 - OK
04/10/2020
-
02:03 PM Revision c62e31f2: NTP disable checkbox fix. Issue #3567
-
09:47 AM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
This bug still persists in Build 2.4.5 date:2020.04.10
I can confirm my issue is the same as described by the ...-
09:38 AM Feature #3567 (Pull Request Review): Option to disable NTP
-
09:05 AM Feature #3567: Option to disable NTP
- enable checkbox fix:
https://github.com/pfsense/pfsense/pull/4270 -
09:37 AM pfSense Packages Bug #10447 (Pull Request Review): Framed-IP-Address with plus sign is deprecated
-
07:38 AM pfSense Packages Bug #10447: Framed-IP-Address with plus sign is deprecated
- added to https://github.com/pfsense/FreeBSD-ports/pull/810
-
02:13 AM pfSense Packages Bug #10447 (Resolved): Framed-IP-Address with plus sign is deprecated
- if you use Framed-IP-Address with plus sign, i.e....
-
09:21 AM pfSense Packages Bug #10442 (Pull Request Review): ACME: special characters in descriptions trigger silent error and rollback
-
05:13 AM pfSense Packages Bug #10442: ACME: special characters in descriptions trigger silent error and rollback
- this fix uses descr field name instead of desc,
it's included in the $cdata_fields of xmlparser.inc:
https://github... -
09:19 AM Bug #10386 (Pull Request Review): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
-
04:13 AM Bug #10386 (New): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
- same fix for services_ntpd.php:
https://github.com/pfsense/pfsense/pull/4269 -
03:39 AM Bug #10386 (Resolved): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
- works OK on 2.5.0.a.20200409.0657,
I see an updated and more correct validation code:... -
09:09 AM Revision cb92c086: NTP Time Server input validation. Issue #10386
-
03:30 AM pfSense Packages Bug #7654 (Resolved): Can't use a LDAP search filter containing an accent
- works as expected on 2.5.0.a.20200409.0657:...
-
03:26 AM Bug #10368 (Resolved): OpenVPN server no definition of protocol to use (udp4)
- IPv4/IPv6, UDP/TCP tested on 2.5.0.a.20200409.0657
works as expected -
03:22 AM Bug #7558 (Resolved): l2tp configure kills and sleeps even if first time
- works as expected on 2.5.0.a.20200409.0657
-
03:21 AM Bug #7562 (Resolved): l2tp remoteip confusion
- works as expected on 2.5.0.a.20200409.0657
-
03:16 AM Bug #10264 (Resolved): Gateways created at the console do not apply the naming convention used in the GUI
- works as expected on 2.5.0.a.20200409.0657
-
01:44 AM pfSense Packages Bug #10369 (Resolved): Remote OpenVPN server protocol definition
- openvpn-client-export 1.4.21
IPv4/IPv6 tested
works as expected
04/09/2020
-
07:59 PM Revision b3a077c2: Revert "Temporary fix to let 2.5.0 poudriere to run"
- This reverts commit 248909c2e37b45e9dbb8d4b5104e00f7683cd99a.
-
07:58 PM Revision 7546cbce: Temporary fix to let 2.5.0 poudriere to run
-
07:56 PM Revision 248909c2: Temporary fix to let 2.5.0 poudriere to run
-
06:32 PM Bug #8179: Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
- The PR is appreciated - However may I ask how this is going to help us? dhcpd doesn’t support the classless notation ...
-
06:20 AM Bug #8179 (Feedback): Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
- PR has been merged. Thanks!
-
05:46 PM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
- How it was tested ? What was the result ? How it failed ?
-
05:04 PM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
This bug still persists in Build 2.4.5 date:2020.04.09-
03:05 PM Bug #10376: Duplicate logs from charon
- I don't know about 2.5.0, but I can assure you it is not fixed in 2.4.5.
-
11:23 AM Revision bd78aead: Merge pull request #4262 from vktg/lagginfo
-
11:20 AM Revision 56241e59: Merge pull request #4266 from vktg/reversednsdhcp
-
11:12 AM Revision 061c1a1b: Merge pull request #4264 from vktg/addmaskfix
-
11:04 AM Revision 42d3d5fc: DigitalOcean IPv6 DDNS Client to find IPv6 entries when updating. Issue #10390
- -[] Redmine Issue: https://redmine.pfsense.org/issues/10390
-[] Ready for review
(cherry picked from commit 08939cf... -
11:03 AM Revision 22a94088: Merge pull request #4268 from csobankesmarki/master
-
11:01 AM Revision f0b343a2: Merge pull request #4235 from vktg/dhcpv6dyndns
-
10:56 AM Revision 0249b6f8: Style fixes
-
10:52 AM Revision 707db1bc: Merge pull request #4141 from vktg/set6routesmtu
-
10:38 AM Feature #10446: VIP address is not shown in firewall rules
- Jim Pingle wrote:
> It's not a bug, but perhaps a feature request.
OK, let it be a feature request.
I think it... -
09:56 AM Feature #10446: VIP address is not shown in firewall rules
- It's not a bug, but perhaps a feature request.
It's generally not necessary on firewall rules because they don't h... -
09:37 AM Feature #10446 (New): VIP address is not shown in firewall rules
- Good day
I noticed that VIP address(Type: IP Alias) is not shown in Source/Destination drop-down menu in Firewall ru... -
07:10 AM pfSense Packages Feature #10428 (Pull Request Review): LCDProc: Add the EZIO driver to the lcdproc config page
-
06:22 AM Bug #9187 (Feedback): Status->Interfaces doesn't show useful data for lagg
- PR has been merged. Thanks!
-
06:12 AM Bug #10433 (Feedback): addMask() js code resets netmask size to 128/32
- PR has been merged. Thanks!
-
06:03 AM Bug #10390 (Feedback): Fix DigitalOcean Dynamic DNS client for IPv6
- PR has been merged. Thanks!
-
06:02 AM Bug #10346 (Feedback): DHCPv6 service Dynamic DNS errors
- PR has been merged. Thanks!
-
06:02 AM Feature #6600 (Feedback): DHCP Server - Primary DDNS Address won't accept IPv6 address
- PR has been merged. Thanks!
-
05:57 AM Bug #6868 (Feedback): Interface MTU Setting not applied to all IPv6 routes
- PR has been merged. Thanks!
-
04:49 AM pfSense Packages Bug #10445: BIND crashed when added RPZ. rpz is not a master or slave zone.
- i was able to reproduce it here
https://forum.netgate.com/topic/152274/rpz-rpz-local-is-not-a-master-or-slave-zone-c...
04/08/2020
-
04:11 PM pfSense Packages Feature #8196 (Resolved): pfSense-pkg-LCDproc: add a shutdown/reboot control menu
- Tested on several LCDs with lcdproc 0.10.6_9.
Works well. -
02:09 PM pfSense Docs Correction #10417: Feedback on Packages — Package List
- I added a basic description, it probably wants to be improved over time: https://docs.netgate.com/pfsense/en/latest/p...
-
01:43 PM Revision 9fbd8f71: DHCPv6 service Dynamic DNS fix. Issue #10346
-
12:31 PM pfSense Docs Correction #10435 (Closed): Console connection guide for PuTTY uses incorrect order of operations on first run of PuTTY
- Thanks! The text has been updated to:...
-
07:09 AM Feature #9251: DNS Resolver (Unbound) Python Integration
- It's nice that there is the added option in the web config, but there is no hint whatsoever where to put these Python...
04/07/2020
-
05:46 PM pfSense Packages Bug #10445 (Feedback): BIND crashed when added RPZ. rpz is not a master or slave zone.
- Before upgrade pfsense to version 2.4.5 i try update packages on 2.4.4p3.
After updating BIND to 9.14_3 (Package Dep... -
03:58 PM Feature #10237: Take ZFS snapshot on Upgrade
- +1 for this feature (I don't see a voting button)
-
03:23 PM pfSense Packages Bug #10444 (Resolved): FRR will not start in 2.4.5 aarch64
- We have an internal bug open for this but it's not public.
https://redmine.netgate.com/issues/3765
Updates will b... -
03:02 PM Bug #9263: Incorrect ICMP reply when using limiters
- The ticket is explicitly for 2.4.4. Given that 2.4.5 is out now, the same issue is also impacting 2.4.5.
In my cas... -
11:44 AM pfSense Packages Bug #10443 (Closed): pfSense-pkg-squid-0.4.44_19 and pfSense-pkg-squid-0.4.44_20
- Fixed:
see https://redmine.pfsense.org/issues/10434#note-4
and PR https://github.com/pfsense/FreeBSD-ports/pull/836 -
11:00 AM pfSense Packages Bug #10443 (Closed): pfSense-pkg-squid-0.4.44_19 and pfSense-pkg-squid-0.4.44_20
- After update from pfSense-pkg-squid-0.4.44_18 to pfSense-pkg-squid-0.4.44_19 Reverse proxy stopped working.
Squid do... -
11:36 AM pfSense Packages Feature #10434 (Pull Request Review): Squid whitelist/blacklist with IDN hostnames
-
11:32 AM pfSense Packages Feature #10434: Squid whitelist/blacklist with IDN hostnames
- Use idn_to_ascii() only for ACL
Otherwise sq_text_area_decode() create incorrect files (i.e. crt or key files)
Fi... -
09:38 AM pfSense Packages Bug #10442: ACME: special characters in descriptions trigger silent error and rollback
- Ah I see. Would just filtering out those characters via an error message before trying to save it be a better approac...
-
09:30 AM pfSense Packages Bug #10442: ACME: special characters in descriptions trigger silent error and rollback
- No, it's not from htmlentities. It's that those characters are not valid in XML. So the field probably needs to have ...
-
09:25 AM pfSense Packages Bug #10442: ACME: special characters in descriptions trigger silent error and rollback
- small addition:
is related to Acme 0.6.6 (still happens on 2.5.x snapshots)
There are special chars that work (... -
09:19 AM pfSense Packages Bug #10442 (Resolved): ACME: special characters in descriptions trigger silent error and rollback
- pfSense: 2.4.5
Acme: 0.6.6
Re-create:
1) ACME > Certificates: create new certificate
2) enter any settings fo... -
09:35 AM pfSense Packages Bug #10439: BandwidthD stopped working after update
- Jim Pingle wrote:
> It works fine here on 2.4.5, and you did not provide enough detail to even guess at what might b... -
08:05 AM pfSense Packages Bug #10439 (Rejected): BandwidthD stopped working after update
- It works fine here on 2.4.5, and you did not provide enough detail to even guess at what might be wrong in your speci...
-
09:17 AM pfSense Packages Bug #10440 (Feedback): Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- PR has been merged. Thanks!
-
08:50 AM pfSense Packages Bug #10440: Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- Thanks for your quick update :)
I patched the file and it works as before. -
08:06 AM pfSense Packages Bug #10440 (Pull Request Review): Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
-
05:32 AM pfSense Packages Bug #10440: Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- ACLs are blank on pre-2.4.5 pfSense,
caused by the absence of _idn_to_ascii()_
Fix:
https://github.com/pfsense/F... -
02:59 AM pfSense Packages Bug #10440: Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- Viktor Gurov wrote:
> can you check it in your squid.conf?
> Need more information
I can see the subnet on the U... -
02:47 AM pfSense Packages Bug #10440: Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- There is only one change in https://github.com/pfsense/FreeBSD-ports/pull/830
- fixes IPv6 duplicate addresses in lo... -
02:31 AM pfSense Packages Bug #10440 (Resolved): Squid proxy ignoring allowed_subnets after package upgrade 0.4.44_9 ==> 0.4.44_19
- We allow an additional subnet (OpenVPN Roadwarriors) on our squid proxy server additionally to the LAN interface.
... -
08:22 AM pfSense Packages Feature #10441 (Pull Request Review): Integration of bfd daemon
-
07:48 AM pfSense Packages Feature #10441: Integration of bfd daemon
- Corresponding PR :
https://github.com/pfsense/FreeBSD-ports/pull/835 -
07:34 AM pfSense Packages Feature #10441 (Resolved): Integration of bfd daemon
- FRR package already include bfd daemon and it could be use to reduce fault detection.
Some changes are needed in o... -
07:59 AM pfSense Packages Bug #10338 (Resolved): FRR OSPF6 Router-ID configuration statement has changed
- OK on frr 0.6.4_3
-
07:15 AM Feature #10323 (Resolved): Allow limiting NTP pool server usage count
- works fine on 2.5.0.a.20200404.2224
-
03:30 AM pfSense Packages Bug #7048 (Resolved): Add IPv6 support to squid
- resolved in https://redmine.pfsense.org/issues/10335
and https://redmine.pfsense.org/issues/8887 -
03:26 AM pfSense Packages Feature #10335 (Resolved): Squid IPv6 transparent mode
- works as expected on 2.4.5/2.5 with squid 0.4.44_19
-
01:01 AM pfSense Packages Bug #10422 (Resolved): Squid LDAP auth must use LDAPURI option
- works as expected on 2.4.5 with squid 0.4.44_19
-
12:59 AM pfSense Packages Bug #10378 (Resolved): Add IPv6 network to Squid localnet
- works as expected on 2.4.5 with squid 0.4.44_19
-
12:54 AM pfSense Packages Bug #10379 (Resolved): squid not authenticate LDAP/RADIUS
- works as expected on 2.4.5 with squid 0.4.44_19
04/06/2020
-
07:19 PM pfSense Packages Bug #10436: softflowd no longer sends flow data after upgrade (v0.9.9_1 -> v1.0.0)
- Manuel Piovan wrote:
> me too
> can you try with the flag -P udp from console and report back?
> example /usr/loca... -
06:25 AM pfSense Packages Bug #10436: softflowd no longer sends flow data after upgrade (v0.9.9_1 -> v1.0.0)
- me too
can you try with the flag -P udp from console and report back?
example /usr/local/bin/softflowd -D -i 1:vmx1... -
02:01 AM pfSense Packages Bug #10436 (Feedback): softflowd no longer sends flow data after upgrade (v0.9.9_1 -> v1.0.0)
- Hi, after upgrading pfsense from v2.4.4_3 -> v2.4.5 (which included an upgrade of softflowd from v0.9.9_1 -> v1.0), s...
-
06:49 PM pfSense Packages Bug #10439 (Rejected): BandwidthD stopped working after update
- BandwidthD package stopped working after an update.
it installs fine, but no graphs.
deinstall/reinstall, same ... -
04:19 PM Revision 08939cfb: DigitalOcean IPv6 DDNS Client to find IPv6 entries when updating. Issue #10390
- -[] Redmine Issue: https://redmine.pfsense.org/issues/10390
-[] Ready for review -
04:04 PM Revision 779b5ee5: Merge pull request #4267 from vktg/l2tpradiusissue
-
04:04 PM Revision 4e3ba659: Merge pull request #4265 from vktg/squidauthumlaut
-
04:04 PM Revision 9ea5f56e: Merge pull request #4263 from vktg/dhcpv6updstatleases
-
03:08 PM Bug #10438 (Resolved): Prepare pfSense-upgrade to deal with pkg 1.13.x+
- pkg 1.13.x bumped repository meta version from 1 -> 2 and older versions can't read new repo metadata.
Change pfS... -
02:21 PM pfSense Packages Feature #10428: LCDProc: Add the EZIO driver to the lcdproc config page
- tested here https://forum.netgate.com/topic/115071/ezio-driver-for-lcdproc/115
PR https://github.com/pfsense/FreeBSD... -
01:51 PM Revision ad1a6de3: L2TP RADIUS issued IPs fix. Issue #7562
-
01:30 PM Bug #10437: Changing interface description will break gateway groups
- Looking through the config.xml, I can see what you mean about DHCP interfaces (deriving names from the description).....
-
12:43 PM Bug #10437: Changing interface description will break gateway groups
- Thanks, I guess it just confusing because it is "allowed", but the side effects are not clear. Is there anything else...
-
12:30 PM Bug #10437: Changing interface description will break gateway groups
- In effect the "description" of the interface is its name in this context. It alters the name of the gateway. The fiel...
-
12:29 PM Bug #10437: Changing interface description will break gateway groups
- Those issues are "changing the name"...this is "changing the description"...I realize changing the "name" is not allo...
-
11:41 AM Bug #10437 (Duplicate): Changing interface description will break gateway groups
- This is the same root issue as #8218 / #8151, so it doesn't need its own entry.
This would only happen with dynami... -
11:28 AM Bug #10437 (Duplicate): Changing interface description will break gateway groups
- Reproduce:
* System with Multiple Wans (Description/Interface= WAN/em0, WAN2/em1)
* Create an gateway group using t... -
01:13 PM Bug #10420 (Confirmed): Miscellaneous page with pre-existing RAM disks config can't be saved
- I was able to replicate this on an ARM system (SG-3100).
Kernel Memory before activating RAM disks:... -
11:33 AM Bug #10390: Fix DigitalOcean Dynamic DNS client for IPv6
- Corrected pull request: https://github.com/pfsense/pfsense/pull/4268
-
11:04 AM Bug #7562 (Feedback): l2tp remoteip confusion
- PR has been merged. Thanks!
-
09:13 AM Bug #7562 (Pull Request Review): l2tp remoteip confusion
-
09:01 AM Bug #7562: l2tp remoteip confusion
- https://github.com/pfsense/pfsense/pull/4267
-
11:04 AM pfSense Packages Bug #7654 (Feedback): Can't use a LDAP search filter containing an accent
- PR has been merged. Thanks!
-
07:55 AM pfSense Packages Bug #7654 (Pull Request Review): Can't use a LDAP search filter containing an accent
-
11:04 AM Feature #10412 (Feedback): DHCPv6 Static Entries are not updated on external DDNS server
- PR has been merged. Thanks!
-
07:50 AM Feature #10412 (Pull Request Review): DHCPv6 Static Entries are not updated on external DDNS server
-
11:04 AM Feature #9439: Poll Interval For GPS and PPS
- Here is a link to the official documentation: https://www.eecis.udel.edu/~mills/ntp/html/poll.html
The FreeBSD docum... -
08:23 AM Feature #9439: Poll Interval For GPS and PPS
- > 3 offers reduced jitter over 4.
> Low poll interval is also valuable for polling a server on a low latency network... -
11:01 AM pfSense Packages Bug #10432 (Feedback): Arpwatch show unknown vendor
- PR has been merged. Thanks!
-
08:17 AM pfSense Packages Bug #10432 (Pull Request Review): Arpwatch show unknown vendor
-
11:00 AM pfSense Packages Feature #10434 (Feedback): Squid whitelist/blacklist with IDN hostnames
- PR has been merged. Thanks!
-
07:57 AM pfSense Packages Feature #10434 (Pull Request Review): Squid whitelist/blacklist with IDN hostnames
-
11:00 AM pfSense Packages Feature #10335 (Feedback): Squid IPv6 transparent mode
- PR has been merged. Thanks!
-
08:10 AM pfSense Packages Feature #10335 (Pull Request Review): Squid IPv6 transparent mode
-
10:55 AM pfSense Packages Bug #10427 (Feedback): LCDproc: Handle multiple lcdproc clients
- PR has been merged. Thanks!
-
07:49 AM pfSense Packages Bug #10427 (Pull Request Review): LCDproc: Handle multiple lcdproc clients
-
10:55 AM pfSense Packages Bug #10385 (Feedback): Pb with Username authorized characters when OTP is disabled
- PR has been merged. Thanks!
-
07:48 AM pfSense Packages Bug #10385 (Pull Request Review): Pb with Username authorized characters when OTP is disabled
-
09:58 AM Bug #10418 (New): IPsec VTI address/mask selection not functional
- Reopening this since it's not quite so clear that we should lock this down after all. Maybe we should default it to a...
-
09:31 AM Bug #10375: Double zfs entry in loader.conf
- Jim Pingle wrote:
> Is it still there after the next reboot?
Same
>
> How about after saving under System > Ad... -
09:14 AM Bug #7558 (Pull Request Review): l2tp configure kills and sleeps even if first time
-
09:02 AM Bug #7558: l2tp configure kills and sleeps even if first time
- https://github.com/pfsense/pfsense/pull/4267
-
08:16 AM Feature #7287 (Pull Request Review): NTP add support for ACTS ref clock
-
08:12 AM Bug #8179 (Pull Request Review): Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
-
07:58 AM Bug #9187 (Pull Request Review): Status->Interfaces doesn't show useful data for lagg
-
07:52 AM Bug #10433 (Pull Request Review): addMask() js code resets netmask size to 128/32
-
04:27 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- I can confirm this problem. If there are changes to the routing table (because there is packet loss on some OpenVPN I...
04/05/2020
-
10:23 PM Revision d95e86dc: Reverse DDNS zone in DHCP server for non-octet-aligned subnet. Issue #8179
-
08:26 PM Feature #9439: Poll Interval For GPS and PPS
- Jim Pingle wrote:
> What advantage would 3 have over 4 when using a local GPS though? Why would it need to probe tha... -
07:05 PM Revision f14c9058: CDATA encode Squid LDAP options. Issue #7654
-
05:39 PM pfSense Docs Correction #10435 (Closed): Console connection guide for PuTTY uses incorrect order of operations on first run of PuTTY
- https://docs.netgate.com/pfsense/en/latest/solutions/sg-1100/connect-to-console.html
and the other "connect to con... -
05:26 PM Bug #8179: Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
- Fix:
https://github.com/pfsense/pfsense/pull/4266 -
03:38 PM Revision 44aea2e1: addMask() netmask reset fix. Issue #10433
-
03:05 PM Bug #10420: Miscellaneous page with pre-existing RAM disks config can't be saved
- I did not see the behavior on another installation I upgraded today neither.
-
03:03 PM pfSense Packages Feature #10434: Squid whitelist/blacklist with IDN hostnames
- https://github.com/pfsense/FreeBSD-ports/pull/832
-
02:58 PM pfSense Packages Feature #10434 (Resolved): Squid whitelist/blacklist with IDN hostnames
- Squid doesn't block non-ascii domans
non-ascii domains must first be converted to punycode:
https://unix.stackexcha... -
02:11 PM pfSense Packages Bug #7654: Can't use a LDAP search filter containing an accent
- TODO:
CDATA encode FreeRADIUS LDAP options -
02:10 PM pfSense Packages Bug #7654: Can't use a LDAP search filter containing an accent
- CDATA encode Squid LDAP options:
https://github.com/pfsense/pfsense/pull/4265 -
12:53 PM Revision 1a618dc0: DHCPv6 update-static-leases. Issue #10412
-
10:40 AM Bug #10433: addMask() js code resets netmask size to 128/32
- Fix:
https://github.com/pfsense/pfsense/pull/4264 -
10:37 AM Bug #10433 (Closed): addMask() js code resets netmask size to 128/32
- from https://github.com/pfsense/pfsense/pull/4200:...
-
08:58 AM Bug #10430 (Not a Bug): Captive Portal shows 404 post login after upgrade to 2.4.5
- There was no change in the configuration between 2.4.4-p3 and 2.4.5
The post-auth redirect URL should always have ... -
04:08 AM Bug #10430: Captive Portal shows 404 post login after upgrade to 2.4.5
- I figured out the issue. It appears to be configuration problem, possible as a result of the upgrade. The default red...
-
04:02 AM Bug #10430: Captive Portal shows 404 post login after upgrade to 2.4.5
- Testing the Captive Portal in a Windows machine allowed me to see the URL it's hitting post login.
https://guest.e... -
03:47 AM Bug #10430 (Not a Bug): Captive Portal shows 404 post login after upgrade to 2.4.5
- I just upgraded to 2.4.5 and when a user signs in via Captive Portal it immediately shows a "404 Not Found" nginx err...
-
07:56 AM Feature #10412: DHCPv6 Static Entries are not updated on external DDNS server
- Right, https://ftp.isc.org/isc/dhcp/4.4.1/dhcp-4.4.1-RELNOTES:...
-
07:10 AM pfSense Packages Feature #10428: LCDProc: Add the EZIO driver to the lcdproc config page
- EZIO is a serial connection type for HD44780. It must be set for the server to be able to talk to it.
https://github... -
07:05 AM pfSense Packages Feature #10428: LCDProc: Add the EZIO driver to the lcdproc config page
- https://github.com/lcdproc/lcdproc/releases
HD44780 connection type "serial" supports Portwell EZIO-100 and EZIO-300... -
06:00 AM pfSense Packages Bug #10432: Arpwatch show unknown vendor
- this is due to $oui = strtoupper(substr($mac, 0, 8));
the content of ethercodes.dat is not uppercase
PR https://... -
05:55 AM pfSense Packages Bug #10432 (Resolved): Arpwatch show unknown vendor
- arpwatch.inc
line 164
if (preg_match("/^$oui\s+(.*)$/m", file_get_contents(ARPWATCH_LOCAL_DIR.'/ethercodes.dat'), $... -
05:31 AM pfSense Packages Bug #10431: pfBlockerNG Cron Job wrong - Clear IP / DNSBL Statistics
- Preview function is your friend. Cron looks like...
-
05:26 AM pfSense Packages Bug #10431 (Resolved): pfBlockerNG Cron Job wrong - Clear IP / DNSBL Statistics
- Configuring on the pfBlockerNG Widget the Statistic clearance on a weekly frequency results in this cron config:
*...
04/04/2020
-
05:10 PM pfSense Packages Feature #10335: Squid IPv6 transparent mode
- https://github.com/pfsense/FreeBSD-ports/pull/830
-
01:28 PM pfSense Packages Bug #10429: Status Traffic Total broken 2.4.5
- https://forum.netgate.com/topic/151914/traffic-totals-hourly-report-problem/
-
01:22 PM pfSense Packages Bug #10429 (New): Status Traffic Total broken 2.4.5
- it's broken on 2.4.5
Hourly and Daily tab show data in the future
top 10 show ... some strange geometric figure -
12:25 PM Revision 49e36202: Show LAGG Members info. Issue #9187
-
10:33 AM Bug #8981 (Resolved): Uncheck DHCP registration does not clear entries
- works as expected on 2.5.0.a.20200403.1936
-
10:26 AM Feature #1019 (Resolved): Lagg Failover Mode Master Interface
- works as expected on 2.5.0.a.20200403.1936
-
10:24 AM Bug #8054 (Resolved): DHCP server accepts trailing dot in domain names, DNS resolver adds another and breaks
- works as expected on 2.5.0.a.20200403.1936
-
10:20 AM pfSense Packages Feature #10428: LCDProc: Add the EZIO driver to the lcdproc config page
- LCDd.conf not lcdproc.conf
-
10:18 AM pfSense Packages Feature #10428 (Resolved): LCDProc: Add the EZIO driver to the lcdproc config page
- The EZIO driver was written by forum member fmertz and accepted upstream, it's now part of the package but there is n...
-
10:15 AM pfSense Packages Bug #10427: LCDproc: Handle multiple lcdproc clients
- https://github.com/pfsense/FreeBSD-ports/pull/829
-
10:13 AM pfSense Packages Bug #10427 (Resolved): LCDproc: Handle multiple lcdproc clients
- Return only one argument from pgrep to avoid breaking [ ]. Without that the client processes are not killed if there ...
-
09:55 AM pfSense Packages Bug #10422: Squid LDAP auth must use LDAPURI option
- I upgraded squid to 0.4.44_18 on 2.4.5/2.5 but can't see this code
-
08:49 AM Bug #10424 (Resolved): status.php: Calls using pkg should use pkg-static
- Works as expected
-
08:49 AM Todo #10423 (Resolved): status.php: Add kernel modules
-
05:02 AM Todo #10423: status.php: Add kernel modules
- tested on 2.5.0.a.20200403.1936
OS-Kernel Modules.txt is OK. -
08:44 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- I can reproduce this at will. My hardware is a Supermicro 5018D-FN4T (Same as XG-1541). I can provide a config file i...
-
08:02 AM Bug #10418 (Resolved): IPsec VTI address/mask selection not functional
- tested on 2.5.0.a.20200403.1936
OK now, I can see correct netmask:... -
07:51 AM Feature #9251: DNS Resolver (Unbound) Python Integration
- About python module and python files, suggestion "option two":
add Notice *(i) to Python Module Script about:
1. If... -
04:34 AM Feature #9251: DNS Resolver (Unbound) Python Integration
- @Jim maybe cool idea to add option to paste python files to unbound chroot like it done in HAproxy package from GUI s...
-
07:28 AM Bug #9187: Status->Interfaces doesn't show useful data for lagg
- Fix:
https://github.com/pfsense/pfsense/pull/4262 -
06:22 AM pfSense Packages Bug #10426 (Resolved): Filer must validate that File name is uniq
- Filer Plugin allow create multiply files with same name which is not have any usecase. I think this bug.
-
04:56 AM pfSense Packages Bug #10385: Pb with Username authorized characters when OTP is disabled
- MILO MEDIN wrote:
> There is also an issue with being able to user MAC addresses in the FreeRadius username in the X... -
03:28 AM Feature #7287: NTP add support for ACTS ref clock
- updated PR:
https://github.com/pfsense/pfsense/pull/4261
04/03/2020
-
08:10 PM pfSense Packages Feature #10425 (Resolved): upgrade ntopng to 4.0.0
- ntopng 4.0.0 has been released.
https://github.com/ntop/ntopng/commits/4.0
Could the ntopng package for pfSense... -
07:04 PM Revision b4ce86dc: status.php updates
- * Add kldstat verbose output. Implements #10423
* Change pkg calls to pkg-static. Fixes #10424
(cherry picked from c... -
07:03 PM Revision b943d20d: status.php updates
- * Add kldstat verbose output. Implements #10423
* Change pkg calls to pkg-static. Fixes #10424 -
04:13 PM Revision 6e2d9fa9: Deprecated is more appropriate
-
04:13 PM Revision ebbe8260: Deprecated is more appropriate
-
04:13 PM Revision b1f1c16f: Deprecated is more appropriate
-
03:42 PM Revision 411579d8: Reset PRODUCT_REVISION
-
03:02 PM Revision bad84d07: Merge pull request #4245 from vktg/defntpmaxpeers
-
03:01 PM Revision 15abd092: Merge pull request #4247 from vktg/laggmembermtu
-
03:00 PM Revision a98b3d58: Merge pull request #4248 from vktg/ovpnclientproto
-
02:59 PM Revision 56281195: Merge pull request #4252 from vktg/cleandnsdhcpleases
-
02:55 PM Revision f16b44a3: Merge pull request #4254 from kiokoman/master
-
02:55 PM Revision f380af3f: Merge pull request #4243 from vktg/ntpdisable
-
02:54 PM Revision 4fc1f7d6: Merge pull request #4246 from vktg/ignorelaggmemevent
-
02:53 PM Revision 47fb41cc: Merge pull request #4251 from vktg/sysdomainfix
-
02:48 PM Revision 76a102fb: Merge pull request #4249 from vktg/laggfailovermaster
-
02:44 PM Revision 3610b37a: Merge pull request #4260 from vktg/ipsecvti30
-
02:10 PM Bug #10424 (Feedback): status.php: Calls using pkg should use pkg-static
- Applied in changeset commit:b943d20dcd9a580c18ce804b47f512855272f1dd.
-
02:03 PM Bug #10424 (Resolved): status.php: Calls using pkg should use pkg-static
- The status.php items which use @pkg@ should use @pkg-static@ instead, to avoid potential problems on systems which ar...
-
02:10 PM Todo #10423 (Feedback): status.php: Add kernel modules
- Applied in changeset commit:b943d20dcd9a580c18ce804b47f512855272f1dd.
-
02:02 PM Todo #10423 (Resolved): status.php: Add kernel modules
- The list of loaded kernel modules from @kldstat@ should be added to status.php
-
01:50 PM Revision 159df52d: Rename 2.4.4 repo files
-
01:50 PM Revision 76d9d592: Rename 2.4.4 repo files
-
01:49 PM Revision e72665ec: Rename 2.4.4 repo files
-
01:26 PM Revision d4aa3c9d: Let user to stay on 2.4.4 for some time
-
01:25 PM Revision 9cc713c6: Let user to stay on 2.4.4 for some time
-
01:24 PM Revision 73c6bbaa: Let user to stay on 2.4.4 for some time
-
12:34 PM Revision 92ab21bb: IPsec VTI /30 netmask. Issue #10418
-
12:08 PM pfSense Packages Bug #10422 (Feedback): Squid LDAP auth must use LDAPURI option
- PR has been merged. Thanks!
-
11:45 AM pfSense Packages Bug #10422: Squid LDAP auth must use LDAPURI option
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/823
This PR also changes STARTTLS -Z option to -ZZ,
it's used... -
11:39 AM pfSense Packages Bug #10422 (Resolved): Squid LDAP auth must use LDAPURI option
- basic_ldap_auth must use LDAPURI option (-H) to successfully connect using ldaps.
see https://forum.netgate.com/topi... -
10:41 AM Bug #10420: Miscellaneous page with pre-existing RAM disks config can't be saved
- I have not seen that happen here when I was testing this initially, but I don't currently have any systems with RAM d...
-
10:12 AM Bug #10420 (Resolved): Miscellaneous page with pre-existing RAM disks config can't be saved
- Having an installation of pfSense using RAM disks one can't save any other changes made on the System->Advanced->Misc...
-
10:31 AM pfSense Packages Feature #10421 (Resolved): suricata unix_stream support for telegraf
- it would be nice if there was support for telegraf under suricata
input.suricata need unix socket to be created for ... -
10:25 AM pfSense Packages Todo #10419 (Feedback): Update haproxy ports
- Done. Bumped haproxy and haproxy-devel pfSense packages to 0.60_4 to let users to see a new version
-
08:26 AM pfSense Packages Todo #10419 (Closed): Update haproxy ports
- pfSense-pkg-haproxy depends on net/haproxy18 which is currently 1.8.23
pfSense-pkg-haproxy-devel depends on net/hapr... -
10:19 AM pfSense Packages Bug #10369 (Feedback): Remote OpenVPN server protocol definition
- PR has been merged. Thanks!
-
10:19 AM pfSense Packages Bug #10393 (Feedback): Syslog-ng TLS support is broken
- PR has been merged. Thanks!
-
10:17 AM pfSense Packages Bug #10413 (Feedback): BIND plugins are not copied into chroot
- PR has been merged. Thanks!
-
10:16 AM pfSense Packages Bug #10378 (Feedback): Add IPv6 network to Squid localnet
- PR has been merged. Thanks!
-
07:19 AM pfSense Packages Bug #10378 (Pull Request Review): Add IPv6 network to Squid localnet
-
10:16 AM pfSense Packages Feature #10415 (Feedback): FreeRADIUS Package: Add option to enter NT or MD5 prehashed passwords in configuration
- PR has been merged. Thanks!
-
07:28 AM pfSense Packages Feature #10415 (Pull Request Review): FreeRADIUS Package: Add option to enter NT or MD5 prehashed passwords in configuration
-
10:02 AM Feature #10323 (Feedback): Allow limiting NTP pool server usage count
- PR has been merged. Thanks!
-
10:01 AM Bug #8585 (Feedback): Logical interface MTU matches configuration of its physical port channel, not its own configuration
- PR has been merged. Thanks!
-
10:00 AM Bug #10368 (Feedback): OpenVPN server no definition of protocol to use (udp4)
- PR has been merged. Thanks!
-
10:00 AM Bug #8981 (Feedback): Uncheck DHCP registration does not clear entries
- PR has been merged. Thanks!
-
09:58 AM Feature #10374 (Pull Request Review): Add ARM32/64 network booting support to dhcpd
- Ops, my mistake here. PR was not merged yet
-
09:56 AM Feature #10374 (Feedback): Add ARM32/64 network booting support to dhcpd
- PR has been merged. Thanks!
-
09:56 AM Bug #10386 (Feedback): A NTP Time Server name may only contain the characters a-z, 0-9, '-' and '.'.
- PR has been merged. Thanks!
-
09:54 AM Feature #3567 (Feedback): Option to disable NTP
- PR has been merged. Thanks!
-
09:53 AM Bug #10365 (Feedback): LAGG member event causes filter to reload
- PR has been merged. Thanks!
-
09:52 AM Bug #8054 (Feedback): DHCP server accepts trailing dot in domain names, DNS resolver adds another and breaks
- PR has been merged. Thanks!
-
09:48 AM Feature #1019 (Feedback): Lagg Failover Mode Master Interface
- PR has been merged. Thanks!
-
09:44 AM Bug #10418 (Feedback): IPsec VTI address/mask selection not functional
- PR has been merged. Thanks!
-
07:53 AM Bug #10418 (Pull Request Review): IPsec VTI address/mask selection not functional
-
07:36 AM Bug #10418: IPsec VTI address/mask selection not functional
- /30 netmask fix:
https://github.com/pfsense/pfsense/pull/4260 -
07:25 AM Bug #10418: IPsec VTI address/mask selection not functional
- Viktor Gurov wrote:
> _2. After IPsec interface assignment it doesn't appear under Firewall/Rules:_
> I found that ... -
07:19 AM Bug #10418: IPsec VTI address/mask selection not functional
- _1. Once the IPsec interface is assigned, it gets /32 subnet instead of /30._
simple fix in ipsec.inc
https://githu... -
06:33 AM Bug #10418 (Resolved): IPsec VTI address/mask selection not functional
- There are couple of oddities in 2.4.5.
1. Once the IPsec interface is assigned, it gets /32 subnet instead of /30.
... -
09:21 AM Bug #10416: dhcrelay command line options not properly configured for some DHCP failover scenarios
- Jim Pingle wrote:
> Having separate choices for upstream and downstream would give the user manual control over whic... -
09:09 AM Bug #10416: dhcrelay command line options not properly configured for some DHCP failover scenarios
- John Steele wrote:
> Jim Pingle wrote:
> > Why would you need to relay to a server in the same subnet as the client... -
09:02 AM Bug #10416: dhcrelay command line options not properly configured for some DHCP failover scenarios
- Jim Pingle wrote:
> Why would you need to relay to a server in the same subnet as the clients it serves and the fire... -
07:37 AM Bug #10416: dhcrelay command line options not properly configured for some DHCP failover scenarios
- Why would you need to relay to a server in the same subnet as the clients it serves and the firewall? They can get a ...
-
01:31 AM Bug #10416 (Resolved): dhcrelay command line options not properly configured for some DHCP failover scenarios
- Scenario: ISC DHCP failover, with one of the 2 servers in the failover association residing in a subnet that also se...
-
07:53 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- Likely the same root cause as #10310 though that doesn't have quite the same symptoms.
> Cause:
> - it may be rel... -
07:07 AM Bug #10414: Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- A few additions:
- it seems to happen more often if pfSense is installed and used in a virtual environement
- it se... -
07:05 AM Revision 09b9977b: Lagg Failover Mode Master Interface select. Issue #1019
-
04:29 AM pfSense Docs Correction #10417 (Closed): Feedback on Packages — Package List
- *Page:* https://docs.netgate.com/pfsense/en/latest/packages/list.html
*Feedback:*
Need to add info about PIMD p... -
12:55 AM Feature #10293 (Resolved): DNS flag day - EDNS buffer size recommendation
- works as expected on 2.5.0.a.20200402.0149
04/02/2020
-
11:38 PM Bug #10380: Unable to upgrade from 2.4.4 p3 to 2.4.5
- Peter Cronwright wrote:
> Just had the same thing
I am also experiencing the same issue ... -
09:50 PM pfSense Packages Feature #10415: FreeRADIUS Package: Add option to enter NT or MD5 prehashed passwords in configuration
- Link to pull request: https://github.com/pfsense/FreeBSD-ports/pull/822 Implements #10415 Adds prehashed NT-Password ...
-
09:19 PM pfSense Packages Feature #10415 (Resolved): FreeRADIUS Package: Add option to enter NT or MD5 prehashed passwords in configuration
- The FreeRADIUS Package currently provides the option to use 'Cleartext-Password' and only hashing option - 'MD5-Passw...
-
08:57 PM Bug #10414 (Resolved): Very high CPU usage of pfctl and more causing very high load and a hardly usable internet connection
- There are several threads in the forum complaining about high CPU usage of pfctl and some other processs. This is cau...
-
03:19 PM pfSense Packages Bug #10413 (Pull Request Review): BIND plugins are not copied into chroot
- PR: https://github.com/pfsense/FreeBSD-ports/pull/816
-
02:55 PM pfSense Packages Bug #10413 (Resolved): BIND plugins are not copied into chroot
- BIND 9.13.5 introduced a new plugin system, and the filter-aaaa support was moved to a plugin, so we need to copy the...
-
03:07 PM pfSense Packages Bug #10378: Add IPv6 network to Squid localnet
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/817 -
02:59 PM Todo #10349 (Resolved): status.php: Sanitize ldapbindpass and ldap_pass
-
01:08 PM Bug #10390 (Pull Request Review): Fix DigitalOcean Dynamic DNS client for IPv6
-
01:07 PM Bug #10390: Fix DigitalOcean Dynamic DNS client for IPv6
- Yes sir, just did: https://github.com/pfsense/pfsense/pull/4259
-
01:07 PM pfSense Packages Bug #10411: ACME only uses DoH, Broken renewal
- Jim Pingle wrote:
> Still seems like acme.sh should handle that more gracefully without relying on such a long timeo... -
12:44 PM pfSense Packages Bug #10411: ACME only uses DoH, Broken renewal
- Still seems like acme.sh should handle that more gracefully without relying on such a long timeout, or have an option...
-
12:41 PM pfSense Packages Bug #10411: ACME only uses DoH, Broken renewal
- Thank you for reviewing Jim.
I have been researching further and found closed issues on the acme.sh github:
https... -
10:36 AM pfSense Packages Bug #10411 (Needs Patch): ACME only uses DoH, Broken renewal
- That will need to be raised as an issue directly with acme.sh not here.
-
10:21 AM pfSense Packages Bug #10411 (Needs Patch): ACME only uses DoH, Broken renewal
- The issue is described on the forum here:
> https://forum.netgate.com/topic/150984/doh-verification-method
DoH ap... -
12:30 PM Feature #10412: DHCPv6 Static Entries are not updated on external DDNS server
- Suggesting the following change (based on the services.inc in 2.4.5):
--- old/src/etc/inc/services.inc 2020-03-17 ... -
12:29 PM Feature #10412 (Resolved): DHCPv6 Static Entries are not updated on external DDNS server
- Since pfSense 2.4.5 the isc-dhcp-server is 4.4.1 which supports "update-static-leases" statment for DHCPv6, too.
-
12:25 PM Bug #10346: DHCPv6 service Dynamic DNS errors
- See also: #6600 (some overlap in the PR)
-
12:25 PM Feature #6600 (Pull Request Review): DHCP Server - Primary DDNS Address won't accept IPv6 address
-
10:54 AM Feature #6600: DHCP Server - Primary DDNS Address won't accept IPv6 address
- see https://redmine.pfsense.org/issues/10346
fix in progress: https://github.com/pfsense/pfsense/pull/4235 -
12:25 PM pfSense Packages Bug #10379 (Feedback): squid not authenticate LDAP/RADIUS
- PR 814 was merged
-
12:07 PM Bug #8522 (Resolved): SMTP test says success when actually fails
- works as expected on 2.5.0.a.20200331.2303
-
11:40 AM Revision 8ee5aa03: DHCP Domain trailing dot validation. Issue #8054
-
11:00 AM Bug #10306 (Resolved): Incorrect IPsec service status
- Renato Botelho wrote:
> PR has been merged. Thanks!
works as expected on 2.5.0.a.20200331.2303 -
07:42 AM Feature #10410 (Rejected): Display changelog on update in System->Package Manager
- There is no "changelog" to display. There is no viable way to accomplish this automatically. Even linking to things l...
-
05:31 AM Feature #10410 (Rejected): Display changelog on update in System->Package Manager
- It good to know what changes was done in new version of package or even get link to git merge commit and so on.
-
07:40 AM Bug #10409 (Pull Request Review): OpenVPN client without userpass hangs system startup
- Copying note here from Github:
I seem to recall there was a specific reason we allowed the password to be empty. ... -
04:32 AM Bug #10409: OpenVPN client without userpass hangs system startup
- OpenVPN client userpass is mandatory
Fix:
https://github.com/pfsense/pfsense/pull/4257 -
04:16 AM Bug #10409 (Resolved): OpenVPN client without userpass hangs system startup
- If you create OpenVPN client connection with user authentication,
but don’t enter the password
System hangs on star... -
07:21 AM Bug #10408 (Rejected): Unable to upgrade from 2.4.4 p3 to 2.4.5
- This site is not for support or diagnostic discussion. Please post on the forum for assistance.
-
03:24 AM Bug #10408: Unable to upgrade from 2.4.4 p3 to 2.4.5
- ask for help/ check the forum, not here https://forum.netgate.com/topic/151403/readline-so-0-bytes-after-upgrade/7
-
12:19 AM Bug #10408 (Rejected): Unable to upgrade from 2.4.4 p3 to 2.4.5
- Error: Warning: PHP Startup: Unable to load dynamic library 'readline.so' (tried: /usr/local/lib/php/20170718/readlin...
-
07:20 AM Bug #10396 (Not a Bug): rc.start_packages after modem loose connection
- OK, if you do manage to track down the source of the problem and have enough detail for others to reproduce it and so...
-
12:42 AM Bug #10396: rc.start_packages after modem loose connection
- I think it can be closed. After some further investigations I am sure it is not a problem with the rc.start_packages ...
-
07:15 AM Bug #10407 (Needs Patch): L2TP static route not re-added after connection down/up
- The L2TP WAN-type interface design is not designed to be used with VPNs. It may work, but not intentionally. It is de...
-
01:54 AM Bug #10397: Changing default or static route gateway on 2.5.0 does not remove old route
- Jim Pingle wrote:
> This also affects static routes. Changing a route gateway does not remove the old route.
It i...
Also available in: Atom