Project

General

Profile

Activity

From 10/09/2020 to 11/07/2020

11/07/2020

09:18 PM Feature #10280: DHCP Leases widget
Jim Pingle wrote:
> The author needs to submit that as a pull request. And that repository has not been updated in s...
Sergei Shablovsky
09:04 PM Feature #11041 (Resolved): Add hardware interface name to popup hint in Interfaces Dashboard widget
Hi dear pfsense devteam!
Please add appropriate BSD network port name (i.e. *igb3*, *bce1*, etc) to popup hint 90:...
Sergei Shablovsky
07:39 PM Bug #10919: Improve handling of OpenVPN data cipher negotiation options
The issue does also occur if ncp negotiation is enabled. I could not get any ciphers into the openvpn config file wi... S Premeau
07:31 PM Bug #10919: Improve handling of OpenVPN data cipher negotiation options
This change set does not appear to be writing cipher or data-ciphers to the openvpn configuration file.
Here's my ...
S Premeau
05:08 PM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
Confirmation that issue is still present in 2.4.5p1.
Log messages:
dhcp6c 4633 Sending Solicit
dhcp6c 38399...
Kris Phillips
02:38 PM pfSense Packages Feature #10950: Allow to select only netmap-compatible cards for inline mode
I was able to add and start an interface using snort with a USB ethernet adapter (ue0) on SG-5100
2.5.0-DEVELOPMEN...
Jordan G
01:44 PM pfSense Packages Bug #11040: pfb_filter core faults when clearing firewall log
Jim Pingle wrote:
> That instance of the program is from pfBlockerNG, not the base system.
>
> Nothing to fix in ...
John Jacobs
12:47 PM pfSense Packages Bug #11040: pfb_filter core faults when clearing firewall log
That instance of the program is from pfBlockerNG, not the base system.
Nothing to fix in the base system since the...
Jim Pingle
12:40 PM pfSense Packages Bug #11040: pfb_filter core faults when clearing firewall log
Adding: clog_pfb drops the core, pfb_filter stops. John Jacobs
12:37 PM pfSense Packages Bug #11040 (New): pfb_filter core faults when clearing firewall log
The clog_pfb drops a core when the firewall log is cleared. I can replicate this on demand. Clearing the log from Sta... John Jacobs
06:51 AM Bug #11035: PPPoE: can't remove hook
Set child interfaces MTU fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/41
Viktor Gurov
02:39 AM Bug #11035: PPPoE: can't remove hook
partially fixed in #9154 - on 2.5 I can get this error only when MTU is changed Viktor Gurov
04:42 AM pfSense Packages Feature #11012: Add Zabbix 5.2 (agent and proxy) packages
https://www.zabbix.com/life_cycle_and_release_policy
The sad part about the proxy is that they are not backwards com...
Pim Janssen
04:29 AM pfSense Packages Bug #8264: Radiusd restart on WAN change results in freeradius not running (and possible solution)
see also #11013 Viktor Gurov
12:15 AM pfSense Packages Bug #11039: route-map not working if Address Family is enabled.
no such issue on 2.5 branch (frr 0.6.8_8),
fixed in #10789
Viktor Gurov

11/06/2020

08:54 PM Revision 189edaf3: OpenVPN data cipher negotiation updates. Fixes #10919
* Rename "NCP Algorithms" to "Data Encryption Algorithms" to reflect the change in OpenVPN (frontend and backend, e.g... Jim Pingle
08:42 PM pfSense Packages Feature #11012: Add Zabbix 5.2 (agent and proxy) packages
Zabbix 5 (agent and proxy) have been added to packages.
Note: package manager list many Zabbix version , is there ...
Alhusein Zawi
07:14 AM pfSense Packages Feature #11012 (Feedback): Add Zabbix 5.2 (agent and proxy) packages
Thanks Danilo! Packages added to 2.5.0 and 2.4.5 Renato Botelho
06:29 PM pfSense Packages Bug #11039 (Resolved): route-map not working if Address Family is enabled.
enabling Address Family (Allow neighbor to advertise and receive routes for both IPv4 and IPv6) under BGP Neighbors w... Alhusein Zawi
03:25 PM Revision 56e031a7: OpenVPN compression options update. Issue #11020
* Add new "Allow Compression" option for OpenVPN 2.5.0. Defaults to asymmetric
(Decompress incoming packets, do not...
Jim Pingle
03:05 PM Bug #10919: Improve handling of OpenVPN data cipher negotiation options
Applied in changeset commit:189edaf33bb2b21761d9ace0b3fd0119955f8726. Jim Pingle
02:58 PM Bug #10919 (Feedback): Improve handling of OpenVPN data cipher negotiation options
I pushed a commit which implements everything above except for the warning message. It'll be set to feedback by the c... Jim Pingle
11:56 AM Bug #10919: Improve handling of OpenVPN data cipher negotiation options
Sounds like a good plan! Arne Schwabe
10:11 AM Bug #10919 (In Progress): Improve handling of OpenVPN data cipher negotiation options
Just a note to myself before I start on this:
The OpenVPN 2.5.0 changes doc and some info on the links above do st...
Jim Pingle
01:29 PM Todo #11020 (Feedback): Update OpenVPN to 2.5.0
The remaining items which need updated are all related to Data Ciphers (Formerly known as NCP) which have a separate ... Jim Pingle
09:28 AM Todo #11020: Update OpenVPN to 2.5.0
I pushed a commit to update the compression options to match changes in OpenVPN 2.5.0:
* Add new "Allow Compressio...
Jim Pingle
01:26 PM pfSense Packages Bug #11036: HAproxy ACL
I was able to reproduce this on pfSense 2.5 with haproxy-devel 0.61_1. Marcos M
01:00 PM Revision 482ffce8: Enable zabbix 5.2 packages
(cherry picked from commit 779cb929fb962c119150c7f8b57dca2b1d3fce74) Renato Botelho
01:00 PM Revision 779cb929: Enable zabbix 5.2 packages
Renato Botelho
12:58 PM Revision 5773fa70: Add Zabbix 5.2 config options
(cherry picked from commit 0fb3a92f80a9c3dfc5c54b27400819dea9f3434a) Danilo Baio
12:57 PM Revision 47a0afad: Merge pull request #4485 from dbaio/zabbix52
Renato Botelho
11:25 AM Bug #7547: Static routes using aliases are not automatically updated when alias content changes
See also: #9743, #11038 Jim Pingle
11:25 AM Bug #9743 (Duplicate): Missing dependency check(s) on aliases in static routes
There was already an issue for this: #7547 Jim Pingle
11:21 AM Bug #9743: Missing dependency check(s) on aliases in static routes
Jens Groh wrote:
> forgot the "pre" tags around the example so just ignore the strike-through ;) Can't edit the orig...
Kris Phillips
11:21 AM Bug #11038 (Duplicate): Editing Alias Used in Static Route Doesn't Update Routing Table
Duplicate of #7547 Jim Pingle
11:18 AM Bug #11038 (Duplicate): Editing Alias Used in Static Route Doesn't Update Routing Table
If you add an IP or subnet to an alias that is used in a static route, you have to edit and re-save the static route ... Kris Phillips
10:40 AM Bug #10407 (Pull Request Review): L2TP static route not re-added after connection down/up
Jim Pingle
05:12 AM Bug #10407: L2TP static route not re-added after connection down/up
Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/39
Viktor Gurov
10:39 AM Bug #11037 (Pull Request Review): Change APIs for HE.net Tunnelbroker dynamic DNS update
Jim Pingle
10:06 AM Bug #9592 (Pull Request Review): VTI interface down because interface number created is greater than ipsec32768
Viktor Gurov
08:33 AM Bug #9592 (New): VTI interface down because interface number created is greater than ipsec32768
First IPsec IKEv2 creates bogus vtimap entry:... Viktor Gurov
05:08 AM pfSense Packages Feature #10612 (Resolved): Add pfSense package for Zeek (formerly Bro) Network Security Monitor
Thanks! I'll mark this one as resolved. Bugs found on new package should have their own tickets. Renato Botelho
12:31 AM Bug #11035: PPPoE: can't remove hook
see also https://forum.netgate.com/topic/135920/pfsense-2-4-4-fails-all-pppoe-s-after-disabling-one
and #9148
Viktor Gurov

11/05/2020

10:36 PM Revision 0fb3a92f: Add Zabbix 5.2 config options
Danilo Baio
10:15 PM Bug #10660 (Resolved): PHP errors in the traffic shaper wizard
Tested patch in 2.4.5p1 and in 2.5.0-DEVELOPMENT built on Thu Nov 05 19:03:52 EST 2020
Seems to be working as expe...
Max Leighton
09:13 PM Revision 4af6affa: Remove OpenVPN tun server IPv4 tunnel network requirement. Issue #11020
No longer required on OpenVPN 2.5.0 Jim Pingle
08:20 PM Revision f8690774: Style fixes
Renato Botelho
07:51 PM Revision a8627e2c: Remove redundant isset() check
Renato Botelho
07:51 PM Revision 2d3cd379: Do not unset() variables that were never defined
Renato Botelho
07:48 PM Revision 75a42ff7: Simplify logic
Renato Botelho
07:47 PM Revision a94ab4b8: Style fixes
Renato Botelho
07:36 PM Revision f03f4cc3: mwexec() 2nd parameter default value is false. Remove it from caller
Renato Botelho
07:34 PM Revision cc0618e2: Change client endpoint update API for he.net tunnelbroker dynamic dns
Michael Smith
05:25 PM pfSense Packages Feature #11012: Add Zabbix 5.2 (agent and proxy) packages
https://github.com/pfsense/pfsense/pull/4485
https://github.com/pfsense/FreeBSD-ports/pull/985
Danilo Baio
04:47 PM pfSense Packages Feature #10612: Add pfSense package for Zeek (formerly Bro) Network Security Monitor
the package has been added to pfSense Available Packages.
Installed smoothly.
Alhusein Zawi
08:20 AM pfSense Packages Feature #10612: Add pfSense package for Zeek (formerly Bro) Network Security Monitor
Applied in changeset pfsense:commit:13d19df75f52d18f67172b3cd6a4bdfd982d9d24. Renato Botelho
08:19 AM pfSense Packages Feature #10612 (Feedback): Add pfSense package for Zeek (formerly Bro) Network Security Monitor
Done! Renato Botelho
03:16 PM Todo #11020: Update OpenVPN to 2.5.0
I pushed a commit which removes the IPv4 tunnel network requirement from the GUI and backend code. I was able to make... Jim Pingle
02:39 PM Revision 29131ce9: Track Interface / PD improvements. Issue #5999
Viktor Gurov
02:37 PM Revision bf9d8809: HA Sync input validation message fix. Issue #11017
Viktor Gurov
02:37 PM Revision c150479c: Different interface name for L2TP VPN. Fixes #11006
Viktor Gurov
02:35 PM Revision 7ccff001: CBQ borrow option input validation. Issue #7915
Viktor Gurov
02:32 PM Bug #11035: PPPoE: can't remove hook
Is this the problem?
> kernel vlan2: changing name to 'igb4.7'
Grischa Zengel
02:31 PM Bug #11035: PPPoE: can't remove hook
I replayed this bug again:... Grischa Zengel
12:01 PM Bug #11035 (Resolved): PPPoE: can't remove hook
I have seen this with 2 Pfsense.
After changing a single RAW interface (change from none to staticIP on igb4/opt11 o...
Grischa Zengel
02:16 PM Revision 13d19df7: Fix #10612: Add pfSense-pkg-zeek
Renato Botelho
02:03 PM Bug #11017 (Resolved): Incorrect synchronizetoip value causing XMLRPC errors
Tested the patch on 2.4.5-p1. It works fine. Danilo Zrenjanin
08:38 AM Bug #11017: Incorrect synchronizetoip value causing XMLRPC errors
PR has been merged. Thanks! Renato Botelho
12:06 AM Bug #11017: Incorrect synchronizetoip value causing XMLRPC errors
error message fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/36
Viktor Gurov
01:57 PM Revision 94cd71a4: Merge pull request #4483 from emes/he-net-tunnelbroker-ipfix
Renato Botelho
01:54 PM Bug #11037: Change APIs for HE.net Tunnelbroker dynamic DNS update
PR: https://github.com/pfsense/pfsense/pull/4484 Michael Smith
01:53 PM Bug #11037 (Resolved): Change APIs for HE.net Tunnelbroker dynamic DNS update
Currently using a deprecated client update API for HE.net Tunnelbroker dynamic DNS (https://ipv4.tunnelbroker.net/ipv... Michael Smith
01:32 PM pfSense Packages Bug #11036 (New): HAproxy ACL
If you try to edit an existing Access Control list on already defined TCP type Frontend, an unsupported Expression li... Danilo Zrenjanin
01:14 PM Bug #11024 (Resolved): Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
Renato Botelho
12:46 PM Bug #11024: Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
Tested and works as expected. Michael Smith
07:57 AM Bug #11024 (Feedback): Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
PR has been merged. Thanks! Renato Botelho
10:48 AM Bug #9072: RRD graph mouseover information shows up as Mb when unit size is set to MB
I can't reproduce, did you toggle the *Unit Size* from *Bits* to *Bytes* and back again (hitting *Save* each time) on... Jared Dillard
08:45 AM Bug #11006: L2TP Server and Client both use "l2tpX" for interface names
Applied in changeset commit:c150479cc4476b07460a7b3578fba5cac7c6b30b. Viktor Gurov
08:37 AM Bug #11006 (Feedback): L2TP Server and Client both use "l2tpX" for interface names
PR has been merged. Thanks! Renato Botelho
03:46 AM Bug #11006: L2TP Server and Client both use "l2tpX" for interface names
Jim Pingle wrote:
> I see what you mean and have adjusted the subject to match. Both the L2TP Server and L2TP interf...
Viktor Gurov
08:39 AM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
PR has been merged. Thanks! Renato Botelho
08:36 AM Bug #7915 (Feedback): CBQ Child queue set bandwidth does not apply correctly
PR has been merged. Thanks! Renato Botelho
08:27 AM Bug #7915: CBQ Child queue set bandwidth does not apply correctly
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/38 Viktor Gurov
07:43 AM Bug #10998 (Resolved): traffic shaper php error
Renato Botelho
12:51 AM Bug #10998: traffic shaper php error
It's ok now thanks. Niccolò Marchi
06:01 AM Bug #11034 (Resolved): poesX interfaces is not created
PPPoE Server creates "ngX" interfaces instead of "poesX"
"POESX" tab on services_dhcpv6.php page does not work as ex...
Viktor Gurov

11/04/2020

03:35 PM pfSense Packages Todo #11033 (Feedback): Update OpenVPN Client Export with OpenVPN 2.5.0 installer
Committed to devel (pfSense 2.5.0) for further testing
https://github.com/pfsense/FreeBSD-ports/commit/b7a70d0c6ff...
Jim Pingle
03:16 PM pfSense Packages Todo #11033 (Closed): Update OpenVPN Client Export with OpenVPN 2.5.0 installer
OpenVPN 2.5.0 is out and needs added to the client export package.
* OpenVPN 2.5.0 has separate 64-bit and 32-bit ...
Jim Pingle
03:35 PM Todo #11020 (In Progress): Update OpenVPN to 2.5.0
Jim Pingle
03:33 PM Todo #11020 (Feedback): Update OpenVPN to 2.5.0
Jim Pingle
03:27 PM Revision bf4c4d12: Traffic shaper wizard fix. Issue #10998
Viktor Gurov
03:06 PM Revision 1c3a5b0b: HA sync synchronizetoip input validation. Issue #11017
Viktor Gurov
02:34 PM Revision a62b14a7: Set correct cat command path. Fixes #11032
Viktor Gurov
11:37 AM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
fixes/improvements:
- Show Track6IP correctly if there is no VIPs on the interface;
- Show PD on the `services_dhc...
Viktor Gurov
11:09 AM pfSense Packages Bug #11031 (Resolved): FRR: PHP error in frr_bgp.inc
Tested in pkg 0.6.8_8
Looks good. Starts at boot correctly. No errors generated.
Steve Wheeler
05:18 AM pfSense Packages Bug #11031 (Feedback): FRR: PHP error in frr_bgp.inc
PR has been merged. Thanks! Renato Botelho
03:32 AM pfSense Packages Bug #11031: FRR: PHP error in frr_bgp.inc
Fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/5
Viktor Gurov
10:58 AM Revision da637044: IPv6 Port Forward 6RD/6to4 interface support. Feature #10984
Viktor Gurov
10:28 AM Bug #11032 (Resolved): Setting Log compression to None disables all entries in log view
Tested the patch. It fixes the issue. Ticket resolved. Danilo Zrenjanin
08:40 AM Bug #11032: Setting Log compression to None disables all entries in log view
Applied in changeset commit:a62b14a7c729331383e94f086fb3d569726d1830. Viktor Gurov
08:34 AM Bug #11032 (Feedback): Setting Log compression to None disables all entries in log view
PR has been merged. Thanks! Renato Botelho
08:17 AM Bug #11032 (New): Setting Log compression to None disables all entries in log view
Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/33
Viktor Gurov
05:42 AM Bug #11032 (Rejected): Setting Log compression to None disables all entries in log view
Viktor Gurov
09:27 AM Bug #10998 (Feedback): traffic shaper php error
Renato Botelho
09:09 AM Bug #10998 (Pull Request Review): traffic shaper php error
Jim Pingle
01:09 AM Bug #10998: traffic shaper php error
Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/31
Viktor Gurov
09:20 AM pfSense Packages Bug #11030 (Pull Request Review): OpenVPN Client Export shows server certs as clients
Jim Pingle
09:16 AM pfSense Packages Bug #11030: OpenVPN Client Export shows server certs as clients
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/6 Viktor Gurov
09:07 AM Bug #11017 (Feedback): Incorrect synchronizetoip value causing XMLRPC errors
PR has been merged. Thanks! Renato Botelho
08:37 AM Bug #11017: Incorrect synchronizetoip value causing XMLRPC errors
`synchronizetoip` input validation to avoid XMLRPC errors:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_reques...
Viktor Gurov
07:09 AM Bug #10960 (In Progress): Bring up VXLANs correctly at boot
I'll work on this one Renato Botelho
05:22 AM Feature #10984 (Feedback): Port Forward IPv6
PR has been merged. Thanks! Renato Botelho
05:00 AM Feature #10984 (New): Port Forward IPv6
6RD/6to4 interfaces support:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/32
Viktor Gurov
12:43 AM Bug #9054: Gateway Group slow (or never) to switch back to Tier 1
Jörn Greszki wrote:
> Now tested with 2.5.0.a.20201101.1850
>
> I still get for unknown reasons sometimes partial...
Viktor Gurov

11/03/2020

11:39 PM Bug #11025 (Duplicate): traffic shaper PHP error
Duplicate of #10998#note-5 Viktor Gurov
11:32 PM Todo #11020: Update OpenVPN to 2.5.0
+ Add ability to create IPv6-only OpenVPN networks
from https://github.com/OpenVPN/openvpn/blob/release/2.5/Change...
Viktor Gurov
07:11 PM Revision ce9d7ba1: Allow shell users to enable history. Implements #11029
Jim Pingle
06:02 PM Bug #11032 (Resolved): Setting Log compression to None disables all entries in log view
If Log compression is set to "None" all entries in all logs are hidden (not deleted).
To reproduce:
- Go to Statu...
T Toft
05:43 PM pfSense Packages Bug #11031 (Resolved): FRR: PHP error in frr_bgp.inc
I am seeing an error at boot triggered by FRR:... Steve Wheeler
04:18 PM pfSense Packages Bug #11030: OpenVPN Client Export shows server certs as clients
Once upon a time it used to work, they must have locked that down at some point.
Back in the day, all certs were "...
Jim Pingle
04:12 PM pfSense Packages Bug #11030: OpenVPN Client Export shows server certs as clients
Tested in openvpn-client-export 1.4.23_2
Installed in:...
Steve Wheeler
04:04 PM pfSense Packages Bug #11030 (Resolved): OpenVPN Client Export shows server certs as clients
If you have an SSL/TLS only remote access OpenVPN server coinfigured the Client Export tab will show exportable confi... Steve Wheeler
01:20 PM Feature #11029 (Feedback): Enable command history in the shell
Applied in changeset commit:ce9d7ba143c968e672abb4265cca19f93d851e7e. Jim Pingle
10:18 AM Feature #11029 (Resolved): Enable command history in the shell
Historically we disabled shell command history tracking primarily because embedded/NanoBSD had a read-only filesystem... Jim Pingle
01:04 PM Bug #10875: PPP periodic reset does not fully restore gateway group round-robin functionality
seems related to #10716 Viktor Gurov
12:08 PM Bug #11023: route_get('default', 'inet') always returns empty
Jim Pingle wrote:
> That is not relevant to this bug report, and is likely a problem in the script maintained by acm...
Christian Knop
12:02 PM Bug #11023: route_get('default', 'inet') always returns empty
Stop posting to this bug report. The one single issue for this report is resolved. If you have some other issue, it d... Jim Pingle
11:59 AM Bug #11023: route_get('default', 'inet') always returns empty
ow to fix cURL error 60: SSL certificate problem
Narendra Vaghela
Narendra Vaghela
Sep 1, 2016·1 min read
Somet...
Christian Knop
11:54 AM Bug #11023: route_get('default', 'inet') always returns empty
I tried the following https://chasingcode.dev/blog/fix-curl-error-60-ssl-certificate-problem/. The entry in the php.i... Christian Knop
11:29 AM Bug #11023: route_get('default', 'inet') always returns empty
That is not relevant to this bug report, and is likely a problem in the script maintained by acme.sh and not us. Jim Pingle
11:20 AM Bug #11023: route_get('default', 'inet') always returns empty
All 3 domains are with Namecheap. 3 different endings .net, .fit and .vip. It doesn't matter in which order the domai... Christian Knop
11:12 AM Bug #11023: route_get('default', 'inet') always returns empty
Many thanks for the support. The gateway ip is now correctly recognized.
I have now found the other bug. The 1st d...
Christian Knop
07:26 AM Bug #11023 (Resolved): route_get('default', 'inet') always returns empty
The specific error "No Source IP specified for Namecheap API" was due to a bug in the routing code as I mentioned. It... Jim Pingle
06:34 AM Bug #11023: route_get('default', 'inet') always returns empty
I just looked to see if the same error existed under ubuntu. Christian Knop
05:48 AM Bug #11023: route_get('default', 'inet') always returns empty
Christian Knop wrote:
> Under Ubuntu I entered my public ip by hand in the config and was able to solve the problem ...
Renato Botelho
10:52 AM Bug #10947 (Resolved): Virtual interface assignment can't be done in CLI interface assignment
Tested on:... Danilo Zrenjanin
10:22 AM pfSense Docs New Content #11010: Feedback on Hardware — Hardware Tuning and Troubleshooting
I will check on 2.5. Though reading this:
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=237166
If it has chan...
Marcos M
06:07 AM pfSense Docs New Content #11010: Feedback on Hardware — Hardware Tuning and Troubleshooting
not working for me, 2.5.0, maybe they are valid for 2.4.5 but I can't test on it.
if it's only for 2.4.5 it will bec...
Manuel Piovan
07:27 AM pfSense Docs Correction #11028 (Duplicate): Feedback on Hardware — Hardware Sizing Guidance
Duplicate of #9228
We'll be removing the list entirely and linking to the store/site data instead so it's always c...
Jim Pingle
07:12 AM pfSense Docs Correction #11028 (Duplicate): Feedback on Hardware — Hardware Sizing Guidance
*Page:* https://docs.netgate.com/pfsense/en/latest/hardware/size.html
*Feedback:*
Can the SG-2100 be added to t...
Chris Macmahon
05:46 AM pfSense Packages Bug #11013: FreeRADIUS does not start after a package reload or a router bootup/reboot
Michael Klein wrote:
> Hi Renato, I tested the fix on both SG-3100's and it works very well. I'm glad that this issu...
Renato Botelho
04:36 AM pfSense Packages Bug #11013 (Resolved): FreeRADIUS does not start after a package reload or a router bootup/reboot
Tested with 0.15.7_20 FreeRADIUS version on SG-3100.
The issue has been solved. Ticket resolved.
Danilo Zrenjanin

11/02/2020

09:02 PM Bug #8870 (Resolved): Webgui incorrectly reports "The system is on the latest version".
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Thu Oct 29 07:01:19 EDT 2020
FreeBSD 12.2-STABLE
Received "Unabl...
Max Leighton
05:25 PM pfSense Packages Bug #11013: FreeRADIUS does not start after a package reload or a router bootup/reboot
Hi Renato, I tested the fix on both SG-3100's and it works very well. I'm glad that this issue has finally been resol... Michael Klein
03:18 PM pfSense Packages Bug #11013: FreeRADIUS does not start after a package reload or a router bootup/reboot
Renato, thank you for all your help. I look forward to the new version and will provide feedback. I'm not sure why Ji... Michael Klein
06:24 AM pfSense Packages Bug #11013 (Feedback): FreeRADIUS does not start after a package reload or a router bootup/reboot
This should be fixed in 0.15.7_20 Renato Botelho
04:27 AM pfSense Packages Bug #11013 (New): FreeRADIUS does not start after a package reload or a router bootup/reboot
I'll take this one Renato Botelho
03:53 PM Revision b1558574: Ticket #10955: Fix "default" case
Make a string check to cover "default" gateway Renato Botelho
02:10 PM Bug #11023: route_get('default', 'inet') always returns empty
Under Ubuntu I entered my public ip by hand in the config and was able to solve the problem with it.
However, the...
Christian Knop
02:05 PM Bug #11023: route_get('default', 'inet') always returns empty
I am surprised that it is not ACME. I tested ACME on Ubuntu 20.04.1 and sometimes the same problem. I suspect a probl... Christian Knop
09:56 AM Bug #11023 (Feedback): route_get('default', 'inet') always returns empty
Actually this isn't a problem in ACME, it's a problem in a base system function which only exists on 2.5.0.
@route...
Jim Pingle
10:22 AM Bug #11024 (Pull Request Review): Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
Jim Pingle
07:33 AM Todo #11020 (In Progress): Update OpenVPN to 2.5.0
2.5.0 was cherry-picked to devel ports tree Renato Botelho
07:25 AM Todo #11020: Update OpenVPN to 2.5.0
We already plan on updating OpenVPN to 2.5.0, and it was added to FreeBSD ports over the weekend.
But those other ...
Jim Pingle
07:21 AM pfSense Packages Feature #11026: Feedback on Packages — FreeRADIUS package
That is not a documentation problem, or a bug. It's a feature you want that does not yet exist. Jim Pingle
04:09 AM pfSense Packages Feature #11026 (New): Feedback on Packages — FreeRADIUS package
*Page:* https://docs.netgate.com/pfsense/en/latest/packages/freeradius.html
*Feedback:*
This file is not preser...
pf Driver
07:15 AM Bug #11027 (Duplicate): traffic shaper php error
Duplicate of #11025 Jim Pingle
07:11 AM Bug #11027 (Duplicate): traffic shaper php error

amd64
12.2-STABLE
FreeBSD 12.2-STABLE 2841d41b090(devel-12) pfSense
Crash report details:
PHP Errors:
[0...
Niccolò Marchi
07:09 AM Bug #9058: Kernel panic during L2TP retransmit
Mark, it crashed again after Luiz pushed 2c7ab6a3c3f on devel-12 branch Renato Botelho
07:03 AM Bug #10812: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Fixed by commit 2841d41b090 on branch devel-12 of FreeBSD-src repository Renato Botelho
06:32 AM Bug #10812 (Feedback): Traffic graph shows 2X the actual traffic on VLAN interfaces.
Fix committed.
The fix is a bit different with the new code.
Luiz Souza
06:58 AM pfSense Packages Bug #10936 (Feedback): both haproxy/haproxy-devel non-existent option lb-agent-chk
PR has been merged. Thanks! Renato Botelho
06:58 AM pfSense Packages Bug #10885 (Feedback): HAProxy DNS statistics not working
PR has been merged. Thanks! Renato Botelho
06:29 AM Bug #6528 (Resolved): The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
Renato Botelho
04:51 AM Bug #10998 (New): traffic shaper php error
Renato Botelho
04:30 AM Bug #10965 (Resolved): rtsold not starting dhcp6c when managed bit is set
Renato Botelho
04:29 AM pfSense Packages Bug #11014 (Resolved): sudo update failure
Renato Botelho
04:10 AM Bug #9054: Gateway Group slow (or never) to switch back to Tier 1
Now tested with 2.5.0.a.20201101.1850
I still get for unknown reasons sometimes partial or full loss for alive-pin...
Jörn Greszki
04:08 AM Bug #10546: Gateways removed from routing groups based on low alert thresholds
Now tested with 2.5.0.a.20201101.1850
I still get for unknown reasons sometimes partial or full loss for alive-pin...
Jörn Greszki
04:00 AM Bug #9450: Multiwan gateway group fail-over not working as expected (possible race condition)
I get for unknown reasons sometimes partial or full loss, but this is not the issue.
Nov 2 10:37:56 dpinger 1623...
Jörn Greszki
01:11 AM Feature #2622: Allow DHCP without a range so that only static mappings may be used on an interface
+1 B D

11/01/2020

04:13 PM Bug #4510 (Resolved): Crash & reboot loop when configure PPPoE server on PPPoE client interface
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Sun Nov 01 13:02:32 EST 2020
FreeBSD 12.2-STABLE
Fix works as e...
Max Leighton
02:05 PM pfSense Packages Bug #10885: HAProxy DNS statistics not working
Should be fixed in haproxy 0.61.1
PR: https://github.com/pfsense/FreeBSD-ports/pull/984
Pi Ba
02:03 PM pfSense Packages Bug #10936: both haproxy/haproxy-devel non-existent option lb-agent-chk
In haproxy-devel package 0.61.1 this 'Agent' health-check method should no longer be visible (unless already configur... Pi Ba
09:08 AM Bug #11025 (Duplicate): traffic shaper PHP error
amd64
12.2-STABLE
FreeBSD 12.2-STABLE 2841d41b090(devel-12) pfSense
Crash report details:
PHP Errors:
[01-No...
Niccolò Marchi
05:48 AM Bug #10998: traffic shaper php error
amd64
12.2-STABLE
FreeBSD 12.2-STABLE 2841d41b090(devel-12) pfSense
Crash report details:
PHP Errors:
[01-No...
Niccolò Marchi

10/31/2020

10:59 PM Revision 048d4cdb: HE.net Tunnelbroker dynamic dns not supplying ip address parameter
Michael Smith
07:15 PM pfSense Packages Bug #11014: sudo update failure
sudo 0.3_5 is installed on 2.4.5-p1 Alhusein Zawi
11:21 AM pfSense Packages Bug #11014: sudo update failure
Issue fixed in 0.3_5, thank you. James Baker
06:57 PM Bug #10965: rtsold not starting dhcp6c when managed bit is set
Tested for several weeks and works as expected. Michael Smith
06:21 PM Bug #11023: route_get('default', 'inet') always returns empty
can the domain cause the problem? a .net works and a .fit and a .vip cause the error. Christian Knop
05:48 AM Bug #11023 (Resolved): route_get('default', 'inet') always returns empty
ip address is missing [NAMECHEAP_SOURCEIP]
test.com
Renewing certificate
account: testing
server: letsencry...
Christian Knop
06:07 PM Bug #11024: Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
PR https://github.com/pfsense/pfsense/pull/4483 Michael Smith
05:58 PM Bug #11024 (Resolved): Dynamic DNS update for HE.net Tunnelbroker always sets IP address of default WAN interface
The update uri does not include the dynamic DNS IP address, but relies on the tunnel client endpoint update API to de... Michael Smith
03:37 PM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
* Created captive portal server(interface is LAN)
* Created openvpn server.
* Assigned interface for openvpn.
wh...
Alhusein Zawi
11:41 AM pfSense Packages Bug #11013: FreeRADIUS does not start after a package reload or a router bootup/reboot
Sorry to hear you couldn't recreate this issue which affects both of our *Netgate SG-3100* appliances. The insertion ... Michael Klein
10:39 AM pfSense Packages Bug #11013 (Rejected): FreeRADIUS does not start after a package reload or a router bootup/reboot
Kris Phillips
10:39 AM pfSense Packages Bug #11013 (Feedback): FreeRADIUS does not start after a package reload or a router bootup/reboot
Michael Klein wrote:
> The FreeRADIUS package is the _only_ package that does not startup after the router reboots o...
Kris Phillips
11:24 AM pfSense Docs Correction #11019: Feedback on pfSense Configuration Recipes — Configuring a Single Multi-Purpose OpenVPN Instance
Indeed a rewrite would be good.
The remote IPv4 Remote field is missing from the Remote Access server mode which w...
Marcos M
11:19 AM pfSense Packages Bug #10983: pfBlockerNG not cleaning everything behind it
Given this seems to be VM and sounds similar to issues that can happen when interfaces disappear or otherwise change ... Marcos M
10:58 AM pfSense Packages Bug #8340 (Rejected): Status_Traffic_Totals Error
Unable to reproduce and reported that the issue was resolved by disabling and re-enabling graphing. Likely a file co... Kris Phillips
10:46 AM pfSense Packages Bug #6736 (Closed): Snort fails to start after upgrade to 2.3.2-RELEASE
Closing this very old bug report out, as this issue is from an unsupported version of pfSense and there is no issues ... Kris Phillips

10/30/2020

08:36 PM pfSense Packages Feature #11022: Add feeds from Firebog.net to pfBlockerNG
Pull Request to 2.4.5 branch: https://github.com/pfsense/FreeBSD-ports/pull/983
Pull Request to devel: https://git...
Matthew Hildebrand
07:44 PM pfSense Packages Feature #11022 (Resolved): Add feeds from Firebog.net to pfBlockerNG
Add additional dnsbl feeds listed at firebog.net to feeds.json. Only add green and blue without strikethrough (strike... Matthew Hildebrand
07:10 PM Revision acb79de0: Ticket #8136: Make sure dpinger is configured
Improve solution applied in 37194aa24e calling setup_gateways_monitor()
instead of running rc.newwanipv6
Renato Botelho
06:33 PM Revision 37194aa2: Ticket #8136: Reconfigure dpinger when IPv6 reconnects
When SLAAC interface is disconnected and reconnected, rc.newwanipv6 is
never executed because dhcp6c is the only trig...
Renato Botelho
06:17 PM Bug #11021 (Resolved): ral(4) driver kernel panics in arm64
Testing with an RT2700e card:... Steve Wheeler
06:11 PM Revision c909609c: Disable accept_rtadv flag when remove IPv6 from interface
Renato Botelho
06:02 PM Revision bf335b2b: Revert "Remove non captive-portal logs from Local4 syslog facility."
This reverts commit 6960993dc53c559619fe3f8d8ea903e7730b4fa6. Renato Botelho
05:21 PM Revision f1fcc3ce: Revert "Adjust some missing ident on syslog"
This reverts commit 12719a87e3ba77f5459938a4cfec7f007bbe0c4a. Renato Botelho
05:21 PM Revision ac40d093: Revert "Add rtsold logs to dhcpd.log"
This reverts commit c37ea049dcc8ea490278fe4414847012300c4e96. Renato Botelho
04:02 PM Todo #11020 (Resolved): Update OpenVPN to 2.5.0
Update OpenVPN to 2.5.0 and make necessary adjustments, including:
* Add ability to create network interfaces for VL...
Matthew Ray
03:45 PM pfSense Docs Correction #11019 (Rejected): Feedback on pfSense Configuration Recipes — Configuring a Single Multi-Purpose OpenVPN Instance
That whole thing needs rewritten for subnet topology, it has several outdated techniques. If routes need to be added ... Jim Pingle
03:38 PM pfSense Docs Correction #11019 (Rejected): Feedback on pfSense Configuration Recipes — Configuring a Single Multi-Purpose OpenVPN Instance
*Page:* https://docs.netgate.com/pfsense/en/latest/recipes/openvpn-multi-purpose.html
*Feedback:*
On the "OpenVPN...
Marcos M
03:20 PM Bug #11018 (Resolved): Hostname is ignored when DNS Lookup calculates response time
When performing a DNS Lookup from diag_dns.php, the page performs a response time test by using @drill@, but the vari... Jim Pingle
01:50 PM pfSense Packages Feature #11008: Add option to mail report pkg to skip sending email if no output
2.4.5 PR has also been merged. Thanks! Renato Botelho
01:34 PM pfSense Packages Feature #11008: Add option to mail report pkg to skip sending email if no output
Pull Request to 2.4.5. https://github.com/pfsense/FreeBSD-ports/pull/976 Matthew Hildebrand
01:45 PM Revision 664fcdcc: Remove line commented out in 2015
Renato Botelho
01:41 PM Revision af6be5f3: Remove dhcp6c without RA script when not used
Renato Botelho
01:36 PM Bug #8136 (Feedback): dpinger for WAN DHCPv6 gets fails to update gateway IP
This problem should not happen in this case if you check the option "Use IPv4 connectivity as parent interface". Cou... Renato Botelho
08:24 AM Bug #8136 (In Progress): dpinger for WAN DHCPv6 gets fails to update gateway IP
Renato Botelho
01:33 PM Bug #9349 (Confirmed): IPSec service start/stop/restart fails after settings change
I can still reproduce this on 2.5.0.
* Navigate to VPN > IPsec > Advanced
* Make a change, click Save
* Try to s...
Jim Pingle
01:21 PM Revision 13fde8fa: Fix #11005: Allow to request PD with no track ifs
Allow DHCP6 to solicit PD even when no interfaces are tracking Renato Botelho
01:21 PM Revision 81ed0cf5: Check correct value and fix regression introduced by 9eae3005e1200319a14d6ebafe92c52885bf1cfd
Renato Botelho
01:19 PM Feature #9768 (Duplicate): IPsec for site-to-site scenario where one side has dynamic ip
Jim Pingle
01:13 PM Revision dd2fd981: Revert "Fix monitor address on correct variable"
This reverts commit 9eae3005e1200319a14d6ebafe92c52885bf1cfd. Renato Botelho
12:57 PM Revision ab03cc9a: Revert "Revert "Request PD even if no interfaces are set to track6 (Bug #4544)""
This reverts commit 51d1aca9859f980ca53f606c9f3696e7b9901125. Renato Botelho
10:54 AM pfSense Docs New Content #10774 (Resolved): Feedback on Installing and Upgrading — Upgrade Troubleshooting
Jim Pingle
10:52 AM pfSense Docs New Content #10774 (New): Feedback on Installing and Upgrading — Upgrade Troubleshooting
Jim Pingle
09:53 AM Bug #11017: Incorrect synchronizetoip value causing XMLRPC errors
noticed now but can be the same reason as/a duplicate of
https://redmine.pfsense.org/issues/11014
Manuel Piovan
06:13 AM Bug #11017: Incorrect synchronizetoip value causing XMLRPC errors
https://forum.netgate.com/topic/157998/error-installing-stunnel-package
https://forum.netgate.com/topic/158001/upgra...
Manuel Piovan
06:12 AM Bug #11017 (Resolved): Incorrect synchronizetoip value causing XMLRPC errors
install or updating stunnel 5.50_5
was working on the previus version...
Manuel Piovan
09:33 AM Bug #10986 (Resolved): dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
Tested on:... Danilo Zrenjanin
09:22 AM Bug #8377 (Duplicate): Traffic graph widget mouse over always shows b/s even when the value is in B/s
Jim Pingle
08:30 AM Bug #11005: IPv6 Prefix Delegation not requested if no interfaces set to track6
Applied in changeset commit:13fde8fabb8e7ad6bc588b13504ad1068e4c45ba. Renato Botelho
08:24 AM Bug #11005: IPv6 Prefix Delegation not requested if no interfaces set to track6
Resolved now. Renato Botelho
08:23 AM Bug #4544 (Resolved): PD not requested if no interfaces set to track6
Patch was re-applied and this ticket remains the same Renato Botelho
08:17 AM Bug #10325 (New): System/Advanced/Notifications/E-Mail - SMTP Notification E-Mail auth password Unexpected Bahaviour
Jim Pingle
08:12 AM Bug #10325: System/Advanced/Notifications/E-Mail - SMTP Notification E-Mail auth password Unexpected Bahaviour
Tested on:... Danilo Zrenjanin
07:53 AM Feature #11016 (Rejected): Openvpn remove "status" file after service close
It's an unsupported directive. Code won't be added to pfSense to manage a file for it.
Use the management interfac...
Jim Pingle
07:02 AM Bug #10968 (Resolved): Mixed & Upper case Alias table names broken.
Tested on:... Danilo Zrenjanin
12:55 AM Bug #11015: Unable to use double quotes in openvpn custom options
Well, yes you are right. But it's confusing as openvpn's config file format has no semicolons, the example also has n... Todor K

10/29/2020

09:05 PM Bug #10240 (Resolved): Incorrect interface assignment after switching from PPPoE
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Thu Oct 29 13:03:15 EDT 2020
FreeBSD 12.2-STABLE
Works as expec...
Max Leighton
08:11 PM Bug #11015 (Rejected): Unable to use double quotes in openvpn custom options
Did you separate lines with semicolons as instructed?
This should probably be taken to the forum to determine if t...
Chris Linstruth
05:42 PM Bug #11015 (Rejected): Unable to use double quotes in openvpn custom options
If double quotes are used in openvpn custom options field, the service breaks and does not start.
Example:
Adding s...
Todor K
06:54 PM Feature #9260: ssh_tunnel_shell: Disable console message output
Steps:
* created a user.
* Assigned "User - System: SSH tunneling" as Privilege.
* Used putty to SSH.
* logged ...
Alhusein Zawi
06:07 PM Feature #11016 (Rejected): Openvpn remove "status" file after service close
I have "status" file option added to openvpn "custom options" like so:... Todor K
03:17 PM pfSense Packages Feature #11012: Add Zabbix 5.2 (agent and proxy) packages
Your correct, copy paste error Pim Janssen
09:12 AM pfSense Packages Feature #11012: Add Zabbix 5.2 (agent and proxy) packages
Waiting for Zabbix ports on FreeBSD... and this is not a LTS release, it's a Standard release. Danilo Baio
02:13 PM pfSense Packages Bug #11014 (Resolved): sudo update failure
Updating sudo package on 2.4.5-p1 from 0.3_3 to 0.3_4 fails with XML_RPC2_InvalidUriException.
Post-failure system...
James Baker
02:11 PM pfSense Packages Feature #11008: Add option to mail report pkg to skip sending email if no output
Matthew Hildebrand wrote:
> Will this be automagically cherry-picked to RELENG_2_4_5 branch (for mailreport package ...
Renato Botelho
01:54 PM pfSense Packages Feature #11008: Add option to mail report pkg to skip sending email if no output
Will this be automagically cherry-picked to RELENG_2_4_5 branch (for mailreport package version 3.5.x), or do I need ... Matthew Hildebrand
08:40 AM pfSense Packages Feature #11008 (Feedback): Add option to mail report pkg to skip sending email if no output
PR has been merged. Thanks! Renato Botelho
01:14 PM Bug #11005: IPv6 Prefix Delegation not requested if no interfaces set to track6
This still does not work. Looking at that patch looks like the exact behavior I am describing was added again, checki... Chris Linstruth
11:55 AM Bug #11002 (Resolved): OpenVPN Clients registration does not clear DNS entries
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Thu Oct 29 07:01:19 EDT 2020
FreeBSD 12.2-STABLE
Working as expe...
Max Leighton

10/28/2020

10:51 PM pfSense Packages Bug #11013 (Resolved): FreeRADIUS does not start after a package reload or a router bootup/reboot
The FreeRADIUS package is the _only_ package that does not startup after the router reboots or a package reload is do... Michael Klein
06:49 PM Revision 51d1aca9: Revert "Request PD even if no interfaces are set to track6 (Bug #4544)"
This reverts commit b0837cebf9836c4cdd5873b3e463f1afb8403811. Renato Botelho
05:35 PM Revision c37ea049: Add rtsold logs to dhcpd.log
Renato Botelho
05:20 PM Revision 9c16f166: Fix radvd-dns checkbox after save
Renato Botelho
04:37 PM pfSense Packages Feature #11012 (Resolved): Add Zabbix 5.2 (agent and proxy) packages
New release from zabbix. Please add this new version.
https://www.zabbix.com/rn/rn5.2.0
Pim Janssen
02:45 PM pfSense Packages Bug #11011: frr routing php unexpected character
https://github.com/pfsense/FreeBSD-ports/commit/f704edf8024c3ed86d8f642d4c3618930ebd6495 Jim Pingle
02:45 PM pfSense Packages Bug #11011 (Resolved): frr routing php unexpected character
I fixed this earlier today. Will show up along with new snapshots soon. Jim Pingle
02:32 PM pfSense Packages Bug #11011 (Resolved): frr routing php unexpected character
[28-Oct-2020 18:35:42 Etc/UTC] PHP Warning: Unexpected character in input: ' in /usr/local/pkg/frr/inc/frr_bgp.inc ... Cédric Junger
02:14 PM Bug #11005: IPv6 Prefix Delegation not requested if no interfaces set to track6
Thanks. I'll check the next build.
> It could be changed again but what's the point of requesting a PD if nothing ...
Chris Linstruth
01:50 PM Bug #11005 (Feedback): IPv6 Prefix Delegation not requested if no interfaces set to track6
It should be fixed after reverting #4544 Renato Botelho
01:57 PM pfSense Docs New Content #11010 (Resolved): Feedback on Hardware — Hardware Tuning and Troubleshooting
*Page:* https://docs.netgate.com/pfsense/en/latest/hardware/tune.html
*Feedback:*
Multi-queue allows network perf...
Marcos M
01:51 PM Bug #4544 (New): PD not requested if no interfaces set to track6
I've reverted this change in order to fix #11005. A new approach should be used for that case Renato Botelho

10/27/2020

05:50 PM Revision 2ef2ffee: Revert "Do not set IA-PD if there is no interface set to track it"
This reverts commit a31ccbef87003ce9967dda894391eab2364491da. Renato Botelho
03:47 PM Revision 12719a87: Adjust some missing ident on syslog
Renato Botelho
03:47 PM Revision a31ccbef: Do not set IA-PD if there is no interface set to track it
Renato Botelho
03:47 PM Revision 9eae3005: Fix monitor address on correct variable
Renato Botelho
03:22 PM Revision 74beebea: Fix diag_dns.php hostname usage
(cherry picked from commit 1efc9177b4a91c2bf76464437b8aaa13b3ef12e9) Jim Pingle
03:22 PM Revision 1efc9177: Fix diag_dns.php hostname usage
Jim Pingle
11:24 AM pfSense Packages Feature #10897 (Resolved): SNMPV3-trap/inform Add Snmpv3 trap/inform Field
Azamat Khakimyanov
11:24 AM pfSense Packages Feature #10897: SNMPV3-trap/inform Add Snmpv3 trap/inform Field
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 27 07:03:51 EDT 2020)
There are SNMPv3 traps and inf...
Azamat Khakimyanov
11:14 AM pfSense Packages Bug #11009 (Resolved): Module Hetzner-DNS does not save API Key
Jim Pingle
10:56 AM pfSense Packages Bug #11009: Module Hetzner-DNS does not save API Key
Jim Pingle wrote:
> Should be fixed in ACME 0.6.9_1 which will be available shortly.
Tested and works perfect. Th...
Marcus Groß
08:41 AM pfSense Packages Bug #11009 (Feedback): Module Hetzner-DNS does not save API Key
Should be fixed in ACME 0.6.9_1 which will be available shortly. Jim Pingle
07:16 AM pfSense Packages Bug #11009 (Resolved): Module Hetzner-DNS does not save API Key
When using Module "Hetzner-DNS" I'm not able to set the API key.
The edit field is empty after reopening configura...
Marcus Groß
09:35 AM pfSense Packages Feature #11008 (Pull Request Review): Add option to mail report pkg to skip sending email if no output
Jim Pingle
12:17 AM pfSense Packages Feature #11008: Add option to mail report pkg to skip sending email if no output
Pull request: https://github.com/pfsense/FreeBSD-ports/pull/971 Matthew Hildebrand
09:31 AM pfSense Packages Feature #10789 (Pull Request Review): FRR integrated configuration and hitless reloads
Jim Pingle
08:50 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
This is the response from Amazon. Since they weren't sure about 'Make before break' I will try the other settings the... Todd Blum

10/26/2020

11:34 PM pfSense Packages Feature #11008 (Resolved): Add option to mail report pkg to skip sending email if no output
Provide an option to skip sending the scheduled email if there is no command output or log content generated by the r... Matthew Hildebrand
07:46 PM Revision 2100cd0b: Revert "Prevent possible race condition, fixes #9450"
This reverts commit 5affb137561c74bb5559f0706c86c28a85b14557. Renato Botelho
07:44 PM Revision ab726b58: Revert "Fix #9450"
This reverts commit 0de6758e2893e4390acfa0b55e31b1dece231618. Renato Botelho
07:37 PM Revision 6701a859: Fix #8870
When it's not possible to check if a new version is available for any
reason, show a proper message instead of keep u...
Renato Botelho
05:03 PM Revision 120f3169: Style fixes
Renato Botelho
03:33 PM Bug #9296 (New): Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
Luiz, can you please take a look? Renato Botelho
02:44 PM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
Brendon Baumgartner wrote:
> Should the status on this be changed? It says resolved.
Definitely not resolved. It'...
Eduard Rozenberg
02:53 PM Bug #9450 (Feedback): Multiwan gateway group fail-over not working as expected (possible race condition)
I've reverted the cache changes and it should be fine now Renato Botelho
02:45 PM Bug #8870 (Feedback): Webgui incorrectly reports "The system is on the latest version".
Applied in changeset commit:6701a859a27e1d654ee9018cdc9925b980782227. Renato Botelho
01:45 PM Revision c3b39cc4: Clear OpenVPN clients DNS entries fix. Issue #11002
Viktor Gurov
01:26 PM pfSense Packages Feature #10403 (Resolved): Add Proxy support to ACME package
Jim Pingle
01:26 PM pfSense Packages Bug #10405 (Resolved): Additional instances of ACME Domain SAN list entries with passwords are rendered as checkboxes
Jim Pingle
01:26 PM pfSense Packages Feature #10753 (Closed): Acme DNS-01 for Hurricane Electric needs to be updated for new dynamic update methods
Closed upstream. If their assessment is incorrect, raise the issue there again with more details. If they fix it, we'... Jim Pingle
01:18 PM Bug #10812: Traffic graph shows 2X the actual traffic on VLAN interfaces.
It regressed before as we can see on #7751 and fix was committed to 2.4.4 branch on FreeBSD-src... Renato Botelho
12:29 PM Bug #10812: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Luiz enabled ALTQ on if_vlan.c few time before this ticket was opened. He is going to check if his commit re-introdu... Renato Botelho
12:44 PM Revision 25acab5e: Enable sysutils/memtester build
Renato Botelho
12:44 PM Revision bbae6ace: Enable sysutils/memtester build
Renato Botelho
10:02 AM Bug #10842 (Resolved): Not destroying VTI interfaces when booting before creating a new one
Renato Botelho
09:02 AM Bug #10842: Not destroying VTI interfaces when booting before creating a new one
Successfully tested !
Thanks !
Martin VENÇON
09:56 AM Bug #8136: dpinger for WAN DHCPv6 gets fails to update gateway IP
Hi Renato, please see my comment in ticket # 9324. Maybe these two issues are related? Kristopher Kolpin
09:54 AM Bug #9324: IPv6 on top of a PPPOE ipv4 interface assigns parent interface to default route, not pppoe interface
Is there a similar fix for DHCP6?
i.e. $dhcp6usev4iface parameter?
Maybe this is related to ticket #8136 ?
Kristopher Kolpin
09:52 AM pfSense Packages Feature #10909 (Feedback): #define MAXVIFS 32 to 64
pimd package 2.3.2_1 contains a patch changing MAXVIFS to 64 to match kernel. pfSense-pkg-pimd-0.0.3_1 will require ... Renato Botelho
08:46 AM Bug #11002 (Feedback): OpenVPN Clients registration does not clear DNS entries
PR has been merged. Thanks! Renato Botelho
07:41 AM pfSense Packages Feature #11007 (Rejected): Manager "users", "mac" and "NAS/clients" TAB in freeradius with data armazened in database SQL
The FreeRADIUS pfSense GUI is not going to manage your SQL database. Jim Pingle
07:40 AM Feature #11003 (Rejected): add missing options for dhcp server failover
Adding a control to DHCP in general or per-interface for this seems like it would be excessive and confusing. Not via... Jim Pingle
07:38 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Found a few more things to fixup: https://github.com/pfsense/FreeBSD-ports/pull/970 Ben Hughes
07:37 AM Bug #11006: L2TP Server and Client both use "l2tpX" for interface names
I see what you mean and have adjusted the subject to match. Both the L2TP Server and L2TP interfaces use "l2tpX" for ... Jim Pingle
07:24 AM Bug #11005: IPv6 Prefix Delegation not requested if no interfaces set to track6
It could be changed again but what's the point of requesting a PD if nothing can use it? The DHCPv6 client won't do a... Jim Pingle
07:22 AM Feature #11004: DHCP reservations with no IP address show entries in DHCP leases
It's actually expected because the static section is not parsed from the lease database, but pulled from the configur... Jim Pingle
07:17 AM pfSense Packages Bug #10749 (Feedback): squid + captive portal authentication not working
Viktor Gurov wrote:
> small improvement - Use IP as username for allowedip hosts:
> https://gitlab.netgate.com/pfSe...
Renato Botelho
07:14 AM Bug #10224: DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
Viktor Gurov wrote:
> Cosmetic js fix - hide DDNS key algorithm field if DDNS is not used:
> https://gitlab.netgate...
Renato Botelho
07:13 AM pfSense Packages Bug #4247 (Resolved): Changes not saved when expression list becomes empty
Renato Botelho
07:10 AM pfSense Packages Bug #10775 (Resolved): pfblockerNG SBL_ADs and hpHosts are not reachable anymore
Renato Botelho
07:07 AM Bug #9592 (Resolved): VTI interface down because interface number created is greater than ipsec32768
Renato Botelho

10/25/2020

06:01 PM pfSense Packages Bug #10983: pfBlockerNG not cleaning everything behind it
Hi guys,
I understand that you tried to reproduce the bug without success. FYI, I am pretty sure this guy had the ...
Jacques Bourdeau
04:23 PM pfSense Packages Bug #10983: pfBlockerNG not cleaning everything behind it
I agree with Viktor. I have tried to replicate this in the latest devel and stable versions of pfBlockerNG and cannot... Max Leighton
10:17 AM pfSense Packages Feature #11007 (Rejected): Manager "users", "mac" and "NAS/clients" TAB in freeradius with data armazened in database SQL
Although freeradius package has SQL support (configure by SQL TAB), the freeradius package dont manipule users, mac a... Teste Teste
08:24 AM Feature #11003: add missing options for dhcp server failover
remove the need for carp or make it an option to let different configuration able to run
there could be a scenario w...
Manuel Piovan
04:16 AM Bug #11006: L2TP Server and Client both use "l2tpX" for interface names
Every type (server or client) of connection has name l2tpX
on the same digital index, the connection name may coinci...
Evgeny Korostelev
12:52 AM Bug #11006 (Resolved): L2TP Server and Client both use "l2tpX" for interface names
Sorry for my english :(
When pfSense have role L2TP server and L2TP client and have some count of every type connect...
Evgeny Korostelev

10/24/2020

10:48 PM pfSense Packages Bug #4247: Changes not saved when expression list becomes empty
it could be saved even if all category are empty.
ver. 1.16.18_9
Alhusein Zawi
10:38 PM Bug #10375 (Resolved): Double zfs entry in loader.conf
No sign of duplicate ZFS entry on multiple versions of 2.5DEV (w/ ZFS install obv) Jordan G
05:50 PM Feature #10934 (Resolved): Add ral(4) to arm64
Device is recognised and driver attaches:... Steve Wheeler
04:58 PM Bug #10943: boot fail after upgrade to the latest snapshot 20201001.0050. if bios is set to efi
some other reports popped out on FreeBSD
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=244906
https://bugs.free...
Manuel Piovan
01:08 PM Bug #10926 (Resolved): Secondary RADIUS Server is never used
Tested on:... Danilo Zrenjanin
12:41 PM Revision fe640412: Hide DDNS key algorithm if DDNS is not used. Issue #10224
Viktor Gurov
10:16 AM Bug #11005 (Closed): IPv6 Prefix Delegation not requested if no interfaces set to track6
Like #4544.
It appears that the bits to request a PD from upstream are not placed into /var/etc/dhcp6c_wan.conf un...
Chris Linstruth
07:42 AM Bug #10224: DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
Cosmetic js fix - hide DDNS key algorithm field if DDNS is not used:
https://gitlab.netgate.com/pfSense/pfSense/-/me...
Viktor Gurov
07:22 AM Feature #11004 (New): DHCP reservations with no IP address show entries in DHCP leases
So if create a dhcp reservation, allowing IP to be pulled from pool vs specific IP not in pool.
You get 2 entries ...
JohnPoz _
06:21 AM pfSense Packages Feature #10969 (Resolved): Add Sekhan/TheGreatWall DoH feeds
Tested on:... Danilo Zrenjanin
05:53 AM pfSense Packages Bug #10775: pfblockerNG SBL_ADs and hpHosts are not reachable anymore
Tested on:... Danilo Zrenjanin
05:21 AM Feature #10988 (Resolved): Queue bw type in Mbit/s
Tested on:... Danilo Zrenjanin
04:55 AM pfSense Packages Bug #10905 (Resolved): Integration between captive portal and squid. Usernames are not showing in access.log file
fixed in #10749... Viktor Gurov
04:31 AM Feature #11003 (Rejected): add missing options for dhcp server failover
under dhcp server settings
add a way to change failover from secondary; to primary;
add mclt and split field when ...
Manuel Piovan
04:10 AM Bug #10998 (Resolved): traffic shaper php error
works as expected on 2.5.0.a.20201023.1850
now it's possible to create any number of nested queues without errors
Viktor Gurov
03:10 AM pfSense Packages Bug #10749 (New): squid + captive portal authentication not working
small improvement - Use IP as username for allowedip hosts:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge...
Viktor Gurov
12:35 AM pfSense Packages Bug #10749 (Resolved): squid + captive portal authentication not working
pfSense-pkg-squid 0.4.44_34
works as expected
https://github.com/pfsense/FreeBSD-ports/commit/7d4ffb8ea5f1798bb88...
Viktor Gurov
01:16 AM Bug #11002: OpenVPN Clients registration does not clear DNS entries
same DHCP issue: #8981
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/29
Viktor Gurov
01:08 AM Bug #11002 (Resolved): OpenVPN Clients registration does not clear DNS entries
After disabling 'Register connected OpenVPN clients in the DNS Resolver' option, /var/unbound/openvpn.client.ovpn.ipv... Viktor Gurov
01:02 AM Feature #10999 (Resolved): Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
Kris Phillips wrote:
> Tested this and it doesn't appear to work. We have a client who applied this patch to 2.4.5p1...
Viktor Gurov
12:19 AM Bug #9592: VTI interface down because interface number created is greater than ipsec32768
Chris Linstruth wrote:
> I created enough tunnels to get over what used to be 32768. Along the way I created two VTI...
Viktor Gurov

10/23/2020

07:18 PM pfSense Packages Feature #10859: Add avahi filtering feature to pfSense
+1 B D
05:05 PM Feature #10999: Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
Tested this and it doesn't appear to work. We have a client who applied this patch to 2.4.5p1 and enabled both the Co... Kris Phillips
08:20 AM Feature #10999: Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
Applied in changeset commit:3b88d9712b187602e946faeecc5f4902904b6d4c. Viktor Gurov
08:13 AM Feature #10999 (Feedback): Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
PR has been merged. Thanks! Renato Botelho
04:42 PM Bug #10812: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Jim Pingle wrote:
> Last time this came up it was due to VLAN traffic counting twice on the parent. In https://redmi...
Marcos M
04:26 PM Bug #9592: VTI interface down because interface number created is greater than ipsec32768
I created enough tunnels to get over what used to be 32768. Along the way I created two VTI tunnels. They were given ... Chris Linstruth
03:52 PM pfSense Packages Bug #10933: Retired / Invalid IPv4 lists in pfBlockerNG
Another retired one:
EasyList Adware Filter EasyList_Adware
https://easylist-downloads.adblockplus.org/adwarefilte...
Marcos M
02:29 PM Bug #9054: Gateway Group slow (or never) to switch back to Tier 1
Viktor Gurov wrote:
> no such issue on 2.5.0.a.20201022.1850, resolved in #10716
> failover and load-balance gw gro...
alex alex
12:26 PM Bug #9054 (Resolved): Gateway Group slow (or never) to switch back to Tier 1
no such issue on 2.5.0.a.20201022.1850, resolved in #10716
failover and load-balance gw groups tested
Viktor Gurov
09:01 AM Bug #9054: Gateway Group slow (or never) to switch back to Tier 1
I have the same issue here.
Once pfSense switches to the Tier 2 gateway, the only way to make it come back to the T...
Rodrigo Gonçalves
02:07 PM pfSense Packages Feature #9793 (Resolved): Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
Renato Botelho
02:07 PM pfSense Packages Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
Can be changed to Resolved. DRago_Angel [InV@DER]
02:02 PM pfSense Packages Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
Please, can somebody check this? This important and big update. DRago_Angel [InV@DER]
01:04 PM Revision 3b88d971: Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver. Implements #10999
Viktor Gurov
01:04 PM Revision a6e1c192: Save OMAPI settings in dhcpd.conf. Issue #10270
Viktor Gurov
11:30 AM Bug #10551 (Duplicate): gateway group not restoring the higher tier gateway
Renato Botelho
11:06 AM Bug #10551: gateway group not restoring the higher tier gateway
seems duplicate of #9054 Viktor Gurov
10:50 AM pfSense Packages Bug #10749 (Feedback): squid + captive portal authentication not working
PR merged. Thanks! Renato Botelho
10:36 AM pfSense Packages Bug #10749 (Pull Request Review): squid + captive portal authentication not working
Jim Pingle
10:29 AM pfSense Packages Bug #10749: squid + captive portal authentication not working
Fixes/improvements in this PR:
- Regexp for STDIN
- Checks all enabled CP DBs
- Checks if client's IP is in 'Allow...
Viktor Gurov
06:00 AM pfSense Packages Bug #10749: squid + captive portal authentication not working
It appears that squid is passing an extra "-" after the ip address to check_ip.php
e.g. 10.10.10.10 -
I am not prof...
Brendan Gallagher
09:18 AM Bug #10943: boot fail after upgrade to the latest snapshot 20201001.0050. if bios is set to efi
It's a Virtualbox issue and not a blocker for 2.5.0. People that need to run on VirtualBox should use BIOS instead o... Renato Botelho
09:09 AM Bug #9384 (Confirmed): devd putting "$" before variable contents when using single quotes
Pingle's workaround is enough for now. Move ticket to next release and wait a proper fix from upstream Renato Botelho
08:28 AM Bug #3945 (Resolved): BOOTP lease end status is mis-parsed
no such issue on 2.4.5 and 2.5 snapshots
seems regexp improved
Example:...
Viktor Gurov
08:13 AM Bug #10998 (Feedback): traffic shaper php error
PR has been merged. Thanks! Renato Botelho
08:13 AM Bug #10270 (Feedback): OMAPI / disableauthoritative / alwaysbroadcast not saved inside dhcpd.conf
PR has been merged. Thanks! Renato Botelho
07:12 AM Feature #10984 (Resolved): Port Forward IPv6
Work as expected according people at forum Renato Botelho
06:10 AM pfSense Packages Bug #11001 (Resolved): freeradius lose sql lib every pfsense update
every update of pfsense 2.5 the freeradius package stops working and i must uninstall and reinstall the package.
Th...
Teste Teste
03:41 AM Bug #8248 (Closed): Pfsense hangs - non pingable when removing traffic shaper from interface(s)
no such issue on 2.4.5-p1 and 2.5.0.a.20201022.1850
I can add/remove/enable/disable CODELQ on any interface in any o...
Viktor Gurov
03:16 AM pfSense Packages Bug #9895: snort reinstallation failed
same on 2.5.0.a.20201022.1850... Viktor Gurov
12:50 AM Bug #10690 (Resolved): Not possible to make UFS install on ZFS formatted drive
no such issue with pfSense-CE-2.5.0-DEVELOPMENT-amd64-20201006-1250.iso
I can successfully make UFS install on ZFS f...
Viktor Gurov

10/22/2020

05:51 PM pfSense Packages Bug #11000 (New): haproxy deprecated trick suggested
haproxy-devel
under backend
the description for "Http check version" say:...
Manuel Piovan
03:01 PM Revision a330a2da: Nested queues input validatin fix. Issue #10998
Viktor Gurov
10:40 AM Bug #10270: OMAPI / disableauthoritative / alwaysbroadcast not saved inside dhcpd.conf
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/28 Viktor Gurov
10:06 AM Bug #10998: traffic shaper php error
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/27 Viktor Gurov
09:58 AM Feature #10999: Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/26 Viktor Gurov
09:10 AM Feature #10999 (Resolved): Allow to register OpenVPN Remote Access (User Auth) client in DNS Resolver
Starting from 2.4.5 OpenVPN server supports "Username as Common Name" (#8289) option:... Viktor Gurov
08:42 AM Bug #10585 (Resolved): auth.inc: Exception calling XMLRPC method restore_config_section #-1 : Authentication failed: Invalid username or password
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Thu Oct 22 01:05:07 EDT 2020
FreeBSD 12.2-STABLE
I was able to r...
Max Leighton
07:18 AM Bug #10375 (Feedback): Double zfs entry in loader.conf
Fixed Renato Botelho
07:08 AM pfSense Packages Bug #10886 (Closed): NAT64 allows to bypass pfBlockerNG IPv4 feed list
All good, no needs to change pfBlockerNG
https://github.com/pfsense/pfsense/pull/4405#issuecomment-708721849:
<pr...
Viktor Gurov
07:00 AM Bug #10744 (Closed): Unable to kill IPv6 client connection
works fine with the latest chromium and firefox, seems like browser/plugin/cache issue,
unable to reproduce
Viktor Gurov
04:22 AM pfSense Packages Bug #10429: Status Traffic Total broken 2.4.5
Attached is a patch that can be applied with the system patches plugin that incorporates the fixes needed to fix the ... Chris R
03:13 AM Feature #10322 (Resolved): Force ipv4/ipv6 DNS resolution for NTP servers
works as expected on 2.5.0.a.20201021.1850
If I set force to IPv4:
ntp.ix.ru - 194.190.168.1
If I set force to I...
Viktor Gurov
12:51 AM Feature #8786: Wireguard VPN
Jim Pingle wrote:
> There certainly is reason. We're working on the in-kernel implementation and won't be wasting ou...
Erik Hennerfors
12:22 AM Bug #7912 (Resolved): LDAP Test Results modal doesn't comply with theming
Looks good on 2.5.0.a.20201021.1850 Viktor Gurov
12:03 AM pfSense Packages Bug #10447 (Resolved): Framed-IP-Address with plus sign is deprecated
Viktor Gurov

10/21/2020

11:20 PM pfSense Packages Bug #10447: Framed-IP-Address with plus sign is deprecated
when I enter + (192.0.2.32+) I receive an error The "Pv4 Address' field must contain a valid IPv4 address."
Alhusein Zawi
04:55 PM Revision 569ca219: Port Forward IPv6 alias fix. Issue #10984
Viktor Gurov
04:31 PM Revision 28b16209: Fix #10997: Retire m0n0wall config compatibility
Renato Botelho
04:24 PM Revision c959928e: Remove leftover RRD code for SpamD
Renato Botelho
01:27 PM pfSense Packages Bug #10932 (Resolved): wrong link on haproxy
Renato Botelho
01:17 PM pfSense Packages Bug #10932: wrong link on haproxy
when click on Status> HAProxy Stats. it works
link:
http://*/haproxy/haproxy_stats.php?haproxystats=1
Alhusein Zawi
11:54 AM pfSense Packages Bug #10932 (Feedback): wrong link on haproxy
Viktor Gurov
01:26 PM Bug #9136 (Assigned): IPv6 Tracking Interfaces Lose IPv6 Address in Certain Cases
This does not look to be fixed. Created several Track6 VLAN interfaces on vtnet0, a track6 interface on vtnet0, and a... Chris Linstruth
12:50 PM Bug #10998 (Resolved): traffic shaper php error
2.5.0-DEVELOPMENT (amd64)
built on Tue Oct 20 13:03:46 EDT 2020
FreeBSD 12.2-STABLE
Crash report begins. Anonymo...
Michael Kellogg
11:56 AM Feature #10984: Port Forward IPv6
Viktor Gurov wrote:
> Fixes IPv6 aliases issue, see https://forum.netgate.com/topic/157759/can-t-use-alias-anymore-o...
Renato Botelho
11:54 AM Feature #10984: Port Forward IPv6
Fixes IPv6 aliases issue, see https://forum.netgate.com/topic/157759/can-t-use-alias-anymore-on-nat-port-forward/5
...
Viktor Gurov
06:35 AM Feature #10984: Port Forward IPv6
PR has been merged. Thanks! Renato Botelho
04:53 AM Feature #10984: Port Forward IPv6
Alias using fix, see https://forum.netgate.com/topic/157759/can-t-use-alias-anymore-on-nat-port-forward
https://gi...
Viktor Gurov
11:40 AM Todo #10997 (Feedback): Retire m0n0wall config support
Applied in changeset commit:28b162099f8ce4c927d8f2f2eeaeb9ce1c219409. Renato Botelho
11:26 AM Todo #10997 (Resolved): Retire m0n0wall config support
Historically, m0n0wall users were able to upgrade to pfSense old versions and it was possible to import m0n0wall conf... Renato Botelho
10:47 AM Bug #10674 (Closed): Port Forward Address Fields not becoming active in Safari
Looks good in Safari 14.0 on 10.15.7.
Setting as target version 2.5.0 for release notes or cherry-picking if neces...
Chris Linstruth
09:46 AM Revision 7007341b: IPv6 Port Forward alias fix. Issue #10984
Viktor Gurov
07:49 AM pfSense Packages Bug #3704 (Closed): spamd whitelist/blacklist bug
spamd is gone for years Renato Botelho
07:38 AM Bug #2564 (Closed): Import from m0n0wall breaks pfSense if dashes are in an alias
m0n0wall is dead for a long time Renato Botelho
07:34 AM Feature #8698 (Pull Request Review): LDAP authenticated users should be able to log in via ssh
Jim Pingle
06:10 AM Feature #8698: LDAP authenticated users should be able to log in via ssh
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/24 Viktor Gurov
07:21 AM Feature #1368 (Closed): DHCP Leases - description column
Description column is already available Renato Botelho
07:18 AM Feature #982 (Closed): External Storage
nanobsd is dead and with current installer users can setup disks/partitions with any desired layout Renato Botelho
07:17 AM Bug #981 (Closed): SSH shell Putty Function Keys
We have ee native and vim-console package available for installation. Beyond that, all tty framework was rewritten o... Renato Botelho
07:11 AM Feature #697 (Closed): Updateprocedure in the GUI
Upgrade interface was completely rewritten when we moved to pkg Renato Botelho
07:04 AM Feature #3385 (Closed): Accommodate static routes for PPTP connections
PPTP is gone since 2.3 Renato Botelho
07:04 AM Bug #4624 (Closed): VPN PPTP via Virtual IPs
PPTP is gone since 2.3 Renato Botelho
07:02 AM Todo #208 (Closed): Need PPTP helper
PPTP is gone since 2.3 Renato Botelho
07:00 AM Todo #34 (Closed): PPTP users integration with user manager
PPTP is gone since 2.3 Renato Botelho
06:55 AM Bug #144 (Closed): Syslog messages violate RFC 3164
All pfsense logs on 2.5.0 contains hostname after timestamp Renato Botelho
06:51 AM Bug #1421 (Rejected): Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
PPTP was removed from pfSense since 2.3 Renato Botelho
06:47 AM Feature #1392 (Rejected): XMPP (Jabber) Notifications/Alerts
Things changes in the last 9 years and XMPP is not that relevant anymore. We have Telegram notifications Renato Botelho
06:34 AM Bug #10996 (Duplicate): unable to use alias anymore on nat port forward
It's caused by changes applied on Feature #10984. Lets keep discussion there. Renato Botelho
05:55 AM Bug #10996: unable to use alias anymore on nat port forward
Alias using fix, see https://forum.netgate.com/topic/157759/can-t-use-alias-anymore-on-nat-port-forward
https://gi...
Viktor Gurov
03:46 AM Feature #10987: Add support for secure boot
I think FreeBSD already supports this up to the bootloader so pfsense could implement this feature right now up to th... Anonymous

10/20/2020

09:23 PM Revision 6ddd28f7: CBQ queue prio check fix. Issue #1353
Viktor Gurov
08:25 PM Revision c1e1cf6c: LDAP test pop-up style fix. Issue #7912
Viktor Gurov
07:32 PM Revision 76b3ae4e: Merge pull request #4482 from cpick/cloudflare-token-query-zone
Renato Botelho
07:28 PM Revision 391ffd74: Return correct Track IPv6 address. Fixes #5999
Viktor Gurov
06:52 PM Revision 26efb813: Fix number format
Steve Beaver
06:51 PM Bug #10996 (Duplicate): unable to use alias anymore on nat port forward
https://forum.netgate.com/topic/157759/can-t-use-alias-anymore-on-nat-port-forward
if I try to use "single host or...
Manuel Piovan
04:36 PM Feature #795 (Closed): disable acpi on alix
Alix hardware mentioned here is really old and I don't believe we need to disable ACPI on any modern hardware Renato Botelho
04:35 PM Feature #130 (Closed): Add color picker to rules / nat rows
We have colored labels that can be used to organize rules since 2.3.x Renato Botelho
04:33 PM Bug #1505 (Closed): usb 3g 760 modem doesn't respond
I'm not sure if this modem is still relevant these days. If yes, please re-test on 2.5.0 snapshots to make sure prob... Renato Botelho
04:33 PM Feature #1504 (Closed): Verizon 3g usb760
I'm not sure if this modem is still relevant these days. If yes, please re-test on 2.5.0 snapshots to make sure prob... Renato Botelho
04:31 PM Bug #1569 (Duplicate): USB760 CD not recognized
Duplicate of #1504 Renato Botelho
04:29 PM Bug #1311 (Closed): Cosmetic problem
All pages look completely different these days Renato Botelho
04:26 PM Bug #66 (Closed): Nanobsd does not work on WRAP
nanobsd is dead for a long time Renato Botelho
04:23 PM Bug #1353 (Feedback): Number of queues possible
PR has bene merged. Thanks! Renato Botelho
03:49 PM Bug #7912 (Feedback): LDAP Test Results modal doesn't comply with theming
PR has been merged. Thanks! Renato Botelho
03:22 PM Bug #7912: LDAP Test Results modal doesn't comply with theming
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/22 Viktor Gurov
03:37 PM Revision e66582b4: Removed debuggery
Steve Beaver
03:20 PM Revision 72c21050: Added Ajax handler to scaled state table display
Steve Beaver
03:11 PM Feature #7016 (Resolved): system_information_widget.php - Indicate adaptive state timeout status when active
Looks good after a gitsync Jim Pingle
01:54 PM Feature #7016: system_information_widget.php - Indicate adaptive state timeout status when active
Number format corrected Anonymous
01:08 PM Feature #7016: system_information_widget.php - Indicate adaptive state timeout status when active
I'm still only seeing the label and color change if I reload the page with a high state count. If I change the state ... Jim Pingle
10:31 AM Feature #7016: system_information_widget.php - Indicate adaptive state timeout status when active
Functionality has been finalized by adding the required data and providing the needed Ajax logic. Anonymous
09:04 AM Feature #7016: system_information_widget.php - Indicate adaptive state timeout status when active
Seems to also be susceptible to a PHP error, the code can end up dividing by 0: #10993 Jim Pingle
07:05 AM Feature #7016: system_information_widget.php - Indicate adaptive state timeout status when active
Logic has been updated but only on initial page load. Once this has been tested and confirmed as satisfactory I will ... Anonymous
02:35 PM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
Applied in changeset commit:391ffd740ff73339a00ab4b988660e12bfa69cfe. Viktor Gurov
02:29 PM Bug #5999 (Feedback): IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
PR has been merged. Thanks! Renato Botelho
12:56 PM Bug #5999 (Pull Request Review): IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
Renato Botelho
12:49 PM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/21 Viktor Gurov
02:33 PM Feature #10992 (Feedback): Cloudflare DDNS query Zone ID with token
PR has been merged. Thanks! Renato Botelho
09:10 AM Feature #10992 (Pull Request Review): Cloudflare DDNS query Zone ID with token
Jim Pingle
12:53 PM Bug #10406 (Resolved): Interfaces.php PPPoE selection display inappropriate "Toggle All" button when periodic reset set to "pre-set"
Renato Botelho
12:21 PM Bug #10406: Interfaces.php PPPoE selection display inappropriate "Toggle All" button when periodic reset set to "pre-set"
Tested this in
2.5.0-DEVELOPMENT (amd64)
built on Tue Oct 20 07:02:36 EDT 2020
FreeBSD 12.2-STABLE
Currently...
Max Leighton
12:36 PM pfSense Packages Bug #9854 (Closed): pfBlockerNG Message: Allowed memory size of 536870912 bytes exhausted
I've come across this error before on older versions of pfBlockerNG. Updating to the -devel branch (as suggested by t... Marcos M
12:18 PM pfSense Docs Correction #10979 (Closed): Status Light on XG-7100
Moving to the internal Redmine for product docs. Jim Pingle
11:47 AM pfSense Packages Feature #10913 (Resolved): Allow disabling caching in Squid completly
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 20 07:03:54 EDT 2020)
There is an option to disable ...
Azamat Khakimyanov
11:40 AM Feature #10995 (New): Remove VMware MSI-X from the PCI blacklist.
it would be nice to see it ported to FreeBSD 12
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=203874
https://...
Manuel Piovan
11:09 AM pfSense Packages Bug #10994 (New): SquidGuard Blacklists Restore Default button does not work
If SquidGuard/Blacklists Blacklist Update field is empty then clicking Restore Default restores nothing and generates... Constantine Kormashev
10:56 AM Revision f8cc5da5: Allow to select virtual interfaces in CLI interface assignment. Fixes #10947
Viktor Gurov
10:55 AM Revision 9abbcb4b: Default queue bw scale in Mbit/s. Feature #10988
Viktor Gurov
10:54 AM Revision 8e3b81f2: 1:1 NAT fix dual-stack. Fixes #10986
Viktor Gurov
10:52 AM Revision 55d340b8: Do not create queue RRD if there are no queues. Fixes #6277
Viktor Gurov
10:50 AM Revision fce8a99b: Port Forward IPv6. Implements #10984
Viktor Gurov
10:49 AM Revision bdb26b26: Force NTP peers DNS resolution protocol. Implements #10322
Viktor Gurov
10:01 AM pfSense Packages Bug #10771 (Resolved): arpwatch: option to not send hourly email notification on cron run
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 20 01:00:50 EDT 2020)
There is an option to disable ...
Azamat Khakimyanov
09:03 AM Bug #10993 (Duplicate): PHP Error
This is due to changes for #7016 which is ongoing. Closing in favor of that one. Jim Pingle
05:32 AM Bug #10993 (Duplicate): PHP Error
[20-Oct-2020 12:27:09 Europe/Rome] PHP Warning: Division by zero in /usr/local/www/widgets/widgets/system_informatio... Niccolò Marchi
06:05 AM Bug #10947: Virtual interface assignment can't be done in CLI interface assignment
Applied in changeset commit:f8cc5da51d95f36eb323202633294c130102d211. Viktor Gurov
05:56 AM Bug #10947 (Feedback): Virtual interface assignment can't be done in CLI interface assignment
PR has been merged. Thanks! Renato Botelho
06:00 AM Bug #10986: dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
Applied in changeset commit:8e3b81f2efba0693ee5d4a11ffc0501832f747fa. Viktor Gurov
05:55 AM Bug #10986 (Feedback): dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
PR has been merged. Thanks! Renato Botelho
06:00 AM Bug #6277: RRD graphs are not created correctly for interfaces using CODELQ
Applied in changeset commit:55d340b8d9f045c7e409a4db021d37468c00db73. Viktor Gurov
05:53 AM Bug #6277 (Feedback): RRD graphs are not created correctly for interfaces using CODELQ
PR has been merged. Thanks! Renato Botelho
05:55 AM Feature #10988 (Feedback): Queue bw type in Mbit/s
PR has been merged. Thanks! Renato Botelho
05:55 AM Feature #10984: Port Forward IPv6
Applied in changeset commit:fce8a99bffae47c965c692dbe763ae9732092f95. Viktor Gurov
05:50 AM Feature #10984 (Feedback): Port Forward IPv6
PR has been merged. Thanks! Renato Botelho
05:55 AM Feature #10322: Force ipv4/ipv6 DNS resolution for NTP servers
Applied in changeset commit:bdb26b26cabb3770cbd306f48728cf459b6f9253. Viktor Gurov
05:50 AM Feature #10322 (Feedback): Force ipv4/ipv6 DNS resolution for NTP servers
PR has been merged. Thanks! Renato Botelho
05:47 AM pfSense Packages Bug #10749: squid + captive portal authentication not working
Hello,
I have the same problem on a fresh new installation with versions :
- pfSense 2.4.4-RELEASE-p1
- Squid 0.4....
Bruno Le Fellic
05:23 AM pfSense Packages Feature #10909: #define MAXVIFS 32 to 64
Louis van Breda wrote:
> Renato, I am running an early pimdv3 here. Not for release yet, however working properly .....
Renato Botelho

10/19/2020

08:09 PM Feature #10992: Cloudflare DDNS query Zone ID with token
Pull request here: https://github.com/pfsense/pfsense/pull/4482 Chris Pick
08:04 PM Feature #10992 (Resolved): Cloudflare DDNS query Zone ID with token
In May Cloudflare [improved their API](https://community.cloudflare.com/t/bug-zone-detail-by-name-requires-zone-list-... Chris Pick
07:14 PM Revision 42d5da9d: Revise scaling factor calculation
Steve Beaver
07:11 PM Revision 88d878f2: Support omitting Cloudflare Zone ID for dynamic DNS
In May, Cloudflare
[improved their API](https://community.cloudflare.com/t/bug-zone-detail-by-name-requires-zone-list...
Chris Pick
06:46 PM Bug #10991: Unbound as a DNS over TLS forwarder can be quite unresponsive seems to stop working
Isn't there a way in the settings to make this less likely to happen? Unbound devs didn't even comment on the bug yet. Anonymous
06:20 PM Bug #10991 (Needs Patch): Unbound as a DNS over TLS forwarder can be quite unresponsive seems to stop working
Nothing we can do about that, since it's a problem in Unbound itself. When it gets fixed in Unbound, the fix will mak... Jim Pingle
05:57 PM Bug #10991 (Needs Patch): Unbound as a DNS over TLS forwarder can be quite unresponsive seems to stop working
Unbound as a DNS over TLS forwarder can be quite unreliable and stop resolving anything with the right DNS servers.
...
Anonymous
03:20 PM Bug #10974: pfSense showing unspecified DHCP assignment range
That's why the forum is the best place to discuss and diagnose the issue. This isn't the place to bring up "unexpecte... Jim Pingle
03:07 PM Bug #10974: pfSense showing unspecified DHCP assignment range
Jim Pingle wrote:
> This site is not for support or diagnostic discussion.
>
> For assistance in solving problems...
Mark Whitworth
09:09 AM Bug #10974 (Rejected): pfSense showing unspecified DHCP assignment range
This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net...
Jim Pingle
01:32 PM Bug #9796: kernel panic after removing interfaces
Luiz, up to a couple of month ago, I had lots! of interface related stability problems (crashes). However, since a co... Louis B
01:24 PM Bug #9796 (Feedback): kernel panic after removing interfaces
Based on FreeBSD issue, this issues seems to be fixed.
Can someone confirm this ?
Luiz Souza
01:31 PM Feature #7016 (In Progress): system_information_widget.php - Indicate adaptive state timeout status when active
A few problems as it is implemented:
1. It doesn't work because it's checking @$curentries@ not @$pfstatetext@
2....
Jim Pingle
01:16 PM Feature #9260 (Feedback): ssh_tunnel_shell: Disable console message output
Silenced all the output of ssh_tunnel_shell.
Looks way better now, let me know if I have missed something.
Luiz Souza
01:02 PM Bug #7772 (Resolved): Regression of Bug #906
I can't reproduce it either. When removing an interface, rules on that interface are also removed. Thus deleting the ... Jim Pingle
12:55 PM pfSense Docs Correction #10973 (Resolved): Feedback on Services — DHCPv6 Server
Changed to @FFF0@ as suggested Jim Pingle
12:30 PM Revision 82479cdc: Minor refinements to state table size display
Steve Beaver
11:15 AM Bug #10610 (Resolved): Package upgrade or reinstall hangs indefintely on the console
No problems on current version of pkg, on CE or factory, on 2.4.5-p1 or 2.5.0. Everything appears to be OK now. Jim Pingle
11:01 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Yes, Jim's right. I'm forgetting i've build my test packages for 2.4.5 on a FreeBSD 11 build VM ...
Chris Evans
10:39 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Yes, Jim's right. I'm forgetting i've build my test packages for 2.4.5 on a FreeBSD 11 build VM with matching librari... Ben Hughes
10:37 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Do not install packages across versions like that. Either upgrade to 2.5.0 completely or wait for it to be merged. An... Jim Pingle
10:36 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
@pkg install json-c@ should do the job, 0.14 is in the 2.4.5 repos. I have expected @pkg@ to have picked that up itse... Ben Hughes
09:42 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Always like a nice easy fix!
>
> I've only just starting doing anything with pfsense dev wise...
Chris Evans
09:23 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Always like a nice easy fix!
I've only just starting doing anything with pfsense dev wise but from github it seems...
Ben Hughes
09:12 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Just a thought, which version of pfSense is this with? And which version of the FRR plugin is in...
Chris Evans
09:09 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Just a thought, which version of pfSense is this with? And which version of the FRR plugin is installed? It should be... Ben Hughes
08:35 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Chris Evans wrote:
> > I'm just going in and adding/removing a fake neighbor to see if it would...
Chris Evans
10:59 AM Bug #8870: Webgui incorrectly reports "The system is on the latest version".
Issue still exists Anonymous
10:29 AM Todo #10704: Work around PHP issues with SSL LDAP and multiple authentication servers
There is still likely to be a technical / non-documentation way to address this.
Some of that depends on the outco...
Jim Pingle
10:21 AM Bug #6277 (Pull Request Review): RRD graphs are not created correctly for interfaces using CODELQ
Jim Pingle
03:18 AM Bug #6277: RRD graphs are not created correctly for interfaces using CODELQ
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/20 Viktor Gurov
10:20 AM Bug #10982 (Resolved): Primary/Secondary DNS Server field validation issue in Setup Wizard
The default config (With DNS Resolver enabled and in Resolver mode) does not require any DNS servers to be present un... Jim Pingle
10:10 AM pfSense Packages Bug #10990: net-snmp IPv6 listen address needs to be wrapped in square brackets
PR: https://github.com/pfsense/FreeBSD-ports/pull/965 Jim Pingle
10:09 AM pfSense Packages Bug #10990 (Pull Request Review): net-snmp IPv6 listen address needs to be wrapped in square brackets
Jim Pingle
10:05 AM Feature #10988 (Pull Request Review): Queue bw type in Mbit/s
Jim Pingle
10:03 AM Feature #4405 (In Progress): Traffic shaping doesn't work when applied to a bridge interface
Luiz Souza
10:03 AM Bug #9643 (In Progress): Limiters do not function properly on 2.5 snapshots
Luiz Souza
10:02 AM Feature #10322 (Pull Request Review): Force ipv4/ipv6 DNS resolution for NTP servers
Jim Pingle
10:02 AM Bug #7389 (In Progress): Limiter does not work with transparent proxy
Luiz Souza
09:54 AM Feature #10987 (Needs Patch): Add support for secure boot
Must be implemented in FreeBSD first: https://wiki.freebsd.org/SecureBoot Jim Pingle
09:53 AM Bug #10986 (Pull Request Review): dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
Jim Pingle
09:44 AM Feature #10984 (Pull Request Review): Port Forward IPv6
Jim Pingle
09:39 AM Bug #10980: ``/etc/rc.local`` script content is executed at login instead of during boot sequence
Only the @rc.local@ parts are relevant here.
Non-root/admin users don't need the menu since most of its options wo...
Jim Pingle
09:36 AM Bug #10978: rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
I did create another issue for it a few days ago as requested.
https://redmine.pfsense.org/issues/10980
alzee bum
09:34 AM Bug #10978: rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
.profile is expected to be executed at each login, which it is.
.profile runs rc.initial during an interactive ses...
Jim Pingle
09:29 AM Bug #10947 (Pull Request Review): Virtual interface assignment can't be done in CLI interface assignment
Jim Pingle
09:24 AM Bug #10236 (Rejected): Cannot add more than 2 VMXNET3 Adapters in vSphere
Adding NICs to a hot/running VM has never worked and isn't expected to work. Shut down the VM (power off, not warm bo... Jim Pingle
09:20 AM Bug #10902 (Rejected): 2.5.0. Authentication logging
The beep is from the system console logging the high level syslog message, not a script. If something causes that to ... Jim Pingle
09:15 AM Bug #9136: IPv6 Tracking Interfaces Lose IPv6 Address in Certain Cases
I haven't seen this in a while, but cjl saw it more than I did. Reassigning to him for feedback since he could reprod... Jim Pingle
08:50 AM Todo #10464: Don't change the current update repo when new releases are available
While not a bug per se, it is something we could improve. It would prevent some accidental breakage if users couldn't... Jim Pingle
08:48 AM Feature #10970: UI/GUI has an issue scrolling while drop menue is clicked/open
This is the nature of the way the user has set the menu in the preferences.
Under System > General, if "Top Naviga...
Jim Pingle
08:45 AM Bug #10971 (Rejected): OpenLDAP + group member attribute other than memberUid
This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net...
Jim Pingle
08:43 AM Bug #10675: DHCPv6 config not all directives start on a new line as expected
Looks good to me as well, including the DNS server.... Jim Pingle
08:41 AM Bug #8390 (Confirmed): Input validation does not prevent removing a gateway used by a DNS server
Their problem is different from the ones linked.
When you remove a gateway, there can still be entries in the DNS ...
Jim Pingle
06:52 AM pfSense Packages Feature #9721 (Feedback): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
PR has been merged. Thanks! Renato Botelho
06:42 AM pfSense Packages Feature #9721 (Pull Request Review): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
Renato Botelho
06:50 AM pfSense Packages Bug #6378 (Feedback): inline background styles in squidguard package
PR has been merged. Thanks! Renato Botelho
06:42 AM Bug #1353 (Pull Request Review): Number of queues possible
Renato Botelho

10/18/2020

01:45 PM Bug #10982: Primary/Secondary DNS Server field validation issue in Setup Wizard
When I run through the setup wizard with Allow DNS servers to be overridden by DHCP/PPP on WAN unchecked in
2.5.0-...
Max Leighton
12:38 PM Bug #10963 (Resolved): Thermal Sensors widget shows invalid sensors
Looks good. Message buffer lines in the sysctl output are no longer parsed.
The values for coretemp and acpi thermal...
Steve Wheeler
11:34 AM Bug #10977 (Resolved): Additional IPsec bypass rules input validation
This is fixed in:... Steve Wheeler
10:41 AM Bug #10716 (Resolved): Policy routing rules are not written correctly for a down gateway
This now correctly sets the gateway to none or disables rules entirely on packet loss:... Steve Wheeler
07:42 AM pfSense Packages Feature #10841: Allow per Source/VLAN/Network individual black&whitelists
Viktor Gurov wrote:
> can be realized with "views": https://forum.netgate.com/topic/129365/bypassing-dnsbl-for-speci...
Stefan Bauer
06:31 AM pfSense Packages Bug #10990 (Resolved): net-snmp IPv6 listen address needs to be wrapped in square brackets
With net-snmp v5.7 (current 2.4.5) snmpd will accept an IPv6 listen address without square brackets, with v5.9 (2.5.0... Ben Hughes

10/17/2020

09:22 PM Feature #10743 (Resolved): Traffic shaper wizard: Add Google Stadia port range
Option is selectable and provides the correct entries to rules for shaping
tested on 2.5.0.a.20201017.1250
Jordan G
04:06 PM pfSense Packages Bug #10989: Snort alert page has hidden characters in IPv6 address
Oh. I searched for Snort bugs. Steve Y
03:41 PM pfSense Packages Bug #10989: Snort alert page has hidden characters in IPv6 address
Suricata issue #10187 Viktor Gurov
12:10 PM pfSense Packages Bug #10989 (New): Snort alert page has hidden characters in IPv6 address
It looks like Snort has hidden characters in IPv6 addresses on its alert page. This makes it difficult to search for... Steve Y
08:02 AM Feature #10469 (Resolved): Same RADIUS Cisco-AVPair parser code for both OpenVPN/IPsec
tested on 2.5.0.a.20201016.1850
FreeRADIUS ACLs:...
Viktor Gurov
05:14 AM pfSense Packages Feature #9721 (New): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
Adds Squid status top menu entry:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/2
Viktor Gurov
04:37 AM pfSense Packages Feature #9721 (Resolved): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
Tested on:... Danilo Zrenjanin
04:59 AM pfSense Packages Bug #9809 (Resolved): postgresql support not compiled
Tested on :... Danilo Zrenjanin
03:26 AM Bug #1353 (New): Number of queues possible
unique priority is mandatory now, which is incorrect
from https://www.freebsd.org/cgi/man.cgi?query=pf.conf&apropos=...
Viktor Gurov
03:08 AM pfSense Packages Bug #9211 (Resolved): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
Tested on :... Danilo Zrenjanin
01:48 AM Feature #10988: Queue bw type in Mbit/s
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/18 Viktor Gurov
12:08 AM Feature #10988 (Resolved): Queue bw type in Mbit/s
Set default traffic shaper queue bw type to Mbit/s in the same way as #10727 Viktor Gurov

10/16/2020

11:58 PM pfSense Packages Bug #10964 (Resolved): pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Viktor Gurov
09:57 PM pfSense Packages Bug #10964: pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
interfaces use default ospf area if it is not defined on the interface.
interface em0
ip ospf area 0.0.0.0
inte...
Alhusein Zawi
11:53 PM Feature #10322: Force ipv4/ipv6 DNS resolution for NTP servers
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/17 Viktor Gurov
10:33 PM Bug #9660 (Resolved): Syslogd keeps using old IP address after interface IP address change
Alhusein Zawi
10:32 PM Bug #9660: Syslogd keeps using old IP address after interface IP address change
syslogd changed the IP if Interface's IP changed.
checked via Diagnostics > Sockets
Alhusein Zawi
05:22 PM Feature #10987 (Needs Patch): Add support for secure boot
Pfsense should support this to increase the security of the system and for it to be able to run with secure boot on. Anonymous
04:46 PM Revision 55be240f: Completed #7016 as specified
Steve Beaver
04:42 PM pfSense Packages Bug #6378: inline background styles in squidguard package
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/1 Viktor Gurov
01:03 PM Revision 28a0449e: Applied regex fix to primary DNS server per #10982
Steve Beaver
12:56 PM Revision d4dc6562: Fixed #10982 by adjusting validation regex.
Steve Beaver
12:02 PM Bug #10986: dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/16 Viktor Gurov
05:29 AM Bug #10986 (Resolved): dynamic interface address for 1:1 NAT works incorrectly in some dual-stack cases
If you select IPv6-only interface address in "External subnet IP" field
and IPv4-only or dualstack interface address...
Viktor Gurov
11:47 AM Feature #7016 (Feedback): system_information_widget.php - Indicate adaptive state timeout status when active
Implemented as requested Anonymous
10:47 AM pfSense Packages Feature #10909: #define MAXVIFS 32 to 64
Renato, I am running an early pimdv3 here. Not for release yet, however working properly .... (maintainer is working ... Louis B
09:34 AM Bug #7772: Regression of Bug #906
Jim - Would you confirm this please? I am unable to reproduce. Anonymous
09:34 AM Bug #9450 (In Progress): Multiwan gateway group fail-over not working as expected (possible race condition)
Renato Botelho
09:20 AM Bug #9450: Multiwan gateway group fail-over not working as expected (possible race condition)
It now appears that gateways that are forced down in the gateway configs do not appear to be offlined.
Previously,...
Anonymous
05:54 AM Bug #9450 (Resolved): Multiwan gateway group fail-over not working as expected (possible race condition)
As mentioned on forums, it works Renato Botelho
09:03 AM Bug #7132 (Resolved): PPPoE IP Alias
Anonymous
09:01 AM Feature #10214 (Resolved): Allow IPsec duplicate endpoints
Anonymous
09:00 AM Bug #10589 (Resolved): interfaces_staticarp_configure() doesnt need to disable staticarp on boot
Anonymous
09:00 AM Feature #10870 (Resolved): Allow custom IPSEC NAT-T port
Anonymous
08:59 AM Bug #10942: LDAP Auth error after update 2.5.0.a.20200930.1303
Please confirm fix Anonymous
08:55 AM Feature #2424 (Resolved): Allow masking of pass-thru MACs
Anonymous
08:55 AM Bug #3488 (Resolved): Deleting an interface doesn't delete associated shaper queues
Anonymous
08:54 AM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
Please confirm Anonymous
08:47 AM Bug #10675 (Resolved): DHCPv6 config not all directives start on a new line as expected
Anonymous
08:45 AM Bug #10675: DHCPv6 config not all directives start on a new line as expected
the original issue seems to be specific for snapshot 2.5 (not 2.4.5),
now it's OK, all directives start on a new lin...
Viktor Gurov
08:21 AM Bug #10675 (In Progress): DHCPv6 config not all directives start on a new line as expected
Anonymous
08:44 AM Bug #8015 (Resolved): IPsec VPN Not Reconnecting until complete reboot
Anonymous
08:39 AM Bug #9331 (Resolved): Parallel Rekey fails for multiple Child SAs
Anonymous
08:37 AM Bug #9435 (Resolved): Dynamic DNS Update events do not occur after certain failover event cases
Anonymous
08:34 AM Feature #9642 (Resolved): Add DDNS support for dynv6.com
Anonymous
08:34 AM Bug #9758 (Resolved): dhcpleases does not handle spaces in DHCP lease hostnames
Anonymous
08:31 AM Bug #10224: DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
Please confirm fix Anonymous
08:29 AM Bug #10365 (Resolved): LAGG member event causes filter to reload
Anonymous
08:28 AM Bug #10206 (Resolved): VIP alias-ip's disappear from nic (caused by running ifconfig twice.?.)
Anonymous
08:27 AM Feature #10469: Same RADIUS Cisco-AVPair parser code for both OpenVPN/IPsec
Please confirm & resolve Anonymous
08:26 AM Feature #10545 (Resolved): RADIUS authenticated users should be able to log in via ssh
Anonymous
08:26 AM Bug #10546 (Resolved): Gateways removed from routing groups based on low alert thresholds
Anonymous
08:25 AM Feature #10556 (Resolved): Change action on 'XML configuration file not found' error
Anonymous
08:24 AM Bug #10594 (Resolved): add QLogic 10 Gigabit Ethernet driver (qlxgb) to the ALTQ-capable list
Anonymous
08:23 AM Bug #10558 (Resolved): Multicast daemons work at boot, but fail if restarted
Anonymous
08:21 AM Bug #10585: auth.inc: Exception calling XMLRPC method restore_config_section #-1 : Authentication failed: Invalid username or password
Please confirm Anonymous
08:18 AM Bug #10680: Improve interface caching when we have many interfaces
Please confirm Anonymous
08:17 AM Bug #10716: Policy routing rules are not written correctly for a down gateway
Please confirm and resolve Anonymous
08:16 AM Feature #10748 (Resolved): Add support for limiting IPsec VPN access per user group via RADIUS
Anonymous
08:15 AM Bug #10838 (Resolved): mask options didn't apply to the sched limiter
Anonymous
08:10 AM Bug #10943 (In Progress): boot fail after upgrade to the latest snapshot 20201001.0050. if bios is set to efi
Anonymous
08:09 AM Bug #10963: Thermal Sensors widget shows invalid sensors
Please test & resolve Anonymous
08:08 AM Bug #10977: Additional IPsec bypass rules input validation
Please confirm/resolve Anonymous
08:05 AM Bug #10982: Primary/Secondary DNS Server field validation issue in Setup Wizard
Applied in changeset commit:d4dc6562bf1eb5948bdc34ad09478c810df968eb. Anonymous
07:55 AM Bug #10982 (Feedback): Primary/Secondary DNS Server field validation issue in Setup Wizard
Anonymous
07:55 AM Bug #10982: Primary/Secondary DNS Server field validation issue in Setup Wizard
Adjusted regex to permit secondary DNS server setting to be blank Anonymous
07:09 AM Feature #10678 (Resolved): Allow to select 802.11n channel width (HT)
tested on 2.5.0.a.20201015.1850 and rtwn(4) based wifi card
"Channel width" selection is allowed in 802.11n mode
Viktor Gurov
06:11 AM Bug #10985: IPSec IKEv2 BINAT multiple Phase 2 issue
Christian Wall wrote:
> Yes I know, but the issue is not the other side, the problem is the pfsense side.
Please ...
Viktor Gurov
05:34 AM Bug #10985: IPSec IKEv2 BINAT multiple Phase 2 issue
Yes I know, but the issue is not the other side, the problem is the pfsense side. Christian Wall
05:32 AM Bug #10985 (Rejected): IPSec IKEv2 BINAT multiple Phase 2 issue
“split connections” option is used for interoperability with third party devices that do not support multiple traffic... Viktor Gurov
01:38 AM Bug #10985 (Rejected): IPSec IKEv2 BINAT multiple Phase 2 issue
We moved one ipsec vpn tunnel from IKEv1 to IKEv2. We have two P2 Entries and both of them are using BINAT with the s... Christian Wall
06:03 AM Feature #10946 (Resolved): Sanitize WiFi 802.1x RADIUS shared secret
tested on 2.5.0.a.20201009.1850:... Viktor Gurov
05:01 AM Feature #10984: Port Forward IPv6
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/15
see also #7705
Viktor Gurov
01:16 AM Feature #10984 (Resolved): Port Forward IPv6
Allow to use IPv6 addresses on the Firewall / NAT / Port Forward
see also how this works in Squid IPv6 transparent...
Viktor Gurov
03:01 AM Feature #10975 (Resolved): Button to clear the NDP cache
Tested on :... Danilo Zrenjanin
12:49 AM pfSense Packages Bug #10983 (Feedback): pfBlockerNG not cleaning everything behind it
Unable to reproduce it on the latest pfBlockerNG-devel-2.2.5_37 - virtualip is successfully removed during uninstall Viktor Gurov

10/15/2020

11:38 PM Feature #7406 (Resolved): Ability to clear all dhcp leases at once
Alhusein Zawi
11:37 PM Feature #7406: Ability to clear all dhcp leases at once
Feature has been added and working.
Alhusein Zawi
08:36 PM pfSense Packages Bug #10983 (Rejected): pfBlockerNG not cleaning everything behind it
I moved from PI-Hole to pfBlockerNG for a while. I chose to move back to PI-Hole and stopped using pfBlockerNG. After... Jacques Bourdeau
07:38 PM Revision 0de6758e: Fix #9450
Change default value for clear_alarm to true so cache file is used only
once. We can't be sure the value on cache wi...
Renato Botelho
07:38 PM Revision ffedcdf4: Replace unlink() by unlink_if_exists()
Renato Botelho
06:11 PM Revision 626e247e: Merge pull request #4481 from wurzelpanzer/master
Renato Botelho
05:43 PM Revision 449fdf25: Fix #10978: Run rc.local and rc.local.running
Fix the logic used to detect if rc.local and/or rc.local.running are or
not running and execute them only when it's n...
Renato Botelho
03:09 PM Bug #10982 (Resolved): Primary/Secondary DNS Server field validation issue in Setup Wizard
When clearing out the Primary/Secondary DNS Server fields in the Setup Wizard it causes the validation to fail. An em... Jared Dillard
02:58 PM Feature #7284 (Resolved): NTPd Autoset GPS device baud rate
Anonymous
02:45 PM Bug #9450 (Feedback): Multiwan gateway group fail-over not working as expected (possible race condition)
Applied in changeset commit:0de6758e2893e4390acfa0b55e31b1dece231618. Renato Botelho
02:27 PM Bug #9450 (In Progress): Multiwan gateway group fail-over not working as expected (possible race condition)
Some problems reported at https://forum.netgate.com/topic/157633/wan-gw-monitor/2 after this was merged. I'll work o... Renato Botelho
02:27 PM Bug #10981 (Duplicate): Display of gw monitoring not working
Lets keep all information on original ticket #9450 Renato Botelho
01:56 PM Bug #10981 (Duplicate): Display of gw monitoring not working
Hi.
See post: https://forum.netgate.com/topic/157633/wan-gw-monitor/2
Something broke dpinger in last 2 days.
Greg M
01:39 PM Bug #9539 (Resolved): HA: admin user's authorized key(s) won't get synced
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Thu Oct 15 07:04:11 EDT 2020
FreeBSD 12.2-STABLE
With the Synchr...
Max Leighton
01:11 PM Feature #10972 (Feedback): Add IPv6 DDNS support for easyDNS
PR has been merged. Thanks! Renato Botelho
01:06 PM Bug #10980 (Resolved): ``/etc/rc.local`` script content is executed at login instead of during boot sequence
See https://redmine.pfsense.org/issues/10978 for context.
/etc/skel/.profile is copied to .profile in all users ho...
alzee bum
01:02 PM pfSense Packages Feature #10969 (Feedback): Add Sekhan/TheGreatWall DoH feeds
PR has been merged. Thanks! Renato Botelho
01:02 PM pfSense Packages Bug #10927 (Feedback): pfBlockerNG-devel fullfill the pfsense config history when RAM disk in use
PR has been merged. Thanks! Renato Botelho
12:56 PM pfSense Packages Bug #4247 (Feedback): Changes not saved when expression list becomes empty
PR has been merged. Thanks! Renato Botelho
07:22 AM pfSense Packages Bug #4247: Changes not saved when expression list becomes empty
https://github.com/pfsense/FreeBSD-ports/pull/964 Viktor Gurov
12:56 PM Bug #10978 (Resolved): rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
alzee bum wrote:
> Renato Botelho wrote:
> > Applied in changeset commit:449fdf250171616d4865bfd5c865c64035e14496.
...
Renato Botelho
12:52 PM Bug #10978: rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
Renato Botelho wrote:
> Applied in changeset commit:449fdf250171616d4865bfd5c865c64035e14496.
Thanks Renato, that...
alzee bum
12:50 PM Bug #10978: rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
Applied in changeset commit:449fdf250171616d4865bfd5c865c64035e14496. Renato Botelho
12:44 PM Bug #10978 (Feedback): rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
Renato Botelho
12:01 PM Bug #10978 (Resolved): rc.initial tries to execute rc.local.running even if it doesn't exist, and even if it is already running.
See code here: https://github.com/pfsense/pfsense/blob/master/src/etc/rc.initial#L33
Lines 33-46 check for rc.loca...
alzee bum
12:54 PM pfSense Packages Bug #10447: Framed-IP-Address with plus sign is deprecated
PR has been merged. Thanks! Renato Botelho
12:46 PM pfSense Docs Correction #10979 (Closed): Status Light on XG-7100
The status light on the XG-7100 is currently not implemented. It should be added to the docs that this light is unus... Kris Phillips
11:02 AM Bug #10947: Virtual interface assignment can't be done in CLI interface assignment
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/14 Viktor Gurov
10:43 AM Revision 4798939d: IPsec bypass WebGUI fix. Issue #10977
Viktor Gurov
08:36 AM Revision c6d22ee1: VLAN MTU extra fix. Issue #9154
Viktor Gurov
05:44 AM Bug #10977 (Feedback): Additional IPsec bypass rules input validation
PR has been merged. Thanks! Renato Botelho
01:31 AM Bug #10977: Additional IPsec bypass rules input validation
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/12 Viktor Gurov
05:41 AM Bug #9154: Editing a VLAN parent interface causes all VLANs to be reconfigured, which can lead to problems
Viktor Gurov wrote:
> extra improvement:
> https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/13
Merged...
Renato Botelho
03:41 AM Bug #9154: Editing a VLAN parent interface causes all VLANs to be reconfigured, which can lead to problems
extra improvement:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/13
Viktor Gurov

10/14/2020

05:38 PM Bug #10977: Additional IPsec bypass rules input validation
And just seen that box needs updating but still present in:... Steve Wheeler
05:36 PM Bug #10977 (Resolved): Additional IPsec bypass rules input validation
Trying to save the save the IPSec Advanced Settings page, even without making any changes, results in an input error ... Steve Wheeler
04:04 PM Revision 2e1cfbf9: UDP/Other protocols state timeout. Implements #1635
Viktor Gurov
04:04 PM Revision c91be02b: Nested alias IDN fix. Issue #10968
Viktor Gurov
03:56 PM Revision a9fc44f0: Style fixes
Renato Botelho
03:56 PM Revision 161e60fa: Add missing parameter to get_dpinger_status() call
Renato Botelho
03:56 PM Revision 5affb137: Prevent possible race condition, fixes #9450
Instead of calling get_dpinger_status() again in the code handling dpinger
alarms, save the original alarm status in ...
Vladimir Voskoboynikov
03:56 PM Revision 094db492: Minor text fix. Issue #10546
No need to log the PID, it's added to the logs anyways. Vladimir Voskoboynikov
03:56 PM Revision 04a72a97: Add gateway substatus. Fixes #10546
Update return_gateways_status to return a substatus as well as the existing status.
status changed to be one of onli...
Vladimir Voskoboynikov
03:54 PM Revision 6fe2387c: Clean NDP table button. Implements #10975
Viktor Gurov
03:52 PM Revision 69ffb456: VLAN MTU improvements. Issue #9154
Viktor Gurov
03:48 PM Revision 7957389b: Interface assignment fix for PPP interfaces. Fixes #10240
Viktor Gurov
02:42 PM Bug #10236: Cannot add more than 2 VMXNET3 Adapters in vSphere
With some more investigation I've found the following:
*Created a new single vmxnet3 nic VM.*...
Patrick Sanderson
01:59 PM Bug #10236: Cannot add more than 2 VMXNET3 Adapters in vSphere
I've diff'd the VMX files between creating a VM with 2 nics (which works) and creating a VM with 1 NIC and attempting... Patrick Sanderson
01:48 PM Bug #10960: Bring up VXLANs correctly at boot
With that change the vxlans on WAN are created then destroyed and re-created at boot. Somehow the vxlans on WAN are b... Steve Wheeler
12:06 PM Bug #10960: Bring up VXLANs correctly at boot
first issue fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/11
Viktor Gurov
01:32 PM Bug #10902: 2.5.0. Authentication logging
Nice catch
I caught it via siem when logs got missing
Greg M
01:22 PM Bug #10902 (Confirmed): 2.5.0. Authentication logging
I have replicated this a number of times but didn't spot it until now. I only noticed it does not 'beep' when you log... Steve Wheeler
01:29 PM pfSense Packages Bug #10332 (Closed): PFBlockerNG loading GeoLite2-Country.mmdb
Indeed it does! Marcos M
11:15 AM Bug #1635: timeout setting on firewall rules does not work for UDP
Applied in changeset commit:2e1cfbf9957a559a49af37c00f07db8854950ae3. Viktor Gurov
11:06 AM Bug #1635 (Feedback): timeout setting on firewall rules does not work for UDP
PR has been merged. Thanks! Renato Botelho
11:05 AM Bug #9450: Multiwan gateway group fail-over not working as expected (possible race condition)
Applied in changeset commit:5affb137561c74bb5559f0706c86c28a85b14557. Vladimir Voskoboynikov
11:01 AM Bug #9450 (Feedback): Multiwan gateway group fail-over not working as expected (possible race condition)
PR has been merged. Thanks! Renato Botelho
11:05 AM Bug #10546: Gateways removed from routing groups based on low alert thresholds
Applied in changeset commit:04a72a975d4e59f5ad8bc9fd41df10c6a1f0ed7e. Vladimir Voskoboynikov
11:01 AM Bug #10546 (Feedback): Gateways removed from routing groups based on low alert thresholds
PR has been merged. Thanks! Renato Botelho
11:05 AM Bug #10968 (Feedback): Mixed & Upper case Alias table names broken.
PR has been merged. Thanks! Renato Botelho
11:00 AM Feature #10975: Button to clear the NDP cache
Applied in changeset commit:6fe2387c445d49ca828aa2c0ed00d9a2c842037f. Viktor Gurov
10:55 AM Feature #10975 (Feedback): Button to clear the NDP cache
PR has been merged. Thanks! Renato Botelho
03:49 AM Feature #10975: Button to clear the NDP cache
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/8 Viktor Gurov
03:31 AM Feature #10975 (Resolved): Button to clear the NDP cache
It would be nice to have a button to clear the NDP cache in "Diagnostics: NDP Table".
same as #4038
Viktor Gurov
10:54 AM Bug #9136 (Feedback): IPv6 Tracking Interfaces Lose IPv6 Address in Certain Cases
Jim, could you validate if the problem still happens after fix for #9154 was applied? Renato Botelho
10:53 AM Bug #9154 (Feedback): Editing a VLAN parent interface causes all VLANs to be reconfigured, which can lead to problems
PR has been merged. Thanks! Renato Botelho
09:33 AM Bug #9154: Editing a VLAN parent interface causes all VLANs to be reconfigured, which can lead to problems
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/6 Viktor Gurov
10:51 AM Bug #10240 (Feedback): Incorrect interface assignment after switching from PPPoE
PR has been merged. Thanks! Renato Botelho
10:20 AM pfSense Packages Bug #10976 (Rejected): Freeradius dont start with SQL configuration
no such issue on pfSense 2.5.0.a.20201013.1850 with FreeRADIUS pkg 0.15.7_18:... Viktor Gurov
07:08 AM pfSense Packages Bug #10976 (Rejected): Freeradius dont start with SQL configuration
My Pfsense is 2.5
I tried run freeradius with mysql suport but the freeradius dont start. the follow error occur:
...
Teste Teste
09:33 AM Bug #10974: pfSense showing unspecified DHCP assignment range
So I confirmed this morning it is still doling out leases in that range after I'd manually deleted them all last nigh... Mark Whitworth
04:04 AM pfSense Packages Feature #9742 (Resolved): Print Patch ID in log while patching
Tested on :... Danilo Zrenjanin
03:22 AM Bug #8131: No way to configure static ARP entries on a /31 (need a better way to configure static ARP entries)
duplicate of #2622 Viktor Gurov
03:16 AM pfSense Packages Bug #10447: Framed-IP-Address with plus sign is deprecated
Danilo Zrenjanin wrote:
> Tested on :
> [...]
>
> I still can enter 192.0.2.32+ with no complaints from pfSense....
Viktor Gurov
02:53 AM pfSense Packages Bug #10447: Framed-IP-Address with plus sign is deprecated
Tested on :... Danilo Zrenjanin
03:03 AM pfSense Packages Bug #10927: pfBlockerNG-devel fullfill the pfsense config history when RAM disk in use
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/962
Viktor Gurov
01:17 AM pfSense Packages Bug #10502: LLDP spamming errors on Netgate XG-7100
Renato Botelho wrote:
> DRago_Angel [InV@DER] wrote:
> > So maybe we can track this issue https://github.com/vincen...
Viktor Gurov
01:06 AM pfSense Packages Feature #10969: Add Sekhan/TheGreatWall DoH feeds
https://github.com/pfsense/FreeBSD-ports/pull/961 Viktor Gurov

10/13/2020

11:12 PM Bug #10974 (Rejected): pfSense showing unspecified DHCP assignment range
pfSense is assigning addresses from 2 ranges in my VLAN_GUEST space. Some time ago I used that .90-.191 range, but no... Mark Whitworth
08:39 PM Revision 7d813139: Fix #10680: Rewrite cache system in interfaces.inc
Change it to not invalidate cache when not needed. Makes boot much faster
when we have many VLANs
Jonas Christoffersen
08:39 PM Revision 4320bc83: Fix #10589: Skip disabling staticarp on boot
Also implemented is a simplification of code to handle static ARP entries. Jonas Christoffersen
04:32 PM pfSense Packages Bug #10502 (In Progress): LLDP spamming errors on Netgate XG-7100
There is no PR waiting for review Renato Botelho
04:28 PM pfSense Packages Bug #10502: LLDP spamming errors on Netgate XG-7100
DRago_Angel [InV@DER] wrote:
> So maybe we can track this issue https://github.com/vincentbernat/lldpd/issues/394 an...
Renato Botelho
03:45 PM Bug #10680 (Feedback): Improve interface caching when we have many interfaces
Applied in changeset commit:7d8131393dbd7aca507cddade443af41a27fec80. Jonas Christoffersen
03:45 PM Bug #10589 (Feedback): interfaces_staticarp_configure() doesnt need to disable staticarp on boot
Applied in changeset commit:4320bc83ae45c8ebc827e3c60065578264cba532. Jonas Christoffersen
11:04 AM pfSense Packages Feature #10134 (Resolved): pfSense-pkg-softflowd: Add additional options available in softflowd-1.0.0
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 13 07:05:06 EDT 2020)
MAC Address Flow Tracking Leve...
Azamat Khakimyanov
10:55 AM pfSense Packages Feature #10893 (Resolved): TFTP package improvements
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 13 07:05:06 EDT 2020).
"Write access" and "Logging" ...
Azamat Khakimyanov
07:32 AM pfSense Packages Bug #10964 (Feedback): pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Renato Botelho
07:31 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
PR has been merged. Thanks! Renato Botelho
04:04 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Chris Evans wrote:
> I'm just going in and adding/removing a fake neighbor to see if it would cause my valid BGP nei...
Ben Hughes
07:26 AM pfSense Packages Feature #10909 (Needs Patch): #define MAXVIFS 32 to 64
FreeBSD changes are merged. Waiting for pimd patch Renato Botelho
07:25 AM pfSense Packages Feature #10909: #define MAXVIFS 32 to 64
xavier Lemaire wrote:
> do i need to open another request for the pimd part?
Please do it
Renato Botelho

10/12/2020

10:59 PM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Chris Evans wrote:
> > I'm still seeing BGP neighbor resets when changes are being made, I beli...
Chris Evans
03:34 AM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
Chris Evans wrote:
> I'm still seeing BGP neighbor resets when changes are being made, I believed this effort was to...
Ben Hughes
03:32 PM Feature #10603 (Resolved): Handle -c commands with arguments in rc.initial
Anonymous
03:31 PM Bug #9058 (In Progress): Kernel panic during L2TP retransmit
Anonymous
12:12 PM Revision dccd106a: Fixed #10406 By adding "notoggleall" class to button group
Steve Beaver
12:05 PM Revision 8fa31d5e: Merge pull request #4470 from vktg/cleardhcpleases
Renato Botelho
12:04 PM Revision 085e12a1: Merge pull request #4478 from vktg/ddnsstatic
Renato Botelho
12:03 PM Revision 55aaa49d: Merge pull request #4472 from vktg/ntpauth
Renato Botelho
12:03 PM Revision 3cd0307f: Merge pull request #4480 from rdlugosz/add-helptext-for-unbound-dhcp
Renato Botelho
11:56 AM Bug #9459 (Resolved): patch pf: silence a runtime warning pfr_update_stats: assertion failed.
No response from OP. Assumed fixed Anonymous
11:55 AM Bug #9548 (Resolved): Do not use VLANMTU flag to decide if interface supports to run VLAN
No activity for ten months Anonymous
11:52 AM Bug #10776 (Closed): filterlog: Loopback source/destination sometimes reports 127.0.0.1 as 127.0.01
No response from OP in three months Anonymous
10:44 AM pfSense Packages Feature #10769 (Resolved): Prevent users from creating new ACMEv1 keys
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Mon Oct 12 07:05:15 EDT 2020)
There is no option to create L...
Azamat Khakimyanov
09:02 AM pfSense Docs Correction #10973 (Resolved): Feedback on Services — DHCPv6 Server
*Page:* https://docs.netgate.com/pfsense/en/latest/services/dhcp/ipv6.html
*Feedback:*
> _The Prefix Delegati...
Chris Linstruth
08:22 AM Feature #7405: Ability to add dhcp host reservations from "Diagnostics -> ARP table"
Hi,
Any chance for this to be implemented?
ml 35
07:47 AM Bug #6598 (Resolved): "PPPoE clients" placeholder in rules only includes first PPPoE server instance
Renato Botelho
07:45 AM Feature #7287 (New): NTP add support for ACTS ref clock
Renato Botelho
07:45 AM pfSense Packages Bug #7797 (Feedback): Squid Reverse Proxy alternating between destinations
PR has been merged Renato Botelho
07:44 AM pfSense Packages Bug #9211 (Feedback): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
PR has been merged Renato Botelho
07:44 AM Bug #9539 (Feedback): HA: admin user's authorized key(s) won't get synced
PR https://github.com/pfsense/pfsense/pull/4221 was merged and should fix this Renato Botelho
07:42 AM pfSense Packages Feature #9588 (Duplicate): New package: node_exporter
Duplicate of #9974 Renato Botelho
07:40 AM pfSense Packages Feature #9902 (Resolved): add sticky filter for Alert Log please
Already resolved Renato Botelho
07:39 AM Feature #9970 (New): Captive Portal and SAML2 Integration
Renato Botelho
07:39 AM pfSense Packages Bug #9981 (Resolved): Suricata "Use IP Reputation Lists on this interface." actually defaults to ON, despite incorrect comment.
Already resolved Renato Botelho
07:38 AM Bug #10161 (Resolved): Improve renaming of pfSense in non-pfSense builds.
This was resolved months ago Renato Botelho
07:38 AM Feature #10280 (New): DHCP Leases widget
Renato Botelho
07:37 AM pfSense Packages Bug #10447 (Feedback): Framed-IP-Address with plus sign is deprecated
PR was merged months ago Renato Botelho
07:29 AM pfSense Packages Feature #9721 (Feedback): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
PR has been merged. Thanks! Renato Botelho
07:26 AM pfSense Packages Feature #10950 (Feedback): Allow to select only netmap-compatible cards for inline mode
PR has been merged. Thanks! Renato Botelho
07:26 AM pfSense Packages Bug #10911 (Feedback): Bandwidthd iframe not resizing in 2.4.5/2.4.5p1
PR has been merged. Thanks! Renato Botelho
07:20 AM Bug #10406: Interfaces.php PPPoE selection display inappropriate "Toggle All" button when periodic reset set to "pre-set"
Applied in changeset commit:dccd106aa51a96b9a275858495539571f8701e6d. Anonymous
07:14 AM Bug #10406 (Feedback): Interfaces.php PPPoE selection display inappropriate "Toggle All" button when periodic reset set to "pre-set"
... Anonymous
07:12 AM Feature #1257: Handle encypted CA/Certificate private keys
Moving to Future due to lack of activity on proposed Pull Request Renato Botelho
07:11 AM Feature #2146 (Feedback): Allow concurrent logins when using vouchers
Already resolved by #9432. Leaving it in feedback for confirmation Renato Botelho
07:09 AM Bug #7778 (Feedback): DHCP relay not working correctly with bridges
PR merged months ago Renato Botelho
07:09 AM Bug #9437 (Feedback): Captive Portal Bandwidth Limiter application issue (Credentials Vs. MacAddr Validation)
PR was merged in June Renato Botelho
07:07 AM Feature #10214 (Feedback): Allow IPsec duplicate endpoints
As mentioned by Viktor on comment 6, fixed by another PR Renato Botelho
07:05 AM Feature #8794 (Feedback): NTP authentication support
PR has been merged. Thanks! Renato Botelho
07:05 AM Bug #10224 (Feedback): DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
PR has been merged. Thanks! Renato Botelho
07:05 AM Feature #7406 (Feedback): Ability to clear all dhcp leases at once
PR has been merged. Thanks! Renato Botelho
06:29 AM Bug #10968: Mixed & Upper case Alias table names broken.
Viktor already have a patch to fix this one Renato Botelho
04:42 AM Feature #10322: Force ipv4/ipv6 DNS resolution for NTP servers
I'm facing the same bug. I have an IPv4-only network with IPv6 disabled in pfSense, but my DNS servers reply with bot... Monseigneur Phelypeaux

10/11/2020

10:41 PM pfSense Packages Feature #10789: FRR integrated configuration and hitless reloads
I'm still seeing BGP neighbor resets when changes are being made, I believed this effort was to make it so full reloa... Chris Evans
04:56 PM Bug #10891 (Resolved): Captive Portal related files are not deleted after deleting CP zone in WebGUI
Tested in
2.5.0-DEVELOPMENT (amd64)
built on Sun Oct 11 13:01:59 EDT 2020
FreeBSD 12.2-STABLE
confirmed that ...
Max Leighton
03:25 PM Revision 00105b36: easyDNS IPv6 DynDNS support
This adds support for IPv6 records to easyDNS DynDNS.
https://redmine.pfsense.org/issues/10972
wurzelpanzer
01:39 PM Todo #10533: Change default domain for new installations from "localdomain" to "home.arpa"
There is also a Draft (2017) https://tools.ietf.org/html/draft-wkumari-dnsop-internal-00 also expired (2018) that pro... Rick Coats
01:32 PM Todo #10533: Change default domain for new installations from "localdomain" to "home.arpa"
→ luckman212 wrote:
> I'd suggest one of the following instead, since many pfSense installs are not used in home env...
Rick Coats
10:59 AM Feature #8149: NTPsec
Last commit was 6 years ago .. https://github.com/bsdphk/Ntimed
Allright, thank you for your feedback anyways!
Wilhelm Johansen
10:40 AM Bug #10960 (Confirmed): Bring up VXLANs correctly at boot
Tested:... Steve Wheeler
10:33 AM Feature #10972: Add IPv6 DDNS support for easyDNS
https://github.com/pfsense/pfsense/pull/4481 Mischa De Pol
10:13 AM Feature #10972 (Resolved): Add IPv6 DDNS support for easyDNS
Add support for easyDNS.com IPv6 dynamic DNS update.
This is based on the existing easyDNS.com IPv4 service.
ht...
Mischa De Pol
10:32 AM Bug #10899 (Resolved): VXVLAN interfaces are not created correctly
Tested:... Steve Wheeler
10:05 AM Bug #10898 (Resolved): vxlan interfaces fail the interface mismatch check at boot.
Tested in:... Steve Wheeler

10/10/2020

04:52 PM pfSense Packages Bug #10332: PFBlockerNG loading GeoLite2-Country.mmdb
It appears that this was fixed.
https://github.com/pfsense/FreeBSD-ports/commit/2eae4ebc337619fb4f6f32979968394649...
John Clark
12:36 PM pfSense Packages Bug #10332: PFBlockerNG loading GeoLite2-Country.mmdb
I could not reproduce this on pfSense 2.4.5-p1 running pfBlockerNG-devel 2.2.5_36.
Looking under /usr/local/share/...
Marcos M
04:45 PM Bug #1635: timeout setting on firewall rules does not work for UDP
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/10 Viktor Gurov
04:11 PM Feature #939 (Closed): Ability to restore specific areas of configuration backup from full config backup
already works on 2.4.4-p3 and higher Viktor Gurov
04:04 PM Todo #10464: Don't change the current update repo when new releases are available
Hello Craig,
This is not a bug report and we recommend you open a ticket with our support team.
Kris Phillips
03:54 PM pfSense Packages Bug #10886: NAT64 allows to bypass pfBlockerNG IPv4 feed list
I don't know if this is possible, but a more intuitive solution is to have a "interface" for NAT64 (non-intuitively i... Rick Coats
12:48 PM Feature #10970 (Closed): UI/GUI has an issue scrolling while drop menue is clicked/open
This is really essentially a duplicate of:
https://redmine.pfsense.org/issues/10271
Any fix that gets implemented...
Marcos M
11:53 AM Feature #10970: UI/GUI has an issue scrolling while drop menue is clicked/open
mom aiaz wrote:
> hello ,
>
> i notice that i am not able to scroll the drop-list if it taller than screen height...
Kris Phillips
05:17 AM Feature #10970 (Closed): UI/GUI has an issue scrolling while drop menue is clicked/open
hello ,
i notice that i am not able to scroll the drop-list if it taller than screen height,
to go around this i ...
mom aiaz
12:47 PM Bug #10949: PPPoE server can't be added
Tested on:... Danilo Zrenjanin
12:44 PM Bug #10532 (Resolved): Mobile PSK users don't have 'mobile-userpool' section
Tested on:... Danilo Zrenjanin
12:43 PM Bug #10971: OpenLDAP + group member attribute other than memberUid
When I change *User naming attribute* to *entryDN*, I can log in and see all groups. But it's a bit inconvenient.
...
Norbert K
12:32 PM Bug #10971 (Rejected): OpenLDAP + group member attribute other than memberUid
I am trying to connect to OpenLDAP, simple authorization works fine, I can connect as "domain user"
Then I wanted to...
Norbert K
12:36 PM Bug #7375 (Resolved): User with restricted privileges can still delete all monitoring/graphing data
Alhusein Zawi
12:34 PM Bug #7375: User with restricted privileges can still delete all monitoring/graphing data
I followed the steps
at Step 9 I received "Insufficient privileges to make the requested change (read only)." and ...
Alhusein Zawi
12:13 PM Bug #10566 (Closed): password for OpenDNS (under DynDNS) not being passed correctly
Tested this directly on the browser by using:
https://updates.opendns.com/nic/update?hostname=myhostname
I experi...
Marcos M
11:34 AM Bug #10566: password for OpenDNS (under DynDNS) not being passed correctly
I was able to reproduce this on 2.5.0.
Changing the password character from & to &amp; when entering it in the fie...
Marcos M
11:59 AM pfSense Packages Bug #10602 (Confirmed): Dashboard->Traffic Graphs bandwidth designations on hover pop-ups
Changing status to confirmed, as this is a reproducible issue that we should patch. Kris Phillips
11:39 AM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
> Another issue that seems to be related to this is that firewall rules using "LAN net" and similar are not obeyed if... Viktor Gurov
09:32 AM pfSense Packages Bug #10911: Bandwidthd iframe not resizing in 2.4.5/2.4.5p1
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/958
Viktor Gurov
07:05 AM Bug #6598: "PPPoE clients" placeholder in rules only includes first PPPoE server instance
Tested on :... Danilo Zrenjanin
06:46 AM Bug #10675: DHCPv6 config not all directives start on a new line as expected
Tested on :... Danilo Zrenjanin
04:22 AM Bug #8390 (Feedback): Input validation does not prevent removing a gateway used by a DNS server
Ivars Strazdins wrote:
> This issue was driving me nuts!
> Thanks to your hint, I was able to find similar "ghost" ...
Viktor Gurov
03:32 AM Bug #10968: Mixed & Upper case Alias table names broken.
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/9 Viktor Gurov
03:25 AM Bug #10240 (New): Incorrect interface assignment after switching from PPPoE
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/7 Viktor Gurov
12:41 AM Bug #10955 (Resolved): XMLRPC sync results in an error when a failover peer IP address is specified in DHCP server settings for an unconfigured interface
works fine on 2.5.0.a.20201009.1850 HA Viktor Gurov
12:16 AM pfSense Packages Feature #10969 (Resolved): Add Sekhan/TheGreatWall DoH feeds
https://github.com/Sekhan/TheGreatWall contains the DNS, IPv4 and IPv6 feeds of DoH servers:
https://raw.githubuse...
Viktor Gurov

10/09/2020

06:05 PM Revision fbb49296: Fix #9384
As mentioned by Warner Losh <imp@FreeBSD.org>, author of the change on
FreeBSD, the correct way to use quotes to para...
Renato Botelho
05:06 PM Bug #10955: XMLRPC sync results in an error when a failover peer IP address is specified in DHCP server settings for an unconfigured interface
I started the post i put my feedback here.
built on *Fri Oct 09 14:15:42 EDT 2020* is working as expected.
Thanks
Raul Ramos
03:38 PM pfSense Docs Correction #9237 (Resolved): Remove references to pfSense Virtual VMware Appliance
@^/pfsense/en/latest/solutions/vmware@ redirect put in place here: ba0f6259351230b0a1703e16c6b6c8055ac638f2
VMWare...
Jared Dillard
01:21 PM Bug #9384 (In Progress): devd putting "$" before variable contents when using single quotes
Problem still happens Renato Botelho
01:15 PM Bug #9384 (Feedback): devd putting "$" before variable contents when using single quotes
Applied in changeset commit:fbb49296bfff21824be0f8cba94a50bcfe077416. Renato Botelho
12:59 PM Bug #9384 (In Progress): devd putting "$" before variable contents when using single quotes
I'll fix it as suggested by imp@ Renato Botelho
12:50 PM Bug #10952: Inconsistency in Subnet Defaults Between Firewall Rules and Interface Address Assignments
Important to note that if we're going to add field verification and blank fields for the subnets, we should do it for... Kris Phillips
11:41 AM Feature #10944 (Resolved): Sanitize secret2
Tested on :... Danilo Zrenjanin
10:10 AM Bug #10240 (Feedback): Incorrect interface assignment after switching from PPPoE
Applied in changeset commit:9757d69bf63931f503f4e370710a92136bc6219e. Viktor Gurov
07:29 AM Feature #8149: NTPsec
We stated in the linked Reddit thread that if we were to change, the option we would consider is ntimed, not ntpsec.
...
Jim Pingle
07:24 AM Feature #8149: NTPsec
chrony-4.0 also supports Network Time Security (NTS), as of 7 Oct 2020: https://chrony.tuxfamily.org/news.html
OPN...
Wilhelm Johansen
07:24 AM Feature #8861: Show SFP module details on ``status_interfaces.php``
Requires work in devel/php56-pfSense-module/files/pfSense.c so reassigning it Anonymous
06:56 AM Bug #8390: Input validation does not prevent removing a gateway used by a DNS server
This issue was driving me nuts!
Thanks to your hint, I was able to find similar "ghost" DNS servers in configuration...
Ivars Strazdins
12:50 AM Bug #10968: Mixed & Upper case Alias table names broken.
Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/3
Viktor Gurov
 

Also available in: Atom