Activity
From 12/28/2020 to 01/26/2021
01/26/2021
-
09:38 PM Bug #10966: IPv6 - WAN does not renew address when upstream fails
- Hi, considering the fact that the user only saw the patched version not fix the issue one time, would it be possible ...
-
08:51 PM Revision 002a038f: Update OpenVPN Wizard to match current server options. Fixes #10919
-
04:13 PM Revision 9f127e7e: Fix WG Keep Alive field variable name. Fixes #11288
-
03:32 PM Revision 6f78203a: Fix WG Generate button descr.
-
03:30 PM Bug #11307 (Resolved): PHP error when attempting to edit Wireguard peer after creation
- No sign of this on snapshots from today, for new or existing peers.
-
03:29 PM Bug #11304 (Resolved): DNS-Problems after Configuring VPN-WireGuard with IPv4 & IPv6 Address
- Could easily replicate the problem on previous snapshot, current snapshot is working well. The entries in the DNS res...
-
03:28 PM Bug #11300 (Resolved): WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- Working as intended on current snapshots, for both IPv4 and IPv6.
-
09:23 AM Bug #11300: WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- Nice. Patched up this morning on my boxes and this is looking good so far
-
03:27 PM Bug #11291 (Resolved): WireGuard MTU Can Flap between 1420 and 1500
- MTU is stable on current snapshots. It's 1420 even after save/apply on an assigned interface.
-
03:26 PM Bug #11289 (Resolved): Wireguard: Automatic outbound NAT rules are applied to the WG interface
- OK on current snapshots. The automatic outbound NAT rules are not being applied to WireGuard interfaces (assigned or ...
-
03:14 PM Revision 4efba66a: Improve WireGuard field labels & descriptions.
-
03:06 PM Bug #11286 (Resolved): Endpoint port is mandatory if Endpoint is defined
- OK on current snapshot. If the endpoint is filled in and port is blank, the default port is used.
-
03:05 PM Bug #10919 (Feedback): Improve handling of OpenVPN data cipher negotiation options
- Applied in changeset commit:002a038f4e9d4ce4cb4f8e5dec5036eb822017a6.
-
02:48 PM Regression #11316 (Rejected): Unbound crashes with signal 11 when reloading
- There is not nearly enough information here to constitute a proper bug report, and I cannot reproduce the problem as ...
-
02:21 PM Regression #11316 (Resolved): Unbound crashes with signal 11 when reloading
- Seems to be the same as here...
https://forum.opnsense.org/index.php?topic=20516.0
My workaround: I have moved t... -
02:48 PM Bug #11288: Wireguard: Peer PSK is auto-filled to the keepalive field
- Excellent, will test! Thanks
-
10:15 AM Bug #11288 (Feedback): Wireguard: Peer PSK is auto-filled to the keepalive field
- I found a typo in the variable name used to populate the value in the GUI, but the backend appears to be using it app...
-
10:03 AM Bug #11288: Wireguard: Peer PSK is auto-filled to the keepalive field
- I'm still having issues with the Keepalive field. When I edit and peer and set the keepalive value, save and come bac...
-
02:36 PM Revision 0a0ef335: Improve WireGuard port validation. Fixes #11311
-
02:15 PM Revision cd4103cd: Encode WireGuard tunnel edit/peer values. Issue #11312
-
02:07 PM Revision 7e226dc7: Encode WireGuard tunnel list values. Issue #11312
-
01:37 PM Revision b505e3ae: Suppress errors when opening router file. Fixes #11314
-
01:10 PM Revision 73bd9c00: Merge branch 'viktor/pfSense-checkipsecwildcardcert'
-
01:02 PM Bug #11315 (Duplicate): Traffic Graph. shows flat line for wireguard interface
- Already being tracked internally (NG 5522)
-
12:54 PM Bug #11315 (Duplicate): Traffic Graph. shows flat line for wireguard interface
- I'm running...
-
12:02 PM Revision 1b165375: IPsec wildcard certificates input validation. Implements #11297
-
09:20 AM Bug #11312: Unable to edit or add WireGuard peers
- I had an string that included a single quote encased by the <descr></descr> variable so it lines up perfectly with yo...
-
08:25 AM Bug #11312 (Feedback): Unable to edit or add WireGuard peers
- I found a couple issues on the page that could be a problem if the description contained a single quote (@'@) which c...
-
07:15 AM Bug #11312: Unable to edit or add WireGuard peers
- What did you have in those fields?
The keepalive value is numeric so it's unlikely to be that. Description is CDAT... -
08:45 AM Bug #11311 (Feedback): Listen and peer port validation in wg.inc
- Applied in changeset commit:0a0ef3352ad9a9c3710c1349a9e91da3209050df.
-
07:45 AM Bug #11314 (Feedback): PHP error in gwlb.inc (potential race)
- Applied in changeset commit:b505e3aecc11b8f8e42c8a3fd7c8b9537c3264a2.
-
07:36 AM Bug #11314 (Resolved): PHP error in gwlb.inc (potential race)
- I can't reproduce this reliably, but occasionally there is a PHP error at boot time:...
-
07:20 AM Bug #11297: strongSwan doesn't support wildcard certificates
- Applied in changeset commit:1b1653756bf5c087ccb11a7f82202e155cd3fcf2.
-
07:12 AM Bug #11297 (Feedback): strongSwan doesn't support wildcard certificates
-
07:10 AM Bug #11313: Netgate SG-5100 has not received 2.5.0 development update since 11-27-2020
- Jim Pingle wrote:
> We are aware. All factory snapshots are currently disabled for internal testing.
Thanks Jim. ... -
07:09 AM Bug #11313 (Not a Bug): Netgate SG-5100 has not received 2.5.0 development update since 11-27-2020
- We are aware. All factory snapshots are currently disabled for internal testing.
-
06:44 AM Bug #11313 (Not a Bug): Netgate SG-5100 has not received 2.5.0 development update since 11-27-2020
- Hello,
I've been running the 2.5.0 Development build and for many months would receive regular updates daily. My a...
01/25/2021
-
11:04 PM Bug #11312: Unable to edit or add WireGuard peers
- Ability to edit wireguard peers was regained by editing /cf/conf/config.xml and removing values from the following va...
-
09:55 PM Bug #11312 (Resolved): Unable to edit or add WireGuard peers
- After upgrading from test build 2.5.0.a.20210122.2350 to 2.5.0.a.20210125.0856:
-- I am unable to edit all existi... -
09:05 PM Revision ed837d48: Attempt to use peer wg address if possible for gateway. Implements #11300
-
08:43 PM Bug #11311 (Resolved): Listen and peer port validation in wg.inc
- The listen port in function wg_validate_post and the peer port in function wg_validate_peer do not appear to be valid...
-
04:13 PM Revision 7f56c539: Add WireGuard to backup areas. Implements NG 5485
-
04:02 PM Revision 0c3fff67: Refine Unbound auto ACL generation. Implements #11309
-
03:28 PM Revision 7fe0979b: Rework WireGuard tonatsubnets/unbound ACL entries. Fixes #11304
-
03:15 PM Bug #11300 (Feedback): WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- Applied in changeset commit:ed837d48335b1cafdaae3c8320c3a78229e57386.
-
02:37 PM Bug #11300 (New): WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- I thought up a viable way to do it. Not as clean/elegant as I wanted, but it works.
-
08:01 AM Bug #11300: WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- The main problem is that there isn't a way for the gateway system to know a viable remote peer address to monitor.
... -
02:14 PM Revision 2924fc26: Init var before use. Fixes #11307
-
01:51 PM Revision 81f10ba1: Add units to source tracking timeout description. Fixes #11303
- 01:41 PM Revision f25efb4b: Allowe peer port < 512
- 01:40 PM Revision 94230d38: Allowe listen port < 512
-
01:33 PM Revision 8b9d2275: Use correct default MTU for WireGuard. Fixes #11291
-
11:59 AM Bug #9450 (Resolved): Multiwan gateway group fail-over not working as expected (possible race condition)
- I can not reproduce this in 2.5 under the same conditions that cause it in 2.4.5p1. Dee D's response sounds like the ...
-
11:44 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Yes, still there :(
-
11:39 AM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- I know you _can_ but why limit the configuration in such a fashion?
Checkbox for enabling default-originate IPv4 w... -
11:28 AM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Chris Linstruth wrote:
> Shouldn't there be a separate route map selection for each address family?
You can match... -
08:00 AM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Shouldn't there be a separate route map selection for each address family?
-
07:19 AM pfSense Packages Bug #11271 (Pull Request Review): Setting default-originate in FRR/BGP Silently Appends a route-map
-
10:10 AM Todo #11309 (Feedback): DNS Resolver automatic ACL entries need refinement
- Applied in changeset commit:0c3fff676c104ca720f251a28b99d2d285298f8f.
-
09:34 AM Todo #11309 (Resolved): DNS Resolver automatic ACL entries need refinement
- The way the DNS resolver backend code in unbound.inc generates the automatic access list entries is inefficient.
T... -
10:06 AM Bug #11308 (Duplicate): NTP Trying IPv6 when no IPv6 connectivity is available or configured.
- See #10322
-
09:34 AM Bug #11308: NTP Trying IPv6 when no IPv6 connectivity is available or configured.
- Screen recording of bouncing NTPD.
-
09:31 AM Bug #11308 (Duplicate): NTP Trying IPv6 when no IPv6 connectivity is available or configured.
- My firewall has IPv6 traffic explicitly blocked and no IPv6 configured on any WAN interfaces.
NTP tries to hit IPv... -
09:56 AM pfSense Packages Feature #11310: Adding a widget to apcupsd plug-in
- Link to pull request: https://github.com/pfsense/FreeBSD-ports/pull/1034
-
09:45 AM pfSense Packages Feature #11310 (Resolved): Adding a widget to apcupsd plug-in
- I was inspired to create a widget for the apcupsd plug-in that is included with pfSense and I would like to contribut...
-
09:35 AM Bug #11304 (Feedback): DNS-Problems after Configuring VPN-WireGuard with IPv4 & IPv6 Address
- Applied in changeset commit:7fe0979bc0de358a95767c25cfcbddec4a932ce4.
-
07:56 AM Bug #11304 (In Progress): DNS-Problems after Configuring VPN-WireGuard with IPv4 & IPv6 Address
-
08:20 AM Bug #11307 (Feedback): PHP error when attempting to edit Wireguard peer after creation
- Applied in changeset commit:2924fc260c5c9cbdd03aaa02f9c10944336c6787.
-
08:11 AM Bug #11307 (In Progress): PHP error when attempting to edit Wireguard peer after creation
-
08:07 AM Feature #11306 (Duplicate): Switchable time-out for remote admin (like “reload in min / reload cancel” in CISCO)
- Duplicate of #3895
-
08:05 AM Bug #11290 (Closed): Package ``<plugins>`` and ``<tabs>`` content missing from configuration in some cases
- I'll close this out for now, but if someone can reproduce it, we can open it back up with more details about exactly ...
-
08:00 AM Bug #11303 (Feedback): Sticky connections units
- Applied in changeset commit:81f10ba1d0b64e23b7386e21730d4acee2e2944c.
-
07:52 AM Bug #11303: Sticky connections units
- Load Balancer is gone, so this is technically now only a multi-wan setting.
I committed a different change to ment... -
07:54 AM Bug #11291: WireGuard MTU Can Flap between 1420 and 1500
- Looks good, thanks for the quick update
-
07:40 AM Bug #11291 (Feedback): WireGuard MTU Can Flap between 1420 and 1500
- Applied in changeset commit:8b9d2275015be7bf8febb1714f8a979d7c5f2beb.
-
07:22 AM Bug #11291 (In Progress): WireGuard MTU Can Flap between 1420 and 1500
-
07:49 AM pfSense Packages Bug #8466 (Pull Request Review): radiusd crash
-
07:48 AM Feature #11294 (Pull Request Review): New Dynamic DNS Provider: Yandex PDD
-
07:48 AM Feature #11302: WireGuard XMLRPC sync
- Might be tricky since if it was allowed, it couldn't be assigned, or else we'd have to code around allowing it to be ...
-
07:45 AM pfSense Packages Feature #11301 (Pull Request Review): Switch FRR to use default rc file as a service control base
-
07:43 AM Bug #11299 (Pull Request Review): Unused L2TP VPN files are not removed when the service is disabled
-
07:42 AM Bug #11296 (Pull Request Review): Static route targets may still reachable via default route when the gateway they should route through is down
-
07:40 AM Bug #11297 (Pull Request Review): strongSwan doesn't support wildcard certificates
-
07:39 AM Bug #11298 (Pull Request Review): Gateway Group Offline Bug
-
07:37 AM Bug #11292 (Duplicate): in the wireguard page double clicking existing tunnel doesn't open the configuration page
- This was fixed several days ago, see commit:56a4e2d56f66432a596329bc65cde4c159951829
Duplicate of an entry in our ...
01/24/2021
-
11:02 PM Bug #11307 (Resolved): PHP error when attempting to edit Wireguard peer after creation
- Version:...
-
02:43 PM Bug #11279 (Resolved): Typo in WireGuard Configuration
- Confirmed that this typo is fixed in the latest build. Marking the ticket as resolved
-
02:11 PM Bug #11291: WireGuard MTU Can Flap between 1420 and 1500
- I've nailed down clear reproduction steps...assuming that you have a WG tunnel and it's corresponding wg interface as...
-
02:04 PM Bug #11290: Package ``<plugins>`` and ``<tabs>`` content missing from configuration in some cases
- I experienced this with a very simple OSPF configuration that I had on the 2.4 stable branch. This was an in-place up...
-
01:28 AM Feature #11306 (Duplicate): Switchable time-out for remote admin (like “reload in min / reload cancel” in CISCO)
- Implementation of timeout for remote administration when some change (in ACL for example, in fw rules, etc., ) may ca...
-
01:02 AM Bug #11305 (Duplicate): Gateway Group Trigger Level 'Packet Loss or High Latency' Broken
- Duplicate of #11298
-
12:09 AM pfSense Packages Feature #10816 (Resolved): Allow FRR BGP Neighbors to be active in both IPv4 and IPv6
- Tested on 21.02-DEVELOPMENT (amd64)
built on Sat Jan 23 00:06:39 EST 2021
FreeBSD 12.2-STABLE
Checkbox "Address ... -
12:04 AM pfSense Packages Feature #11202 (Resolved): Antivirus feature update
- Tested on 21.02-DEVELOPMENT (amd64)
built on Sat Jan 23 00:06:39 EST 2021
FreeBSD 12.2-STABLE
All these new feat...
01/23/2021
-
09:15 PM Bug #11290: Package ``<plugins>`` and ``<tabs>`` content missing from configuration in some cases
- please provide the Steps to reproduce the issue.
-
06:52 PM Bug #11290: Package ``<plugins>`` and ``<tabs>`` content missing from configuration in some cases
- Update: I'm not seeing this in the latest snapshots now. So I'm not entirely sure what's going on. There might be an ...
-
06:44 PM Bug #11300: WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- I guess I'm not familiar enough with the current codebase to follow the reasoning here, but I've created a few manual...
-
09:23 AM Bug #11300 (Rejected): WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- It's not viable, unfortunately. I tried doing it a few different ways but the current behavior is the best so far.
... -
08:57 AM Bug #11300 (Resolved): WireGuard Gateway Should Monitor the Remote Peer, not the Local Peer.
- Not sure the value of monitoring the local/self peer on WireGuard gateways. These should monitor the far/remote end. ...
-
06:01 PM Bug #11305 (Duplicate): Gateway Group Trigger Level 'Packet Loss or High Latency' Broken
- Whenever I'm doing PBR using a gateway group with a trigger level of 'Packet Loss or High Latency', the firewall rule...
-
03:54 PM Bug #11304 (Resolved): DNS-Problems after Configuring VPN-WireGuard with IPv4 & IPv6 Address
- VPN / WireGuard / Tunnels
Address: 172.16.16.1/24 -> Everything ist OK
Also allowed is a Comma separated lis... -
03:32 PM pfSense Packages Bug #8047: XG-2758 - Coreboot Upgrade - Different ROM size
- Renato Botelho wrote:
> According ADI engineers XG-2758 requires a physical power cycle after upgrade coreboot and b... -
12:52 PM Bug #11303: Sticky connections units
- fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/107 -
12:32 PM Bug #11303 (Resolved): Sticky connections units
- Under System/Advanced/Miscellaneous - LoadBalancing description, it is not clear what is the measurement unit(seconds...
-
11:38 AM pfSense Packages Bug #8466: radiusd crash
- Fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/29 -
10:49 AM Feature #11294: New Dynamic DNS Provider: Yandex PDD
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/242
-
09:45 AM Bug #11288 (Resolved): Wireguard: Peer PSK is auto-filled to the keepalive field
- 2.5.0.a.20210122.2350 fixed
-
09:44 AM Bug #11283 (Resolved): Incorrect WireGuard help page
- 2.5.0.a.20210122.2350 fixed
-
09:43 AM Feature #11302 (New): WireGuard XMLRPC sync
- It would be nice to sync WireGuard configuration and automatically set it to 'disabled' state on the secondary node
... -
09:20 AM pfSense Packages Feature #11301: Switch FRR to use default rc file as a service control base
- PR: https://github.com/pfsense/FreeBSD-ports/pull/1033
-
09:20 AM pfSense Packages Feature #11301 (Feedback): Switch FRR to use default rc file as a service control base
- Switch FRR to use default rc file as a service control base
- Set rc.conf.d/frr for watchfrr service action su... -
08:53 AM Bug #11299: Unused L2TP VPN files are not removed when the service is disabled
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/105
-
08:51 AM Bug #11299 (Resolved): Unused L2TP VPN files are not removed when the service is disabled
- `/var/etc/l2tp-vpn` files are not deleted if you disable L2TP VPN
-
08:37 AM Bug #11282 (Resolved): php error on creating new PPPoE server instance
- works as expected on 2.5.0.a.20210122.2350
-
08:35 AM pfSense Packages Feature #11102 (Resolved): Include a dictionary for mpd5 in Freeradius
- dictionary.mpd is included
-
08:24 AM Bug #11296: Static route targets may still reachable via default route when the gateway they should route through is down
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/104
-
02:54 AM Bug #11296 (New): Static route targets may still reachable via default route when the gateway they should route through is down
- https://forum.netgate.com/topic/160103/static-routes-not-as-expected:
When WAN gateway is down, I can still access/p... -
06:25 AM Bug #11297: strongSwan doesn't support wildcard certificates
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/103
-
03:18 AM Bug #11297 (Resolved): strongSwan doesn't support wildcard certificates
- Wildcard certificates are declared deprecated in RFC 6125.
A check which would prevent users from adding a wildcar... -
04:49 AM Bug #11298: Gateway Group Offline Bug
- fix: https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/102
see also #10716 -
03:43 AM Bug #11298 (Resolved): Gateway Group Offline Bug
- https://forum.netgate.com/topic/160153/gateway-group-offline-bug:
In 2.5.0.a.20210121.2350 I discovered an issue t...
01/22/2021
-
11:48 PM pfSense Packages Feature #11295 (Resolved): DNSBL IDN support
- Add IDN domains support to:
- DNSBL Whitelist
- DNSBL Custom_List
- Python no AAAA List
- IPv4 Custom_List (domai... -
11:46 PM pfSense Packages Feature #9249 (Resolved): [siproxd] Add config for siptrunk plugin
-
11:13 PM pfSense Packages Feature #9249: [siproxd] Add config for siptrunk plugin
- The configuration has been added to /usr/local/etc/siproxd.conf after Enabling SIP Trunk Plugin
load_plugin=plugin... -
11:09 PM Feature #11294 (Closed): New Dynamic DNS Provider: Yandex PDD
- Add support for pddimp.yandex.ru dyndns:
https://yandex.com/dev/connect/directory/api/concepts/domains/dns-records-v... -
11:01 PM Feature #11293 (Closed): New Dynamic DNS Provider: one.com
- Add support for one.com DDNS, see:
https://forum.netgate.com/topic/124904/dynamic-dns-one-com -
09:26 PM Bug #11292 (Duplicate): in the wireguard page double clicking existing tunnel doesn't open the configuration page
- in the wireguard page
double clicking existing tunnel doesn't open the configuration page
like others pfsense p... -
09:05 PM Bug #11283: Incorrect WireGuard help page
21.02.a.20210120.2350 fixed
2.5.0.a.20210121.2350 not fixed-
07:20 AM Bug #11283 (Feedback): Incorrect WireGuard help page
- Applied in changeset commit:16a294f7678a4be1a0e7fc066300958dc734deb3.
-
02:26 AM Bug #11283: Incorrect WireGuard help page
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/100
-
02:23 AM Bug #11283 (Resolved): Incorrect WireGuard help page
- Clicking on the help icon redirects to https://docs.netgate.com/pfsense/en/latest/index.html instead of https://docs....
-
06:23 PM Revision fedf01cd: Fix length check for WireGuard interface descriptions
-
06:23 PM Revision e1afb219: Add WireGuard to easyrule
-
06:11 PM Bug #11291 (Resolved): WireGuard MTU Can Flap between 1420 and 1500
- The default WireGuard MTU is typically 1420. However , I’ve observed cases where the wg interfaces will flap between ...
-
05:40 PM Revision bc8cf86b: Exclude wg(4) from auto outbound NAT. Fixes #11289
-
04:02 PM Revision a0103e4b: PPPoE Server users create and instance delete fix. Issue #11282
- 04:00 PM Revision d3eb9b35: Fixed 11287 by moving style to css
-
03:55 PM Revision c0d26370: Use gettext() on WireGuard endpoint text. Issue #11286
-
03:52 PM Revision e801e55b: Assume default WG port if empty. Fixes #11286
- While here, print a more user-friendly value when peer endpoints are
empty. -
03:30 PM Revision 262dba24: Fix populating keepalive value. Fixes #11288
-
03:24 PM Revision df799f2c: Assume default WG port if empty. Fixes #11286
-
03:17 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Chris Linstruth wrote:
> I suggest a checkbox to enable default-originate and a pulldown that lists the route maps f... -
03:15 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- PR: https://github.com/pfsense/FreeBSD-ports/pull/1032
-
02:46 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- I suggest a checkbox to enable default-originate and a pulldown that lists the route maps for OPTIONAL inclusion.
-
01:36 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- George Phillips wrote:
> Basically, that drop-down menu should be empty unless the user defines their own route-maps... -
01:35 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Yeh it's a bug, if you select IPv4+IPv6 then it'll work as expected but everything else it'll interpret at a route ma...
-
12:14 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Basically, that drop-down menu should be empty unless the user defines their own route-maps. The ipv4, ipv6, and ipv...
- 03:17 PM Revision 56a4e2d5: Add doubleclick handlers to WireGuard tables
-
02:18 PM Bug #11290 (Resolved): Package ``<plugins>`` and ``<tabs>`` content missing from configuration in some cases
- FRR 1.0.0 is not properly starting/stopping in regards to the configured CARP status IP.
-
01:34 PM pfSense Packages Bug #8466: radiusd crash
- I tested on the latest snapshot. It still allows entering " as the first character.
e.g., entering the password _... -
01:15 PM Revision 171b0eb2: Revert "Add wg to ALTQ list. Implements #11280"
- Unstable. See #11285
This reverts commit 4a49b0d9b182c76f658201124c43278a65542c98. -
01:13 PM Revision 16a294f7: Add help.php entries for Wireguard pages. NG 5455 and Fixes #11283
-
01:02 PM Bug #10919 (In Progress): Improve handling of OpenVPN data cipher negotiation options
-
11:50 AM Bug #11289 (Feedback): Wireguard: Automatic outbound NAT rules are applied to the WG interface
- Applied in changeset commit:bc8cf86b8f1d83677c43ba4501704b9192501495.
-
11:41 AM Bug #11289: Wireguard: Automatic outbound NAT rules are applied to the WG interface
- It should be excluded from automatic outbound NAT, but it does belong in tonatsubnets (so it gets NAT out WANs).
C... -
11:21 AM Bug #11289 (Resolved): Wireguard: Automatic outbound NAT rules are applied to the WG interface
- It's unexpected that they should be there for a site-to-site setup.
Additionally the WG interface subnet is includ... -
10:43 AM pfSense Packages Bug #11054: Check Client Certificate CN not working as described
- see http://freeradius.1045715.n5.nabble.com/user-name-and-EAP-TLS-td5714550.html:...
-
10:23 AM Bug #11287 (Resolved): The Wireguard Peers list is not Dark theme compatible
- Looks good after a gitsync. It's respecting the CSS change now.
-
10:00 AM Bug #11287 (Feedback): The Wireguard Peers list is not Dark theme compatible
-
08:49 AM Bug #11287 (Resolved): The Wireguard Peers list is not Dark theme compatible
- The text is white in the Dark Theme which makes it almost impossible to view again the light blue background.
See:... -
10:05 AM pfSense Packages Bug #11055 (Resolved): Insecure FreeRADIUS defaults
- Tested on the latest snapshot. It's fixed. Ticket resolved.
-
10:03 AM Bug #11282 (Feedback): php error on creating new PPPoE server instance
- PR merged
-
02:14 AM Bug #11282: php error on creating new PPPoE server instance
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/99
-
01:41 AM Bug #11282 (Resolved): php error on creating new PPPoE server instance
- If you create a new PPPoE Server instance with a 1+ users, a will PHP error occur:...
-
10:00 AM Bug #11286 (Feedback): Endpoint port is mandatory if Endpoint is defined
- Applied in changeset commit:e801e55ba199db0cddeb05f5e0b8a0f7ba75c384.
-
09:52 AM Bug #11286 (In Progress): Endpoint port is mandatory if Endpoint is defined
- One more little thing, in the tunnel list it isn't assuming the default port in the display. Also it's showing ":" fo...
-
09:30 AM Bug #11286 (Feedback): Endpoint port is mandatory if Endpoint is defined
- Applied in changeset commit:df799f2c43441dc80174f6360ecdab0e78b15eb4.
-
09:19 AM Bug #11286: Endpoint port is mandatory if Endpoint is defined
- In this case we should assume the default port (@51820@) rather than making the field required. I'll take a look at it.
-
08:46 AM Bug #11286: Endpoint port is mandatory if Endpoint is defined
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/101
-
08:34 AM Bug #11286 (Resolved): Endpoint port is mandatory if Endpoint is defined
- It's not possible to define endpoint without port, i.e....
-
09:40 AM Bug #11288 (Feedback): Wireguard: Peer PSK is auto-filled to the keepalive field
- Applied in changeset commit:262dba240a74a4b70cacbe6835dcef344d44f316.
-
09:25 AM Bug #11288: Wireguard: Peer PSK is auto-filled to the keepalive field
- fix in https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/101/
-
09:21 AM Bug #11288 (Resolved): Wireguard: Peer PSK is auto-filled to the keepalive field
- If you configure a PSK on a WireGuard peer and then edit that peer the keep-alive field will be populated by the PSK ...
-
07:28 AM Todo #11280 (New): Add WireGuard to ALTQ list
-
07:25 AM Todo #11280 (Feedback): Add WireGuard to ALTQ list
- Applied in changeset commit:171b0eb2d69dc6737c63e5f6a2be63d705678c04.
-
07:16 AM Todo #11280 (New): Add WireGuard to ALTQ list
- Reverted this change for now since ALTQ on WireGuard is not stable. See #11285
-
04:46 AM Todo #11280 (Resolved): Add WireGuard to ALTQ list
- 2.5.0.a.20210121.2350 - I can successfully create a traffic shaper on the wg* interfaces
-
07:21 AM Bug #11284: php waring in interfaces after upgrading to latest dev version
- I didn't see any recent changes which might have introduced a problem on the lines in the error, so it definitely nee...
-
04:32 AM Bug #11284 (Rejected): php waring in interfaces after upgrading to latest dev version
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
03:26 AM Bug #11284 (Rejected): php waring in interfaces after upgrading to latest dev version
- i updated to the dev version 2.5.0.a.20210121.1437
it gave the following crash report
Crash report begins. Ano... -
07:17 AM Bug #11285: Kernel crash on ALTQ-enabled wg interfaces
- Moving ahead, no time to address this one for now. Reverted the change allowing ALTQ to be used with WireGuard for now.
-
06:02 AM Bug #11285 (Closed): Kernel crash on ALTQ-enabled wg interfaces
- If you create a traffic shaper queue on the assigned wg* interface,
any WireGuard manipulation (add peer / delete in... -
07:08 AM Feature #11281 (Duplicate): Generating WireGuard QR codes for fast mobile deployments
- Already covered in the plan for config export under NG 5436
-
12:22 AM Feature #11281 (Duplicate): Generating WireGuard QR codes for fast mobile deployments
- It would be nice to add QR code generator for fast mobile (Android/iOS) deployments,
Use FreeRADIUS QR code generato... -
05:05 AM Bug #11277 (Resolved): Hide WireGuard interfaces from Interface Assignments pages
- works as expected on 2.5.0.a.20210121.2350
-
04:41 AM Bug #11275 (Resolved): Certificate import of a signed certificate signing request is not offered
- resolved on 2.5.0.a.20210121.2350
-
02:33 AM Feature #9942: Give pfSense the possibility to change the keyboard Layout for console users
- localization steps:
https://forum.netgate.com/topic/159666/pfsense-localization-connecting-on-console-or-via-ssh
01/21/2021
-
11:02 PM Bug #9296 (Confirmed): Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
- see also #7209
-
01:06 AM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
- same issue on 2.5.0.a.20210120.1500
mixed alias entries:
- yandex.ru
- 1.2.3.4... -
09:57 PM Revision 8dffba30: Fix WireGuard case
-
09:55 PM Revision 5a33a16c: Ticket #5186: Enable Wireguard firewall rules tab
-
09:32 PM Revision e42e51fe: Correct typo. Fixes #11279
-
09:31 PM Revision 4a49b0d9: Add wg to ALTQ list. Implements #11280
-
09:19 PM Revision eb099537: Prevent invalid WireGuard assignments. Fixes #11277
-
08:57 PM Revision db2fefc5: Show WireGuard interface description during assignment. Issue #11277
-
07:55 PM Revision f50c6543: WireGuard assignment/disable behavior improvements. NG 5518
- * Do not allow a WireGuard instance to be removed while assigned
* Do not allow a WireGuard instance to be disabled w... -
04:42 PM Revision c3c257e4: Add WireGuard info to status output. NG 5483
-
04:03 PM Revision 488672e3: WireGuard default port usage fix. NG 5482
-
03:52 PM Bug #7209: Something is seriously wrong with firewall aliases
- This bug / #9296 was easily reproducible 3 years ago when I first hit it and still is today on 2.4.5-p1. Just make a...
-
01:06 AM Bug #7209: Something is seriously wrong with firewall aliases
- see #9296
-
03:40 PM Bug #11279 (Feedback): Typo in WireGuard Configuration
- Applied in changeset commit:e42e51fefbaf93d8be3f4d2524f72a0bf2c4b543.
-
03:32 PM Bug #11279 (In Progress): Typo in WireGuard Configuration
- Yep, typo. Fix incoming.
-
03:28 PM Bug #11279 (Resolved): Typo in WireGuard Configuration
- There´s a typo in the WireGuard peer configuration
I think this should be IPv4 or IPv6 address? -
03:40 PM Todo #11280 (Feedback): Add WireGuard to ALTQ list
- Applied in changeset commit:4a49b0d9b182c76f658201124c43278a65542c98.
-
03:31 PM Todo #11280 (New): Add WireGuard to ALTQ list
- wg interfaces support ALTQ, so can be added to the list.
-
03:25 PM Bug #11277 (Feedback): Hide WireGuard interfaces from Interface Assignments pages
- Applied in changeset commit:eb0995379ee6778af0b82a28122a9f36a8bd075a.
-
03:21 PM Bug #11277: Hide WireGuard interfaces from Interface Assignments pages
- Commit is coming momentarily which prevents WireGuard interfaces from being used in VLAN, QinQ, LAGG, and Bridges.
... -
03:19 PM Bug #11277 (In Progress): Hide WireGuard interfaces from Interface Assignments pages
-
11:12 AM Bug #11277 (Resolved): Hide WireGuard interfaces from Interface Assignments pages
- it's not needed on VLAN, QinQ, PPP, BRIDGES pages
also: VPN / L2TP, PPPoE server
IPsec, OpenVPN ? -
03:00 PM Revision e7e4ba5a: Signed CSR import fix. Issue #11275
-
01:35 PM Todo #11278: Update dnsmasq to >=2.8.3
- We are aware, but for the most part it wouldn't impact us. These are all issues in dnsmasq, which while included in p...
-
01:08 PM Todo #11278 (Resolved): Update dnsmasq to >=2.8.3
- Not really a bug, but are you aware of DNSpooq?
https://www.jsof-tech.com/disclosures/dnspooq/
AFAIK, it was just... -
10:54 AM Feature #8786: Wireguard VPN
- Renato Botelho wrote:
> Initial kernel version wireguard support is now in place
FYI. I have receiving fetch err... -
09:44 AM Bug #11272 (Pull Request Review): OCSP settings only for TLS auth
-
12:16 AM Bug #11272: OCSP settings only for TLS auth
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/97
-
09:42 AM pfSense Packages Bug #11274 (Pull Request Review): ntopng https web server does not present full certificate chain
-
08:04 AM pfSense Packages Bug #11274: ntopng https web server does not present full certificate chain
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/28 -
06:50 AM pfSense Packages Bug #11274 (Resolved): ntopng https web server does not present full certificate chain
- The https protected web frontend (port 3000) of ntopng 0.8.13_6 (tested on pfSense CE 2.4.5_1) does not work correctl...
-
09:41 AM Bug #11275 (Feedback): Certificate import of a signed certificate signing request is not offered
- PR merged
-
09:01 AM Bug #11275: Certificate import of a signed certificate signing request is not offered
- Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/98 -
06:57 AM Bug #11275 (Resolved): Certificate import of a signed certificate signing request is not offered
- Testing the current pfSense 2.5.0-DEVELOPMENT version I encountered a problem with the certificate manager. When requ...
-
09:27 AM Bug #11276 (Rejected): CARP both master master
- There is a problem with your configuration or environment. This site is not for support or diagnostic discussion.
... -
09:18 AM Bug #11276 (Rejected): CARP both master master
- Hi,
I've an issue with two CARP interfaces. Both are seen as Master/master. All of others CARP interfaces are work... -
08:08 AM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- Looks like 2.5.0 still appends a route-map to me....
-
07:52 AM pfSense Packages Bug #11273 (Not a Bug): ntopng password reset does not work
- unable to reproduce - I can successfully update admin password
you need to use pfSense WebGUI to change password, no... -
06:45 AM pfSense Packages Bug #11273 (Not a Bug): ntopng password reset does not work
- Modifying the admin password in the ntopng settings does not seem to work.
Versions: ntopng 0.8.13_6 on pfSense CE... -
04:59 AM Bug #11082: XMLRPC synchronization restarts all OpenVPN instances on the secondary node when making any change on the primary node
- Hello everyone,
This issue is also affecting us, do you know approximately when an official update is going to fix... -
02:34 AM Bug #11256: Cannot add alias with multiple URLs
- I can reproduce it on 2.4.5-p1,
but it works fine on 2.5.0.a.20210120.1500 -
12:46 AM pfSense Packages Bug #11261: pfBlockerNG ASN numbers in IPv4 (/IPv6) Custom_List generate error(s) "Invalid numeric literal at line 1, column 7"
- no such issue with pfBlockerNG-devel 3.0.0_8 - I can successfully add AS number to IPv4/IPv6 Custom_List and see no e...
- 12:18 AM Revision e564dbd6: Add ^wg to list of interface mimatch types
01/20/2021
-
11:43 PM Bug #11272 (Resolved): OCSP settings only for TLS auth
- There is no need to show OCSP settings for "Peer to Peer (Shared Key)" and "Remote Access (User Auth)" auth modes
-
11:25 PM pfSense Packages Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- > Selecting IPv4+IPv6 announces the route but it is counter-intuitive for someone creating an IPv4-only peer to selec...
-
08:12 PM pfSense Packages Bug #11271 (Resolved): Setting default-originate in FRR/BGP Silently Appends a route-map
- When setting default-priginate on a BGP neighbor thew user is presented with four choices by default:
* No
* IPv4... -
11:16 PM pfSense Packages Feature #10789 (Feedback): FRR integrated configuration and hitless reloads
- Merged
-
08:27 PM Revision 8e48b2e2: Add OS routes using WireGuard Peer AllowedIPs. Part of NG 5437
-
07:50 PM Revision 45ae5c55: Remove WireGuard peernwks field which is not needed. Part of NG 5437
-
07:43 PM Revision 6e23ca79: Fix some bad WireGuard capitalization
-
07:39 PM Revision 236f8ecc: Automatic WireGuard interface gateways. Part of NG 5437
-
05:40 PM Revision a0341111: Update translation files
-
05:37 PM Revision 9661de36: Regenerate pot
-
05:27 PM Revision 3856366b: Retire VXLAN support
- VXLAN support is not enterprise ready and after internal discussion we
decided we are not able to support it. We are... -
03:34 PM Feature #11270: Consider integrating Nebula mesh VPN
- Forgot to add the link...
https://github.com/slackhq/nebula -
03:34 PM Feature #11270 (New): Consider integrating Nebula mesh VPN
- Slack's Nebula VPN is a very slick system that more-or-less uses Wireguard tunnels, but a sane and scaleable key/cert...
-
01:44 PM Revision 55da9aef: Change XML listtag entry for peer to wgpeer for issue #5186
-
10:28 AM Bug #11267 (Resolved): PHP Error in FRR after WireGuard merge
-
10:01 AM Bug #11267: PHP Error in FRR after WireGuard merge
- I applied the patch and the neighbors came back. Thanks for the quick fix!
-
09:46 AM Bug #11267 (Feedback): PHP Error in FRR after WireGuard merge
- This is due to WireGuard trying to use the 'peer' tag as a list when it should be using 'wgpeer' which didn't carry o...
-
07:38 AM Bug #11267 (Resolved): PHP Error in FRR after WireGuard merge
- Testing:...
-
09:46 AM pfSense Packages Bug #11269 (Duplicate): FRR BGP neighbors missing after update
- We are aware -- it's not a problem in FRR, but in the base system. See #11267
-
09:39 AM pfSense Packages Bug #11269: FRR BGP neighbors missing after update
- Just found a crash report too:...
-
09:37 AM pfSense Packages Bug #11269 (Duplicate): FRR BGP neighbors missing after update
- Just upgraded to beta 2.5.0.a.20210119.2350 and my bgp neighbors are missing their IP address. If I try and add the ...
-
08:45 AM Bug #11268 (Resolved): Cookie named ``id`` prevents some forms from being loaded or saved properly
- If you have a cookie set with a name 'id' (any value), and you try to edit something, e.g. a firewall rule, the form ...
01/19/2021
-
08:05 PM Revision ef0b6170: Fix copyright notices
-
08:05 PM Revision b386d073: Remove commented out code
-
08:05 PM Revision 1566a360: Spell WireGuard properly
-
06:58 PM Feature #11266 (Resolved): Option to list AutoConfigBackup entries in "reverse" order (newest at top)
- I'm sure there are others like me that prefer and that are used to latest entries being at the top.
Just today whe... - 06:34 PM Revision 6f0fbd64: Fixed #11265 - Remove unwanted log messages
-
02:35 PM Revision 06dda92e: wg: Deny toconfigure IP address on wg interfaces
- Ticket #5186
-
02:35 PM Revision 6facda79: Add igc to ALTQ list. Issue NG 5185
-
02:35 PM Revision c9706433: Preserve wireguard address after interface assign
-
02:35 PM Revision 4efe99c6: Improve code readability
- 02:35 PM Revision c3acf286: Fixed #5486 by making peer endpoint and port optional
- 02:35 PM Revision f88a9797: Warn user if peer table has changed before leaving page
- 02:35 PM Revision 422f8a04: Added new Wireguard config fields peernwks and peerwgaddr per #5437
-
02:35 PM Revision 282d8ee7: wg: Configure static routes
- When configuring a wg tunnel, update static routes associated with that
interface -
02:35 PM Revision d1ac0394: Update copyright year
-
02:35 PM Revision fbf0a83d: Fix typo
-
02:35 PM Revision 39a615f0: Ticket #5186: Re-create config files during boot
- 02:35 PM Revision 948266c7: Load file on pressing 'Enter' key
-
02:35 PM Revision 580c7a4f: Ticket #5186: Implement is_wg_enabled()
-
02:35 PM Revision 07aa50fd: Ticket #5186: Fix comment
- 02:35 PM Revision aea837f8: #5186 - Revised peer configuration to use 'wgpeer' rather than 'peer'
-
02:35 PM Revision a0669cfb: wg: Do not check assigned interface (Ticket #5186)
- When saving changes on wireguard, do not check address conflict on
interface assigned to that tunnel, otherwise, it w... -
02:35 PM Revision b0c94a2e: wg: Fix indent and improve code readability
-
02:35 PM Revision 69ae8263: wg: Adjust priv entries
-
02:35 PM Revision 97e391de: wg: Use a more generic function to detect IP address
-
02:35 PM Revision 835e6895: wg: Remove extra spaces
-
02:35 PM Revision 50bd4119: wg: isset() just before is_array() is redundant
-
02:35 PM Revision d763c52b: wg: unlink_if_exists() can deal with glob matches
-
02:35 PM Revision e340cb98: wg: Style fixes
-
02:35 PM Revision cfc9bcc7: wg: Fix gettext() calls
-
02:35 PM Revision 4e43d19d: wg: Simplify logic
- 02:35 PM Revision 21e74d25: Fix Wireguard tunnel save with zero peers
- 02:35 PM Revision 2b0b1f3b: Completed revision of wg config edit fors
- 02:35 PM Revision ae53a939: Revised wg edit system to use peer table as source of truth
- 02:35 PM Revision 971d1374: Eliminate ghost lines in modal
- 02:35 PM Revision 6fca3062: revised peer display/edit form
- 02:35 PM Revision bff120fb: Revise appearance of save and PSK buttons
- 02:35 PM Revision e773d8fe: Added allowed ip validation
- 02:35 PM Revision 566facd9: #5186 fixed validation issues as requested
- 02:35 PM Revision a76f22d7: #5186 - Provide 'generate PSK' butoon. Some fixes to validation
- 02:35 PM Revision 165b5c4f: #5186 - Add ability to mark row-helper help text as required (underlined) by pre-pendinf text with '*'. No longer clear help text when adding new peer.
- 02:35 PM Revision db784b1a: #5186 Added keepalive units, clarified Address text, added incremented port placeholder, minor validation changes
- 02:35 PM Revision 065847a4: Added user input validation for Wireguard config. Marked certain values as required
-
02:35 PM Revision f319adf4: Add the tunnel address to WG interface.
- Wireguard support is now functional.
-
02:35 PM Revision 4103ddd6: Fix the wireguard configuration file, start tunnels at boot.
- Add the Endpoint port, fix the configuration permissions.
Remove the WG tunnel when a tunnel is removed. - 02:35 PM Revision 1698954c: Added support for wireguard pre-shared keys
- 02:35 PM Revision b8abb69c: Optionally generate keys in JSON
- 02:35 PM Revision 7d18cbb6: Added ability to generate a new public/private key pair for hte interface. Public key is displayed on the tunnel edit form
-
02:35 PM Revision 0f674c32: Fixes the saving of peers settings in GUI.
- The previous commits had a few mistakes which were fixed in here.
Fixes the WG configuration path and creation.
The... -
02:35 PM Revision 5f4b92c2: Rename the Wireguard peers entries in configuration XML to 'peer'.
- 'peer' is already properly handled by the XML routines as a list entry, which
is not the case of 'peers'.
This fixes... -
02:35 PM Revision 52a5f91f: Fix a typo.
- No functional change.
-
02:35 PM Revision f8fac290: Fix the file name in header.
- Remove the mention from m0n0wall, this code was created for pfSense.
- 02:35 PM Revision c5070198: Moved wg.inc to proper location
- 02:35 PM Revision eebd46d0: Dim row when tunnel is disabled
- 02:35 PM Revision efb7b532: Removed peer file. No longer needed
- 02:35 PM Revision e5f5c961: Revised tunnel table, added firewall key display, added key generation code
- 02:35 PM Revision 77084fc6: Add tunnel name (wg?) to tunnel so that tunnels can be deleted without renumbering the remaining tunnels
- 02:35 PM Revision 02b75dc3: Completed tunnel delete logic
- 02:35 PM Revision 42c33bac: Completed new tunnel functionality when no tunnels exist in hte config
- 02:35 PM Revision ea07ba5a: Completed config file update
- 02:35 PM Revision 42fc38a3: Add new tunnel functionality
- 02:35 PM Revision 7ce95691: Completed 'row helper' stuff to allow peers to be added and deleted
- 02:35 PM Revision 8a31882d: Split peer form into two rows with custom Javascript methods
- 02:35 PM Revision b445ccbf: Added form elements to edit interface
- 02:35 PM Revision 80af47f0: Prototyped main wireguard UI page
- 02:35 PM Revision 54ff075d: Accommodate PersistentKeepalive and PresharedKey peer options
- 02:35 PM Revision 729c4d55: <peer> => <peers>
- 02:35 PM Revision 82bcf46c: Outlined Wireguard GUI pages and added it to the VPN menu
- 02:35 PM Revision c6cdaad1: Outlines config.xml => wireguard config files utility
-
02:35 PM Revision 9922914d: Build the Wireguard module
-
12:40 PM Bug #11265: Remove log spam due to bootstrap map file
- Applied in changeset commit:6f0fbd6406d5a7ebfa60c56c7755cd0815c883d5.
-
12:34 PM Bug #11265 (Feedback): Remove log spam due to bootstrap map file
-
12:28 PM Bug #11265 (Resolved): Remove log spam due to bootstrap map file
- Bootstrap is making unneeded log file entries when trying to access bootstrap.css.map
-
10:31 AM Feature #11264 (Closed): Redirect Captive Portal users to login page after they logout
- Currently (i.e when a custom logout page is present) when a user clicks on logout , a window with the logout message ...
-
08:41 AM Feature #8786 (Feedback): Wireguard VPN
- Initial kernel version wireguard support is now in place
-
07:06 AM pfSense Packages Bug #11185: Redis service stopping before NtopNg
- Yes, because patched version is 0.8.13_8 if nothing changed
I really doesn't understand when packages are pushed t... -
06:30 AM pfSense Packages Bug #11185 (Assigned): Redis service stopping before NtopNg
- Tested on 2.4.5_p1 (2 versions of NtopNG: 0.8.13_5 and 0.8.13_6) and on 2.5-DEVELOPMENT (built on Tue Jan 19 00:05:03...
01/18/2021
-
10:27 PM Bug #11263 (Not a Bug): Unbound fails to parse config if DNS Query Forwarding and custom options are enabled
- It's a known and well documented case. Given the wide variety of what users may want to do with custom options, the U...
-
10:05 PM Bug #11263: Unbound fails to parse config if DNS Query Forwarding and custom options are enabled
- Looks like this can be "fixed" by prepending "server:" before the list of custom options.
This wasn't obvious from t... -
09:33 PM Bug #11263 (Not a Bug): Unbound fails to parse config if DNS Query Forwarding and custom options are enabled
- I tried to enable DNS Query Forwarding and I have a custom option.
unbound-checkconf fails pointing to the custom op... -
09:25 PM Bug #8468: Status / Queues show mostly NaN
- Not sure why this is rejected, a bunch of users see this issue.
It's a quick patch, just edit /usr/local/www/status_... -
05:23 PM Feature #11262 (New): Time Based Rules - selects all days in the current month
- *Page:* https://docs.netgate.com/pfsense/en/latest/firewall/time-based-rules.html
*Feedback:*
I don't know i... -
05:02 PM pfSense Packages Bug #11259: pfBlockerNG-devel fails to update all IP addresses for ASN using IPv4 Source Definitions
- I may not be able to reproduce this bug now.
-
03:39 PM pfSense Packages Bug #11259 (Closed): pfBlockerNG-devel fails to update all IP addresses for ASN using IPv4 Source Definitions
- pfBlockerNG-devel v3.0.0_8
pfBlockerNG-devel fails to update all IP addresses for ASN using IPv4 Source Definition... -
05:00 PM pfSense Packages Bug #11261 (New): pfBlockerNG ASN numbers in IPv4 (/IPv6) Custom_List generate error(s) "Invalid numeric literal at line 1, column 7"
- If AS numbers are entered in IPv4 Custom_List or IPv6 Custom_List, an error message, "Invalid numeric literal at line...
-
03:46 PM pfSense Packages Feature #11260 (New): pfBlockerNG: predefined ASN groups for Google, Facebook, Apple, etc with useful selections
- pfBlockerNG has the useful feature to create Aliases of IP addresses using ASN number(s).
This is useful for defin... -
03:29 PM Bug #11255: ipv6 unable to get delegation
- Jim Pingle wrote:
> There is no evidence that it is a bug -- which is why you must discuss it first on the forum. "I... -
03:23 PM Bug #11255: ipv6 unable to get delegation
- There is no evidence that it is a bug -- which is why you must discuss it first on the forum. "It works here but not ...
-
03:05 PM Bug #11255: ipv6 unable to get delegation
- Jim Pingle wrote:
> This site is not for support or diagnostic discussion.
>
> For assistance in solving problems... -
03:03 PM Bug #11255 (Rejected): ipv6 unable to get delegation
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
03:00 PM Feature #11207 (Closed): Add watchfrr to routing log
-
03:00 PM pfSense Packages Feature #11233 (Closed): Add 'Allow IP options' interface fw rule note
-
03:00 PM Bug #11254 (Pull Request Review): Some OpenVPN configuration files remain after deleting an instance
-
02:54 PM pfSense Docs Correction #11258 (Closed): Feedback on Installing and Upgrading — Prepare Installation Media — Prepare a USB Memstick
- *Page:* https://docs.netgate.com/pfsense/en/latest/install/write-memstick.html#connect-the-usb-memstick-to-the-workst...
-
02:51 PM Bug #11256: Cannot add alias with multiple URLs
- Same goes for URLs with ports lists.
-
10:45 AM Feature #11257 (New): Installed Packages: Update all button
- Hi, when you have more then 10 packages on pfsense it hard to update each one by one, but update all button simply mi...
-
04:59 AM Bug #7209: Something is seriously wrong with firewall aliases
- I can confirm that I have the same issue on 2.4.4-RELEASE-p1. please reopen this.
01/17/2021
-
03:46 PM Bug #10919: Improve handling of OpenVPN data cipher negotiation options
- The OpenVPN Server Wizard doesn't seem to be updated to reflect these changes. When running through the Wizard the fi...
-
07:09 AM Bug #11256 (Rejected): Cannot add alias with multiple URLs
- When adding an URL alias with multiple URLs, only the last URL ever gets resolved.
*Expected behavior:* every URL ... -
03:21 AM Feature #11207: Add watchfrr to routing log
- Are you saying there's something not working? As that output looks as expected to me.
01/16/2021
-
09:10 PM Bug #11255 (Rejected): ipv6 unable to get delegation
- I have a netgear cm1000 modem and for some reason with pfsense I cannot get an IPV6 allocation. I have plugged in my ...
-
06:44 PM Feature #11207: Add watchfrr to routing log
- Status>System Logs>System >Routing :
Jan 17 00:34:04 watchfrr 75512 watchfrr 7.5 starting: vty@0
Jan 17 00:34:04 ... -
03:21 PM Bug #9643: Limiters do not function properly on 2.5 snapshots
- I've tested FQ_CODEL Too, but not working.
i have dual wan setup, and i have 4 different limiters (2) for every wan ... -
02:29 PM pfSense Packages Feature #11233: Add 'Allow IP options' interface fw rule note
- The Note has been added.
2.5.0.a.20210115.2350 pimd 0.0.3_4
-
10:56 AM Bug #11254: Some OpenVPN configuration files remain after deleting an instance
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/96
-
10:09 AM Bug #11254 (Resolved): Some OpenVPN configuration files remain after deleting an instance
- If you delete OpenVPN Server/Client in the WebGUI, no all config files/directories will be deleted:...
-
06:38 AM pfSense Packages Bug #4088: Buggy squidgurd config file is created
- > 1) Do not write out sources for disabled ACLs, or squidguard treats these
sources as "always pass"!
fix:
https... -
05:45 AM pfSense Docs Correction #11253 (Resolved): Feedback on Multiple WAN Connections — Load Balancing and Failover with Gateway Groups
- *Page:* https://docs.netgate.com/pfsense/en/latest/multiwan/load-balance-and-failover.html
*Feedback:*
Minor typo... -
04:26 AM Bug #11249 (Resolved): openvpn peer to peer shared key deprecated warning
- works as expected on 2.5.0.a.20210115.2350
-
03:55 AM Feature #7467 (Resolved): Add iPhone/Android/Generic USB tethering support
- works as expected with Android:...
-
03:39 AM pfSense Packages Bug #11252 (Duplicate): Error importing UT1 blacklist
- Duplicate of #3085
-
01:53 AM pfSense Packages Bug #11252 (Duplicate): Error importing UT1 blacklist
- errors on importing ftp://ftp.ut-capitole.fr/pub/reseau/cache/squidguard_contrib/blacklists.tar.gz DB (used by pfBloc...
-
03:38 AM pfSense Packages Bug #3085: squidguard: problems when importing a blacklist archive containing soft-links
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/26
-
01:39 AM pfSense Packages Bug #6378 (Resolved): inline background styles in squidguard package
- works as expected
-
01:39 AM pfSense Packages Bug #9364 (Resolved): squidguard int error page does not use https
- works as expected:...
-
12:44 AM pfSense Packages Feature #7903: Duo ssh package
- duo_unix is already in the port collection:
https://www.freshports.org/security/duo/
01/15/2021
-
09:01 PM Bug #10680 (Resolved): Improve interface caching when we have many interfaces
- I was able to test this in 2.4.5p1 and 2.5. Boot time and GUI navigation speeds with 400 VLANs are significantly incr...
-
09:00 PM Feature #10972 (Resolved): Add IPv6 DDNS support for easyDNS
- Unable to test that this is working. I'll mark resolved since there is no recent feedback.
-
04:32 PM pfSense Packages Feature #11186: Allow lo0/Loopback as a valid interface in OSPF/OSPF6
- Just enable connected redistribution and they’ll be redistributed into OSPF. Then use route-map/access-list to filter...
- 04:04 PM Revision d9f8094b: Blacklist => Blocklist, Whitelist => Pass list
-
03:38 PM Bug #8070 (Closed): IKEv2 IPSec tunnel under load crashes pfSense when AES-NI is enabled
- Seems this is the same as:
https://redmine.pfsense.org/issues/8961
https://redmine.pfsense.org/issues/8964
Closi... -
03:11 PM Todo #11020 (Resolved): Update OpenVPN to 2.5.0
-
03:10 PM Revision a2ba5b6c: OpenVPN genkey secret command fix. Issue #11249
-
02:23 PM Revision a847ee75: Revert "Do not build drm2 kernel module, we want drm-mod from ports"
- This reverts commit a8a1fb54b706f8f320b130bb3a4a9d290089f5f4.
-
02:23 PM Revision 67d1f4f8: Revert "Revert "Remove drm-kmod""
- This reverts commit d52832b5c4c195614d2826f772166c253390222f.
-
12:23 PM pfSense Docs Correction #11244: Feedback on Packages — Nut package
- This link: https://forum.netgate.com/topic/102959/nut-package
The package info link was changed last week to a doc... -
11:09 AM pfSense Docs Correction #11244: Feedback on Packages — Nut package
- Denny Page wrote:
> *Page:* https://docs.netgate.com/pfsense/en/latest/packages/nut.html
>
> *Feedback:*
>
> M... -
11:08 AM Bug #11250: disabled FTP-Proxy service starts on boot
- It's there and working, but you may not have access as it's not a public copy of the repository.
-
11:03 AM Bug #11250: disabled FTP-Proxy service starts on boot
- Viktor Gurov wrote:
> https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/25
Unable to view this li... -
05:34 AM Bug #11250: disabled FTP-Proxy service starts on boot
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/25
-
05:30 AM Bug #11250 (Resolved): disabled FTP-Proxy service starts on boot
- after disabling FTP-Proxy in the WebGUI rc file is not deleted
and the service starts at boot -
10:19 AM Bug #11251: Alias JS validation rejects 193.122.208.0/20
- I tried in Chrome and I do not have an issue. I scrubbed the text in notepad to make sure there is not html being pa...
-
10:15 AM Bug #11251: Alias JS validation rejects 193.122.208.0/20
- That's what I used, same version, on Linux Mint and Windows 10.
Maybe a browser add-on or similar, something cache... -
10:13 AM Bug #11251: Alias JS validation rejects 193.122.208.0/20
- Can you try latest Firefox 84.0.2 64-bit?
-
10:10 AM Bug #11251 (Not a Bug): Alias JS validation rejects 193.122.208.0/20
- Must be something in your browser. I can't replicate this on 2.4.5-p1 or 2.5.0 on amd64 or ARM. The provided value wo...
-
10:04 AM Bug #11251 (Not a Bug): Alias JS validation rejects 193.122.208.0/20
- Hi Everyone,
Got a weird issue here. The validation in Alias' does not seem to like CIDR range 193.122.208.0/20.... -
09:40 AM pfSense Packages Bug #11247 (Rejected): pfBlockerNG DNSBL service refused to start
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
04:38 AM pfSense Packages Bug #11247: pfBlockerNG DNSBL service refused to start
- khaled osama wrote:
> pfBlockerNG DNSBL service refused to start
>
> [2.5.0-DEVELOPMENT]/root: /usr/local/etc/rc... -
09:10 AM Bug #11249 (Feedback): openvpn peer to peer shared key deprecated warning
- PR has been merged. Thanks!
-
07:29 AM Bug #11249: openvpn peer to peer shared key deprecated warning
- another deprecated option:
https://community.openvpn.net/openvpn/wiki/DeprecatedOptions#Option:--route-nopull
https... -
07:15 AM Bug #11249: openvpn peer to peer shared key deprecated warning
- Fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/95
see https://community.openvpn.net/openvpn/wik... -
05:09 AM Bug #11249 (Resolved): openvpn peer to peer shared key deprecated warning
- 2.5.0-DEVELOPMENT (amd64)
built on Thu Jan 07 21:49:54 EST 2021
FreeBSD 12.2-STABLE
create a new openvpn server ... -
08:13 AM Bug #10224 (Resolved): DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
- works as expected on 2.5.0.a.20210114.2350
dhcpd.conf example:... -
05:32 AM pfSense Packages Bug #11236 (Resolved): A Link to the Virtual IP setup doesn't work under Frontend setup
- Tested on the latest snapshot. It works fine. Ticket resolved.
-
04:12 AM pfSense Packages Feature #11248: SafeSearch update
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/24
-
03:45 AM pfSense Packages Feature #11248 (Resolved): SafeSearch update
- Add Ecosia and Onesearch safesearch support
see also https://github.com/serv-inc/safe-search -
03:44 AM pfSense Packages Bug #11246 (Closed): Squid Reverse proxy 'https_port option cert=' startup error
- Manual squid configuration issue
-
03:42 AM pfSense Packages Feature #11060: Block access to consumer Google accounts
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/23
01/14/2021
-
11:12 PM pfSense Packages Bug #11234: Filer not create missing necessary folders
- recursive mkdir fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/22
> Also here is question... -
11:10 PM pfSense Packages Bug #11247 (Rejected): pfBlockerNG DNSBL service refused to start
- pfBlockerNG DNSBL service refused to start
[2.5.0-DEVELOPMENT]/root: /usr/local/etc/rc.d/pfb_dnsbl.sh restart
2... -
03:02 PM Feature #11243: individual pfctl snort2c tables per interface only blocking IPs for specific interface when a rule triggers in snort/suricata
- I understand better now. I am not against having unique blocking tables for each interface, but implementing that req...
-
01:15 PM Revision 16ea962d: Static DHCP mappings DDNS tabs fix. Issue #10224
-
12:20 PM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
- I just registered here to say that I believe I'm experiencing this exact bug (see https://forum.netgate.com/topic/159...
-
08:19 AM pfSense Packages Bug #11185 (Feedback): Redis service stopping before NtopNg
- PR has been merged. Thanks!
-
08:08 AM Bug #1635 (Resolved): timeout setting on firewall rules does not work for UDP
- works as expected on 2.5.0.a.20210113.0250 -
pfctl successfully loads rules with `udp.multiple` and `other.multiple... -
07:42 AM pfSense Packages Bug #11055 (Feedback): Insecure FreeRADIUS defaults
- PR has been merged. Thanks!
-
07:37 AM Bug #10224 (Feedback): DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
- Merged
-
07:36 AM Bug #10224 (Pull Request Review): DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
-
07:17 AM Bug #10224: DHCP DDNS does not add zone entries for keys when using static host DDNS definitions
- minor tabs fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/94 -
07:34 AM pfSense Packages Feature #11202 (Feedback): Antivirus feature update
- PR has been merged. Thanks!
-
04:43 AM pfSense Packages Feature #11202: Antivirus feature update
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/21
-
07:34 AM pfSense Packages Feature #10541 (Feedback): Squid failover and load balancing
- PR has been merged. Thanks!
-
06:45 AM pfSense Packages Bug #11246 (Closed): Squid Reverse proxy 'https_port option cert=' startup error
- https://forum.netgate.com/topic/159859/squid-version-4-10-cant-start-service:...
-
06:25 AM pfSense Packages Feature #11233 (Feedback): Add 'Allow IP options' interface fw rule note
- PR has been merged. Thanks!
-
06:11 AM pfSense Packages Bug #11236 (Feedback): A Link to the Virtual IP setup doesn't work under Frontend setup
- PR has been merged. Thanks!
-
06:09 AM Bug #11237: Incorrect copyright year
- Tested on the latest snapshot.
It looks fine.
Ticket resolved. -
06:09 AM Bug #11237 (Resolved): Incorrect copyright year
- Danilo confirmed it's OK
-
05:23 AM Bug #11237: Incorrect copyright year
- Alhusein Zawi wrote:
> it is still 2020 (attached)
>
> 2.5.0.a.20210113.0250
This one comes from Prodtrack an...
01/13/2021
-
11:10 PM pfSense Docs Correction #11245 (Resolved): Feedback on Virtual Private Networks — IPsec — IPsec Configuration
- *Page:* https://docs.netgate.com/pfsense/en/latest/vpn/ipsec/configure.html
*Feedback:*
Description of the Dyna... -
05:09 PM Revision d52832b5: Revert "Remove drm-kmod"
- This reverts commit 86afee72c80bee8dd09a40fc801fe718044794a9.
-
05:08 PM Revision a8a1fb54: Do not build drm2 kernel module, we want drm-mod from ports
-
04:34 PM Bug #11237: Incorrect copyright year
- it is still 2020 (attached)
2.5.0.a.20210113.0250 -
03:51 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Can we get some kind of CAPTCHA on here to rid ourselves of this polluting junk??
-
01:14 PM pfSense Packages Feature #11233: Add 'Allow IP options' interface fw rule note
- I've added the note.
https://github.com/pfsense/FreeBSD-ports/pull/1027 -
04:41 AM pfSense Packages Feature #10541: Squid failover and load balancing
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/20
-
04:35 AM Feature #11243: individual pfctl snort2c tables per interface only blocking IPs for specific interface when a rule triggers in snort/suricata
- Bill, thank you for getting back to me that fast!
Indeed you are correct with you summary. A main challenge is the d... -
12:41 AM Todo #204 (Resolved): All write_config() statements should include a reason of some sort
- tested on 2.5.0.a.20210112.0250
all write_config() calls have messages -
12:00 AM pfSense Docs Correction #11244 (Resolved): Feedback on Packages — Nut package
- *Page:* https://docs.netgate.com/pfsense/en/latest/packages/nut.html
*Feedback:*
Might want to maintain a link ...
01/12/2021
-
11:30 PM Bug #11142 (Resolved): rc.newwanip restarts VPN services when the IP matches
- Alhusein Zawi wrote:
> Danilo Zrenjanin wrote:
>
> ipsec tunnel will be restarted if you hit apply at any interfa... -
11:04 PM pfSense Packages Feature #11113 (Resolved): New phishing feeds
-
08:06 PM Feature #11243: individual pfctl snort2c tables per interface only blocking IPs for specific interface when a rule triggers in snort/suricata
- I'm not sure I completely understand your request reasoning. In a typical default installation of the IDS packages al...
-
09:25 AM Feature #11243 (New): individual pfctl snort2c tables per interface only blocking IPs for specific interface when a rule triggers in snort/suricata
- Feature Request Background:
The snort2c table is used for blocking any connections to any IP address which is put in... -
07:56 AM Bug #11242 (Rejected): virtual ip alias prefix gets removed from routing table after 1 min
- I cannot reproduce this here, there must be some other problem in your environment causing the behavior you have obse...
-
05:37 AM Bug #11242 (Rejected): virtual ip alias prefix gets removed from routing table after 1 min
- We have a virtual ip alias called 192.168.100.254/24, when i add it then it adds 192.168.100.0/24 to the routing tabl...
-
06:14 AM pfSense Packages Todo #11215 (Resolved): Update NtopNG to 4.2
-
03:56 AM pfSense Packages Todo #11215: Update NtopNG to 4.2
- Thank you
-
02:09 AM pfSense Packages Bug #11101 (Resolved): Bind DNS Server won't start
- Tested on 2.4.5_p1 and on 2.5-DEVELOPMENT (built on Mon Jan 11 11:12:41 EST 2021).
On 2.4.5_p1 (Bind package versi...
01/11/2021
-
05:50 PM Revision e733f5b2: DHCPD ARPA zone trailing dot. Fixes #11224
-
04:49 PM Feature #9703: Certificate Manager Expiration Notification
- Orion Poplawski wrote:
> I just got hit by this as well. Notification email is definitely needed. Thanks.
I can... -
04:33 PM Feature #9703: Certificate Manager Expiration Notification
- I just got hit by this as well. Notification email is definitely needed. Thanks.
-
12:55 PM pfSense Docs Correction #11241: Feedback on Backup and Recovery — Restoring from Backups
- This is the case when restoring an OpenVPN configuration. I'm unsure what other areas it may apply to.
-
12:54 PM pfSense Docs Correction #11241 (Resolved): Feedback on Backup and Recovery — Restoring from Backups
- *Page:* https://docs.netgate.com/pfsense/en/latest/backup/restore.html
*Feedback:*
On the "Restore area" section ... -
12:00 PM Bug #11224: dhcpd.conf creation - zone declarations
- Applied in changeset commit:e733f5b2d0d35b68746efe8035af1688dfdd0103.
-
11:51 AM Bug #11224 (Feedback): dhcpd.conf creation - zone declarations
- PR has been merged. Thanks!
-
11:55 AM Bug #11237 (Feedback): Incorrect copyright year
- Fixed
-
11:53 AM pfSense Packages Todo #11215 (Feedback): Update NtopNG to 4.2
- It happened automagically when I merged 2021Q1 quarterly branch into FreeBSD-ports
-
11:48 AM Todo #11020: Update OpenVPN to 2.5.0
- >Exported what from 2.4.5-p1? The client config? Or the pfSense configuration?
Exported the server config from 2.4... -
10:59 AM Todo #11020: Update OpenVPN to 2.5.0
- Exported what from 2.4.5-p1? The client config? Or the pfSense configuration?
The client export package wouldn't h... -
10:34 AM Todo #11020: Update OpenVPN to 2.5.0
- Thanks for the detailed response Jim.
> If the user had exported a configuration in the past it shouldn't end up a... -
08:38 AM Todo #11020: Update OpenVPN to 2.5.0
- Marcos Mendoza wrote:...
-
10:40 AM pfSense Packages Bug #10749 (Resolved): squid + captive portal authentication not working
- Tested on 2.4.5_p1 (Squid package: 0.4.44_36) and on 2.5-DEV (built on Thu Jan 07 21:49:58 EST 2021) (Squid package: ...
-
09:43 AM Bug #6030 (Resolved): Duplicated tracker IDs on block private networks rules
-
09:43 AM Bug #7307 (Closed): ZFS installer - shuts down instead of rebooting
-
09:20 AM Bug #6025 (Resolved): Load balancing fails when one gateway has a weight of 1 and another gateway has a weight >1
-
08:58 AM pfSense Packages Bug #11236 (Pull Request Review): A Link to the Virtual IP setup doesn't work under Frontend setup
-
08:56 AM Feature #7842 (Pull Request Review): New Dynamic DNS Provider: Mythic-Beasts
-
08:13 AM Bug #11240 (Rejected): lan port on backup recenltly loose its static ip and take the vip lan
- You almost certainly have a problem with your configuration. This site is not for support or diagnostic discussion.
... -
08:07 AM Bug #11240 (Rejected): lan port on backup recenltly loose its static ip and take the vip lan
- hi all,
i have recently problem with my setup
i have two PFsense instances on ProLiant DL20 Gen9 with two onboa... -
08:06 AM Todo #11219: Improve IPsec GUI options for P1/P2 reauth/rekey
- When testing one thing I'm looking for is that the GUI settings put in manually correspond with the values in @/var/e...
-
03:25 AM pfSense Packages Feature #10665 (Resolved): Manual OSPF neighbor definitions
- Retested on 2.5-DEVELOPMENT (built on Thu Jan 07 21:49:58 EST 2021)
'Non-broadcast' mode works for me too now.
...
01/10/2021
-
06:30 PM pfSense Docs Correction #11239 (Rejected): Feedback on pfSense Configuration Recipes — Virtualizing pfSense with VMware vSphere / ESXi
- *Page:* https://docs.netgate.com/pfsense/en/latest/recipes/virtualize-esxi.html
*Feedback:*
For vmware 7 you need... -
03:11 PM Bug #11050 (Resolved): "Backup extra data" does not behave properly
- Tested in a recent build and am seeing that the extra data is being cleared. No duplicate tags are present on second ...
01/09/2021
-
09:42 PM pfSense Packages Bug #11098: Backup Files and Directories plugin crashes firewall if /root specified as backup location
- Attempted creating backup for '/' on XG-7100 on ZFS
received following
PHP ERROR: Type: 1, File: /usr/local/ww... -
09:15 PM pfSense Packages Feature #11113: New phishing feeds
- see these listed feeds plus other updates
2.4.5p1 w/ pfBlockerNG 3.0.0_8 -
06:05 PM Todo #11020: Update OpenVPN to 2.5.0
- IPv6 tunnel networks aren't supported by the UI, it would seem. Getting an error stating "The field 'Tunnel Network'...
-
05:32 PM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- Based on Feedback from testers on the forums, they are stating this is not fixed currently.
https://forum.netgate.... -
05:16 PM Bug #6030: Duplicated tracker IDs on block private networks rules
- Steve Beaver wrote:
> Please confirm fix
Looks good from what I can tell. -
05:05 PM Bug #7307: ZFS installer - shuts down instead of rebooting
- This issue is no longer present in Jan 8th builds of pfSense when installing with ZFS.
- 03:00 PM Revision 1045afc5: Fixed #5454 require => require_once
-
12:56 PM Bug #8136: dpinger for WAN DHCPv6 gets fails to update gateway IP
- Can you provide more details on how to replicate the issue? Is it related only to the PPPoE link? Can you provide the...
-
12:45 PM Feature #10984 (Resolved): Port Forward IPv6
- IPv6 port forwarding is working as expected and aliases are also working. I'm marking this as resolved.
-
07:34 AM pfSense Docs New Content #11238 (Closed): LAGG (Link Aggregation)
- https://docs.netgate.com/pfsense/en/latest/interfaces/lagg.html
It would be helpful to add a note that there is no...
01/08/2021
-
11:02 PM Bug #11142: rc.newwanip restarts VPN services when the IP matches
- Danilo Zrenjanin wrote:
> Tested on:
> [...]
>
> It doesn't restart services anymore if the IP address stays the... -
10:18 PM Revision 1ba5f7d6: Keep makewhatis while pkg post-install is not fixed
-
06:21 PM Feature #11125: Kernel module for RTL8153 driver
- my usb adapter it does not show the speed of the link, it tells me in netgate that it is because of the driver it use...
-
04:31 PM Bug #7020: <Hostname> is omitted when sending logs on syslog
- Jim Pingle wrote:
> An RFC 5424 option was added to 2.5.0 almost a year ago, you can test it there: #9808
Setting... -
03:33 PM Bug #6025: Load balancing fails when one gateway has a weight of 1 and another gateway has a weight >1
- Verified that weights of 1 and 2 resulted in 2 and 4 entries in the rule set:...
-
12:47 PM pfSense Packages Feature #11206: FRR 7.5
- I'm still not following what this has to do with making the loopback participate in OSPF? You can set the OSPF/BGP/OS...
-
12:31 AM pfSense Packages Feature #11206: FRR 7.5
- Network engineer here - have been configuring routers since the early 90's (Cisco IOS/IOS-XR/Nexus, Juniper, Alcatel-...
-
11:10 AM pfSense Packages Bug #11236 (New): A Link to the Virtual IP setup doesn't work under Frontend setup
-
10:00 AM pfSense Packages Bug #11236 (Feedback): A Link to the Virtual IP setup doesn't work under Frontend setup
-
10:00 AM pfSense Packages Bug #11236: A Link to the Virtual IP setup doesn't work under Frontend setup
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/1023 -
08:27 AM pfSense Packages Bug #11236 (Resolved): A Link to the Virtual IP setup doesn't work under Frontend setup
There is a note under the External address setup. If you click at "Virtal IP" from the note it leads to a 404 error...-
11:04 AM Bug #11237 (Resolved): Incorrect copyright year
- Still 2020:
https://github.com/pfsense/FreeBSD-src/blob/07db36d3ee1826462a18c79c663d89df3f1f4030/release/rc.local#L88 -
10:48 AM pfSense Packages Feature #10605 (Feedback): Add certificates from Trusted Store to Squid cert store
- PR has been merged. Thanks!
-
10:48 AM pfSense Packages Bug #10749 (Feedback): squid + captive portal authentication not working
- PR has been merged. Thanks!
-
10:45 AM pfSense Packages Feature #11102 (Feedback): Include a dictionary for mpd5 in Freeradius
- PR has been merged. Thanks!
-
10:45 AM pfSense Packages Bug #8466 (Feedback): radiusd crash
- PR has been merged. Thanks!
-
08:53 AM Bug #11232: Fix pfSense_fsync
- For information, the function safe_write_file in config.lib.inc, used for writing the configuration file after a rest...
-
08:09 AM Bug #11063 (Resolved): PHP error if SMTP notification fails
- I couldn't replicate the issue on the latest release. Ticket resolved.
-
07:27 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- Renato Botelho wrote:
> PR has been merged. Thanks!
Hi, Thank you! I created new issues and also want ask you or... -
06:56 AM pfSense Packages Bug #11180 (Feedback): Filer run action for files on sync that wan't been modified
- PR has been merged. Thanks!
-
06:53 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- DRago_Angel [InV@DER] wrote:
> Hi Viktor, thank you. Fix for this bug working. Tested:
> 1. modified file without s... -
07:24 AM pfSense Packages Bug #11235 (New): Filer run script when "state" unchanged
- When file not modified action still triggered, it would be cool to check:
# file permissions
# file data
# file ... -
07:20 AM pfSense Packages Bug #11234 (Resolved): Filer not create missing necessary folders
- When you say filer create file for directory that not exists yet on pfSense - it not create this directory and of cou...
-
06:50 AM pfSense Packages Bug #11101 (Feedback): Bind DNS Server won't start
-
06:46 AM pfSense Packages Bug #11101: Bind DNS Server won't start
- PR has been merged. Thanks!
-
06:46 AM pfSense Packages Bug #7271: Co-existence of unbound and BIND/named
- PR has been merged. Thanks!
-
06:37 AM pfSense Packages Bug #11098 (Feedback): Backup Files and Directories plugin crashes firewall if /root specified as backup location
- PR has been merged. Thanks!
-
04:59 AM Feature #7842: New Dynamic DNS Provider: Mythic-Beasts
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/93
-
03:29 AM Bug #11212 (Resolved): PHP error on Mobile IPsec input validating error
- no such error on 2.5.0.a.20210107.2142
-
02:00 AM Todo #11219: Improve IPsec GUI options for P1/P2 reauth/rekey
- I’ve been testing this using system patches for 12 hours+ and it seems to work fine. P1 is rekey, for p2 only life ti...
-
01:56 AM Todo #6638 (Resolved): Update no-ip DDNS to new API
-
01:42 AM Todo #6638: Update no-ip DDNS to new API
- Tested on the latest snapshot. Works fine.
Ticket resolved. -
12:34 AM pfSense Packages Feature #11233 (Closed): Add 'Allow IP options' interface fw rule note
- Add a note to pimd_interfaces.xml:
"A firewall rule with the 'Allow IP options' advanced option must exist in order ... -
12:09 AM Feature #10931 (Resolved): system.php: Add option to omit DNS Servers from resolv.conf
- tested on 2.5.0.a.20210104.0250
all modes change resolv.conf accordingly
01/07/2021
-
08:19 PM Bug #11231: OpenVPN tunnel exiting wrong interface
- "itself a suboptimal practice" - in most scenarios it would be, but I would have to explain the network topology for ...
-
08:03 PM Bug #11231: OpenVPN tunnel exiting wrong interface
- Thank you very much for the clarifcation - I will remove the unnecessary filter rules.
-
08:59 AM Bug #11231 (Not a Bug): OpenVPN tunnel exiting wrong interface
- This isn't a bug, but a side effect of your manual rule causing traffic to not hit a built-in rule that it needs to u...
-
08:25 AM Bug #11231: OpenVPN tunnel exiting wrong interface
- After wiresharking in the lab, it seems I have miscategorised this issue. When the afforementioned floating tab filte...
-
07:00 AM Bug #11231 (Not a Bug): OpenVPN tunnel exiting wrong interface
- In a multi-WAN environment with multiple OpenVPN tunnels, it seems the tunnels can egress the incorrect WAN interface...
-
07:59 PM Bug #11230: Firewall match rules incorrectly matching multiple OpenVPN tunnel interfaces
- Hi Jim I started a thread already but there are currently no responses
https://forum.netgate.com/topic/159662/incorr... -
09:09 AM Bug #11230 (Not a Bug): Firewall match rules incorrectly matching multiple OpenVPN tunnel interfaces
- Sounds more like a problem with your testing methodology than the way match rules work. Start a forum thread for more...
-
06:12 AM Bug #11230: Firewall match rules incorrectly matching multiple OpenVPN tunnel interfaces
- correcting obvious typo:
FW-A (WAN1) <--> (WAN1) FW-B
FW-A (WAN2) <--> (WAN2) FW-B -
06:10 AM Bug #11230 (Not a Bug): Firewall match rules incorrectly matching multiple OpenVPN tunnel interfaces
- It would seem that that the firewall match rules match *any* OpenVPN tunnel rather than just the tunnel interface whi...
-
05:40 PM Todo #11020: Update OpenVPN to 2.5.0
- I have a mobile client using OpenVPN for Android with a config that contains:...
-
04:17 PM Todo #11020: Update OpenVPN to 2.5.0
- That is expected and will work fine. The options changed names and purposes in OpenVPN 2.5.0. There is no reason to h...
-
04:01 PM Todo #11020: Update OpenVPN to 2.5.0
- Restoring an openvpn config from 2.4.5p1 into latest 2.5 does not retain some settings which may potentially break ex...
-
04:26 PM Feature #9260 (Resolved): ssh_tunnel_shell: Disable console message output
-
03:54 PM Feature #9527 (Resolved): Add ability for LDAP extended query on groups in RFC2307 containers.
- Tested against FreeIPA. Looks like it works great. Thank you!
-
01:58 PM pfSense Packages Feature #10242: E2guardian Web filtering package
- There are lines with write_config(); that should be updated to include a description before public release.
-
01:36 PM pfSense Packages Bug #10429 (New): Status Traffic Total broken 2.4.5
-
01:11 PM Bug #7020 (Duplicate): <Hostname> is omitted when sending logs on syslog
-
12:18 PM pfSense Packages Bug #11055: Insecure FreeRADIUS defaults
- https://github.com/pfsense/FreeBSD-ports/pull/1022 - description update.
-
05:26 AM pfSense Packages Bug #11055: Insecure FreeRADIUS defaults
- ...
-
03:34 AM pfSense Packages Bug #11055: Insecure FreeRADIUS defaults
- Changing the default values would potentially break current setups where the weak types are already selected.
... -
12:14 PM Bug #11224 (Pull Request Review): dhcpd.conf creation - zone declarations
- > If you do not end your zone name in a ".", the DHCP server will figure it out.
The quoted text seems to suggest... -
12:10 PM Bug #11229 (Pull Request Review): Harmless error when enabling traffic shaper
-
03:10 AM Bug #11229: Harmless error when enabling traffic shaper
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/92
-
03:07 AM Bug #11229 (Closed): Harmless error when enabling traffic shaper
- ...
-
12:08 PM Feature #11228: Replace HTTP links with HTTPS in the GUI
- Worth doing but not yet.
-
10:00 AM Feature #11228: Replace HTTP links with HTTPS in the GUI
- From what I can tell, these are all links to external sites, and they all redirect to HTTPS when accessed. There's mo...
-
01:35 AM Feature #11228: Replace HTTP links with HTTPS in the GUI
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/91
-
01:22 AM Feature #11228 (Resolved): Replace HTTP links with HTTPS in the GUI
- There are many HTTP links on the WebGUI pages:...
-
09:05 AM Bug #11232: Fix pfSense_fsync
- It's been disabled for 2 years, I'm not sure we still want or need it.
Might be better to remove it than to fix it... -
07:34 AM Bug #11232 (New): Fix pfSense_fsync
- Hello,
pfSense_fsync has not been working for a while as this commit: https://github.com/pfsense/pfsense/commi... -
07:13 AM Todo #10533 (Resolved): Change default domain for new installations from "localdomain" to "home.arpa"
- There have been no other issues observed here, so I will mark it as resolved.
-
06:39 AM Feature #2146 (Resolved): Allow concurrent logins when using vouchers
- works as expected in all modes
2.5.0.a.20210104.0250 -
03:04 AM Bug #6277 (Resolved): RRD graphs are not created correctly for interfaces using CODELQ
- works as expected on 2.5.0.a.20210104.0250 -
there is no such errors with CODELQ -
01:46 AM Feature #11171 (Resolved): Remove debug log entries present following "Block additional logins" feature request
- works as expected on 2.5.0.a.20210104.0250
no more extra debug messages
https://github.com/pfsense/pfsense/commit/f... -
12:11 AM pfSense Packages Feature #11227 (New): Feeds update
- Remove:
- www.reputationauthority.org/toptens.php (WatchGuard feed) has no DNS A entry;
- www.badips.com - unable t...
01/06/2021
-
11:20 PM Bug #11224: dhcpd.conf creation - zone declarations
- from https://www.freebsd.org/cgi/man.cgi?query=dhcpd.conf&apropos=0&sektion=0&manpath=FreeBSD+12.2-RELEASE+and+Ports&...
-
02:30 AM Bug #11224 (Resolved): dhcpd.conf creation - zone declarations
- ARPA zones lack a trailing period. Currently
zone 16.172.in-addr.arpa {
Should be:
zone 16.172.in-addr.arpa... -
05:40 PM Bug #10942 (Resolved): LDAP Auth error after update 2.5.0.a.20200930.1303
- I haven't been able to reproduce on any recent builds, so I will mark this ticket as resolved.
-
05:10 PM Bug #11226 (Resolved): IPsec VTI phase 2 traffic selectors default to address when defined as a network
- The IPSec P2 edit page in the GUI (/vpn_ipsec_phase2.php) defaults the local and remote network type value to 'Addres...
-
04:03 PM pfSense Packages Feature #11186: Allow lo0/Loopback as a valid interface in OSPF/OSPF6
- I've never gotten that to work. Adding VIPs to lo0 and then assigning that interface as a passive interface (after mo...
-
01:29 PM pfSense Packages Feature #11186: Allow lo0/Loopback as a valid interface in OSPF/OSPF6
- I'm probably missing something obviously but I don't see what this achieves? You can already redistribution extra add...
-
12:23 PM Bug #11187: WAN_DHCP6 down, but IPv6 actually works
- Also, sometimes the gateway shows as "online" after I changed some WAN settings -> "Save" -> "Apply changes". And reb...
-
12:20 PM Bug #11187: WAN_DHCP6 down, but IPv6 actually works
- Yes, sometimes it just spontaneously starts working (showing the gateway is "online") after a few days (and sometimes...
-
11:01 AM Bug #11187: WAN_DHCP6 down, but IPv6 actually works
- Having more than one link-local address on an interface can be normal. On the screenshot, you have the PD for the WAN...
-
11:44 AM pfSense Packages Feature #11206: FRR 7.5
- If we are moving forward with 7.5, we should consider including the loopback interface ospf modification here too htt...
-
09:54 AM pfSense Docs Correction #11221: Feedback on pfSense Configuration Recipes — Routing Internet Traffic Through A Site-To-Site OpenVPN Tunnel
- FYI, many screenshots need to be updated. See:
https://redmine.pfsense.org/issues/9370 -
09:42 AM Feature #11225 (Rejected): Change Host Alias range when it is made from CIDR
- The alias doesn't know or care how it's used. It covers the entire subnet. There is no concept for network ID/broadca...
-
09:29 AM Feature #11225 (Rejected): Change Host Alias range when it is made from CIDR
- Now if I make an Alias using CIDR like 192.168.1.*2*/30 it makes 4 entries which starts from 1st host in the given ra...
-
07:35 AM Bug #9029: Proxy authentication is not working for HTTPS
- Post on the forum first to diagnose your issue.
-
07:32 AM Bug #9029: Proxy authentication is not working for HTTPS
- I have a fresh pfSense 2.4.5 installation here, same problem with pkg.
Fetch command works but pkg doesn't.
pkg -... -
12:09 AM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- I've succesfully used kernel.hz=1000 and limiter delay=1ms as workaround to fix this problem.
I've also posted mes...
01/05/2021
-
09:11 PM Revision 391591ef: IPsec P1/P2 expiration and replacement refresh. Implements #11219
-
03:20 PM Todo #11219 (Feedback): Improve IPsec GUI options for P1/P2 reauth/rekey
- I just pushed a set of changes to address all of the above points. GUI fields are now present in both P1 and P2 as la...
-
01:13 PM pfSense Docs Correction #11223 (Resolved): Azure Marketplace links are invalid
- Links to the pfSense for Azure marketplace page go to https://azuremarketplace.microsoft.com/en-us/marketplace/apps/n...
-
12:59 PM Revision f4479f0d: Identify minnowboard with BIOS 1.0
- Intel has changed MBT identification
Obtained from: https://github.com/pfsense/pfsense/pull/4495 -
12:49 PM Revision 8f00a31d: Merge pull request #4493 from bmhughes/add-watchfrr-to-routing-log
-
12:48 PM Revision 7e5b8cee: Merge pull request #4494 from bmhughes/fix_pkg_edit_button_descr
-
10:18 AM Bug #11222 (Rejected): Firewall rule ignoring custom gateway in advanced section
- Not nearly enough information here, and it's not reproducible. Almost certainly something in your config/environment ...
-
10:04 AM Bug #11222 (Rejected): Firewall rule ignoring custom gateway in advanced section
- Created a custom firewall rule in interface to route traffic to an external gateway.
The rule is applied and correct... -
09:47 AM pfSense Packages Feature #11155: SafeSearch AAAA
- Do we need to use a redirect/local-zone for these CNAMES?
Are there any other sub-domains other than the "www." v... -
09:23 AM pfSense Packages Feature #11155 (Pull Request Review): SafeSearch AAAA
-
09:46 AM pfSense Packages Feature #11206 (Pull Request Review): FRR 7.5
-
09:21 AM pfSense Packages Bug #11204 (Pull Request Review): Fix net-snmp logging to syslog
-
09:19 AM Bug #11220 (Rejected): Alert: XMLRPC method captive_portal_sync
- I can't reproduce this here and there isn't nearly enough information to determine any possible cause in your environ...
-
03:41 AM Bug #11220 (Rejected): Alert: XMLRPC method captive_portal_sync
- Hi all,
on an HA system running on 2.4.5p1, fully functional, without problems in all conditions, if I upgrade on ... -
08:05 AM pfSense Docs Correction #11221: Feedback on pfSense Configuration Recipes — Routing Internet Traffic Through A Site-To-Site OpenVPN Tunnel
- By the way:
Section:
https://docs.netgate.com/pfsense/en/latest/recipes/openvpn-s2s-route-internet-traffic.html#set... -
07:59 AM pfSense Docs Correction #11221 (Closed): Feedback on pfSense Configuration Recipes — Routing Internet Traffic Through A Site-To-Site OpenVPN Tunnel
- *Page:* https://docs.netgate.com/pfsense/en/latest/recipes/openvpn-s2s-route-internet-traffic.html
*Feedback:*
Th... -
07:16 AM Feature #11207 (Feedback): Add watchfrr to routing log
-
07:00 AM Feature #11207: Add watchfrr to routing log
- PR has been merged. Thanks!
-
07:11 AM pfSense Packages Feature #11186: Allow lo0/Loopback as a valid interface in OSPF/OSPF6
- Any update on this PRR?
Seems like a pretty benign easily validated pull request. I've been running this code for ... -
07:02 AM Bug #9242 (Feedback): MBT-4220/2220 not recognized by pfsense correctly after UEFI upgraded to 1.00
- PRs have been merged. Thanks!
-
06:48 AM Bug #11208 (Feedback): pkg_edit uses incorrect description for pkg_edit buttons
- PR has been merged. Thanks!
01/04/2021
-
09:05 PM Revision 5f555ece: Remove zabbix44 packages due to EOL
-
04:15 PM Revision 99aa6737: Fix PHP error in Mobile IPsec validation. Fixes #11212
-
02:30 PM Revision 0f2a455f: Update translation files
-
02:27 PM Revision 1452926e: Regenerate pot
-
02:01 PM Todo #11219 (Resolved): Improve IPsec GUI options for P1/P2 reauth/rekey
- Additional options are available to control for P1 and P2 renegotiation but we either calculate them or accept the de...
-
01:43 PM Bug #9242: MBT-4220/2220 not recognized by pfsense correctly after UEFI upgraded to 1.00
- proposed fix for pfsense added in
for gui config added in https://github.com/pfsense/pfsense/pull/4495
And fix for... -
11:30 AM pfSense Packages Feature #11206: FRR 7.5
- pfSense-pkg-frr Port PR: https://github.com/pfsense/FreeBSD-ports/pull/1021
-
11:27 AM pfSense Packages Feature #11206: FRR 7.5
- frr7 Port PR: https://github.com/pfsense/FreeBSD-ports/pull/1020
-
10:01 AM pfSense Packages Feature #11206: FRR 7.5
- Ok sounds a plan, as you say in hindsight I should've started at 1.0.0 when first starting the move to a integrated c...
-
09:56 AM pfSense Packages Feature #11206: FRR 7.5
- Ben Hughes wrote:
> I've bumped the port version to 0.7.0 for pfSense-pkg-frr because of the changes, but looking ba... -
11:09 AM Feature #8786: Wireguard VPN
- It's still being worked on (and has been the whole time). There are ongoing stability issues that have yet to be fixe...
-
10:34 AM Feature #8786: Wireguard VPN
- From https://svnweb.freebsd.org/base?view=revision&revision=368163
> Sponsored by: Rubicon LLC, (Netgate)
Just want... -
10:26 AM Bug #11183 (Duplicate): Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- Duplicate of #11104
-
10:25 AM Bug #11212 (Feedback): PHP error on Mobile IPsec input validating error
- Applied in changeset commit:99aa67376e4f654be8a46c27ae4a57ee16cbd26d.
-
10:14 AM Bug #11212 (In Progress): PHP error on Mobile IPsec input validating error
- I can reproduce it here, too. I have a fix, pushing shortly.
-
10:23 AM pfSense Packages Bug #11214 (Resolved): mail reports typo "Define reports to by sent periodically via email. "
- Not a docs issue, but a typo on the page.
Fix pushed.
-
10:16 AM pfSense Packages Bug #11175 (Resolved): FRR OSPFv6 config missing default area
-
10:11 AM Feature #11211 (Pull Request Review): GUI option to set RADIUS Timeout for EAP-RADIUS
-
10:01 AM Feature #11140 (Pull Request Review): Allow the firewall to use DNS servers provided to an OpenVPN client instance
-
09:57 AM pfSense Packages Feature #10605 (Pull Request Review): Add certificates from Trusted Store to Squid cert store
-
09:55 AM Bug #11208 (Pull Request Review): pkg_edit uses incorrect description for pkg_edit buttons
-
09:52 AM Feature #11207 (Pull Request Review): Add watchfrr to routing log
-
09:34 AM pfSense Packages Bug #11217 (Feedback): tun-ipv6 is depracated on OpenVPN 2.4
- Fixed in v1.5_5. Now only added when "legacy" is checked.
-
03:48 AM pfSense Packages Bug #11217 (Resolved): tun-ipv6 is depracated on OpenVPN 2.4
- Hi, if export OpenVPN config via pfSense Client Export Utility with disabled "Legacy Client" on latest tunnelblink on...
-
09:15 AM Bug #11218 (Rejected): /rc.carpmaster: New alert found: A communications error occurred while attempting to call XMLRPC method captive_portal_sync:
- I can't reproduce this here and there isn't nearly enough information to determine any possible cause in your environ...
-
08:17 AM Bug #11218: /rc.carpmaster: New alert found: A communications error occurred while attempting to call XMLRPC method captive_portal_sync:
- More details:
- When motion master to slave (enter in persistant mode...) no alert
- When reenable old master to ... -
07:35 AM Bug #11218 (Rejected): /rc.carpmaster: New alert found: A communications error occurred while attempting to call XMLRPC method captive_portal_sync:
- Hi,
Two nodes in last 2.5 release, when I reboot the master node or when move the master to secondary I see this a... -
08:40 AM Bug #10943 (Resolved): boot fail after upgrade to the latest snapshot 20201001.0050. if bios is set to efi
-
07:39 AM pfSense Packages Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
- As I mentioned in #11216 (Duplicate):
pfSense-pkg-haproxy is still using haproxy18 where as pfSense-pkg-haproxy-deve... -
07:31 AM pfSense Packages Feature #11216 (Duplicate): haproxy 2.x
-
07:14 AM pfSense Packages Feature #11216: haproxy 2.x
- Sorry - dublicate of #10739
just close again -
03:11 AM pfSense Packages Feature #11216 (Duplicate): haproxy 2.x
- pfSense-pkg-haproxy is still using haproxy18 where as pfSense-pkg-haproxy-devel is using haproxy (which currently poi...
-
12:47 AM pfSense Packages Todo #11215 (Resolved): Update NtopNG to 4.2
- Hi there latest ntopng 4.2 stable version is available for freebsd 12, could you please update to it in 2.5.x?
01/03/2021
-
04:34 PM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- Hi Viktor, changed OpenVPN settings to use 2 auth backends after adjust CA to Global CA list, and still same AUTH_FAI...
-
12:28 PM Revision 8f585441: Update the Copyright year.
- A subsequent commit will deal with .po's.
-
10:04 AM pfSense Packages Feature #9833: ACME: add ability to use custom ACME server
- Stanislav Dimov wrote:
> +1. Any progress on this?
+1 on this as well. Have recently setup an ACME server locall... -
08:29 AM pfSense Packages Bug #11214 (Resolved): mail reports typo "Define reports to by sent periodically via email. "
- /status_mail_report.php
Email Reports
Define reports to by sent periodically via email.
should be
Define re... -
07:09 AM Feature #11213 (New): Option to mark gateway as down directly from Table
- Hello
Sometimes it happened to me to put in down state a gateway that was part of a group of Gateways.
To do this, ... -
02:33 AM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- I have tried to disable whole if (/*dn_cfg.io_fast */ && ...) via patching /boot/kernel/dummynet.ko .
Traffic then...
01/02/2021
-
09:07 PM pfSense Packages Feature #10818: UDP Broadcast Relay
- Would absolutely love to see this becoming a pfSense package. Thank you Chetan and Garth for taking a shot at this.
-
08:17 PM pfSense Packages Feature #11201: Show iTLD Allow IDN domains
- Those don't provide a number of domains per TLD.
-
08:09 PM Feature #8786: Wireguard VPN
- Wireguard has been merged into freebsd 13
https://svnweb.freebsd.org/base?view=revision&revision=368163
https:/... -
05:42 PM Bug #10943: boot fail after upgrade to the latest snapshot 20201001.0050. if bios is set to efi
- sorry, i didn't noticed a notification for this,
i was able to try ISO [datastore1] pfSense-CE-2.5.0-DEVELOPMENT-amd... -
02:13 PM pfSense Packages Bug #11175: FRR OSPFv6 config missing default area
- Fixed
Default Area is added to OSPF6 configuration
router ospf6
area 0.0.0.0 range 684d:1111:222:3333::/64 co... -
11:25 AM pfSense Packages Feature #11155: SafeSearch AAAA
- Added description regarding IPv4/IPv6 redirect support by search engines.
https://github.com/pfsense/FreeBSD-ports/p... -
09:01 AM Feature #11211: GUI option to set RADIUS Timeout for EAP-RADIUS
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/89
-
07:18 AM Feature #11211 (Closed): GUI option to set RADIUS Timeout for EAP-RADIUS
- see https://forum.netgate.com/topic/108637/ipsec-ikev2-with-eap-radius-vpn-azure-multi-factor-authentication
and htt... -
08:49 AM Bug #11212 (Resolved): PHP error on Mobile IPsec input validating error
- If you make any input validating error on the vpn_ipsec_mobile.php page,
and you have more then one auth source:
<... -
02:50 AM Feature #11140: Allow the firewall to use DNS servers provided to an OpenVPN client instance
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/88
-
02:04 AM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- And the same commented code in pfsense repository.
https://github.com/pfsense/FreeBSD-src/blob/devel-12/sys/netpfi... -
01:48 AM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- Since net.inet.ip.dummynet.io_fast does split path of packets for saturated/unsaturated pipe mode, then this setting ...
01/01/2021
-
11:51 PM Bug #9643: Limiters do not function properly on 2.5 snapshots
- Tested fq-codel out on the latest snapshot and found out that if i apply an outbound WAN pass rule to ipv6 it does ap...
-
02:16 PM Bug #9643: Limiters do not function properly on 2.5 snapshots
- Is there any update on this?
-
11:40 PM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- Observed the same on 2.4.5 p1 with out of order packets during iperf testing using fq-codel with limiters set to 930 ...
-
11:12 PM pfSense Packages Feature #11201: Show iTLD Allow IDN domains
- BBcan177 . wrote:
> Best to edit the iTLD's and add the static IDN between the existing Puny code and the [xxx] coun... -
01:59 PM pfSense Packages Feature #11201: Show iTLD Allow IDN domains
- Best to edit the iTLD's and add the static IDN between the existing Puny code and the [xxx] counts. ...
-
03:50 PM Bug #11196 (Resolved): IPsec DPD action incorrect on development snapshots
- Tested on latest build and now see dpd action set to trap, restart, or clear based on the corresponding Child SA clos...
-
12:53 PM Bug #11196: IPsec DPD action incorrect on development snapshots
- This was supposed to be a comment for #10176. Apologies.
-
12:50 PM Bug #11196: IPsec DPD action incorrect on development snapshots
- After going with latest dev I don’t see any duplicate p1s or p2s during the last 24h. My tunnels are mostly using def...
-
02:07 PM pfSense Packages Feature #11209: pfBlockerNG soft blocking
- This won't work for HTTPS requests. And no way to do a redirection unless a Proxy is used.
-
08:21 AM pfSense Packages Feature #11209 (New): pfBlockerNG soft blocking
- For the high false-positive feeds, or for some specific feeds (like https://1984.sh/covid19-domains-feed.txt) it woul...
-
10:47 AM pfSense Packages Feature #11210 (Resolved): 3rd party rulesets
- It would be useful to add the ability to use any additional third party rulesets,
and download/update them just like... -
03:23 AM pfSense Packages Feature #10605: Add certificates from Trusted Store to Squid cert store
- "Extra Trusted CA" option to select the CA certificate that is used by the upstream SSL/MITM proxy:
https://gitlab.n...
12/31/2020
-
11:12 PM pfSense Packages Bug #11205 (Duplicate): DNSBL SafeSearch redirection doesn't work with DuckDuckGo
- see https://redmine.pfsense.org/issues/11155#note-3
-
01:55 PM pfSense Packages Bug #11205 (Duplicate): DNSBL SafeSearch redirection doesn't work with DuckDuckGo
- It's not forcing safe search when using DuckDuckGo search engine.
-
11:08 PM Bug #10827 (Resolved): Cannot add or delete separators when no rules are present
-
05:52 PM Bug #10827: Cannot add or delete separators when no rules are present
- I was able to delete separators after deleting the rules
Steps:
created 2 separator.
Created 2 rules and applied... -
10:20 PM Bug #11115: Pfsense MAC Control Feature Request
- Hi Jim,
Just wanted to post a closure as other non-networking folks may get the same idea!
I invested some time... - 05:49 PM Revision 831c6728: Fix typo in state delete command
-
03:57 PM Revision 87d9798f: Improve handling of SMTP send errors. Fixes #11063
-
03:21 PM Bug #11197 (Resolved): Clicking firewall states leads to php error
-
03:19 PM Bug #11197: Clicking firewall states leads to php error
- Florin Samareanu wrote:
> Applied with system patches, issue is resolved. Thank you.
Jim Pingle wrote:
> App... -
03:02 PM Feature #10238: Periodic Scrub of ZFS filesystem
- similar to:
https://redmine.pfsense.org/issues/9226#change-50116
a script for monitoring zfs with scrub capabilit... -
02:50 PM Feature #9226: zfs GUI functionality - alerts
- well, no GUI for it as of yet, but this script can be cron'd for better results reports emails, if anyone is ever loo...
-
02:46 PM pfSense Packages Feature #11206: FRR 7.5
- I've bumped the port version to 0.7.0 for pfSense-pkg-frr because of the changes, but looking back at everything that...
-
02:39 PM pfSense Packages Feature #11206: FRR 7.5
- PR: https://github.com/pfsense/FreeBSD-ports/pull/1018
-
02:39 PM pfSense Packages Feature #11206 (Closed): FRR 7.5
- Update the FRR port to 7.5 and update pfSense-pkg-frr to use 7.5 new features and other changes and fixes.
- FRR r... -
02:43 PM Bug #11208 (Resolved): pkg_edit uses incorrect description for pkg_edit buttons
- As title.
PR: https://github.com/pfsense/pfsense/pull/4494 -
02:42 PM Feature #11207 (Closed): Add watchfrr to routing log
- As title
PR: https://github.com/pfsense/pfsense/pull/4493 -
02:14 PM Revision b2bbf523: Add watchfrr to routing log
-
12:21 PM pfSense Packages Bug #11204: Fix net-snmp logging to syslog
- PR: https://github.com/pfsense/FreeBSD-ports/pull/1017
-
12:20 PM pfSense Packages Bug #11204 (Resolved): Fix net-snmp logging to syslog
- The net-snmp service command currently is set to log to a file rather than to syslog so log output ends up in file @/...
-
11:57 AM Bug #11203 (New): certificate manager very slow
- Once you get about 50 certificates in Cert Manager, the web page is _very_ slow to load. I'll guess the most common u...
-
11:05 AM Bug #11193 (Resolved): IPsec KeyID Not Working on Development Snapshots
-
11:05 AM pfSense Packages Bug #11175 (Feedback): FRR OSPFv6 config missing default area
- Fix has been merged in the last commit, will be in snapshots soon.
-
12:16 AM pfSense Packages Bug #11175: FRR OSPFv6 config missing default area
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/17
-
11:04 AM pfSense Packages Feature #10665 (Feedback): Manual OSPF neighbor definitions
- There was an issue introduced recently which was not including the neighbor settings in the FRR configuration, I push...
-
10:05 AM Bug #11063 (Feedback): PHP error if SMTP notification fails
- Applied in changeset commit:87d9798fd37841f7e428809a386fd2cb8f5eefb3.
-
09:58 AM Bug #11063: PHP error if SMTP notification fails
- Hit this locally and found a good way to test. It's a simple fix.
-
09:37 AM pfSense Packages Feature #11155 (New): SafeSearch AAAA
- DuckDuckGo fix:
https://github.com/pfsense/FreeBSD-ports/pull/1016 -
09:19 AM pfSense Packages Feature #11202 (Resolved): Antivirus feature update
- 1) Remove Google Safe Browsing feature as it's deprecated/outdated,
see https://blog.clamav.net/2020/06/the-future-o... -
07:38 AM pfSense Packages Feature #11201: Show iTLD Allow IDN domains
- https://github.com/pfsense/FreeBSD-ports/pull/1015
-
07:34 AM pfSense Packages Feature #11201 (Resolved): Show iTLD Allow IDN domains
- Show IDN(UTF8) translated domains in addition to punnycode-encoded domains
see screenshots -
06:58 AM Bug #11187: WAN_DHCP6 down, but IPv6 actually works
- And the 2nd address is in ppp logs......
-
06:33 AM Bug #11187: WAN_DHCP6 down, but IPv6 actually works
- Currently, WAN interface IPv6 address is @fe80::201:c0ff:fe2a:b8d7%pppoe0@, and gateway address is @fe80::ea4:2ff:fe5...
-
04:29 AM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- Not sure about #10704 as on 2.4.5_p1 it was working correctly. Issue appear right after update to 2.5.0.a.
I have ... -
04:06 AM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- I can successfully authenticate with two LDAP backends (FreeIPA + Win2012)
maybe related to #10704 and #9417 -
03:56 AM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- Also Viktor you mention 2.5.0.a.20201230.0250 version, when for my instance 2.5.0.a.20201127.0650 is reported as late...
-
03:46 AM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- Hi Viktor, when my openvpn server have multiple ldap backends I simply got AUTH_FAIL in logs. Could you please provid...
-
03:40 AM Bug #11183: Mutliply OpenVPN Backend for authentication lead to permanent AUTH_FAIL
- unable to reproduce it on 2.5.0.a.20201230.0250,
I can successfully authenticate to OpenVPN server with a mix of RAD... -
04:02 AM pfSense Packages Feature #11199: Minor updates
- https://github.com/pfsense/FreeBSD-ports/pull/1014
-
02:50 AM pfSense Packages Feature #11199 (Resolved): Minor updates
- 1) Alerts page - add Yandex.DNS (https://dns.yandex.com);
2) Threat lookup page - add Kaspersky and InterServer.net ... -
03:50 AM pfSense Packages Feature #11200 (New): Squid reverse proxy + multiple ssl certificates
- https://forum.netgate.com/topic/94878/squid-reverse-proxy-multiple-ssl-certificates:
I recently have installes som... -
02:45 AM pfSense Packages Feature #11178: Filer do not ask what to do with previous filename
- Also same applies on deletion of entry - when you delete files managed by filer - files doesn't removes. This can be ...
-
01:49 AM pfSense Packages Feature #11178: Filer do not ask what to do with previous filename
- User interaction isn't fine fit in general, maybe this can be parameter in per-file settings and be set by default to...
-
02:43 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- Hi Viktor, thank you. Fix for this bug working. Tested:
1. modified file without script action - another files actio... -
02:11 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- DRago_Angel [InV@DER] wrote:
> Hi Viktor, can you please provide diff -u ? I can check fix and provide feedback. Tha... -
01:49 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- Hi Viktor, can you please provide diff -u ? I can check fix and provide feedback. Thank you for fix and also wish you...
-
01:41 AM pfSense Packages Bug #11180: Filer run action for files on sync that wan't been modified
- Fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/18 -
02:07 AM pfSense Packages Bug #11191: Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
- BBcan177 . wrote:
> Before you uninstall, you need to uncheck "Keep Settings" in the General Tab.
it doesn't help
... -
01:44 AM Todo #11198: https://acb.netgate.com/save respond 500 Internal Server Error
- Hi Viktor, thanks, tried find any such requests before create one, but not saw this :)
-
01:42 AM Todo #11198 (Duplicate): https://acb.netgate.com/save respond 500 Internal Server Error
- Duplicate of #10811
-
01:30 AM Todo #11198 (Duplicate): https://acb.netgate.com/save respond 500 Internal Server Error
- Hi, due to automatic backups on pfsense always done at 00m netgate backups servers is overloaded. Why not change 00 t...
-
12:46 AM pfSense Packages Bug #11108: pfsense 2.5.0-DEVELOPMENT (amd64) pfBlockerNG-devel 3.0.0_1
- DRago_Angel [InV@DER] wrote:
> It not pushed to 2.5.0. Last version on pfSense 2.5.0 is 3.0.0_1. Please fix this. Or...
12/30/2020
-
11:51 PM pfSense Packages Bug #11185 (Pull Request Review): Redis service stopping before NtopNg
-
10:50 PM Bug #11193: IPsec KeyID Not Working on Development Snapshots
- Working as expected , "KeyID tag" as My identifier/ Peer identifier
<12> looking for peer configs matching 172.1... -
09:58 PM Revision 89d612c7: Fix incorrect description for pkg_edit buttons
-
09:46 PM Revision 28a7c948: Fix diag_dump_states.inc filename. Fixes #11197
-
09:21 PM Revision 112b85ea: Merge pull request #4489 from lepurt/master
-
09:20 PM Revision c2d6f8c9: Merge pull request #4490 from dsmackie/issue-10827
-
09:18 PM Revision 559f965f: Merge pull request #4492 from Augustin-FL/patch-1
-
08:05 PM Revision d4e1fdea: Correct DPD syntax and values. Fixes #11196
-
06:40 PM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- Adding 10 ms delay to the pipe seems to fix reordering.
Trying to set both kernel.hz=1000 and delay=1 ms to make a... -
08:14 AM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- I have tested 2.4.2, 2.4.5p1, 2.5 - all versions have this problem.
Setting kernel.hz=1000 instead of 100 does not... -
05:00 PM pfSense Packages Bug #10935: FRR 0.6.7-6 - BGPD service recycled IPv6 without Route Map
- 0.6.8 has a *lot* of changes in it, so it's probably not directly relevant.
That config should work though so you'... -
04:55 PM pfSense Packages Bug #11158: FRR Prefix Lists
- As long as the configuration is getting generated correctly this is probably an FRR bug, I've run into various 'stran...
-
04:52 PM pfSense Packages Bug #11175: FRR OSPFv6 config missing default area
- There's a typo in @frr_ospf6.inc@, I'll put a PR in that fixes it shortly.
-
04:08 PM Bug #11197: Clicking firewall states leads to php error
- Applied with system patches, issue is resolved. Thank you.
-
03:55 PM Bug #11197 (Feedback): Clicking firewall states leads to php error
- Applied in changeset commit:28a7c94882de2a14275bcaf99da0872002eac420.
-
03:50 PM Bug #11197: Clicking firewall states leads to php error
- Is there still time to get this in the next build?
-
03:47 PM Bug #11197: Clicking firewall states leads to php error
- Looks like the file was incorrectly named. I pushed a fix.
-
03:11 PM Bug #11197: Clicking firewall states leads to php error
- To note that title was supposed to say “php”.
-
03:11 PM Bug #11197 (Resolved): Clicking firewall states leads to php error
- Latest 2.5, clicking the state count in firewall-interface leads to an error similar to this:
Crash report begins.... -
03:35 PM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- I'm not sure what, if anything, strongSwan could do here since it can be solved with settings, but I passed along the...
-
12:29 PM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- luckman212 wrote:
> _"why not do the same for these SA lifetimes?"_
I'm still considering exposing those options ... -
12:04 PM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- @jimp What a great find! Seems so logical after reading, but it's one of _those why didn't I think of that_ things. R...
-
11:08 AM Bug #10176: Multiple duplicate / overlapping phase 2 Child SAs on IPsec tunnels
- After more testing I think I may have found the real solution to this, and it's still primarily a settings problem, b...
-
03:22 PM Bug #11159 (Feedback): Allow wildcard dns record of type A in the DynDNS client for DNS provider Gandi
- PR has been merged. Thanks!
-
03:21 PM Bug #10827 (Feedback): Cannot add or delete separators when no rules are present
- PR has been merged. Thanks!
-
03:20 PM Feature #11171 (Feedback): Remove debug log entries present following "Block additional logins" feature request
- PR has been merged. Thanks!
-
02:15 PM Bug #11196 (Feedback): IPsec DPD action incorrect on development snapshots
- Applied in changeset commit:d4e1fdeabe85d97228f38994b08b5d39f4c706c2.
-
02:05 PM Bug #11196 (Resolved): IPsec DPD action incorrect on development snapshots
- The DPD action isn't correct in several cases on snapshots (swanctl format). For example:
* "none" is not valid, s... -
01:53 PM pfSense Packages Bug #11135 (Feedback): HAproxy OCSP reponse crontab bug
- PR has been merged. Thanks!
-
01:47 PM pfSense Packages Bug #5168: squid doesn't function during/after HA failover
- Hello
I tested the HA and Squid on the last Dev snapshot version:
2.5.0-DEVELOPMENT (amd64)
built on Wed Dec 30 ... -
09:15 AM pfSense Packages Bug #11194 (Rejected): ACME DNS challenge for dynu.com not deleting all DNS TXT records upon completion
- We don't have control over that code, you'd report that upstream to the acme.sh project directly: https://github.com/...
-
02:09 AM pfSense Docs New Content #11195 (New): Using a VIP instead of an Interface when Accessing a CPE/Modem from Inside the Firewall
- *Page:* https://docs.netgate.com/pfsense/en/latest/recipes/modem-access.html
*Feedback:*
This doc seems to say ...
12/29/2020
-
11:46 PM pfSense Packages Bug #11194 (Rejected): ACME DNS challenge for dynu.com not deleting all DNS TXT records upon completion
- I've had this issue and finally got around to tracking it down this afternoon. I use the ACME package in pfSense to ...
-
11:45 PM Bug #11192: Using Limiters causes out of order packets within one TCP or UDP flow
- Update:
I've tested different pipe bandwidth and same 50 mbit traffic:
85 Mbit pipe - less reorder
185 Mbit pi... -
09:00 PM Revision 170c0f08: IPsec P2 life_time changes. May help with issue #10176
- * We currently only set life_time which isn't ideal
* Swanctl format wants rekey_time set, defaults to 1h (3600)
* Ma... - 07:55 PM Revision 6935650a: Load file on pressing 'Enter' key
-
06:54 PM Revision 131b41fc: Correct IPsec secrets section ID type handling. Fixes #11193
- 03:43 PM Revision 9f2439e5: Revise JSON data format when generating a list of states
-
01:00 PM Bug #11193 (Feedback): IPsec KeyID Not Working on Development Snapshots
- Applied in changeset commit:131b41fcc1f16037c752b26c6a1036c2d1c5c2de.
-
12:51 PM Bug #11193 (Resolved): IPsec KeyID Not Working on Development Snapshots
- Configuring a tunnel with an ID type of KeyID fails to connect. In the secrets section of swanctl.conf, the ID is not...
-
07:14 AM Bug #11188: MultiWAN setup NAT issue
- Update, issue is in:...
12/28/2020
- 08:35 PM Revision 79046c21: Moved diag_dump_states logic to an include file for clarity
- 07:13 PM Revision 0b42c221: Revise diag_arp.php moving control lgic to an include file
-
01:56 PM Feature #10962: Add Cpanel support for Dynamic DNS Clients
- You may also get a 500 error from CPanel if you try to update a dynamic DNS record when there is already a static DNS...
-
01:24 PM Feature #10962: Add Cpanel support for Dynamic DNS Clients
- The "Custom" service type works just fine for updating a CPanel Dynamic DNS record.
CPanel will use the IP address... -
10:51 AM Bug #11190: IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- Jim Pingle wrote:
> Correct. Keep any further discussion on the forum, though.
Thanks. I tried to apply the worka... -
09:45 AM Bug #11190: IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- Correct. Keep any further discussion on the forum, though.
-
09:43 AM Bug #11190: IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- Jim Pingle wrote:
> It doesn't break policy routing. It breaks filtering of policy based IPsec tunnels (ones using t... -
09:09 AM Bug #11190: IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- It doesn't break policy routing. It breaks filtering of policy based IPsec tunnels (ones using tunnel mode, not VTI).
-
09:05 AM Bug #11190: IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- Jim Pingle wrote:
> It used to work at one time, if it doesn't work now, it's almost certainly the same root cause a... -
08:49 AM Bug #11190 (Duplicate): IPsec VTI outbound NAT to interface address not working (pfsense 2.4.5-p1)
- It used to work at one time, if it doesn't work now, it's almost certainly the same root cause as #8686 so doesn't ne...
-
08:58 AM Bug #11192 (Feedback): Using Limiters causes out of order packets within one TCP or UDP flow
- Have you only tested this on pfSense 2.4.5?
Can you try again on a 2.5.0 development snapshot? -
08:54 AM pfSense Packages Bug #11191: Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
- Is there a compelling reason to keep the shell scripts around even if the user didn't choose that? Typically a user w...
-
06:21 AM pfSense Packages Bug #10700 (Resolved): not all VPN IPs added with vpnaddresses option
Also available in: Atom