Activity
From 06/19/2021 to 07/18/2021
07/18/2021
-
04:56 PM Bug #12141 (Feedback): Lack of DNS or Internet connectivity causes GUI to be slow
- I'm not able to reproduce this on 2.5.2.
There are instances in which no internet/DNS connectivity will result in ... -
02:13 AM Bug #12141: Lack of DNS or Internet connectivity causes GUI to be slow
- Kris Phillips wrote:
> If a device is being configured offline, if the device is unable to query DNS, the webConfigu... -
04:43 PM pfSense Packages Bug #12137: PHP error after rulesets update
- I already have a fix for this applied in my internal package repo. The same potential bug exists in the Suricata pack...
-
10:55 AM Bug #11734: NAT rule overlap detection is inconsistent
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/301
-
10:53 AM Bug #12132 (Closed): Port Fowards Using CARP VIP Form Validation on Source Broken
- Indeed this is a symptom of #11734. Consequently, the patch there resolves this symptom in an unintentional way. I've...
-
05:35 AM Bug #12123: 2.5.2 Ipsec Tunnel Status Dashboard Widget - Count of active tunnels, and Inactive tunnels is wrong
- Eddy Cho wrote:
> since the upgrade, the widget seems to mis-count the tunnel status. I have over 30 active tunnels ... -
04:43 AM pfSense Packages Bug #12142 (Resolved): XMLRPC replication target configuration
- After upgrading from 2.5.1, the following error message appears in the log of the primary node of our HA cluster:
...
07/17/2021
-
10:52 PM pfSense Packages Bug #10983 (Rejected): pfBlockerNG not cleaning everything behind it
- Updating as Rejected as the bug can not be reproduced.
-
10:48 PM Bug #11734: NAT rule overlap detection is inconsistent
- Tested the changeset and the issue for 12132 and this redmine appears to be resolved.
-
10:41 PM Bug #11734: NAT rule overlap detection is inconsistent
- Potentially related issue with source traffic with video demonstrating the issue: https://redmine.pfsense.org/issues/...
-
10:45 PM Bug #12132: Port Fowards Using CARP VIP Form Validation on Source Broken
- Issue appears corrected with changeset "3736da7f0ffd73c0cd25b7118b3c4be2e1f0eab9":https://redmine.pfsense.org/project...
-
10:39 PM pfSense Packages Bug #11745 (Resolved): Incorrect compress options in exported configuration when server is set to refuse compression
- Created a test OpenVPN server with compress disabled and exported a config. I do not see compress in the config so t...
-
06:00 PM Bug #12141 (Resolved): Lack of DNS or Internet connectivity causes GUI to be slow
- If a device is being configured offline, if the device is unable to query DNS, the webConfigurator causes a noticeabl...
-
05:51 PM Bug #12049: Input validation incorrectly rejects a second IPv4-only GRE tunnel
- Tested in
21.09-DEVELOPMENT (amd64)
built on Sat Jul 17 01:10:40 EDT 2021
FreeBSD 12.2-STABLE
It works. I wa... -
05:22 PM Bug #12107: Notifications page cannot be saved without configuring or disabling SMTP
- I can confirm that this is reproducible with those steps.
-
11:12 AM Bug #12134 (Resolved): Typo in crash reporter page
- Tested on the:...
-
07:52 AM pfSense Packages Regression #12140 (Closed): DNSBL https webserver not working
- After upgrade to pfSense 2.5.2 the DNSBL webserver seems to be broken on https (http works). Multiple people are expe...
-
04:07 AM pfSense Packages Bug #7039: HAProxy backend configuration does not handle intermediate CAs properly
- Submitted a "PR":https://github.com/pfsense/FreeBSD-ports/pull/1083 to resolve this issue.
07/16/2021
-
11:29 PM Bug #11734: NAT rule overlap detection is inconsistent
- There's still an issue when the selected source or destination is a special network (e.g. L2TP Clients), as well as a...
-
09:45 PM Feature #12139 (New): Add support in for specifying a DNSMASQ configuration file
- As per https://redmine.pfsense.org/issues/6730 the Dnsmasq command line is hard coded to specify "-C /dev/null". This...
-
02:32 PM Bug #12138 (Resolved): Clicking "logout" on portal page does not function when logout popup is disabled
- From forum discussion: https://forum.netgate.com/topic/163581/is-logout-without-popup-possible/10.
Turning out the... -
12:56 PM Bug #12034 (Resolved): Certificate Manager performs redundant escaping of special characters in certificate DN fields
- Looks good.
Performing the same tests that previously yielded extra escape characters now correctly shows just one... -
12:44 PM pfSense Packages Bug #11173 (Resolved): Status>Monitoring parameters are hidden by the interactive graph
- Now works on Firefox and Edge/Chromium.
On mobile resolutions, some labels clip on the right instead, though I thi... -
12:24 PM Bug #12132: Port Fowards Using CARP VIP Form Validation on Source Broken
- Here is a screencast showing the issue on 21.05 of pfSense Plus
-
11:42 AM Bug #12132: Port Fowards Using CARP VIP Form Validation on Source Broken
- unable to reproduce on pfSense-2.6.0.a.20210716.0500 - works without issues
-
11:11 AM Bug #12132: Port Fowards Using CARP VIP Form Validation on Source Broken
- Did additional testing today as I wasn't able to recreate this. I realized this only applies to TCP/UDP with differe...
-
11:46 AM Bug #11778: OpenVPN uses 100% CPU after experiencing packet loss
- Jason NA wrote:
> For the past week I've been testing with the traffic shaper disabled and that is what seems to be ... -
11:28 AM Revision 9d7a87f9: Add Zabbix 5.4 config options. Feature #12042
- (cherry picked from commit 4e3ab7d23394fab5baaaa1a79943c50a0809db7c)
-
11:13 AM pfSense Packages Bug #12131 (Resolved): zabbix-proxy54 database is down
-
09:33 AM pfSense Packages Bug #12131: zabbix-proxy54 database is down
- Renato Botelho wrote:
> Commit that defines zabbix-proxy 5.4 options was missing on stable branches. Fixed on versi... -
06:32 AM pfSense Packages Bug #12131 (Feedback): zabbix-proxy54 database is down
- Commit that defines zabbix-proxy 5.4 options was missing on stable branches. Fixed on version 1.0.4_9
-
02:18 AM pfSense Packages Bug #12131: zabbix-proxy54 database is down
- at the same time:
https://github.com/pfsense/pfsense/blob/master/tools/conf/pfPorts/make.conf#L119:... -
02:15 AM pfSense Packages Bug #12131: zabbix-proxy54 database is down
- Zabbix Proxy 5.4 package doesn't create /var/db/zabbix-proxy/proxy.db file
from https://www.zabbix.com/documentation... -
11:13 AM pfSense Packages Feature #12042 (Resolved): Add Zabbix 5.4 agent and proxy packages
-
09:36 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Jeff Dairiki wrote:
>
> I'm still having the "@connection to database '/var/db/zabbix-proxy/proxy.db' failed@" iss... -
11:07 AM pfSense Packages Bug #12126: freeradius3 0.15.7_31
- Please attach the `radiusd -X` command output during authentication and the /usr/local/etc/raddb/radiusd.conf file
... -
06:18 AM Bug #12134 (Feedback): Typo in crash reporter page
- PR has been merged. Thanks!
-
12:15 AM Bug #12134: Typo in crash reporter page
- fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/298 -
06:17 AM pfSense Packages Bug #12137 (Resolved): PHP error after rulesets update
- After fresh Snort install, if you configure the rules update and run "Force Update", an error occurs if the interface...
-
06:05 AM Bug #12135 (Rejected): firewall_nat.php, Line: 40, Message: require_once(): Failed opening required 'firewall_nat.inc'
- It seems include_path is missing needed directories. I've checked a 2.5.2 installation and include_path content is:
... -
01:18 AM Bug #12135 (Rejected): firewall_nat.php, Line: 40, Message: require_once(): Failed opening required 'firewall_nat.inc'
- Hi,
we see on several pfsense systems following error message after clicking Firewall -> NAT.
PHP ERROR: Type: ... -
05:50 AM pfSense Packages Bug #12129 (Resolved): extra include_file entry
- 05:13 AM Revision 5dac18af: Crash Reporter typo fix. Issue #12134
-
03:10 AM Todo #11933: PC/SC Smart Card Daemon ``pcscd`` running on all devices at all times, should be optional
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/299
-
02:59 AM Bug #12136 (Rejected): Road warrior VPN not working in 2.5.2-release
- Hello to all,
after installing version 2.5.2-release the Road Warrior VPN stopped to work (on version 2.5.1-releas...
07/15/2021
- 08:49 PM Revision dd0c42ea: Fixed typo in lifetime validation
-
07:51 PM Bug #12134 (Resolved): Typo in crash reporter page
- https://github.com/pfsense/pfsense/blob/fcc49e91217f2777e0ade826f1b69f6683f4be86/src/usr/local/www/crash_reporter.php...
-
07:43 PM pfSense Packages Bug #12129: extra include_file entry
- Upgraded to pfsense-CE 2.5.2, prior to this commit:...
-
08:03 AM pfSense Packages Bug #12129 (Feedback): extra include_file entry
- PR has been merged. Thanks!
-
01:59 AM pfSense Packages Bug #12129: extra include_file entry
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/104 -
01:48 AM pfSense Packages Bug #12129 (Resolved): extra include_file entry
- ...
-
05:54 PM Feature #12133 (Rejected): Add " Pass-through (IP) Auto Entry " option to Captive portal
- Hi
there is options in cp that makes cp to auto authenticate with mac address but for bigger networks this option ... -
03:05 PM Bug #11679 (Feedback): Policy-based Routing (outbound) and port forwarding (inbound) "selectively" working through WG tunnel
-
02:39 PM Bug #11679: Policy-based Routing (outbound) and port forwarding (inbound) "selectively" working through WG tunnel
- Non-Bug in packaged version, Config issue
https://github.com/theonemcdonald/pfSense-pkg-WireGuard/issues/90 -
02:25 PM Bug #12132 (Duplicate): Port Fowards Using CARP VIP Form Validation on Source Broken
- With the interface address, you're able to define different port forward NATs on the same interface IP address and po...
- 01:13 PM Revision 75f2aba5: Captive Portal DB/Vouchers RAM disk backup. Issue #11894
-
01:08 PM Revision 3900634b: DynDNS DNS Made Easy provider update. Implements #9341
-
12:09 PM Bug #12124 (Resolved): Creating or editing aliases fails with multiple hosts separated by spaces
- Tested on the:...
-
11:46 AM pfSense Packages Bug #12036: Certificate Manager page do not show Zabbix used certificates
- Viktor Gurov wrote:
> Jeff Dairiki wrote:
> > There appears to be a syntax error (missing closing parenthesis) in t... -
12:35 AM pfSense Packages Bug #12036: Certificate Manager page do not show Zabbix used certificates
- Jeff Dairiki wrote:
> There appears to be a syntax error (missing closing parenthesis) in the merged PR.
>
> See:... -
11:38 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Viktor Gurov wrote:
> Nox Inmortus wrote:
> > Hello,
> >
> > I also concurs that the zabbix-proxy54 package inst... -
02:35 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Nox Inmortus wrote:
> Hello,
>
> I also concurs that the zabbix-proxy54 package install does not succeed, trying ... -
02:32 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Hello,
I also concurs that the zabbix-proxy54 package install does not succeed, trying with 2.5.1. Here is the ins... -
10:58 AM Bug #9459: patch pf: silence a runtime warning pfr_update_stats: assertion failed.
- Issue continues to occur under 2.5.2.
-
10:31 AM Revision 72f21342: Merge branch 'pfsense:master' into master
- 10:05 AM Revision cfec2190: certs.inc closing parenthesis fix. Issue #11831
-
10:00 AM pfSense Packages Bug #12131 (Resolved): zabbix-proxy54 database is down
- Hi, after upgrading zabbix proxy to the new 5.4 version I get this error:
42052:20210715:165612.288 [Z3001] connec... -
09:00 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- All good after update done :) issue solved.
-
08:58 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- DRago_Angel [InV@DER] wrote:
> Rafael Sant'Anna wrote:
> > Guillaume Hullin wrote:
> > > Same problem over here a... -
08:49 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Rafael Sant'Anna wrote:
> Guillaume Hullin wrote:
> > Same problem over here after updating to zabbix5-proxy-5.0.1... -
07:52 AM pfSense Packages Bug #12128 (Feedback): Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Merged
-
06:50 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Guillaume Hullin wrote:
> Same problem over here after updating to zabbix5-proxy-5.0.11 and zabbix5-agent-5.0.11
> ... -
04:26 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Same problem over here after updating to zabbix5-proxy-5.0.11 and zabbix5-agent-5.0.11
Viktor Gurov wrote:
> fix:... -
12:34 AM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/103 -
08:20 AM Feature #9341: Support DNS Made Easy authentication without a username
- Applied in changeset commit:3900634b4c0c55d66af6b7020bafb998941e5824.
-
08:13 AM Feature #9341 (Feedback): Support DNS Made Easy authentication without a username
- PR has been merged. Thanks!
-
08:13 AM Bug #11894 (Feedback): Vouchers may expire too early when using RAM disks
- PR has been merged. Thanks!
-
07:52 AM Bug #11831: Certificate Revocation tab does not list active users of CRL entries
- Merged
-
05:06 AM Bug #11831: Certificate Revocation tab does not list active users of CRL entries
- extra fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/297 -
07:31 AM Feature #8794: NTP authentication support
- Is it possible to add the option for SHA256 authentication? The underlying NTPd version appears to support it.
-
02:00 AM pfSense Packages Bug #12130 (Closed): Zeek fails to start
- : zeekctl deploy
checking configurations ...
zeek scripts failed.
fatal error: can't find local.zeek
Apparently...
07/14/2021
-
11:56 PM pfSense Packages Bug #12128: Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Appears to be missing the closing ")" on line 378. (Can't speak to the zabbix-proxy.inc file, but suspect may be same...
-
06:36 PM pfSense Packages Bug #12128 (Resolved): Zabbix Agent 5 1.0.4_8 and Proxy 5 1.0.4_7 Broken
- Parse error: syntax error, unexpected ';' in /usr/local/pkg/zabbix-agent.inc on line 379
pkg-static: POST-INSTALL sc... -
10:01 PM Revision fcc49e91: Merge pull request #4499 from GChuf/fonts
-
09:58 PM Revision 99a9bb65: Merge pull request #4514 from raphendyr/patch-dyfi
-
06:33 PM pfSense Packages Bug #12036: Certificate Manager page do not show Zabbix used certificates
- There appears to be a syntax error (missing closing parenthesis) in the merged PR.
See:
https://github.com/pfse... -
01:18 PM pfSense Packages Bug #12036 (Feedback): Certificate Manager page do not show Zabbix used certificates
- PR has been merged. Thanks!
-
05:10 PM pfSense Packages Bug #12114 (Feedback): syslog-ng only binds to the last specified interface
- PR has been merged. Thanks!
-
05:02 PM Todo #11507 (Feedback): Update font formats to WOFF2
- PR has been merged. Thanks!
-
04:59 PM Feature #12090 (Feedback): Add new Dynamic DNS provider: dy.fi
- PR has been merged. Thanks!
-
04:42 PM Bug #12039 (In Progress): Gateway alarm always triggers IPsec restart
- I've merged check_reload_status part. Please re-test PHP part to make sure it's working as expected.
-
04:40 PM pfSense Packages Bug #11681 (Feedback): FRR generates invalid BFD configuration after removing interfaces
- PR has been merged. Thanks!
-
04:36 PM pfSense Packages Bug #12083 (Feedback): Lack of OSPF network input validation causes service startup error
- PR has been merged. Thanks!
- 03:31 PM Revision 1c87a584: VPN Packet Processing checkboxes fix. Issue #7801
- 03:30 PM Revision 1b1723da: Certificate Revocation page improvements. Issue #11831
- 03:29 PM Revision 0dfe0402: idn_to_ascii failing with large input strings, fixes #12124
-
02:12 PM pfSense Packages Bug #11847 (Feedback): Filters not applied to PEER Groups
- PR has been merged. Thanks!
-
02:10 PM pfSense Packages Bug #11768 (Feedback): FRR OSPF - Comment field within the ospf interfaces gets longer and longer
- PR has been merged. Thanks!
-
02:08 PM pfSense Packages Bug #12088 (Feedback): Setting Advertise Capability to ORF leads to invalid configuration preventing frr from starting
- PR has been merged. Thanks!
-
02:07 PM pfSense Packages Bug #12080 (Feedback): Setting a route-map to redistribute in BGP leads to invalid configuration preventing frr from starting
- PR has been merged. Thanks!
-
01:51 PM pfSense Packages Bug #11582 (Feedback): FreeRADIUS XML-RPC Sync doesn't sync all configuration sections
- PR has been merged. Thanks!
-
01:45 PM pfSense Packages Bug #11888 (Feedback): FreeRADIUS starts twice by /etc/rc.start_packages
- PR has been merged. Thanks!
-
01:44 PM pfSense Packages Bug #11746 (Feedback): Second LDAP server configuration misses the ipaNThash control attribute
- PR has been merged. Thanks!
-
01:41 PM pfSense Packages Bug #11683 (Feedback): Certificate Manager page doesn't show FreeRADIUS used certificates
- PR has been merged. Thanks!
-
01:28 PM pfSense Packages Bug #12074 (Feedback): Freeradius: Additional Information field descriptions swapped
- PR has been merged. Thanks!
-
11:50 AM pfSense Packages Bug #12074: Freeradius: Additional Information field descriptions swapped
- Done: https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/102
-
10:35 AM pfSense Packages Bug #12074: Freeradius: Additional Information field descriptions swapped
- Steve Wheeler wrote:
> https://gitlab.netgate.com/pfSense/factory-ports/-/merge_requests/6
Please submit it again... -
01:21 PM pfSense Packages Bug #11756 (Feedback): HaProxy does not transfer backend states during reload
- PR has been merged. Thanks!
-
01:17 PM Feature #9297: Graph for hardware temperature readings
- PR has been merged. Thanks!
-
01:15 PM pfSense Packages Bug #11173 (Feedback): Status>Monitoring parameters are hidden by the interactive graph
- PR has been merged. Thanks!
-
01:05 PM pfSense Packages Bug #11627 (Feedback): rc file is not deleted
- PR has been merged. Thanks!
-
12:58 PM pfSense Packages Feature #11972 (Feedback): Arpwatch - Add support for Telegram notifications
- PR has been merged. Thanks!
-
12:56 PM pfSense Packages Bug #11366 (Feedback): Arpwatch Cron Notification every 15 minutes
- PR has been merged. Thanks!
- 12:54 PM Revision e9c8a663: Fixes Redmine #12111
-
12:46 PM pfSense Packages Bug #11682 (Feedback): Certificate Manager page do not show STunnel used certificates
- PR has been merged. Thanks!
-
12:37 PM pfSense Packages Bug #11515 (Feedback): node_exporter 0.18.1_1 - Unable to interact or start the service from web ui
- PR has been merged. Thanks!
-
12:35 PM pfSense Packages Bug #11889 (Feedback): BIND starts twice by /etc/rc.start_packages
- PR has been merged. Thanks!
-
12:32 PM pfSense Packages Feature #10859 (Feedback): Add avahi filtering feature to pfSense
- PR has been merged. Thanks!
-
12:12 PM pfSense Packages Bug #11965 (Feedback): Avahi service started twice by /etc/rc.start_package
- PR has been merged. Thanks!
-
12:10 PM pfSense Packages Bug #11745 (Feedback): Incorrect compress options in exported configuration when server is set to refuse compression
- PR has been merged. Thanks!
-
11:45 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Viktor Gurov wrote:
>
> Clean install works as expected
> see #11493 for workaround
Thank you for the reply!
... -
07:48 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Jeff Dairiki wrote:
> I've installed it but it fails :-( with the following output repeating in @/var/log/zabbix-pro... -
11:26 AM pfSense Packages Bug #11628 (Feedback): ftp-proxy error messages in logs
- PR has been merged. Thanks!
-
10:35 AM Bug #12124: Creating or editing aliases fails with multiple hosts separated by spaces
- Applied in changeset commit:0dfe04026ae5245fb075b5f44be4913a239b14a9.
-
10:29 AM Bug #12124 (Feedback): Creating or editing aliases fails with multiple hosts separated by spaces
- PR has been merged. Thanks!
-
10:31 AM Bug #7801 (Feedback): UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
-
04:49 AM Bug #7801: UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
- Chris Linstruth wrote:
> The new checkboxes in *System > Advanced, Firewall & NAT* are not populated when re-enterin... -
10:30 AM Bug #11831 (Feedback): Certificate Revocation tab does not list active users of CRL entries
- PR has been merged. Thanks!
-
10:28 AM Regression #12111 (Feedback): Crash report message displayed on dashboard. flock() expects parameter 1 to be resource, null given in /etc/inc/util.inc on line 166
- PR has been merged. Thanks!
-
07:38 AM pfSense Docs Todo #12127 (Closed): Feedback on Releases — 2.5.2 New Features and Changes
- *Page:* https://docs.netgate.com/pfsense/en/latest/releases/2-5-2.html
*Feedback:*
NoIP.com DDNS bug #12021 sho... -
07:00 AM Regression #11550: Segmentation fault when loading ALTQ traffic shaping rules using FAIRQ
- Its look like regression in 2.5.2 release, because for 2.5.2 beta all worked fine.
-
04:04 AM Feature #11357 (Duplicate): Support for DynDNS provider deSEC.io
- Duplicate of #12086
-
03:24 AM pfSense Packages Bug #12126 (New): freeradius3 0.15.7_31
- I use sql module with freeradius3.
My nas clients are in a sql nas table and since 0.15.7_31 version of the freera... -
02:58 AM pfSense Packages Regression #12125 (Resolved): squidguard 1.16.18_19 conguration error
- Since commit 675ad02cfca7c91eddf09cbf26810708ac833c9f my squidguard stop working.
I've made a minimal conf to trac... -
02:32 AM pfSense Packages Regression #11534: FreeRADIUS EAP anonymous connection forbidden out-of-tunnel
- This is still affecting 2.5.2 and 2.6.0.
07/13/2021
-
07:02 PM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Rafael Sant'Anna wrote:
>
> I can't see zabbix proxy54 on PFSense 2.5.2, anyone could help me how to install ?
... -
08:34 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Jordan Greene wrote:
> proxy and agent 5.4 are available and able to install, tested on plus 21.09.a.20210708.1151
... -
02:24 PM Revision 94dbc880: Enable build of zabbix 5.4 packages
- (cherry picked from commit 97762ce9d85546c3b9d4c88f11c8c5ff04d72c72)
-
12:40 PM Feature #12070: Support for VLAN ``0``
- This would likely have to be resolved in FreeBSD itself. More details on the issue here:
https://bugs.freebsd.org/bug... - 12:16 PM Revision ae241eea: Set net.link.ifqmaxlen
- This removes the need for a kernel patch which overrules IFQ_MAXLEN.
-
09:28 AM pfSense Packages Feature #11310: Adding a widget to apcupsd plug-in
- Kris Phillips wrote:
> Renato Botelho wrote:
> > PR has been merged to CE 2.6.0 so we can get it tested and then ch... -
07:53 AM Bug #12124 (Pull Request Review): Creating or editing aliases fails with multiple hosts separated by spaces
- PR : https://github.com/pfsense/pfsense/pull/4532
-
12:56 AM Bug #11830: Certificate validation with OCSP always fails in ``openvpn.tls-verify.php``
- This is still an issue in 2.5.2, validation code still checking only for the last line returned from "openssl", docum...
-
12:48 AM Bug #11829: OpenVPN client certificate validation with OCSP always fails
- Renato Botelho wrote:
> PR has been merged. Thanks!
I'm not sure what was changed but this is still an issue in ...
07/12/2021
-
05:42 PM Bug #12001: System attempts to stop inactive services at shutdown
- I've added my own internal bug tracking report of this issue to my list for the Snort and Suricata packages. I will m...
-
08:43 AM Bug #12001: System attempts to stop inactive services at shutdown
- Right now it's the responsibility of packages themselves to handle removing their own *.sh rc files when they are dis...
-
05:33 PM Bug #12124 (Resolved): Creating or editing aliases fails with multiple hosts separated by spaces
- Normally you can input multiple host/network aliases on the first form input if you separate each with an space.
T... -
10:18 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- [[https://forum.netgate.com/topic/164928/php-warning-php-startup-unable-to-load-dynamic-library-intl-so-tried-usr-loc...
-
07:31 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- Jan Zalewski wrote:
> # Launch latest build
> # Analyze callstack:
>
> [07-Jul-2021 14:00:00 UTC] PHP Warning: ...
07/11/2021
-
05:41 PM Feature #12120: Permit several sets of destination DHCP servers in DHCP relay
- Requests are forwarded to all servers already. So if server A has a scope for the PBX subnet, and server B has a scop...
07/10/2021
-
09:22 PM pfSense Packages Feature #11310: Adding a widget to apcupsd plug-in
- Renato Botelho wrote:
> PR has been merged to CE 2.6.0 so we can get it tested and then cherry-pick to stable branch... -
09:05 PM Regression #11910: IPsec status tunnel descriptions are incorrect
- Ran into this today as well. This seems to happen with multiple VTI tunnels or a mix of VTI and Tunnel mode. I don'...
-
09:01 PM pfSense Packages Bug #11950 (Resolved): Wireguard Package Errors and DNS problem
- PHP messages are gone in latest package in 2.5.2/21.05. Marking as resolved.
-
07:51 PM pfSense Packages Feature #11997: IPsec Profile Wizard: Add Support for exporting Android strongSwan Profiles
- Assigning to Jim Pingle, as he'd likely be the one to make this implementation. Feel free to reassign if this is in ...
-
06:38 PM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- proxy and agent 5.4 are available and able to install, tested on plus 21.09.a.20210708.1151
-
06:19 PM Bug #12123 (Duplicate): 2.5.2 Ipsec Tunnel Status Dashboard Widget - Count of active tunnels, and Inactive tunnels is wrong
- since the upgrade, the widget seems to mis-count the tunnel status. I have over 30 active tunnels however this is sho...
-
06:18 PM Regression #12110: PHP error in firewall_nat.inc on line 329
- tested on plus 21.09.a.20210708.1151 - added icmp rules on separate WAN and successfully pinged one from the other
-
02:09 PM Bug #12050 (Resolved): "GoTo line #" function does not work on ``diag_edit.php``
- Also tested and working in
2.6.0-DEVELOPMENT (amd64)
built on Fri Jul 09 09:13:36 EDT 2021
FreeBSD 12.2-STABLE
... -
01:36 PM Feature #12120: Permit several sets of destination DHCP servers in DHCP relay
- Mistake in the title: desintation => destination. Sorry.
-
12:51 PM Feature #12120 (New): Permit several sets of destination DHCP servers in DHCP relay
- At this time, pfSense's DHCP relay allows a unique set of one or more target DHCP servers associated to a list of net...
-
01:33 PM Bug #12119: [dashboard] WAN traffic graph displays no data when suricata is enabled
- WAN Interface is a standard DHCP setup
-
01:32 PM Bug #12119: [dashboard] WAN traffic graph displays no data when suricata is enabled
- Certainly!
pfsense ver: 2.5.2
suricata ver: 6.0.0_11
Suricata Options Other than defaults:
- Block Offenders:... -
12:04 PM Bug #12119: [dashboard] WAN traffic graph displays no data when suricata is enabled
- I'm not able to reproduce this with Suricata 6.0.0_11 in pfSense 2.5.2 or 2.6. I tried with blocking mode enabled and...
-
01:10 PM Bug #12122 (New): Perform greedy actions asychronously
- Applying some actions takes time (from tens of seconds to several minutes). In the meantime, the web interface hangs ...
-
01:04 PM Feature #6738: GUI Action Buttons replicated to the top of the List
- See also #11956.
-
01:03 PM Feature #10290: Firewall Aliases Add button on top of list
- See also #11956.
-
01:01 PM Feature #11956: "add" button in the top of pages with many user-added items
- This feature request also expands #6738.
-
01:00 PM pfSense Packages Todo #11574: Add "nobind" to exported OpenVPN configurations by default
- I vote for it. :)
-
12:58 PM pfSense Packages Feature #11165: OpenVPN Exporter - Allow for name customization
- I vote for it.
IMO, the priority should be at least "normal" and the focus should be on the Windows installer beca... -
12:57 PM Bug #12001: System attempts to stop inactive services at shutdown
- Tested in
2.6.0-DEVELOPMENT (amd64)
built on Fri Jul 09 09:13:36 EDT 2021
FreeBSD 12.2-STABLE
I still see:
... -
12:55 PM Feature #12121 (New): Wider "local network(s)" fields in OpenVPN server configuration
- In OpenVPN server configuration, the fields "IPv4 local network(s)" and "IPv6 local network(s)" are too small in the ...
07/09/2021
-
08:54 PM Bug #12119: [dashboard] WAN traffic graph displays no data when suricata is enabled
- Attaching screenshots of the issue.
-
08:49 PM Bug #12119 (Not a Bug): [dashboard] WAN traffic graph displays no data when suricata is enabled
-
06:37 PM Feature #12118 (Resolved): Create a log entry when a configuration change occurs
- When rules are modified, the only thing syslog sends is _filterdns[96878]: merge_config: configuration reload_. Inste...
-
03:39 PM Revision 87075500: AWS: Separate release tarballs by branch
-
02:34 PM Bug #12105 (Confirmed): Packages are not automatically reinstalled when restoring configuration using the installer
- Looks like the base system moved to using @/cf/conf/needs_package_sync@ for the flag file a while back in commit:1051...
-
01:55 PM Revision f152d664: AWS: Add FLAVOR to distfiles.tar
-
01:34 PM Revision 8be1bb42: AWS: Add branch name to pkgs tarball
-
01:21 PM Feature #628: Ability to specify listen IP address of management services (SSH, web interface)
I also find this issue a bit strange, not very happy pfSense nginx and sshd listens on every interface. I modified ...-
12:49 PM Bug #7801 (Assigned): UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
- The new checkboxes in *System > Advanced, Firewall & NAT* are not populated when re-entering the configuration page.
... -
12:13 PM Revision 6363f2bb: AWS: Simplify logic using 's3 ls' to check if file exists
-
12:13 PM Revision 903e84c2: AWS: Make sure distfiles.tar exist before try to download it
-
11:57 AM Revision 85e010a1: AWS: Add missing s3 parameter to ls
-
11:35 AM Revision 7accab44: AWS: Add FLAVORS to pkgs cache
-
11:32 AM Revision 37b5a3c3: Do not force git remote to be called origin
-
11:25 AM Bug #12102 (Confirmed): Prevent using OpenVPN "Exit Notify" option with point-to-point modes
- Was just looking at this on a forum thread and this is not site-to-site vs RA but point-to-multipoint (client/server)...
-
11:06 AM Bug #12102: Prevent using OpenVPN "Exit Notify" option with point-to-point modes
- Jim Pingle wrote:
> What is "Exit Notify" set to on both ends when this happens? From the log, that is why it termin... -
11:20 AM Revision 1bd84384: AWS: Create initial stashed ports tree on S3
-
11:05 AM Revision dcc5e63d: AWS: Simplify logic
- Create aws_exec() and replace all direct calls to use it
-
10:28 AM Regression #12117 (Duplicate): service NOIP version 2.5.2
- Duplicate of #12021
-
10:13 AM Regression #12117 (Duplicate): service NOIP version 2.5.2
- after upgrading to version 2.5.2 the NOIP service does not update the WAN IP, I entered the NOIP website, registered ...
-
10:23 AM Regression #11316: Unbound crashes with signal 11 when reloading
- Martin Müller wrote:
> "Unbound 1.13.1 was just released a few days ago
I had the same problem with pfsense 2.5.1... -
08:26 AM pfSense Docs New Content #11739: Manual Outbound NAT rules in HA setup
- one more hint. I would suggest adding a note or xref to https://docs.netgate.com/pfsense/en/latest/highavailability/r...
-
08:11 AM Regression #12100 (Resolved): Recent 2.6.0 development installers don't actually install
-
06:30 AM Feature #6362: Allow specifying the client identifier hardware type
- h2. Request
To me, just prepending \000 to the text content of the GUI field
> Services / DHCP Server / LAN / E...
07/08/2021
-
07:52 PM Revision e4560653: Always save built pkgs progress
-
07:52 PM Revision 27bd8237: Replace factory by ${FLAVOR}
-
07:52 PM Revision 71e9637a: Build improvements for using AWS:
- * Use release artifacts from S3 to populate poudriere jails
* Pull prebuilt pkgs from S3 to only rebuild changed item... -
07:00 PM Regression #12100: Recent 2.6.0 development installers don't actually install
- Just tried it and it's installing now.
Thanks.
-
06:06 PM Regression #12100 (Feedback): Recent 2.6.0 development installers don't actually install
- Fixed in the latest snapshot.
-
06:49 PM Revision 102a3c02: Update strongSwan terminate syntax. Fixes #12052
- (cherry picked from commit 6cfa9d7498be390314b93fa40aea1704eb5a8eae)
-
06:49 PM Revision 6cfa9d74: Update strongSwan terminate syntax. Fixes #12052
-
03:05 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Regardless, this is not the place so i created a forum post.
If you might be so kind as to offer some advice there,... -
02:52 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- It's resolved because they work on rules directly, which as I explained in my comments above is the only solution cur...
-
02:45 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Well, i know IPv6 firewall entries with dynamic delegated prefix and static host address's are not supported when usi...
-
12:49 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Most of those are items for discussion on the forum, not a bug report.
You can use these shorthand notations in fi... -
12:42 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Ok, thanks for the response.
How does someone use IPV6 with dynamic assignments, and firewall rules?
I am a home ... -
12:27 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- That would be a separate request, yes, but as I mentioned it's not currently possible to implement. There isn't any w...
-
12:20 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- So another feature request is needed for the ability to use IPV6 with rules that use alias's?
-
12:07 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- It works as intended for entries on rules.
It cannot work on aliases because aliases are not associated with an in... -
11:55 AM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Did you get this figured out by chance? I was going to spend some time this weekend setting up IPV6 but if its still ...
-
01:55 PM Regression #12052 (Feedback): IPsec status IKE disconnect button drops all connections for the IKE ID, not a specific IKE SA ID
- Applied in changeset commit:6cfa9d7498be390314b93fa40aea1704eb5a8eae.
-
01:43 PM Regression #12052 (In Progress): IPsec status IKE disconnect button drops all connections for the IKE ID, not a specific IKE SA ID
- Looks like the behavior in strongSwan changed slightly. We are running this command:...
-
11:53 AM Regression #12052: IPsec status IKE disconnect button drops all connections for the IKE ID, not a specific IKE SA ID
- To me for testing/confirmation.
-
01:26 PM pfSense Packages Feature #10818: UDP Broadcast Relay
- Would also like to this this as pfSense package with GUI.
-
12:45 PM Feature #12096 (Resolved): Refactor DNS forwarder (dnsmasq) for MVC
- This looks good now.
Tested:... -
11:53 AM pfSense Packages Bug #11217 (Resolved): tun-ipv6 is depracated on OpenVPN 2.4
- Tested.
tun-ipv6 is included only when the Legacy Client option is enabled. -
11:32 AM pfSense Packages Bug #12073: ``netsnmptrapd.conf`` syntax for ``snmpTrapdAddr`` is wrong
- It looks like the PORTREVISION is not increased. Probably that's why the package is not rebuilt.
-
10:57 AM Regression #11986 (Duplicate): Static routes may not be in routing table when expected
- The changes from #11296 were all reverted, and that issue was reopened. So this is now redundant/duplicate.
-
10:53 AM Regression #11910 (Confirmed): IPsec status tunnel descriptions are incorrect
-
10:25 AM Feature #12116: Support DNS server gateway selection on ``system.php`` for multiple gateways not assigned to interfaces
- Currently that is the correct and expected behavior. To activate Multi-WAN support, multiple interfaces must have a g...
-
10:18 AM Feature #12116 (Resolved): Support DNS server gateway selection on ``system.php`` for multiple gateways not assigned to interfaces
- When pfSense only has a single interface with upstream gateway configured but multiple manually added gateways. The g...
-
07:20 AM pfSense Plus Regression #11995 (Feedback): UPnP/NAT-PMP not functioning on 32-bit ARM
- I've bumped miniupnpd package to `2.2.1_1,1` on 2.6.0/2.5.2 CE and 21.09/21.05 Plus
07/07/2021
-
07:01 PM Revision b0ff9c6b: 2.5.2 is the new release
- 03:06 PM Revision cac2103a: Update interface selection on save
-
01:14 PM pfSense Plus Regression #11995: UPnP/NAT-PMP not functioning on 32-bit ARM
- It looks like this may be from a change in the FreeBSD kernel between versions that required a new build of miniupnpd...
-
12:30 PM Bug #11453: ``wpa_supplicant`` uses 100% of a CPU core at boot
- Tested under pfSense 2.5.2 released today and confirmed this is resolved. Thanks to everyone for helping get this do...
-
12:16 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- This appears to only be partially resolved. While using ::0/56 as a 'destination' on a Rule works, using the same ::...
-
09:45 AM pfSense Packages Bug #12114 (Pull Request Review): syslog-ng only binds to the last specified interface
-
09:14 AM pfSense Packages Bug #12114 (Resolved): syslog-ng only binds to the last specified interface
- I can reproduce "this":https://redmine.pfsense.org/issues/4601 issue.
As stated "here":https://forum.netgate.com/t... -
09:43 AM Regression #12111 (Pull Request Review): Crash report message displayed on dashboard. flock() expects parameter 1 to be resource, null given in /etc/inc/util.inc on line 166
-
09:12 AM Regression #12111: Crash report message displayed on dashboard. flock() expects parameter 1 to be resource, null given in /etc/inc/util.inc on line 166
- Newer versions of PHP now throw a warning if the file handler parameter for flock() and fclose() are null.
PR: htt... -
08:56 AM Regression #12111 (Resolved): Crash report message displayed on dashboard. flock() expects parameter 1 to be resource, null given in /etc/inc/util.inc on line 166
- I'm not aware of any system crash. Perhaps it's a process crash.
I see this message (image attached to Issue).
... -
09:41 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- Jan Zalewski wrote:
> Nothing happens "magically" and especially in software development ;)
Correct, which is why... -
09:29 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- Nothing happens "magically" and especially in software development ;)
-
09:27 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- Jan Zalewski wrote:
> I don't think it's a problem with "my system" it immediately started to appear after upgrade (... -
09:18 AM Bug #12112: PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- I don't think it's a problem with "my system" it immediately started to appear after upgrade (I have a clean installa...
-
09:06 AM Bug #12112 (Not a Bug): PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- That appears to be a problem with the upgrade on your specific system and not a general issue. It could also be from ...
-
09:03 AM Bug #12112 (Not a Bug): PHP Warning: PHP Startup: Unable to load dynamic library 'intl.so' (tried: /usr/local/lib/php/20190902/intl.so (Shared object "libicuio.so.69" not found, required by "intl.so"), /usr/local/lib/php/20190902/intl.so.so (/usr/local/lib/php/20190902/intl.so.
- # Launch latest build
# Analyze callstack:
[07-Jul-2021 14:00:00 UTC] PHP Warning: PHP Startup: Unable to load d... -
09:24 AM Bug #12113 (Not a Bug): Fatal error: Uncaught Error: Call to undefined function idn_to_ascii() in /usr/local/www/diag_dns.php:35 Stack trace: #0 {main} thrown in /usr/local/www/diag_dns.php on line 35 PHP ERROR: Type: 1, File: /usr/local/www/diag_dns.php, Line: 35, Message: Unca
- This is the same as #12112
This site is not for support or diagnostic discussion.
For assistance in solving pro... -
09:07 AM Bug #12113 (Not a Bug): Fatal error: Uncaught Error: Call to undefined function idn_to_ascii() in /usr/local/www/diag_dns.php:35 Stack trace: #0 {main} thrown in /usr/local/www/diag_dns.php on line 35 PHP ERROR: Type: 1, File: /usr/local/www/diag_dns.php, Line: 35, Message: Unca
- # Launch latest build
# Enter Diagnostics->DNS Lookup
# Analyze crash and callstack
Crash report begins. Anony... -
05:54 AM Feature #11357: Support for DynDNS provider deSEC.io
- This feature has been "implemented":https://redmine.pfsense.org/issues/12086 and should become available as of versio...
07/06/2021
-
08:06 PM Revision 1fe8f376: New stable release is 2.5.2
- 07:36 PM Revision 8db6781b: Fix #12110 PHP error on line 329
- 05:03 PM Revision c3ff46e1: Revised help text wording (bleow/above)
- 05:00 PM Revision 026ede39: Fix reporting of onterface selection
-
04:06 PM Bug #11453: ``wpa_supplicant`` uses 100% of a CPU core at boot
- Doesn't really matter, they're both closed states.
-
03:57 PM Bug #11453: ``wpa_supplicant`` uses 100% of a CPU core at boot
- Why was this closed versus resolved?
-
03:54 PM Bug #11453 (Closed): ``wpa_supplicant`` uses 100% of a CPU core at boot
-
04:05 PM pfSense Plus Regression #11995: UPnP/NAT-PMP not functioning on 32-bit ARM
- It doesn't appear to be due to a change in the ports, as 21.02.2 works and has @miniupnpd-2.2.1,1@ while 21.05 fails ...
-
01:22 PM pfSense Plus Regression #11995: UPnP/NAT-PMP not functioning on 32-bit ARM
- It's also noteworthy that it IS adding some rules, but they are @block return@ firewall rules and not the @nat@ and @...
-
11:58 AM pfSense Plus Regression #11995: UPnP/NAT-PMP not functioning on 32-bit ARM
- This still happens on current 21.09 snapshots (21.09.a.20210706.0500):...
-
03:55 PM Regression #12069 (In Progress): Panic in ``pfctl`` with large numbers of states
- All reports indicate this is OK on 2.5.2 since the changes were backed out. Will need to check it again after additio...
-
03:54 PM Bug #11913 (Closed): RADVD breaks on SIGHUP
-
03:54 PM Regression #11524 (Closed): Using SHA1 or SHA256 with AES-NI may fail if AES-NI attempts to accelerate hashing
-
03:54 PM Bug #10956 (Closed): Panic configuring LAGG+VLAN interfaces when using a kernel with ``INVARIANTS``.
-
02:45 PM Regression #12110: PHP error in firewall_nat.inc on line 329
- Applied in changeset commit:8db6781bed17455116b93a1fa0875996c5f84b60.
-
02:38 PM Regression #12110 (Feedback): PHP error in firewall_nat.inc on line 329
- Fix should appear in 7/07 development snapshot
-
02:14 PM Regression #12110 (Resolved): PHP error in firewall_nat.inc on line 329
- This seems to be happening when adding ICMP rules to two separate WANs.
Can't get them both to respond to ping req... -
01:25 PM pfSense Packages Feature #12097: Add dnsbl and geoip logs to system log
- https://github.com/pfsense/FreeBSD-ports/pull/1079
-
01:02 PM Feature #11927: Allow DHCP not to serve a gateway - small fix
- https://www.iana.org/assignments/bootp-dhcp-parameters/bootp-dhcp-parameters.xhtml
Router aka Gateway is DHCP opti... -
12:44 PM Revision 81891ef8: Remove specific 2.5.2 repo
-
12:43 PM Revision 0e082768: Change default repo to 2.5.2
-
12:05 PM Feature #12096: Refactor DNS forwarder (dnsmasq) for MVC
- Fixed incorrect display of selected interface
Fixed help text wording (below/above)
-
11:10 AM Bug #12107 (New): Notifications page cannot be saved without configuring or disabling SMTP
- Steps to replicate:
Install pfSense clean. I used a 2.5.2 image here but have also see it in 21.05 and 2.5.1.
Skip ... -
09:21 AM Bug #12107 (Feedback): Notifications page cannot be saved without configuring or disabling SMTP
- Someone else reported this in #11955 but I couldn't reproduce it at the time, and I still can't reproduce it on 2.5.2...
-
10:12 AM Revision 226cb195: Exclude revoked certs from expiration notification. Fix Bug #12109
-
09:59 AM Feature #12109 (Pull Request Review): Option to suppress expiration notifications for revoked certificates
-
05:54 AM Feature #12109: Option to suppress expiration notifications for revoked certificates
- "Exclude revoked certs from expiration notification. Fix Bug #12109 "Issue 4530":https://github.com/pfsense/pfsense/p...
-
05:05 AM Feature #12109 (Resolved): Option to suppress expiration notifications for revoked certificates
- Alerts for expired certificates have been added in Feature # 7332, however, they do not ignore revoked certificates. ...
-
09:52 AM Feature #12108 (Rejected): openvpn upgrade to BLAKE3
- That's up to OpenSSL upstream, not us or even OpenVPN....
-
12:24 AM Feature #12108 (Rejected): openvpn upgrade to BLAKE3
now pfsense openvpn has BLAKE2b, i want to upgrade it to BLAKE3.
https://github.com/BLAKE3-team/BLAKE3-
09:24 AM Bug #12105: Packages are not automatically reinstalled when restoring configuration using the installer
- Jim Pingle wrote:
> Which methods were you testing? Was it loading a config from USB during the installation, or u... -
09:14 AM Bug #12105: Packages are not automatically reinstalled when restoring configuration using the installer
- Which methods were you testing? Was it loading a config from USB during the installation, or using the "Recover confi...
-
09:09 AM Feature #12104 (Needs Patch): Advertise Speed autonegotiation
- AFAIK there isn't a way to do this in FreeBSD without modifying the drivers. There is no mechanism in @ifconfig@ that...
-
09:05 AM Bug #12102 (Feedback): Prevent using OpenVPN "Exit Notify" option with point-to-point modes
- What is "Exit Notify" set to on both ends when this happens? From the log, that is why it terminated. Odds are the se...
-
09:03 AM pfSense Plus Bug #12053 (Closed): PRF Algorithm is Always Set to SHA256 on New Tunnel Creations
- OK, if we can find a way to reproduce it on another system, we can always reopen it later with the exact conditions a...
-
09:02 AM Feature #11935: Log external IP address of OpenVPN clients on connect and disconnect
- Alhusein Zawi wrote:
> IP address is not added to openvpn log yet
Where did you test that? It would only be in 2.... -
08:02 AM Regression #12100: Recent 2.6.0 development installers don't actually install
- This also applies to 21.09 snapshots currently.
The bsdinstaller appears to be missing from the image.
Tested J...
07/05/2021
-
07:44 AM Bug #12107 (Resolved): Notifications page cannot be saved without configuring or disabling SMTP
- In System > Advanced > Notifications page you can only save changes to any value on the page if the email section is ...
07/04/2021
-
05:59 PM Bug #12106 (Duplicate): Multi WAN not functioning on CE 2.51
- This is the same as #11805. It is fixed in 2.5.2, which will be out shortly.
-
05:50 PM Bug #12106 (Duplicate): Multi WAN not functioning on CE 2.51
- Similar to pfsense+ #11436 and CE #11805. Upgraded customer from 2.4.5p1 to CE 2.5.1. Network has 2 x WAN and 2 x LAN...
-
02:32 PM Bug #12095: Memory leak in pcscd
- Additional note:
Stopping the service while IPsec is in use leads to the following log spam:... -
01:26 PM Bug #12095: Memory leak in pcscd
- Here are some stats on various 21.05 VMs:
* Uptime: 6d2h
* RAM: 1G
* pcscd usage: 326M
* 2 VTI IPsec tunnels
... -
02:31 PM Bug #12105: Packages are not automatically reinstalled when restoring configuration using the installer
- Actually, the documentation mentions automatic package reinstallation only for the ECL method, and that is what works...
-
01:58 PM Bug #12105 (Resolved): Packages are not automatically reinstalled when restoring configuration using the installer
- pfSense does not install the configured packages during the first boot after installation if the first documented met...
-
09:30 AM Feature #12104 (Needs Patch): Advertise Speed autonegotiation
- Now don't have mechanism to select/modify array modes to advertise speed autonegotiation
eg to choise:
10 half dupl... -
09:13 AM Feature #12103: L2TP VPN Clients show on dashboard
- Ok, yes sorry.
Thank you -
09:10 AM Feature #12103: L2TP VPN Clients show on dashboard
- This is a duplicate of part of what the other issue would implement.
There is no way to get the status for L2TP ri... -
09:05 AM Feature #12103: L2TP VPN Clients show on dashboard
- Jim Pingle wrote:
> Duplicate of #9633
It is not Duplicate...
pfSense have no widget for dashboard now -
08:59 AM Feature #12103 (Duplicate): L2TP VPN Clients show on dashboard
- Duplicate of #9633
-
08:26 AM Feature #12103: L2TP VPN Clients show on dashboard
- i mean widget for dashboard
-
08:12 AM Feature #12103 (Duplicate): L2TP VPN Clients show on dashboard
- Please make dashboard, which can show online L2TP clients online connect status
07/03/2021
-
03:52 PM Bug #12102 (Resolved): Prevent using OpenVPN "Exit Notify" option with point-to-point modes
- When establishing an OpenVPN client/server site to site in 21.05, if the OpenVPN client (on another box) makes any ch...
-
03:36 PM Bug #11863 (Resolved): Unable to create nested URL aliases
-
03:35 PM Bug #11863: Unable to create nested URL aliases
- Tested on the:...
-
03:20 PM Regression #12100: Recent 2.6.0 development installers don't actually install
- Note that the latest pfSense 2.5.2RC installer works fine.
-
03:12 PM pfSense Packages Bug #12031 (Resolved): Wireguard Package Produces Crash in 2.5.2
- Confirmed fixed in 2.5.2 latest builds on 0.1.3_1. Crash is no longer present.
-
03:09 PM pfSense Plus Bug #12053: PRF Algorithm is Always Set to SHA256 on New Tunnel Creations
- I've only been able to reproduce this after further testing on the one user's install. Not sure how this was trigger...
-
01:50 PM Feature #11935: Log external IP address of OpenVPN clients on connect and disconnect
- IP address is not added to openvpn log yet
-
12:12 PM pfSense Packages Bug #12054 (Resolved): "succesfully" misspelled
- Tested with System Patches 1.2_6. I see the correct spelling now. Marking the ticket resolved.
07/02/2021
-
07:31 PM Revision b7c42a51: Revert "Revert "Welcome pfSense CE 2.5.2-RELEASE""
- This reverts commit 7fededa1ce3ecffaeb657cef6a069e7e180c2aa7.
-
07:06 PM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Looks good here, will we get this cherry picked for 21.05?
-
08:00 AM pfSense Packages Bug #12031 (Feedback): Wireguard Package Produces Crash in 2.5.2
- I've bumped package version so it is reinstalled during upgrade process. It was needed because we changed FreeBSD-sr...
-
06:42 PM pfSense Packages Bug #12101 (Assigned): ArpWatch Suppression Mac for "flip-flop" not suppressing
- I have working notifications with ArpWatch on my pfsense running on an XG-7100.
I get notifications the way I shou... -
01:49 PM Todo #7689 (Closed): bsdinstall does not automatically copy config.xml from USB drive like the previous installer
-
11:44 AM Regression #12100 (Resolved): Recent 2.6.0 development installers don't actually install
- I've tried most of the recent installers (e.g., https://snapshots.netgate.com/amd64/pfSense_master/installer/pfSense-...
-
08:15 AM Regression #12048 (Closed): Error during XMLRPC synchronization due to changes in ``pear-HTTP_Request2``
- Looks good with that version.
On snapshot @2.6.0.a.20210701.0100@ with @php74-pear-HTTP_Request2-2.4.2_1,1@ and i... -
07:59 AM pfSense Packages Bug #12085 (Resolved): OpenVM Tools vmware-kmod service won't start in 2.5.2 RC on ESXi 6.0
- Yeah, since we moved FreeBSD src to an earlier version to remove some pf changes that was causing issues, it rebuilt ...
-
06:15 AM Revision 230ac725: Add dynamic DNS provider dy.fi
- Fixes https://redmine.pfsense.org/issues/12090
-
06:14 AM Revision 691d0458: Fix order of providers in doc string (use case-insensitive sort)
-
02:30 AM pfSense Docs New Content #12098 (New): Using a static route for Accessing a CPE/Modem from Inside the Firewall
- *Page:* https://docs.netgate.com/pfsense/en/latest/recipes/modem-access.html
*Feedback:*
I found this article i...
07/01/2021
-
08:01 PM pfSense Packages Bug #12085: OpenVM Tools vmware-kmod service won't start in 2.5.2 RC on ESXi 6.0
- Now I can't reproduce this on 2.5.2.r.20210629.1350. The service starts/restarts without issues on upgraded systems s...
-
07:26 PM pfSense Packages Bug #12085: OpenVM Tools vmware-kmod service won't start in 2.5.2 RC on ESXi 6.0
- Kris saw smiliar (if not the same) errors related to the WireGuard kernel module recently. Might check with Renato.
- 05:18 PM Revision 8e033f72: Revise DNS forwarder for MVC. #12096
-
03:02 PM Revision 3736da7f: Correct NAT rule overlap detection. Fixes #11734
-
03:01 PM Revision 30169caa: XMLRPC synchronization for DHCP/DHCPv6 Relay settings. Implements #11957
-
03:00 PM Revision 6ae26227: Always apply IPsec changes on HA secondary. Fixes #12075
-
02:57 PM Revision ebf56762: GRE Interfaces input validation fix. Issue #12049
-
02:51 PM Revision ce04d03f: Reconfigure L2TP/PPTP tunnels on newwanip event. Fixes #12072
-
01:39 PM Regression #11316: Unbound crashes with signal 11 when reloading
- I take that back. no sooner do I say it's working then.. BANG..
No crash in the log but completely hung DNS and rest... -
01:15 PM Regression #11316: Unbound crashes with signal 11 when reloading
- No I'm not seeing any crashes on unbound. Didn't know about the DHCP leases.
Thanks again. -
09:46 AM Regression #11316: Unbound crashes with signal 11 when reloading
- Remo Wylliams wrote:
> I updated to CE 2.6.xx and the unbound failures seem to be fewer but still a problem.
Ar... -
09:31 AM Regression #11316: Unbound crashes with signal 11 when reloading
- Jim Pingle wrote:
> There is no change since the last updates already covered above in previous comments:
>
> * U... -
01:35 PM Revision 4dc43323: DHCPv6 Relay page PHP error on save fix. Issue #11969
-
01:33 PM Revision 1e9e12c2: OpenVPN client IP address logging. Implements #11935
-
01:30 PM Revision 234fbf04: Port Forward port ranges extra input validation. Fixes #11818
-
01:27 PM Revision c7a23ab9: Add/remove OpenVPN client PTR record. Fixes #11938
-
01:25 PM Revision da6d6be2: Fix syntax s/)/]/
-
01:21 PM Revision c0cbbf0b: Do not show uninformative interfaces configure message at boot. Fixes #12002
-
01:20 PM Revision 805d4676: is_ipaddrv() fix. Issue #6507
-
01:17 PM Revision 4ebc299b: UPnP STUN configuration. Feature #10587
-
01:12 PM Revision d74bd052: Do not show CA as In Use if LDAP Server transport is not TLS/SSL. Fixes #11922
-
01:11 PM Revision 8e6cfbc4: Allow to use URL type nested aliases. Fixes #11863
-
01:05 PM Revision 3ee90a3e: Skip empty URLTable (Ports) aliases. Fixes #4893
-
12:54 PM Revision 810adc14: Add OpenVPN remote-cert-tls option. Implements #11865
-
12:53 PM Revision e5395534: DHCPv4 ARM PXE config fix. Issue #11905
-
12:52 PM Revision acb89722: Captive Portal redirect page IP/MAC fix. Issue #11902
-
12:44 PM Revision ee49cc68: ovpn_auth_verify improvements. Issue #11829
-
12:39 PM Revision a8e97945: IPSec VPN IP Do-Not-Fragment and Fragment Reassemble options. Fixes #7801
-
12:39 PM pfSense Packages Feature #12097: Add dnsbl and geoip logs to system log
- FYI I have implemented it locally already.
-
12:37 PM pfSense Packages Feature #12097 (New): Add dnsbl and geoip logs to system log
- Functionality similar to how snort has a setting to enable syslog.
-
12:35 PM Revision 5bb49d3e: get_interface_ipv6() Track Interface IP improvements. Fixes #11816
-
12:19 PM Feature #12096 (Feedback): Refactor DNS forwarder (dnsmasq) for MVC
- Updates complete and ready to be tested.
-
10:21 AM Feature #12096 (Resolved): Refactor DNS forwarder (dnsmasq) for MVC
- Move the get/apply/update/delete logic out of the display file and into an include file.
Support JSON data format
E... -
10:10 AM Bug #11734: NAT rule overlap detection is inconsistent
- Applied in changeset commit:3736da7f0ffd73c0cd25b7118b3c4be2e1f0eab9.
-
10:02 AM Bug #11734 (Feedback): NAT rule overlap detection is inconsistent
- PR has been merged. Thanks!
-
10:10 AM Feature #11957: XMLRPC synchronization for DHCP relay settings
- Applied in changeset commit:30169caa4cf9c5fac1751e756cc8dab84eec0b29.
-
10:01 AM Feature #11957 (Feedback): XMLRPC synchronization for DHCP relay settings
- PR has been merged. Thanks!
-
10:10 AM Bug #12075: Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- Applied in changeset commit:6ae26227e1ce622ff9bec0999bb829cec92373e8.
-
10:00 AM Bug #12075 (Feedback): Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- PR has been merged. Thanks!
-
10:00 AM Bug #12072: FQDN L2TP server address is only resolved at boot
- Applied in changeset commit:ce04d03ff8c74e50585522dcd7b0deed46138be9.
-
09:51 AM Bug #12072 (Feedback): FQDN L2TP server address is only resolved at boot
- PR has been merged. Thanks!
-
09:57 AM Bug #12049 (Feedback): Input validation incorrectly rejects a second IPv4-only GRE tunnel
-
09:57 AM Bug #12049: Input validation incorrectly rejects a second IPv4-only GRE tunnel
- PR has been merged. Thanks!
-
09:50 AM Bug #11940 (Not a Bug): Fix return logic on sigkillbypid
-
08:40 AM Feature #11935: Log external IP address of OpenVPN clients on connect and disconnect
- Applied in changeset commit:1e9e12c2180110ef556eee48516cfde0065d4f1a.
-
08:34 AM Feature #11935 (Feedback): Log external IP address of OpenVPN clients on connect and disconnect
- PR has been merged. Thanks!
-
08:40 AM Bug #11818: Mixed use of aliases in a port range produces unloadable ruleset
- Applied in changeset commit:234fbf04cbb6ab2cf64f2e7491b135e9de31af07.
-
08:30 AM Bug #11818 (Feedback): Mixed use of aliases in a port range produces unloadable ruleset
- PR has been merged. Thanks!
-
08:35 AM Bug #11969 (Feedback): PHP error if no DHCPv6 Relay interfaces are selected
- PR has been merged. Thanks!
-
08:35 AM Regression #11938: DNS Resolver does not add PTR record for OpenVPN clients
- Applied in changeset commit:c7a23ab9400a69b49e6fb09f78d342c972e0d202.
-
08:28 AM Regression #11938 (Feedback): DNS Resolver does not add PTR record for OpenVPN clients
- PR has been merged. Thanks!
-
08:30 AM Bug #12002: Boot messages contain entries about configuring LAGG/VLAN/QinQ interfaces even when no entries of those types are configured
- Applied in changeset commit:c0cbbf0b23bd2bb787ace397758b82999784f3ac.
-
08:21 AM Bug #12002 (Feedback): Boot messages contain entries about configuring LAGG/VLAN/QinQ interfaces even when no entries of those types are configured
- PR has been merged. Thanks!
-
08:20 AM Bug #6507 (Feedback): GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
- PR has been merged. Thanks!
-
08:20 AM Bug #11922: Certificate manager reports CA as in use by an LDAP server when LDAP is not configured for TLS
- Applied in changeset commit:d74bd05275490d30ccd6e607fd58c4e0bd73746e.
-
08:12 AM Bug #11922 (Feedback): Certificate manager reports CA as in use by an LDAP server when LDAP is not configured for TLS
- PR has been merged. Thanks!
-
08:20 AM Bug #11863: Unable to create nested URL aliases
- Applied in changeset commit:8e6cfbc4b58ab19827add586e95098e1700b8069.
-
08:11 AM Bug #11863 (Feedback): Unable to create nested URL aliases
- PR has been merged. Thanks!
-
08:17 AM Feature #10587 (Feedback): UPnP/NAT-PMP STUN configuration options
- PR has been merged. Thanks!
-
08:15 AM Bug #4893: Error loading rules when URL Table Ports content is empty
- Applied in changeset commit:3ee90a3ee2a00f02a3254a138d05e800fffdaf3e.
-
08:05 AM Bug #4893 (Feedback): Error loading rules when URL Table Ports content is empty
- PR has been merged. Thanks!
-
08:00 AM Feature #11865: Option to validate OpenVPN peer TLS certificate key usage
- Applied in changeset commit:810adc14df07be380eba2a48ed8ff416cacad31e.
-
07:54 AM Feature #11865 (Feedback): Option to validate OpenVPN peer TLS certificate key usage
- PR has been merged. Thanks!
-
07:53 AM Bug #11905 (Feedback): DHCPv4 server configuration does not include ARM TFTP filenames
- PR has been merged. Thanks!
-
07:52 AM Bug #11902 (Feedback): Incorrect variable substitution in captive portal error page
- PR has been merged. Thanks!
-
07:50 AM Bug #7801: UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
- Applied in changeset commit:a8e97945b4fdaa9c5228bddf2964d95fb505ee4b.
-
07:41 AM Bug #7801 (Feedback): UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
- PR has been merged. Thanks!
-
07:45 AM Bug #11829 (Feedback): OpenVPN client certificate validation with OCSP always fails
- PR has been merged. Thanks!
-
07:45 AM Bug #11816: RFC 2136 Dynamic DNS client uses IPv6 alias VIP instead of Track IPv6 address for AAAA records
- Applied in changeset commit:5bb49d3e388717cfb83e138724ba22fd4534eb62.
-
07:35 AM Bug #11816 (Feedback): RFC 2136 Dynamic DNS client uses IPv6 alias VIP instead of Track IPv6 address for AAAA records
- PR has been merged. Thanks!
06/30/2021
-
08:46 PM Revision 5a8d6013: Merge pull request #4529 from theonemcdonald/improvement/lo0startupspew
-
08:45 PM Revision 5fbfdeb3: Merge pull request #4528 from Inperpetuammemoriam/master
-
08:25 PM Revision 9e8300cb: Add dynamic DNS service provider deSEC
- This commit implements the method of updating DNS records using the HTTP
Token Authentication specified in the deSEC ... - 08:11 PM Revision cfd8b45f: Supresses lo0 config kernel msgs during startup
-
07:22 PM Revision 32fed791: Merge pull request #4526 from fl0l0u/patch-2
- 07:15 PM Revision dc6eb05f: dyndns: Add strato.de provider (Fixes #11978)
-
07:09 PM Revision 92eecca9: Merge pull request #4527 from raphendyr/feature-maxcacheage
-
03:46 PM Feature #12094 (Feedback): Suppress kernel messages for ``lo0`` configuration during boot
- PR has been merged. Thanks!
-
03:15 PM Feature #12094 (Resolved): Suppress kernel messages for ``lo0`` configuration during boot
- PR : https://github.com/pfsense/pfsense/pull/4529
-
03:45 PM Feature #12086 (Feedback): New Dynamic DNS Provider: deSEC
- PR has been merged. Thanks!
-
03:32 PM Bug #12095: Memory leak in pcscd
- Could be partially mitigated by #11933 -- That daemon should be made optional and off by default except for the few p...
-
03:27 PM Bug #12095 (New): Memory leak in pcscd
- The PCSC daemon looks to have a memory leak even when it's not in use. Or even when there are no IPSec tunnels define...
-
02:22 PM Bug #12076 (Feedback): OpenVPN RADIUS-based firewall rules do not use expected value for RADIUS-assigned IP addresses
- PR has been merged. Thanks!
-
02:20 PM Feature #11978: New Dynamic DNS Provider: Strato
- Applied in changeset commit:dc6eb05f2373c8e72019aa7be40a2a10c8b9edae.
-
02:17 PM Feature #11978 (Feedback): New Dynamic DNS Provider: Strato
- PR has been merged. Thanks!
-
02:10 PM Feature #9092 (Feedback): Option to set interval of forced Dynamic DNS updates
- PR has been merged. Thanks!
-
02:03 PM pfSense Packages Bug #11391 (Feedback): Zeek crashes on 2.5.0
- PR has been merged to 2.5.1, 2.5.2-RC and 2.6.0-DEVELOPMENT. Thanks!
-
02:03 PM pfSense Packages Bug #11461 (Feedback): zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
- PR has been merged to 2.5.1, 2.5.2-RC and 2.6.0-DEVELOPMENT. Thanks!
-
01:59 PM Todo #12093: Make AutoConfigBackup menu entry point to the settings tab so it loads faster when there is no WAN connectivity
- It used to be a package, we decided to integrate it into base when it was made free to all. I don't see it moving bac...
-
01:48 PM Todo #12093: Make AutoConfigBackup menu entry point to the settings tab so it loads faster when there is no WAN connectivity
- This is something that I've actually been looking into as well over the past few days in response to work on the Wire...
-
12:57 PM Bug #11453: ``wpa_supplicant`` uses 100% of a CPU core at boot
- Jim Pingle wrote:
> Due to changes in the freebsd-src branch used to build 2.5.2 snapshots, this needs re-tested on ... -
10:16 AM Feature #12092: Utilize new ``pfctl`` abilities to kill states
- Note on "That also assumes the rule has an ID in its configuration, which we may need to check is always true."
Th... -
02:21 AM Regression #11545: Primary interface address is not always used when VIPs are present
> Per my previous redmine reply, you only need to resave the VIP and interface. There is no need to remove it, alt...
06/29/2021
-
07:01 PM Regression #11545: Primary interface address is not always used when VIPs are present
- M Felden wrote:
> I believe I am seeing this now after upgrading 2.4.5-p1 -> 2.5.1-CE with FRR BGP where FRR is told... -
04:35 PM Feature #12092: Utilize new ``pfctl`` abilities to kill states
- → luckman212 wrote:
> @Jim yes that would be a godsend for multiwan if it works out. I always dreamed of being able ... -
04:14 PM Feature #12092: Utilize new ``pfctl`` abilities to kill states
- @Jim yes that would be a godsend for multiwan if it works out. I always dreamed of being able to kill specific states...
-
09:23 AM Feature #12092: Utilize new ``pfctl`` abilities to kill states
- Another random thought, it _might_ be possible to leverage this to help with multi-wan (like #8555) since we could ki...
-
09:18 AM Feature #12092 (Closed): Utilize new ``pfctl`` abilities to kill states
- In the latest pf changes present on 2.6.0, @pfctl@ now supports killing states by label. We are using this to kill sc...
-
03:41 PM Regression #12069: Panic in ``pfctl`` with large numbers of states
- Excluding from release notes since it's not going to be a problem in any release (introduced in snapshots and fixed t...
-
03:36 PM Regression #12069: Panic in ``pfctl`` with large numbers of states
- @2.5.2.r.20210629.1350@ looks good to me. @pfctl -ss@ is fast and I'm not seeing any slow down or memory pressure lik...
-
08:15 AM Regression #12069 (Feedback): Panic in ``pfctl`` with large numbers of states
- We'll have a new RC build soon with the pf changes rolled back so we're closer to the previous version in that area. ...
-
03:40 PM Regression #12028 (New): SNMP daemon issues with pf nvlist changes
- The changes here have been backed out of 2.5.2 so we'll need to check/test 2.6.0 once it has been synchronized with u...
-
03:25 PM pfSense Docs Correction #11096 (Closed): Feedback on pfSense Configuration Recipes — IPsec Site-to-Site VPN Example with Pre-Shared Keys
- This recipe has been updated with current recommendations for encryption and also in other ways, such as using settin...
-
12:55 PM Bug #12003: Pie and ``fq_pie`` are missing options and do not handle floating point number input correctly
Patch version 4.
shaper-full-v4.patch
Broken up into seperate patches.
shaper-pie-001.patch
Necessary to ge...-
12:48 PM Bug #10956 (Feedback): Panic configuring LAGG+VLAN interfaces when using a kernel with ``INVARIANTS``.
- The relevant commit for this should be present on a build dated *after* this comment.
Given the barrier to testing... -
12:46 PM Bug #11913 (Feedback): RADVD breaks on SIGHUP
- Due to changes in the freebsd-src branch used to build 2.5.2 snapshots, this needs re-tested on a build dated *after*...
-
12:46 PM Bug #11453 (Feedback): ``wpa_supplicant`` uses 100% of a CPU core at boot
- Due to changes in the freebsd-src branch used to build 2.5.2 snapshots, this needs re-tested on a build dated *after*...
-
12:46 PM Regression #11524 (Feedback): Using SHA1 or SHA256 with AES-NI may fail if AES-NI attempts to accelerate hashing
- Due to changes in the freebsd-src branch used to build 2.5.2 snapshots, this needs re-tested on a build dated *after*...
-
12:16 PM Todo #12093 (Resolved): Make AutoConfigBackup menu entry point to the settings tab so it loads faster when there is no WAN connectivity
- When @Backup Frequency@ is set to backup on change, changing/saving settings is delayed. This can range from only a s...
-
09:32 AM Bug #8555: Selectively killing states on WAN failure
- We _might_ be able to use the new mutli-label and kill-states-by-label support in pf to come up with a solution here ...
-
07:58 AM Bug #12079: Kernel panic when running IGMP Proxy: Sleeping thread owns a non-sleepable lock
- Re-targeting this to 2.6.0/21.09
-
07:20 AM Regression #12048 (Feedback): Error during XMLRPC synchronization due to changes in ``pear-HTTP_Request2``
- I've added a patch from upstream [1] to devel/pear-HTTP_Request2, version 2.4.2_1,1
[1] https://github.com/pear/HT... -
06:51 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Kris Phillips wrote:
> Correction: Wireguard is available in the internal test repo. It is not available on the pub... -
06:46 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Did some sleuthing into Kris's error. This looks like something wrong with the build, not something specific in the p...
06/28/2021
-
01:38 PM pfSense Packages Bug #11605 (Closed): Suricata can trigger PHP crash on SG-3100
- Closing this as it appears to be the same root cause as #11466 which has a workaround applied as #12004 -- Users can ...
-
01:36 PM pfSense Packages Bug #11551 (Closed): SG-3100 with pfBlockerNG doesn't pass traffic
- Closing this as it appears to be the same root cause as #11466 which has a workaround applied as #12004 -- Users can ...
-
01:24 PM Regression #11316: Unbound crashes with signal 11 when reloading
- There is no change since the last updates already covered above in previous comments:
* Unbound still hasn't put o... -
01:17 PM Regression #11316: Unbound crashes with signal 11 when reloading
- This problem is very much interfering with my network operations. I have watchdog restarting unbound but
it can take... -
01:04 PM Regression #11316: Unbound crashes with signal 11 when reloading
- For those commenting about restarting the service - that didn't help me. Had to restart the firewalls.
This 5 mont... -
01:00 PM Bug #12079: Kernel panic when running IGMP Proxy: Sleeping thread owns a non-sleepable lock
- First a note that to my understanding the bug is not easy to run into. However, booting a kernel with debug options e...
-
12:46 PM Feature #12091 (New): RFE: Add support for sssd authentication
- I'm making use of sssd authentication on pfSense 2.5+, but I keep having to add "sss" to nsswitch.conf because it is ...
-
10:15 AM pfSense Plus Bug #11466: PHP exits with signal 11 on SG-3100 when calling PCRE functions
- If anyone is still having issues with PHP crashing on the 3100 after applying "the PCRE JIT patch from comment 32":ht...
-
09:10 AM Feature #12086: New Dynamic DNS Provider: deSEC
- My bad. I had not noticed that I still were under *pfSense Packages* when creating the issue from my previous issue. ...
-
07:59 AM Feature #12086 (Pull Request Review): New Dynamic DNS Provider: deSEC
- PR: https://github.com/pfsense/pfsense/pull/4528
-
07:56 AM Feature #12086: New Dynamic DNS Provider: deSEC
- Category is there, but this was filed under packages and not base.
-
08:14 AM Feature #12090 (Pull Request Review): Add new Dynamic DNS provider: dy.fi
-
08:12 AM pfSense Packages Bug #11461 (Pull Request Review): zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
-
08:12 AM pfSense Packages Bug #11391 (Pull Request Review): Zeek crashes on 2.5.0
-
08:11 AM Bug #12089 (Not a Bug): pfSense has detected a crash report or programming bug. Click here for more information.
- That is almost certainly a hardware problem, not a bug....
-
08:03 AM pfSense Packages Bug #12088 (Pull Request Review): Setting Advertise Capability to ORF leads to invalid configuration preventing frr from starting
-
08:02 AM Bug #12087 (Not a Bug): Aliase
- Unable to reproduce. There must be some other invalid input in the field or similar issue, I can enter that hostname ...
-
07:54 AM pfSense Packages Bug #11610 (New): NET-SNMP is not setting the correct permissions on AgentX
- Updating issue to reflect that it's really a problem in NET-SNMP.
Setting the permissions to 777/777 seems less th... -
07:49 AM pfSense Packages Bug #12083 (Pull Request Review): Lack of OSPF network input validation causes service startup error
-
07:40 AM pfSense Docs Todo #12082 (Rejected): Freenode IRC
- Not a documentation issue. If any decisions are made in this area, we'll update the site as needed.
-
07:39 AM Bug #12081 (Not a Bug): Limiters do not work when running pfsense in ESXI
- Limiters are not hardware or platform specific. I've recently tested limiters in ESXi, Proxmox, and on bare metal har...
-
07:37 AM pfSense Packages Bug #12080 (Pull Request Review): Setting a route-map to redistribute in BGP leads to invalid configuration preventing frr from starting
-
06:55 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- I'm not seeing that on both my 2.5.2 and 2.6.0 boxes (both x86 obviously).
I have seen similar output from kld* wh... -
03:49 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Hello, packages still unavailable ?
06/27/2021
-
08:49 PM Revision 82caf945: Add option to set max cache age for the custom dynamic DNS provider
- Fixes https://redmine.pfsense.org/issues/9092
-
04:06 PM Feature #12090 (Resolved): Add new Dynamic DNS provider: dy.fi
- Dy.fi is a small dynamic service provider exclusive to Finland (i.e., the service requires that the client IP locates...
-
03:57 PM Feature #9092: Option to set interval of forced Dynamic DNS updates
- Fix aka. the PR in review: https://github.com/pfsense/pfsense/pull/4527
-
11:46 AM pfSense Packages Bug #11461: zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
- Fixed in this PR: https://github.com/pfsense/FreeBSD-ports/pull/1077
-
11:45 AM pfSense Packages Bug #11391: Zeek crashes on 2.5.0
- Fixed in this PR: https://github.com/pfsense/FreeBSD-ports/pull/1077
-
07:38 AM Bug #12089 (Not a Bug): pfSense has detected a crash report or programming bug. Click here for more information.
- Pfsense se rompe y se reinicia.
06/26/2021
-
09:48 PM pfSense Packages Bug #12088: Setting Advertise Capability to ORF leads to invalid configuration preventing frr from starting
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/100
This accomplishes the following:
* Allow th... -
08:09 PM pfSense Packages Bug #12088 (Resolved): Setting Advertise Capability to ORF leads to invalid configuration preventing frr from starting
- Selecting @ORF@ under @Services / FRR BGP / Neighbors // Advanced Options / Advertise Capability@ results in an inval...
-
09:28 PM pfSense Packages Bug #11711 (Resolved): New Squid Status Page Non-Functional
- Confirmed on 2.5.2 June 26th build of Community Edition that this issue is resolved. I have enabled both services an...
-
09:17 PM pfSense Packages Bug #12030: Startup Errors for Avahi Package
- Confirmed this is the case. We may want to consider making this a "more friendly" error, as it looks like a bug unti...
-
07:14 PM Bug #12087 (Not a Bug): Aliase
- Boa noite!
Gostaria de reportar algo que eu acredito ser um bug na última versão (2.5.1) do pfsense community editio... -
06:04 PM Feature #12086 (Resolved): New Dynamic DNS Provider: deSEC
- Even though deSEC can currently be used with the "custom":https://docs.netgate.com/pfsense/en/latest/services/dyndns/...
-
04:21 PM Bug #11959 (Resolved): PPP interfaces lose the description field in ``ifconfig`` output when restarted
- pppoe0: flags=8890<POINTOPOINT,NOARP,SIMPLEX,MULTICAST> metric 0 mtu 1500
description: OPT1
nd6 opt... -
03:28 PM pfSense Packages Bug #12031 (Assigned): Wireguard Package Produces Crash in 2.5.2
- Correction: Wireguard is available in the internal test repo. It is not available on the public-facing repo. I was ...
-
02:28 PM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Checked on 2.5.2 June 26th build. The updated Wireguard package is not merged into the branch repo currently it woul...
-
02:35 PM pfSense Packages Bug #12085 (Resolved): OpenVM Tools vmware-kmod service won't start in 2.5.2 RC on ESXi 6.0
- Tetsed with OpenVM Tools version 10.1.0_5,1
Since upgrading to 2.5.2.r.20210626.0300 the vmware-kmod service fails... -
12:55 PM pfSense Packages Bug #11610: NET-SNMP is not setting the correct permissions on AgentX
- Found the issue,
net-snmp is the issue since it sets the agentx file with permissions that could not be accessed b... -
12:47 PM Bug #11727 (Resolved): Cannot enter persistent CARP maintenance mode when CARP is disabled
- Tested in
2.6.0-DEVELOPMENT (amd64)
built on Sat Jun 26 01:04:01 EDT 2021
FreeBSD 12.2-STABLE
It doesn't tell... -
09:25 AM pfSense Packages Bug #12065 (Resolved): PHP crash when creating a new report in mailreport 3.6.3_2
- Tetsted in 3.6.3_3. The PHP crash is no longer present. Marking the ticket resolved.
-
09:00 AM pfSense Packages Bug #12083: Lack of OSPF network input validation causes service startup error
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/99
-
08:20 AM pfSense Packages Bug #12083 (Resolved): Lack of OSPF network input validation causes service startup error
- There is no input validation in the @OSPF Networks@ fields on the frr_ospf.xml page and this allows incorrect network...
-
08:22 AM pfSense Packages Bug #12084 (New): libfrr.so.0 error on SG-1100
- harmless error on SG-1100 while starting FRR service:...
-
04:03 AM pfSense Docs Todo #12082 (Rejected): Freenode IRC
- Lot of projects are moving there IRC away from Freenode due to owner / policy changes.
Please review the use of Fre... -
03:05 AM Bug #12081 (Not a Bug): Limiters do not work when running pfsense in ESXI
- I have been running pfsense for years, both on metal and in esxi. When running on metal, I use bufferbloat exactly as...
06/25/2021
-
04:25 PM pfSense Packages Bug #11459 (Resolved): pfBlockerNG doesn't include WireGuard interface in outbound floating rules
- After enabling the Wireguard service, the system automatically creates an interface group with the name WireGuard (Fi...
-
04:03 PM pfSense Packages Bug #11878 (Resolved): squidguard dependencies missing
- Tested on:...
-
03:55 PM pfSense Packages Bug #12073: ``netsnmptrapd.conf`` syntax for ``snmpTrapdAddr`` is wrong
- Tested on :...
-
03:19 PM pfSense Packages Bug #12080: Setting a route-map to redistribute in BGP leads to invalid configuration preventing frr from starting
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/98
-
03:14 PM pfSense Packages Bug #12080 (Resolved): Setting a route-map to redistribute in BGP leads to invalid configuration preventing frr from starting
- Selecting a route map under @Services / FRR BGP // Network Distribution / Redistribute Local@ results in an invalid @...
-
02:52 PM Bug #12079 (Closed): Kernel panic when running IGMP Proxy: Sleeping thread owns a non-sleepable lock
- IGMPProxy can trigger a kernel panic in 2.5.2-RC....
-
01:57 PM Bug #10956: Panic configuring LAGG+VLAN interfaces when using a kernel with ``INVARIANTS``.
- Updating subject but excluding from release notes since it wouldn't affect any potential release, only debugging kern...
-
01:54 PM Bug #10956 (New): Panic configuring LAGG+VLAN interfaces when using a kernel with ``INVARIANTS``.
- A fix has been committed to FreeBSD, we will make sure it gets into 2.5.2....
-
12:55 PM Regression #11910: IPsec status tunnel descriptions are incorrect
- Also in another setup, just having two VTI tunnels seems to do the same thing. See image attached.
-
12:04 PM Bug #11960: Gateway Monitoring Traffic Goes Out Default Gateway
- UPDATE! Bug only exists upon "link down"
+SETUP:+
# Dual WAN connections
# GW group configured as
## failover... -
10:03 AM Feature #9092 (Pull Request Review): Option to set interval of forced Dynamic DNS updates
-
07:38 AM Bug #12075: Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- Copied from my comments on the PR:
Skipping entries negates the entire point of doing the configure during XMLRPC ... -
07:38 AM Bug #12075 (Pull Request Review): Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
-
03:21 AM Bug #12075: Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- PH1 entries with BACKUP VIP or VIPs aliased to BACKUP CARP must be skipped in `ipsec_get_phase1_src()` (see also http...
-
03:12 AM Bug #12075: Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/292
-
07:33 AM Bug #12078 (Not a Bug): DNS Resolution Behavior does not consider named when setting localhost
- Since named is a package, it doesn't integrate into base in that way by design. If someone wants to set that up and u...
-
01:49 AM Bug #12072: FQDN L2TP server address is only resolved at boot
- works as expected as reported on the forum:
https://forum.netgate.com/topic/164614/pfsense-2-4-5-p1-l2tp-server-ip-r...
06/24/2021
-
11:52 PM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
no crash report after installing WireGuard .
2.6.0.a.20210624.0100
WireGuard ver. 0.1.3-
07:24 PM Revision 7fededa1: Revert "Welcome pfSense CE 2.5.2-RELEASE"
- This reverts commit 6bc442e71f8061aaae5cf29e106305f20697e1d5.
-
07:24 PM Revision 2e248c0e: Move FreeBSD-src back to RELENG_2_5_0
-
07:23 PM Revision e0e318ad: Revert "schedule: Use the new multi-label support"
- This reverts commit 765277ba6d873847c6c5b5657877e9fb0cec4357.
-
07:23 PM Revision 54f72904: Revert "Tell pf to keep counter values"
- This reverts commit 0b817201399fb7252aeb09eca94362618728183f.
-
07:23 PM Revision 23253139: Revert "Use 'tos' rather than 'dscp' keyword for pf DSCP matching"
- This reverts commit 27a8acbb5455c3b3516d844024d9208ef23649bf.
-
07:23 PM Revision 4ea084cc: Revert "Correct pfctl syntax to kill by label. Fixes #12040"
- This reverts commit 21fb5288f829b7efcad71c0610df3cf6cb2fba81.
-
04:19 PM Bug #12078 (Not a Bug): DNS Resolution Behavior does not consider named when setting localhost
- With dnsmasq and unbound disabled, and instead using Bind/named, the setting @DNS Resolution Behavior@ under @System ...
-
02:53 PM Regression #11910: IPsec status tunnel descriptions are incorrect
- Another scenario which may be related to whatever root cause this is:
While DPD is happening, i.e. waiting for the... -
02:23 PM Bug #12071: Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
- Yes, DPD does have to timeout (which can take several minutes), unfortunately by the time the primary goes into BACKU...
-
02:10 PM Bug #12071 (Closed): Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
-
02:09 PM Bug #12071: Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
- I re-tested this and indeed the issue is the "apply-after-sync" behavior.
Further testing explained the following ... -
02:15 PM Bug #12075: Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- Perhaps it could be treated similarly to FRR and OpenVPN where the secondary checks whether its interface is CARP, an...
- 01:32 PM Revision daaa7474: Changes requested
- - if formatting
- removing temporary variable -
12:05 PM pfSense Packages Bug #11887 (Feedback): Squid service starts twice by /etc/rc.start_packages
- PR has been merged. Thanks!
-
12:05 PM pfSense Packages Bug #11711 (Feedback): New Squid Status Page Non-Functional
- PR has been merged. Thanks!
-
12:03 PM pfSense Packages Bug #11878 (Feedback): squidguard dependencies missing
- PR merged on 2.6.0 CE. Thanks
-
08:45 AM Feature #12077 (New): Allow stick-connections per gateway group
- Currently the Sticky Connections option for load-balance gateway groups is globally applied.
However it's actually... -
07:30 AM Bug #6507 (Pull Request Review): GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
-
06:56 AM Bug #6507: GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
- small fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/291 -
07:29 AM Bug #12072 (Pull Request Review): FQDN L2TP server address is only resolved at boot
-
06:51 AM Bug #12072: FQDN L2TP server address is only resolved at boot
- fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/290 -
07:22 AM pfSense Packages Bug #12065 (Feedback): PHP crash when creating a new report in mailreport 3.6.3_2
- PR has been merged. Thanks!
-
06:43 AM Regression #12069: Panic in ``pfctl`` with large numbers of states
- This issue doesn't have anything to do with Unbound directly. The screenshots I added above were from a system which ...
-
05:34 AM Regression #12069: Panic in ``pfctl`` with large numbers of states
- Issue unlikely to be limited to or related to Unbound. Unbound was mentioned originally in the context that it is a g...
-
05:22 AM Regression #12069: Panic in ``pfctl`` with large numbers of states
- I have more details...
I unplug LAN and WAN cable and wait 4-5 minutes.... Then I plug them both in. After few sec... -
12:18 AM Bug #12076: OpenVPN RADIUS-based firewall rules do not use expected value for RADIUS-assigned IP addresses
- https://github.com/pfsense/pfsense/pull/4526
06/23/2021
- 09:13 PM Revision 6e8c4db2: Cisco-AVPair + Framed-IP-Address: correcting clientip
- Workaround to substitute Framed-IP-Address value in Cisco-AVPair ACL's where {clientip} is used
-
05:23 PM Revision d1b2d749: Merge pull request #4522 from fl0l0u/patch-1
-
05:23 PM Revision 994699bd: Merge pull request #4524 from raphendyr/feature-dyndns-leeway
-
05:23 PM Revision 170b1df3: Merge pull request #4510 from BBcan177/patch-2
-
05:08 PM Revision fe7667b0: Merge pull request #4523 from raphendyr/cleanup-dyndns
-
04:24 PM Bug #12076 (Resolved): OpenVPN RADIUS-based firewall rules do not use expected value for RADIUS-assigned IP addresses
- Current OpenVPN script implemented to trigger Cisco-AVPair ACL in PF chains allows the ...
-
03:40 PM Regression #12069: Panic in ``pfctl`` with large numbers of states
- Retested on pfSense+ 21.05. Found the systems still pass traffic, even with 7.1M states.
pfSenseCE 2.5.2 did no... -
03:11 PM Regression #12069: Panic in ``pfctl`` with large numbers of states
- Additional panic output from a system in the test lab with >1M states
-
01:08 PM Regression #12069: Panic in ``pfctl`` with large numbers of states
- I can reproduce this now but it took a few tries.
Here is what I did:
First, set the firewall to conservative m... -
03:35 PM Bug #12071: Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
- Since the apply-after-sync thing seems to be its own legitimate issue, I created #12075 for it. If this turns out to ...
-
03:17 PM Bug #12071 (Feedback): Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
- I can't reproduce this as stated, at least on 2.5.2. I set the HA pair as responder only and set the far side to alwa...
-
03:34 PM Bug #12075 (Resolved): Changes to an existing IPsec configuration are not applied on HA secondary after XMLRPC sync
- When synchronizing settings over XMLRPC, the secondary only reconfigures the IPsec daemon if IPsec is enabled or disa...
-
02:34 PM pfSense Packages Bug #12074: Freeradius: Additional Information field descriptions swapped
- https://gitlab.netgate.com/pfSense/factory-ports/-/merge_requests/6
-
02:00 PM pfSense Packages Bug #12074 (Resolved): Freeradius: Additional Information field descriptions swapped
- In Freeradius > Settings > Logging Configuration the field descriptions for 'Additional Information for Bad Attempts'...
-
01:12 PM pfSense Packages Bug #12031 (Feedback): Wireguard Package Produces Crash in 2.5.2
- WireGuard package version 1.1.3 was merged into 2.6.0 and 2.5.2
-
01:12 PM pfSense Packages Bug #11950 (Feedback): Wireguard Package Errors and DNS problem
- WireGuard package version 1.1.3 was merged into 2.6.0 and 2.5.2
-
12:23 PM Bug #11701 (Feedback): Missing global ``$g`` declaration in ``config.lib.inc`` function ``pfSense_clear_globals()``
- PR has been merged. Thanks!
-
12:23 PM Bug #12007 (Feedback): Dynamic DNS cache expiration time check calculation method may cause update to happen on the wrong day
- PR has been merged. Thanks!
-
12:23 PM Bug #12020 (Feedback): OpenVPN RADIUS-based firewall rules use incorrect port ranges
- PR has been merged. Thanks!
-
12:09 PM Todo #11976 (Feedback): Compliance with pfSense style guide in Dynamic DNS service code
- PR has been merged. Thanks!
-
10:10 AM pfSense Packages Bug #11687 (Feedback): Fix download URLs for SecuriteInfo.com
- PR has been merged. Thanks!
-
10:09 AM pfSense Packages Bug #12073 (Feedback): ``netsnmptrapd.conf`` syntax for ``snmpTrapdAddr`` is wrong
- PR has been merged. Thanks!
-
10:07 AM pfSense Packages Bug #12073 (New): ``netsnmptrapd.conf`` syntax for ``snmpTrapdAddr`` is wrong
- The snmptrapd configuration uses the keyword "snmpTrapdAddr" instead of
"agentaddress". This is probably a copy-past... -
10:03 AM pfSense Packages Feature #11310 (Feedback): Adding a widget to apcupsd plug-in
- PR has been merged to CE 2.6.0 so we can get it tested and then cherry-pick to stable branches
-
09:50 AM pfSense Packages Feature #11948 (Feedback): ACME: Support specifying non-default port for nsupdate DNS validation method
- PR has been merged. Thanks!
-
09:41 AM Bug #9362: rc.dyndns.update: Cloudflare DDNS with proxy enabled doesn't work at all
- thx for the patch Robert R. :)
-
09:22 AM Bug #12072: FQDN L2TP server address is only resolved at boot
- we need to restart the L2TP/PPTP interfaces that use WAN as parent on /etc/rc.newwanip event
like GRE/GIF: https://g... -
05:45 AM Bug #12072 (Resolved): FQDN L2TP server address is only resolved at boot
- Hello!
Im using "russian vpn" scheme to connect with ISP - WAN interface with DHCP (actually internal ISP network)... -
08:01 AM pfSense Packages Bug #9895: snort reinstallation failed
- Viktor Gurov wrote:
> same issue on 2.6.0.a.20210622.0100:
> [...]
>
> Another solution: https://forum.netgate.c... -
06:18 AM pfSense Packages Bug #9895: snort reinstallation failed
- same issue on 2.6.0.a.20210622.0100:...
-
07:05 AM pfSense Docs Correction #11735 (Closed): Feedback on Hardware — Hardware Tuning and Troubleshooting
-
07:01 AM pfSense Packages Feature #11210: 3rd party rulesets
- >
> For example https://sslbl.abuse.ch/blacklist/#ssl-certificates-suricata
- added to 6.0.0_11
see https://for... -
05:44 AM pfSense Packages Bug #11459: pfBlockerNG doesn't include WireGuard interface in outbound floating rules
- You will need to assign the WireGuard tunnel to a pfSense interface. pfBlocker can't 'see' unassigned WireGuard tunnels.
06/22/2021
-
07:58 PM Bug #12071 (Closed): Responder Only IPsec tunnel tries to connect on secondary node when a failover happens in HA
- Normally with an IPsec tunnel on a pfSense HA setup, failing over to the secondary makes the IPsec start on the new m...
-
04:24 PM pfSense Docs Correction #11735: Feedback on Hardware — Hardware Tuning and Troubleshooting
- Looks good.
-
02:35 PM pfSense Docs Correction #11735: Feedback on Hardware — Hardware Tuning and Troubleshooting
- Check the doc again now.
Should be better.
https://gitlab.netgate.com/docs/pfSense-docs/-/commit/1a8fd83fbc4bc389... -
02:59 PM Feature #12070 (Resolved): Support for VLAN ``0``
- Hello, I'm not sure if this should be a bug or feature request. Internet fiber providers in the USA and abroad tag th...
-
12:45 PM Bug #12061 (Closed): Update NGINX to address CVE-2021-23017
- @nginx-1.20.1,2@ is in the latest test build. GUI, XMLRPC, and captive portal are all working as expected.
While I... -
12:07 PM pfSense Packages Bug #12065 (Pull Request Review): PHP crash when creating a new report in mailreport 3.6.3_2
-
10:50 AM pfSense Packages Bug #12065: PHP crash when creating a new report in mailreport 3.6.3_2
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/96 -
08:48 AM pfSense Packages Bug #11766 (Feedback): Certificate no more pointed "in use" by haproxy
- PR has been merged. Thanks!
-
08:48 AM pfSense Packages Bug #11937 (Feedback): HAproxy "Use Client-IP" option breaks Captive Portal
- PR has been merged. Thanks!
-
08:47 AM pfSense Packages Feature #10779 (Feedback): HAProxy SSL/TLS Compatibility Mode
- PR has been merged. Thanks!
-
08:46 AM pfSense Packages Bug #11491 (Feedback): haproxy-devel v0.62_2 - startup error 'httpchk'
- PR has been merged. Thanks!
-
08:46 AM pfSense Packages Feature #10739 (Feedback): Update HAproxy-devel package to 2.2 and HAproxy to 2.0
- PR has been merged. Thanks!
-
08:44 AM pfSense Packages Bug #11993 (Feedback): PHP error after disabling HAProxy
- PR has been merged. Thanks!
-
08:39 AM pfSense Packages Bug #6235 (Resolved): Snort sometimes crashes during rule update process (specifically related to VRT .so rule update?)
- PR has been merged
-
08:38 AM pfSense Packages Bug #11637 (Resolved): Preprocs - possible to create two defaults
- PR has been merged
-
08:20 AM pfSense Plus Bug #12068 (Not a Bug): Upgrade to 21.05 fails with seg fault
- There is not enough information here to classify that as a bug, and there are numerous others who have upgraded succe...
-
01:44 AM pfSense Plus Bug #12068 (Not a Bug): Upgrade to 21.05 fails with seg fault
- When trying to upgrade the sg3100 to 21.05 (from 21.02.2). The upgrade fails during the system reload during the "con...
-
07:29 AM Regression #12069 (Resolved): Panic in ``pfctl`` with large numbers of states
- Only "one report of this so far":https://forum.netgate.com/post/988755, so it's unclear how many it may affect. User ...
06/21/2021
-
11:38 PM Revision 6bc442e7: Welcome pfSense CE 2.5.2-RELEASE
-
09:31 PM pfSense Docs Correction #11735: Feedback on Hardware — Hardware Tuning and Troubleshooting
- Of note, @hw.ix.flow_control=0@ in @loader.conf.local@ can still be used, though it's probably best to keep it as dev...
-
03:43 PM pfSense Docs Correction #11735 (Feedback): Feedback on Hardware — Hardware Tuning and Troubleshooting
- Updated as a part of https://gitlab.netgate.com/docs/pfSense-docs/-/commit/35e2d56cc2f1021b58ee71135d99d371e332af1e
-
12:53 PM pfSense Docs Correction #11735 (In Progress): Feedback on Hardware — Hardware Tuning and Troubleshooting
-
06:37 PM Bug #12061 (Feedback): Update NGINX to address CVE-2021-23017
- I've cherry-picked commits to upgrade it to 1.20.1,2 on RELENG_2_5_2. Development branches will get it on next round...
-
03:43 PM pfSense Docs Correction #9228 (Feedback): Feedback on Hardware — Hardware Sizing Guidance
- Updated as a part of https://gitlab.netgate.com/docs/pfSense-docs/-/commit/35e2d56cc2f1021b58ee71135d99d371e332af1e
... -
01:06 PM pfSense Docs Correction #9228 (In Progress): Feedback on Hardware — Hardware Sizing Guidance
-
03:43 PM pfSense Docs New Content #10225 (Feedback): Add cryptographic hardware info to the SG-3100 manual
- Not in the manual, but updated related info as a part of https://gitlab.netgate.com/docs/pfSense-docs/-/commit/35e2d5...
-
03:35 PM pfSense Docs New Content #10225 (In Progress): Add cryptographic hardware info to the SG-3100 manual
-
03:10 PM Bug #11960: Gateway Monitoring Traffic Goes Out Default Gateway
- Jim, Sorry for the delay but I've been out of the office a good bit the past month.
I've updated the SG-3100 to 21... -
10:29 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Christian McDonald wrote:
> Hi all,
>
> Yes this fix (along with a ton of other fixes) are in the current PR.
... -
09:53 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Hi all,
Yes this fix (along with a ton of other fixes) are in the current PR. -
09:12 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Renato Botelho wrote:
> I'll take care of this one
FWIW, I've been running 0.1.2 _(over several minor revisions)_... -
08:53 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- I'll take care of this one
-
08:34 AM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Kris Phillips wrote:
> Issue continues to be present in June 17th 2.5.2 RC build
It's already fixed in the latest... -
08:39 AM Bug #12067 (New): DHCP Monitoring Statistics Error
- I have 2 DHCP pool (51 + 51 IP address) in one network (see attachments screen)
But monitoring DHCP show maximum dhc... -
08:00 AM Bug #12049 (Pull Request Review): Input validation incorrectly rejects a second IPv4-only GRE tunnel
-
07:57 AM pfSense Packages Bug #12064 (Duplicate): Navbar not responsive when running iperf
- Duplicate of #8502
-
07:44 AM Feature #12066: Include man and man pages for all core programs and packages
- Currently we deliberately remove them to save on space, though these days space isn't at as much of a premium as it w...
-
06:46 AM Regression #11316: Unbound crashes with signal 11 when reloading
- As an ugly workaround, I'm using "Service Watchdog" package to restart *unbound* when it crashes. This happens every...
-
05:44 AM pfSense Packages Feature #12042: Add Zabbix 5.4 agent and proxy packages
- Hello, thanks for the work, how long until available ?
06/20/2021
-
07:41 AM pfSense Packages Bug #12030: Startup Errors for Avahi Package
- The service warnings are expected if you don't have publishing enabled. It's disabled by default.
See: https://forum...
06/19/2021
-
09:59 PM pfSense Packages Bug #12031: Wireguard Package Produces Crash in 2.5.2
- Issue continues to be present in June 17th 2.5.2 RC build
-
08:03 PM Bug #12050: "GoTo line #" function does not work on ``diag_edit.php``
- seems working -- tested on 21.09.a.20210619.0100
-
04:44 PM Feature #12066 (New): Include man and man pages for all core programs and packages
- Having the man pages - where available - for all out-of-the-box binaries would improve scenarios where there are no o...
-
01:45 PM pfSense Packages Bug #12065 (Resolved): PHP crash when creating a new report in mailreport 3.6.3_2
- When creating a new report in mail report 3.6.3_2 a PHP crash is generated. This is triggered as soon as you save the...
-
12:54 PM pfSense Packages Bug #12030: Startup Errors for Avahi Package
- This issue is still present in the June 17th build.
-
12:14 PM Bug #12039: Gateway alarm always triggers IPsec restart
- fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/289
https://gitlab.netgate.com/pfSense/FreeBSD-por... -
12:13 PM pfSense Packages Bug #12064 (Duplicate): Navbar not responsive when running iperf
- In iperf 3.0.2_5, after starting iperf client or server, the navbar is visible but clicking any of the dropdown menus...
-
02:51 AM Regression #12040 (Resolved): Scheduled firewall rules failing to load
- works as expected on 2.5.2.r.20210617.1709:...
-
12:27 AM Bug #12049: Input validation incorrectly rejects a second IPv4-only GRE tunnel
- fix:
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/288
Also available in: Atom