Activity
From 08/05/2020 to 09/03/2020
09/03/2020
- 08:07 PM Revision 6bd064f7: alias.inc changed to alias-utils.inc
-
04:41 PM Bug #10864 (Resolved): firewall_aliases.php broken
- For the last several versions I've noticed this error using the web gui on an SG-5100. When trying to view Firewall A...
-
02:09 PM Revision eb34ab35: Update obsoleted files list for 2.5.0
-
10:55 AM Revision 18b41bd9: Remove commented out lines
-
10:54 AM Revision 55ac1551: Fix file name on copyright notice
-
08:36 AM Feature #10863 (Rejected): Add option for ARPING to occur on CARP promoted to MASTER
- CARP already sends a gratuitous ARP when it assumes control. If your environment needs additional nudging, that isn't...
-
08:00 AM Feature #10863 (Rejected): Add option for ARPING to occur on CARP promoted to MASTER
- Hi all,
Coming across an issue where I have different servers on different DC's, switching provided by external co...
09/02/2020
- 01:55 PM Revision 925737f2: Fix syntax error in alias.inc
-
01:29 PM Bug #10773 (Resolved): if_em VLAN interfaces wont pass traffic after reboot
-
01:01 PM Bug #10862 (Rejected): There were error(s) loading the rules: /tmp/rules.debug:20: cannot define table bogonsv6: too many elements. -
- Not enough detail here, but probably a duplicate of #10861 assuming you are running 2.5.0, if not, post on the forum ...
-
12:52 PM Bug #10862: There were error(s) loading the rules: /tmp/rules.debug:20: cannot define table bogonsv6: too many elements. -
- Hello, following the last update, no more internet, here is the error.
-
12:50 PM Bug #10862 (Rejected): There were error(s) loading the rules: /tmp/rules.debug:20: cannot define table bogonsv6: too many elements. -
- There were error(s) loading the rules: /tmp/rules.debug:20: cannot define table bogonsv6: too many elements. - The li...
-
09:58 AM Bug #10861: net.pf.request_maxcount value set in loader.conf not respected on latest snapshot
- Most likely
-
09:56 AM Bug #10861: net.pf.request_maxcount value set in loader.conf not respected on latest snapshot
- Does it have something to do with r364456?
-
08:20 AM Bug #10861 (Resolved): net.pf.request_maxcount value set in loader.conf not respected on latest snapshot
- The value of @net.pf.request_maxcount@ is @65535@ at boot on the latest 2.5.0 snapshot, despite a higher value being ...
-
08:21 AM Bug #10254: pf error "too many elements" when attempting to load large tables
- This issue is quite old and resolved in a previous version. I created a new issue for the regression after confirming...
-
02:04 AM Bug #10254: pf error "too many elements" when attempting to load large tables
- Just upgraded today to 2.5.0.a.20200901.2100, hitting exact same issue. Seems like regression.
Every reboot have t... -
08:00 AM Bug #10860 (Duplicate): group names must be max 15 character
-
04:11 AM Bug #10860: group names must be max 15 character
- i can't delete it now
sorry duplicate of #10835 -
03:57 AM Bug #10860 (Duplicate): group names must be max 15 character
- ...
-
07:55 AM Bug #10765: Ampersands in ldap_extended_query are escaped twice
- That is an unsupported add-on, and a rare use case. You are welcome to submit a PR with a fix, but it's not something...
-
05:20 AM Bug #10765: Ampersands in ldap_extended_query are escaped twice
- Hello, I am surprised that this issue hasn't been assigned to anybody in 2 months. Is there anything I can do to give...
09/01/2020
- 07:32 PM Revision bff96b22: Moved controller logic out of display file and into .inc file
-
05:50 PM Bug #10773: if_em VLAN interfaces wont pass traffic after reboot
- Thanks Luiz. Yes. The most recent snapshot fixes this issue.
-
09:34 AM Bug #10773 (Feedback): if_em VLAN interfaces wont pass traffic after reboot
- which just happened. the 2.5 sources were rebased and this fix is already applied.
Please let us know if the prob... -
04:41 PM Feature #2668: Support aliases in OpenVPN local/remote/tunnel network fields
- This is an incredibly important feature for anyone managing a large network. We only have 18 sites and the string for...
-
12:20 PM pfSense Packages Feature #10859 (Resolved): Add avahi filtering feature to pfSense
- Two parts to the issue;
1) Package needs to be updated from upstream to get new filtering feature added in avahi ...
08/31/2020
- 08:06 PM Revision a903e9a6: Move alias delete functionality to inc file so other processes can access it
-
05:44 PM Revision b53eb95a: Merge pull request #4421 from vktg/vxlangui
-
02:54 PM Feature #10856 (Pull Request Review): Backup/Restore Captive Portal usedmacs DB
-
09:31 AM Feature #10856: Backup/Restore Captive Portal usedmacs DB
- https://github.com/pfsense/pfsense/pull/4431
-
08:06 AM Feature #10856 (Resolved): Backup/Restore Captive Portal usedmacs DB
- /var/db/captiveportal_usedmacs_<cpzone>.db files used by "Pass-through credits per MAC address" feature are not in th...
-
02:48 PM Revision b6ea9c61: VXLAN configuration WebGUI. Feature #6240
-
12:51 PM pfSense Packages Feature #10779 (Feedback): HAProxy SSL/TLS Compatibility Mode
- PR has been merged. Thanks!
-
07:31 AM pfSense Packages Feature #10779 (Pull Request Review): HAProxy SSL/TLS Compatibility Mode
-
03:27 AM pfSense Packages Feature #10779: HAProxy SSL/TLS Compatibility Mode
- Improvement:
https://github.com/pfsense/FreeBSD-ports/pull/921 -
12:45 PM Feature #6240 (Feedback): vxlan driver
- PR has been merged. Thanks!
-
12:05 PM pfSense Packages Feature #10858 (Resolved): OpenVPN Client silent install
- Allow to use openvpn client export windows installers for unattended deploy
Currently it's possible to create sile... -
08:09 AM Bug #10857 (Resolved): Captive Portal usedmacs DB is not copied to backup HA node
- /var/db/captiveportal_usedmacs_<cpzone>.db files used by "Pass-through credits per MAC address" feature are not copie...
-
07:27 AM Bug #10855 (Rejected): Error when executing playback thu pfSsh.php (Fatal error: Cannot redeclare usage())
- That isn't a supported method to run multiple playback scripts, they each expect to be run in their own environment.
... -
02:00 AM Bug #10855: Error when executing playback thu pfSsh.php (Fatal error: Cannot redeclare usage())
- Fix:
https://github.com/pfsense/pfsense/pull/4430
08/30/2020
-
03:33 PM Bug #10840 (Resolved): status.php: Sanitize Net-SNMP community
- Tested patch on 2.4.5_1. Community tag is obfuscated as expected. Resolving the ticket.
<netsnmpcommunities>
<commu... -
10:00 AM Bug #10855 (Rejected): Error when executing playback thu pfSsh.php (Fatal error: Cannot redeclare usage())
- Input file :
[2.5.0-DEVELOPMENT][admin@example.com]/root: cat -vet ipsec.txt
playback svc stop ipse...
08/29/2020
-
09:42 AM Bug #7096: Unbound fails to start on boot if specific network devices are configured in the "Network Interfaces"
- I may be experiencing the same issue. More testing is required, but at the least Unbound is not starting, and I am b...
08/27/2020
-
03:07 PM Feature #10826 (Resolved): Support for Domeneshop DDNS
-
02:57 PM Feature #10826: Support for Domeneshop DDNS
- confirmed to be working on latest 2.5 development snapshot
-
01:41 PM Revision c3cada8b: Merge pull request #4230 from vktg/ipsecp2shunt
-
01:39 PM Revision 7dcdbf6d: Merge pull request #4414 from jturnism/patch-1
-
01:38 PM Revision ac2e5383: Merge pull request #4429 from basicmonkey/master
-
01:38 PM Revision 960b4c95: Merge pull request #4428 from Marc05/master
-
01:38 PM Revision d45c476a: Remove deprecated hash module
-
12:30 PM Revision dbc1b8ee: Fix some illegal string offset errors. Issue #10659
-
08:41 AM Bug #10846 (Feedback): Icon area within buttons are not clickable
- PR has been merged. Thanks!
-
08:41 AM Bug #10847 (Feedback): Mobile user IPSec (PSK+Xauth) fails at user auth with PHP error
- PR has been merged. Thanks!
-
08:41 AM Feature #10837 (Feedback): Update wizardapp.inc XBox and Wii ports
- PR has been merged. Thanks!
-
08:41 AM Feature #3329 (Feedback): Allow creating "not" rules for IPsec Phase 2
- PR has been merged. Thanks!
-
08:01 AM Todo #10659 (Feedback): PHP: Update to 7.4.x
- Done
-
02:34 AM Bug #9054: Gateway Group slow (or never) to switch back to Tier 1
- Any update on this? I experience the very same problem on version 2.4.4-RELEASE-p3 (amd64).
08/26/2020
-
03:52 PM Revision b2186003: Remove the /usr/libexec/telnetd from the default installation.
- There is no reason to keep a telnet daemon.
-
11:21 AM Bug #10780 (Resolved): net.inet.ip.dummynet.* values are ignored
- Tested the patch on 2.4.5-p1, it works perfect.
-
09:41 AM Bug #10854 (Not a Bug): DHCPv6 Server assigns addresses from outside of specified range (Regression from 2.4.4)
- That's not a bug, it's doing exactly what you asked. IPv6 addresses are hexidecimal, not decimal. 100-150 in hex incl...
-
09:40 AM Bug #10854: DHCPv6 Server assigns addresses from outside of specified range (Regression from 2.4.4)
- NOTE: I tried editing the specified range and re-saving to restart the DHCPv6 server to see if that resolved the issu...
-
09:38 AM Bug #10854 (Not a Bug): DHCPv6 Server assigns addresses from outside of specified range (Regression from 2.4.4)
- The DHCPv6 server appears to be ignoring the specified range when assigning addresses. For example, I set one of my ...
-
07:50 AM Feature #2358: NAT64 support
- Viktor Gurov wrote:
> IPFW NAT64 kernel support:
> https://github.com/pfsense/FreeBSD-src/pull/35
As it is merge... -
07:45 AM pfSense Packages Bug #10824 (Resolved): BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
-
02:48 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Renato Botelho wrote:
> PR has been merged. Thanks!
Updated to bind 9.14_8, which includes this fix - rc.d scrip... -
07:45 AM pfSense Packages Bug #10823 (Resolved): named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
-
02:45 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Renato Botelho wrote:
> PR has been merged. Thanks!
Updated to bind 9.14_8, which includes this fix - works as r... -
07:45 AM pfSense Packages Bug #10832 (Resolved): Bind DNSSEC validation "deselected" not disabling DNSSEC validation
-
02:44 AM pfSense Packages Bug #10832: Bind DNSSEC validation "deselected" not disabling DNSSEC validation
- Renato Botelho wrote:
> PR has been merged. Thanks!
Updated to bind 9.14_8, which includes this fix - works as r...
08/25/2020
-
04:54 PM Revision 5586fce0: Upgrade PHP to 7.4.x
- 03:50 PM Revision 36ff1deb: Added PPPoE handler to setup wizard utilities
-
02:14 PM Bug #10853 (Duplicate): domain key name doesn't allow periods
- Duplicate of #10844
-
02:07 PM Bug #10853 (Duplicate): domain key name doesn't allow periods
- I've been using a domain key in the format _subdomain.example.com._ for quite some time without issue. At some point ...
-
10:16 AM Bug #10850: GoDaddy (v6) returns error when creating or updating
- Yet I can do the exact same thing with LAN (ix1) as the interface, which is also static (since I'm using a HE tunnel ...
-
05:02 AM Bug #10852 (Duplicate): Double Traffic Graph
- I have working system since 1 Year on pfSense 2.5-Dev. Traffic Graph was working fine. Today upgraded to latest 2.5.0...
08/24/2020
-
01:11 PM Bug #10798 (Resolved): Unable to save CP zone named 'VIP'
- Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Mon Aug 24 07:02:12 EDT 2020
FreeBSD 12.1-STABLE
I was not able t... -
10:16 AM pfSense Packages Bug #10845: apcupsd doesn't stop when not enabled
- This is repeatable after rebooting the pfSense host.
-
10:12 AM pfSense Docs Correction #10849 (Rejected): Suggestions to improve docs related to package development
- a) is correct for those who have direct commit access to that repo. Others should be cloning their own fork, not that...
-
10:01 AM Feature #10848 (Rejected): widget "interfaces" improvement: use space for interface name, show netmask, show config type
-
10:01 AM Bug #10847 (Pull Request Review): Mobile user IPSec (PSK+Xauth) fails at user auth with PHP error
-
09:43 AM Bug #10846 (Pull Request Review): Icon area within buttons are not clickable
- This issue only seems to affect the delete button on the schedules page. I can't find any other button that won't let...
-
07:26 AM pfSense Packages Todo #10851 (Rejected): Snort PORTVERSION Changed
- Thanks, but the snort package maintainer will update it as needed when it's appropriate to do so.
-
02:18 AM pfSense Packages Todo #10851 (Rejected): Snort PORTVERSION Changed
- PORTVERSION= 2.9.16 is obsolete,
Snort website port version is snort-2.9.16.1
Please check Snort Site -
07:14 AM Bug #7209: Something is seriously wrong with firewall aliases
- I think I probably had this issue today on a 2.4.4-p3 firewall.
I had an alias containing one FQDN (in first row) ... -
06:16 AM Feature #8713: Allow user to disable/enable multiple firewall rules at one time
- Аноним wrote:
> Currently, a user may disable or enable a firewall rule through the WebGUI by either editing the rul... -
06:15 AM Feature #2505: Toggle button to disable/enable multiple firewall rules
- Matt Bochenek wrote:
> I'd like to be able to disable and enable multiple firewall rules at once. It would make it e...
08/23/2020
-
10:55 AM Bug #10850 (Duplicate): GoDaddy (v6) returns error when creating or updating
- When creating or updating a DDNS entry using "GoDaddy (v6)" as the service, the following entries appear in the syste...
-
07:34 AM pfSense Docs Correction #10849: Suggestions to improve docs related to package development
- Second line under c) "- a shell script" is a new subject "c2/d". sorry for the typo
-
07:30 AM pfSense Docs Correction #10849 (Rejected): Suggestions to improve docs related to package development
- I have been modifying the pfSense-pkg-pimd package, in order to support the upcoming pimd-version-3 release (still in...
-
06:23 AM Feature #10848: widget "interfaces" improvement: use space for interface name, show netmask, show config type
- sorry that was supposed to go the opnsense issues. sadly i cannot edit my report here?
the only thing that seems t...
08/22/2020
-
08:40 AM Feature #10848 (Rejected): widget "interfaces" improvement: use space for interface name, show netmask, show config type
- 1. even with enough space available, long interface names gets split across several lines
2. show netmask for each i... -
08:22 AM Bug #10847 (Resolved): Mobile user IPSec (PSK+Xauth) fails at user auth with PHP error
- amd64
12.1-STABLE
FreeBSD 12.1-STABLE b385628d96e(devel-12) pfSense
Crash report details:
PHP Errors:
[21-Au...
08/21/2020
- 08:57 PM Revision ed90018e: Fix array pass by reference in ipsec.auth-user.php
- Fixes error: PHP Fatal error: Uncaught Error: Cannot pass parameter 3 by reference in /etc/inc/ipsec.auth-user.php:9...
-
08:49 PM Revision 50169a70: prevent embedded button icons from interfering with click events #10846
- 08:07 PM Revision 616a1916: Added setup wizard utility file
-
03:32 PM Bug #10846 (Resolved): Icon area within buttons are not clickable
- The embedded icon section of buttons are not clickable. See attached for reference.
This seems to only affect the ... -
11:11 AM Bug #10827: Cannot add or delete separators when no rules are present
- I was able to reproduce this, and it looks to affect both firewall_nat.php and firewall_rules.php.
Neither adding ...
08/20/2020
- 07:39 PM Revision 5130e45a: fixed xbox live stuff
- removed gamesforwindowslive since it is covered by xbox live and afaik uses same servers and pretty much dead
renamed... - 07:36 PM Revision 01d0443b: fixed xbox live stuff
- removed gamesforwindowslive since it is covered by xbox live and afaik uses same servers and pretty much dead
renamed... -
07:33 PM Revision 532be905: Merge pull request #4409 from vktg/sanitizegeoipkey
-
02:33 PM Bug #10797 (Feedback): status.php: Sanitize MaxMind GeoIP key
- PR has been merged. Thanks!
-
11:50 AM pfSense Packages Bug #10845: apcupsd doesn't stop when not enabled
- To be clear, this is not blocking / hindering anything for me.
-
11:50 AM pfSense Packages Bug #10845: apcupsd doesn't stop when not enabled
- I'm happy to try things here.
-
11:19 AM pfSense Packages Bug #10845: apcupsd doesn't stop when not enabled
- I can't seem to reproduce that here on 2.4.5-p1 (arm, network UPS), 2.5.0 (amd64, network UPS), or 2.5.0 (amd64, USB ...
-
11:07 AM pfSense Packages Bug #10845 (New): apcupsd doesn't stop when not enabled
- I'm running pfSense 2.4.5-p1 and apcupsd 0.3.91_8
Attempts to stop apcupsd fail.
To reproduce:
# visit /pkg_... -
08:38 AM Feature #855: Ability to selectively kill states on gateway recovery
- +1 I haven't really been hurt by this until recently while performing a big backup job to the cloud. Failover occurre...
-
05:12 AM Bug #10844 (Resolved): DHCPv6 service Dynamic DNS revisions made to fix Bug #10346 violates RFC/is too restrictive
- The GUI syntax checking changes made in the submitted revisions regarding the "DDNS Domain Key Name" is actually not ...
08/19/2020
-
06:17 PM Feature #7791: include /usr/bin/strings in core pfSense
- Just a quick note to say thank you for adding strings - very handy, much appreciated, and keep up the good work!
-
04:41 PM Feature #10843 (New): Allow user manager settings to specify multiple authentication servers
- We would really like to have redundancy with our LDAP authentication for the pfSense web interface, but this appears ...
-
02:14 PM Revision b55b5c18: Merge pull request #4426 from vktg/rfc2136zone
-
02:13 PM Revision e0d07cc4: Merge pull request #4425 from vktg/sancomminity
-
01:50 PM Revision 9a012045: Not destroying VTI interfaces when booting before creating a new one. Fixes #10842
-
12:25 PM Bug #9643: Limiters do not function properly on 2.5 snapshots
- I can also confirm it works fine on LAN, and since the setup uses NAT, it means I can use this as a workaround, I put...
-
11:27 AM Bug #9643: Limiters do not function properly on 2.5 snapshots
- Hi guys, just to confirm it looks like I have the same problem.
pfSense running in a Proxmox VM, I did gui update ... -
09:56 AM pfSense Packages Bug #10823 (Feedback): named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- PR has been merged. Thanks!
-
09:56 AM pfSense Packages Bug #10824 (Feedback): BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- PR has been merged. Thanks!
-
09:56 AM pfSense Packages Bug #10832 (Feedback): Bind DNSSEC validation "deselected" not disabling DNSSEC validation
- PR has been merged. Thanks!
-
09:51 AM pfSense Packages Feature #10665 (Feedback): Manual OSPF neighbor definitions
- PR has been merged. Thanks!
-
09:49 AM pfSense Packages Feature #10769 (Feedback): Prevent users from creating new ACMEv1 keys
- PR has been merged. Thanks!
-
09:48 AM pfSense Packages Bug #10770 (Feedback): arpwatch: cannot remove email once it has been entered into settings
- PR has been merged. Thanks!
-
09:47 AM pfSense Packages Bug #10775 (Feedback): pfblockerNG SBL_ADs and hpHosts are not reachable anymore
- PR has been merged. Thanks!
-
09:44 AM pfSense Packages Feature #10796 (Feedback): Huawei ME909u-521 support
- PR has been merged. Thanks!
-
09:28 AM pfSense Packages Feature #10785 (Feedback): Allow Setting of ldapcachetime
- PR has been merged. Thanks!
-
09:26 AM pfSense Packages Feature #10779 (Feedback): HAProxy SSL/TLS Compatibility Mode
- PR has been merged. Thanks!
-
09:25 AM Feature #10748: Add support for limiting IPsec VPN access per user group via RADIUS
- Awesome, thank you very much!
-
09:23 AM Bug #10842 (Pull Request Review): Not destroying VTI interfaces when booting before creating a new one
-
08:54 AM Bug #10842: Not destroying VTI interfaces when booting before creating a new one
- Martin VENÇON wrote:
> Are we not checking if the interface exists in the condition ? Removing the platform_booting ... -
07:44 AM Bug #10842: Not destroying VTI interfaces when booting before creating a new one
- Are we not checking if the interface exists in the condition ? Removing the platform_booting part from the condition ...
-
07:36 AM Bug #10842: Not destroying VTI interfaces when booting before creating a new one
- That code was added specifically to fix another problem that could happen when destroying an interface that doesn't e...
-
07:04 AM Bug #10842 (Resolved): Not destroying VTI interfaces when booting before creating a new one
- During the booting process, we call interface_ipsec_vti_configure() from interfaces.inc multiple times :
* From inte... -
09:14 AM Bug #10684 (Feedback): RFC 2136 incomplete options
- PR has been merged. Thanks!
-
09:06 AM Bug #10684 (Pull Request Review): RFC 2136 incomplete options
-
03:06 AM Bug #10684: RFC 2136 incomplete options
- https://github.com/pfsense/pfsense/pull/4426
-
09:14 AM Bug #10840 (Feedback): status.php: Sanitize Net-SNMP community
- PR has been merged. Thanks!
-
08:46 AM Bug #10840 (Pull Request Review): status.php: Sanitize Net-SNMP community
-
12:50 AM Bug #10840: status.php: Sanitize Net-SNMP community
- https://github.com/pfsense/pfsense/pull/4425
-
12:46 AM Bug #10840 (Resolved): status.php: Sanitize Net-SNMP community
- Net-SNMP '<community>' must be sanitized:...
-
08:04 AM Revision 07bbe19b: RFC2136 zone option. Implements #10684
-
06:01 AM pfSense Packages Feature #10841: Allow per Source/VLAN/Network individual black&whitelists
- can be realized with "views": https://forum.netgate.com/topic/129365/bypassing-dnsbl-for-specific-ips
-
05:32 AM pfSense Packages Feature #10841 (New): Allow per Source/VLAN/Network individual black&whitelists
- In corporate environments one needs to set individual black & whitelists per source (IP,network,vlan).
E.g:
Fin... -
05:58 AM Revision 50867e7d: Sanitize MaxMind GeoIP key. Implements #10797
-
05:47 AM Revision 405f04f7: Sanitize Net-SNMP community. Fixes #10840
08/18/2020
-
11:21 PM Revision d777d554: Merge pull request #4418 from vktg/frrsnmp245
-
11:19 PM Revision 9425c8b6: Merge pull request #4424 from vktg/disablevlantso
-
11:19 PM Revision 9798170c: Merge pull request #4423 from TheoSarrazin/master
-
11:18 PM Revision 05f08201: Merge pull request #4422 from rokkitlawnchair/master
-
11:18 PM Revision a23fce36: Merge pull request #4420 from vktg/domeneshopddns
-
11:16 PM Revision 19c8506c: Merge pull request #4378 from vktg/openvpncopyfix
-
11:15 PM Revision b21349bb: Merge pull request #4419 from vktg/vipinpvalidation
-
11:13 PM Revision e0c4bf66: Merge pull request #4417 from vktg/choparpkillfix
-
11:12 PM Revision 73ea85c6: Merge pull request #4416 from vktg/hostsfullipv6addr
-
11:11 PM Revision 7c21facb: Merge pull request #4415 from vktg/eclgptslice
-
11:10 PM Revision 2f23e737: Merge pull request #4413 from vktg/unboundstatusoutput
-
11:09 PM Revision 1b5f2590: Merge pull request #4411 from MariusRejdak/master
-
11:08 PM Revision 0adf8503: Merge pull request #4406 from somevar/master
-
11:07 PM Revision ed984b3a: Merge pull request #4410 from vktg/cpnamevalidation
-
11:05 PM Revision da1b4d6f: Merge pull request #4408 from vktg/qlaltq
-
11:04 PM Revision eadf7acb: Merge pull request #4407 from vktg/sanitizehaproxy
-
11:03 PM Revision 20c078aa: Merge pull request #4360 from vktg/gifbootbridgefix
-
11:02 PM Revision dc3ef005: Merge pull request #4396 from vktg/ipsecradiusgroup
-
10:59 PM Revision 05187d0e: Merge pull request #4403 from vktg/dummynetsysctlfix
-
10:57 PM Revision 2c44f228: Merge pull request #4404 from vktg/unboundrestartfix
-
07:26 PM Feature #10446: VIP address is not shown in firewall rules
- Would be nice for controlling access to local services like HAProxy.
-
06:21 PM pfSense Packages Bug #10815 (Feedback): FRR with SNMP AgentX option failed to start
- PR has been merged. Thanks!
-
06:20 PM Bug #10836 (Feedback): TSO option does not fully toggle TSO on the interface
- PR has been merged. Thanks!
-
06:19 PM Bug #10835 (Feedback): Verification on the interface group name length is not correct
- PR has been merged. Thanks!
-
06:18 PM Feature #10637 (Feedback): Turn of spell checking on package upgrade progress textarea
- PR has been merged. Thanks!
-
06:18 PM Feature #10826 (Feedback): Support for Domeneshop DDNS
- PR has been merged. Thanks!
-
06:16 PM Bug #10703 (Feedback): OpenVPN copy doesn't save auth_pass
- PR has been merged. Thanks!
-
06:15 PM Bug #7132 (Feedback): PPPoE IP Alias
- PR has been merged. Thanks!
-
06:14 PM Bug #7379 (Feedback): Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- PR has been merged. Thanks!
-
06:12 PM Bug #8156 (Feedback): Prefix not being included in DNS entry registered by DHCP6 server
- PR has been merged. Thanks!
-
06:11 PM Bug #9097 (Feedback): ECL can't locate config.xml unless device is MBR-partitioned
- PR has been merged. Thanks!
-
06:10 PM Feature #10635 (Feedback): status.php: Add DNS Resolver configuration
- PR has been merged. Thanks!
-
06:09 PM Bug #10803 (Feedback): Invalid rules generated from AVPair on OpenVPN
- PR has been merged. Thanks!
-
06:08 PM Bug #10795 (Feedback): WebGUI "Dashboard -> Services Status" widget issue
- PR has been merged. Thanks!
-
06:07 PM Bug #10798 (Feedback): Unable to save CP zone named 'VIP'
- PR has been merged. Thanks!
-
06:05 PM Bug #10594 (Feedback): add QLogic 10 Gigabit Ethernet driver (qlxgb) to the ALTQ-capable list
- PR has been merged. Thanks!
-
06:04 PM Bug #10794 (Feedback): HAProxy Stats page credentials are not redacted in status.php
- PR has been merged. Thanks!
-
06:04 PM Bug #10524 (Feedback): Bridge that includes a GIF interface does not come up at boot
- PR has been merged. Thanks!
-
06:02 PM Feature #10748 (Feedback): Add support for limiting IPsec VPN access per user group via RADIUS
- PR has been merged. Thanks!
-
05:59 PM Bug #10780 (Feedback): net.inet.ip.dummynet.* values are ignored
- PR has been merged. Thanks!
-
05:57 PM Bug #10781 (Feedback): Incorrect env variables if admin user logged in via ssh
- PR has been merged. Thanks!
-
05:49 PM pfSense Docs Correction #10834 (Closed): Feedback on Virtualization — Virtualizing pfSense with VMware vSphere / ESXi
- Thanks! This was fixed in https://github.com/pfsense/docs/commit/1a6b054411412f611a09d86fe29bf3d0d74545fd
-
10:07 AM Feature #10839 (New): Add popular messengers to the Traffic Shaper Wizard
- Zoom:
https://support.zoom.us/hc/en-us/articles/201362683-Network-firewall-or-proxy-server-settings-for-Zoom
QoS ma... -
07:55 AM Bug #10838 (Pull Request Review): mask options didn't apply to the sched limiter
-
05:13 AM Bug #10838: mask options didn't apply to the sched limiter
- https://github.com/pfsense/pfsense/pull/4400
-
05:13 AM Bug #10838 (Resolved): mask options didn't apply to the sched limiter
- Using the GUI, the mask options didn't apply to the sched limiter.
from ipfw man:
The SCHED_MASK is used to ass... -
07:43 AM Feature #10837 (Pull Request Review): Update wizardapp.inc XBox and Wii ports
-
05:07 AM Feature #10837: Update wizardapp.inc XBox and Wii ports
- https://github.com/pfsense/pfsense/pull/4414
-
05:05 AM Feature #10837 (Resolved): Update wizardapp.inc XBox and Wii ports
- These are the ports needed for any XBox live platform.
https://support.microsoft.com/en-us/help/4026770/xbox-open-th... -
06:20 AM pfSense Packages Bug #10436: softflowd no longer sends flow data after upgrade (v0.9.9_1 -> v1.0.0)
- Mark Hassman wrote:
> Hi, after upgrading pfsense from v2.4.4_3 -> v2.4.5 (which included an upgrade of softflowd fr... -
04:16 AM Feature #10658 (Resolved): Allow to generate ECDSA certs on User Manager page
-
04:16 AM Feature #10658: Allow to generate ECDSA certs on User Manager page
- Tested again on the:
2.5.0-DEVELOPMENT (amd64)
built on Tue Aug 18 01:03:19 EDT 2020
It looks fine.
Probab... -
03:16 AM Feature #10658: Allow to generate ECDSA certs on User Manager page
- There is some issue with the patch. After adding the patch I wasn't able to access to system_usermanager.php. Please ...
-
02:54 AM Feature #10698 (Resolved): Allow to select EoIP protocol
- Tested on CE 2.4.5-p1 version. After adding the patch, I was able to select IPoE under protocol drop-down menu (Firew...
-
02:36 AM Feature #10727 (Resolved): Limiter bw type in Mbit/s
- Tested the patch on CE 2.4.5-p1. After adding the patch, Mbit/s is set as a default Bw type for limiters.
08/17/2020
-
02:23 PM Revision cd80be80: Toggle VLAN_HWTSO when TSO is toggled in the GUI. Fixes #10836
-
01:06 PM Bug #10836 (Pull Request Review): TSO option does not fully toggle TSO on the interface
-
09:25 AM Bug #10836: TSO option does not fully toggle TSO on the interface
- https://github.com/pfsense/pfsense/pull/4424
-
01:06 PM pfSense Packages Bug #10832 (Pull Request Review): Bind DNSSEC validation "deselected" not disabling DNSSEC validation
-
09:10 AM pfSense Packages Bug #10832: Bind DNSSEC validation "deselected" not disabling DNSSEC validation
- https://github.com/pfsense/FreeBSD-ports/pull/919
-
11:05 AM Feature #7092: Kernel modules for alternate congestion control algorithms
- there is no any '/boot/kernel/cc_*' or 'sysctl net.inet.tcp.cc.available' (except newreno) on 2.4.5-p1 and 2.5.0.a.20...
-
05:35 AM Bug #10827 (Feedback): Cannot add or delete separators when no rules are present
- I couldn't reproduce the issue on the CE image.
Here is what I found irregular:
1)If I first create a separator ... -
04:36 AM Bug #10752 (Resolved): 1:1 NAT issue if Internal IP has VIPs
- Reproduced the issue. After adding the patch, filter reloaded without issues.
08/15/2020
-
06:15 PM Bug #10836 (Resolved): TSO option does not fully toggle TSO on the interface
- I am not 100% this is a bug, it may be intended behaviour. But regardless I will attach my patch.
The VLAN_HWTSO ...
08/14/2020
-
05:07 PM Revision 2983214c: Change maxlenght of interface group name. Fixes #10835
-
12:10 PM Bug #10835 (Pull Request Review): Verification on the interface group name length is not correct
-
12:09 PM Bug #10835: Verification on the interface group name length is not correct
- Change maxlenght of interface group name:
https://github.com/pfsense/pfsense/pull/4423 -
12:04 PM Bug #10835 (Resolved): Verification on the interface group name length is not correct
- ifconfig take group name with less than 15 characters, but in the file interfaces_groups_edit.php, we can find the fo...
-
05:36 AM pfSense Docs Correction #10834 (Closed): Feedback on Virtualization — Virtualizing pfSense with VMware vSphere / ESXi
- *Page:* https://docs.netgate.com/pfsense/en/latest/virtualization/virtualizing-pfsense-with-vmware-vsphere-esxi.html
...
08/13/2020
-
11:53 PM Bug #10833 (New): unbound exits on configuration error when link status flaps on LAN interface
- I have pfSense installed at home on a small, old, core2duo-based machine. It does pretty typical home-router duty; t...
-
09:13 AM Bug #10830 (Not a Bug): "pkg upgrade" gives back "Shared object "libarchive.so.7" not found, required by "pkg""
- You must have set your updates to come from 2.5.0 snapshots. With a mismatched version of base and pkg, use pkg-static.
-
03:12 AM Bug #10830 (Not a Bug): "pkg upgrade" gives back "Shared object "libarchive.so.7" not found, required by "pkg""
- after trying an upgrade from commandline "pkg" was upgraded from version 1.13.2 to 1.14.6. Now calling "pkg" tells me...
-
09:09 AM pfSense Packages Feature #10831: Integration of nntp-proxy into pfsense
- One could maybe make a case for the proxy, but just barely.
Caching is definitely not happening. -
03:28 AM pfSense Packages Feature #10831 (New): Integration of nntp-proxy into pfsense
- Would it be possible to integrate some nntp-proxy into pfSense? Would be nice to have it work with nntp servers this ...
-
09:02 AM Bug #10829 (Duplicate): Trying to upgrade packages hangs at "Please wait while the update system initializes"
- Most likely the same as #10610 (though the bug mentions FRR specifically, it affects multiple packages)
-
03:07 AM Bug #10829 (Duplicate): Trying to upgrade packages hangs at "Please wait while the update system initializes"
- From the latest stable version trying to upgrade any package leads to "Please wait while the update system initialize...
-
08:58 AM Feature #10637 (Pull Request Review): Turn of spell checking on package upgrade progress textarea
-
06:54 AM Feature #10637: Turn of spell checking on package upgrade progress textarea
- Fix: https://github.com/pfsense/pfsense/pull/4422
-
04:14 AM Bug #5258 (Resolved): Using pppoe WAN with ipv6 SLAAC, reply-to rules use the wrong interface address
- fixed in #9324
-
03:37 AM pfSense Packages Bug #10832 (Resolved): Bind DNSSEC validation "deselected" not disabling DNSSEC validation
- Bind global settings page, "Forwarder Configuration" - DNSSEC Validation setting.
Bug: The DNSSEC Validation tick-... - 02:59 AM Revision 750dc0bd: Implements #10637
08/12/2020
- 07:45 PM Revision f1c8242d: Accommodate encryption_password when updating ACB config
-
12:03 PM Feature #9536: Support dynamic prefix in DHCPv6 Server
- This seems to be at least related to issue 6626 -> https://redmine.pfsense.org/issues/6626
-
12:01 PM Feature #6240: vxlan driver
- WebGUI:
https://github.com/pfsense/pfsense/pull/4421 -
11:45 AM Bug #10828 (Rejected): Sync of rule comments has bugs
- Fixed in #1478
-
11:15 AM Bug #10828 (Rejected): Sync of rule comments has bugs
- A rule comment containing characters as [ / is not properly synced to standby.
If the comment on the primary is e.... -
10:12 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Thanks, updated
-
08:58 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Viktor Gurov wrote:
> Fix:
> https://github.com/pfsense/FreeBSD-ports/pull/917
Does not fix the issue - I have n... -
08:35 AM pfSense Packages Bug #10823 (Pull Request Review): named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
-
03:37 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Viktor Gurov wrote:
> Fix:
> https://github.com/pfsense/FreeBSD-ports/pull/918
Tested, manually updating bind.in... -
02:58 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/918 -
02:21 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Sure ! "/cf/named/etc/namedb/rndc.conf" - is created:...
-
12:30 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Dave Tickem wrote:
> Agreed. Error on my part. Bug is wrong/bad/incorrect. Clean build :
>
> [...]
>
> Have be... -
05:07 AM Bug #10820: Extremely low speeds to vm's when using paravirtualized (xn*) interfaces on XenServer/XCP-ng
- For future reference if someone comes across this issue, what was happening was that devices on my internal network w...
08/11/2020
- 07:42 PM Revision 55cbdcb0: Improved ACB config update by requiring only a single visit to the system
-
05:27 PM Bug #10827 (Resolved): Cannot add or delete separators when no rules are present
- If separators exist without any rules, they will reappear after being deleted and saved. The same behavior can be see...
- 04:12 PM Revision 6c85268f: Correct CRON functionality and move to pfsense-utils.inc
- 03:26 PM Revision e582c517: Rorganize ACB/Cron functions - phase 1
-
11:59 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Agreed. Error on my part. Bug is wrong/bad/incorrect. Clean build :...
-
02:31 AM pfSense Packages Bug #10823 (Feedback): named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- unable to reproduce, it uses 127.0.0.1 for server connections by default
from https://www.freebsd.org/cgi/man.cgi?... -
09:52 AM pfSense Docs Correction #10825 (Resolved): Feedback on Introduction — Common Deployments
- Merged
-
01:28 AM pfSense Docs Correction #10825: Feedback on Introduction — Common Deployments
- https://gitlab.netgate.com/docs/pfSense-book/-/merge_requests/7
-
09:51 AM pfSense Packages Bug #10824 (Pull Request Review): BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
-
03:52 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Viktor Gurov wrote:
> Fix:
> https://github.com/pfsense/FreeBSD-ports/pull/917... -
02:50 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/917 -
09:34 AM pfSense Packages Bug #10737 (Resolved): FRR attempts to cycle IPsec VTI interfaces even when disabled/not running
- I couldn't replicate the isuse with the latest FRR 0.6.7_4 Version installed. It works as expected.
-
09:21 AM Feature #10826 (Pull Request Review): Support for Domeneshop DDNS
-
04:17 AM Feature #10826: Support for Domeneshop DDNS
- https://github.com/pfsense/pfsense/pull/4420
-
03:24 AM Feature #10826 (Resolved): Support for Domeneshop DDNS
- Domeneshop is the largest registrar for .no (Norway) domains with over 40% of all .no domains. Source (in Norwegian):...
-
09:14 AM Revision 4d6cc223: Domeneshop DynDNS support. Implements #10826
-
07:25 AM Bug #9107 (Closed): New AutoConfigBackup - Cannot Access Settings When Not Connected to Internet
- no such issue on 2.4.5-p1 and 2.5.0.a.20200811.0050
08/10/2020
-
02:56 PM pfSense Docs Correction #10825 (Resolved): Feedback on Introduction — Common Deployments
- *Page:* https://docs.netgate.com/pfsense/en/latest/book/intro/common-deployments.html#perimeter-firewall
*Feedback... -
08:54 AM pfSense Packages Feature #10665 (Pull Request Review): Manual OSPF neighbor definitions
-
02:40 AM pfSense Packages Bug #10426: Filer must validate that File name is uniq
- Hi, any update on the issue?
-
02:39 AM pfSense Packages Feature #10600: Add support for pfBlockerNG "Action list" feature
- Hi, any update on the issue? Thanks.
08/09/2020
-
02:06 PM Feature #1205: VPN: User-based / Group-based firewall rules
- see also #8836
-
03:16 AM Feature #1205: VPN: User-based / Group-based firewall rules
- I think it must be something like https://conexti.com.br/userauth/
I personally need such features for provide netwo... -
11:42 AM pfSense Packages Bug #10824: BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Sorry, very poor bug. Affected version is PFSENSE 2.4.5p1 and BIND 9.14_7.
-
10:54 AM pfSense Packages Bug #10824 (Resolved): BIND shutdown - dynamic zones, unclean shutdown causes startup to not load zones
- Bind is killed quite TERMinally in the /usr/local/etc/rc.d/named.sh script - with a SIGTERM. This causes the server t...
-
11:42 AM pfSense Packages Bug #10823: named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Sorry, very poor bug. Category is BIND. Affected version is PFSENSE 2.4.5p1 and BIND 9.14_7.
-
10:50 AM pfSense Packages Bug #10823 (Resolved): named.conf "controls" section missing IPv6 localhost on IPv6 enabled PFsense - breaking rndc
- Generator for {/cf/named}/etc/namedb/named.conf needs updating to include ::1 as well as 127.0.0.1 on PFSense instanc...
-
09:20 AM pfSense Packages Bug #10791: Valid (vlan)interfaces do not get vif reporting "Invalid phyint address"
- I am testing an early PIMD-3-beta at the moment. I do that in cooperation with the PIMD-maintainer.
Version3 does... -
08:05 AM pfSense Docs Correction #9310: Appliances with internal switch need the MAC Address section of their Getting Started guides updated
- This only applies to the SG-1100 and SG-7100 since they are the only devices with a switch port as the WAN by default.
08/08/2020
-
10:15 AM Revision 024a5ff8: OpenVPN copy auth_pass. Fixes #10703
-
10:04 AM Bug #10822 (New): Deprecated IPv6 prefix won't be announced as deprecated to clients
- After a periodic reset, or unplug/plugin of the WAN connection, the old IPv6 prefix won't be announced as deprecated ...
-
09:28 AM pfSense Packages Feature #10665: Manual OSPF neighbor definitions
- https://github.com/pfsense/FreeBSD-ports/pull/916
08/07/2020
-
04:18 PM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- Ticket is marked for Feedback. Feedback is being provided.
-
10:16 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- If you want to discuss it, take it to the forum. As I said, there are many people using it with success. It doesn't a...
-
10:05 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- Jim Pingle wrote:
> Except that it does work, and thousands of people are using is successfully
Are they? Or are th... -
07:54 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- Except that it does work, and thousands of people are using is successfully, and pulling it would cause much more har...
-
07:38 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- Did this. Within 48 hours I have six overlapping phase 2s and am in the #11000's in IPsec IDs.
I'm pretty sure it's ... -
02:59 PM pfSense Docs Correction #10821 (New): Use neutral language alternatives
- More info: https://www.zdnet.com/article/linux-team-approves-new-terminology-bans-terms-like-blacklist-and-slave/
... -
02:04 PM Bug #10814: OpenVPN UDP multihome fails when connecting to an IP that is not logically closest.
- The FreeBSD patch has been merged into head (on FreeBSD), will be MFCd soon so it's probably safe to put a 2.5.0 targ...
-
10:02 AM Bug #7132 (Pull Request Review): PPPoE IP Alias
-
03:48 AM Bug #7132: PPPoE IP Alias
- Extra input validation:
https://github.com/pfsense/pfsense/pull/4419 -
08:37 AM Revision d96e6808: Virtual IPs interface type/mode check. Issue #7132
-
05:09 AM Feature #4632: Support for Multipath TCP (MPTCP)
- Telekom has started offering MTCP in Germany, and given the abysmal situation with broadband in the country we would ...
08/06/2020
-
03:45 PM Bug #10820: Extremely low speeds to vm's when using paravirtualized (xn*) interfaces on XenServer/XCP-ng
- Hi,
A new update. the networks were configured for vlans configured at hetzner while using hetzner vswitch.
Creat... -
02:35 PM Bug #10820: Extremely low speeds to vm's when using paravirtualized (xn*) interfaces on XenServer/XCP-ng
- Hi Jim thank you for your quick reply.
Regarding my configuration/environment, its a new setup with XCP-ng 8.1 at ... -
01:52 PM Bug #10820 (Needs Patch): Extremely low speeds to vm's when using paravirtualized (xn*) interfaces on XenServer/XCP-ng
- If the patches get accepted into FreeBSD, they will make their way into pfSense down the road. Though I find it diffi...
-
01:35 PM Bug #10820 (Needs Patch): Extremely low speeds to vm's when using paravirtualized (xn*) interfaces on XenServer/XCP-ng
- Hi,
I am experiencing an issue where I have extremely low speeds while accessing vm's behind a pfsense on a virtua... -
02:58 PM Bug #10819: Gateway group configuration for multi-wan ignored after upgrade to 2.5.0-DEVELOPMENT image
- Jim Pingle wrote:
> The bug you linked is already fixed in 2.4.5-p1 and it was unlikely to be related to anything ex... -
10:53 AM Bug #10819 (Rejected): Gateway group configuration for multi-wan ignored after upgrade to 2.5.0-DEVELOPMENT image
- The bug you linked is already fixed in 2.4.5-p1 and it was unlikely to be related to anything except accessing the GU...
-
10:27 AM Bug #10819 (Rejected): Gateway group configuration for multi-wan ignored after upgrade to 2.5.0-DEVELOPMENT image
- Hello! I recently upgraded to 2.5.0-DEV to overcome this issue: https://redmine.pfsense.org/issues/8987, which was to...
-
10:13 AM pfSense Packages Feature #10818 (Resolved): UDP Broadcast Relay
- Current packages like Avahi and PIMD can help users cast across VLANs, which is great for HOME/GUEST to IOT type scen...
-
05:45 AM Feature #6240: vxlan driver
- The PR is trivial but incomplete. It just adds the kernel module.
Unless someone work on the GUI part, this featu...
08/05/2020
-
08:58 PM Bug #10610: Package upgrade or reinstall hangs indefintely on the console
- Stefan Beckers wrote:
> Same issue here. I can reproduce this reliably (any of upgrade, reinstall or fresh install) ... -
07:23 PM pfSense Packages Bug #10817 (Duplicate): FRR upgrade/install process hangs
- Duplicate of #10610
-
06:28 PM pfSense Packages Bug #10817 (Duplicate): FRR upgrade/install process hangs
- Installing or upgrading to FRR 0.6.7_4 results in a process hang, see attached photos
CLI hang is shown after the ... -
02:42 PM pfSense Packages Feature #10816 (Feedback): Allow FRR BGP Neighbors to be active in both IPv4 and IPv6
- Added in https://github.com/pfsense/FreeBSD-ports/commit/cae5ee237cfabc90ea5ef4dfd480acfc9055e26f
-
02:36 PM pfSense Packages Feature #10816 (Resolved): Allow FRR BGP Neighbors to be active in both IPv4 and IPv6
- BGP can carry routes for both IPv4 and IPv6 to a single neighbor of either type. Currently the code only activates th...
-
09:09 AM Bug #7379 (Pull Request Review): Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
Also available in: Atom