Project

General

Profile

Activity

From 09/25/2022 to 10/24/2022

10/24/2022

09:58 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
Thanks bud ! Marcus GM
09:11 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
That's where menu entries end up post-install. That isn't where the menu entry comes from in the package definition (... Jim Pingle
08:41 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
Just wondering if '/cf/conf/config.xml' is the correct place to rename menu entries ? Marcus GM
08:38 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
Noted. Thanks. Marcus GM
07:27 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
I'm aware of that distinction. What I'm saying is that it should be "sudo" everywhere to match the name of the softwa... Jim Pingle
07:15 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
Hi Jim,
Thanks for the update.
Pls note that I am not referring to the 'sudo' command but to to the 'sudo' entry ...
Marcus GM
07:50 AM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
The program is actually named "sudo" (lowercase), but there are a couple references to it that show it capitalized, s... Jim Pingle
06:51 PM Revision 5479fd1c: Remove extraneous and malformed meta refresh tag during proto/port change for web UI. Fixes #13591
Christian McDonald
04:27 PM Regression #13522: Minnowboard Turbot additions are no longer present
This should be fixed as of 5667935a3058064442fc16363f825dfc4bce0c90.
I don't have the hardware to test this myself...
Kristof Provost
02:28 PM Bug #13591 (Resolved): Changing the GUI port does not redirect the browser to the new port on save
Tested patch on @22.11.a.20221021.0600@. Now works correctly. Marcos M
02:00 PM Bug #13591: Changing the GUI port does not redirect the browser to the new port on save
Applied in changeset commit:5479fd1ca4c9cbdb764b34361f1d48cace1a204f. Christian McDonald
01:52 PM Bug #13591 (Feedback): Changing the GUI port does not redirect the browser to the new port on save
Christian McDonald
01:52 PM Bug #13591: Changing the GUI port does not redirect the browser to the new port on save
I suspect that this has been broken for a while now. The issue is caused by a malformed meta tag being inserted at th... Christian McDonald
01:00 PM Bug #13591 (Resolved): Changing the GUI port does not redirect the browser to the new port on save
Under System / Advanced / Admin Access, changing the TCP port and clicking Save shows a message that the page is bein... Marcos M
01:21 PM Todo #13592 (New): Clarify Hardware TCP Segmentation Offloading option
Under @System / Advanced / Networking@, the option @Disable hardware TCP segmentation offload@ is checked by default.... Marcos M
11:57 AM pfSense Packages Bug #13566: Non-devel pfBlocker Package Broken in 2.7 CE with PHP 8.1
BBCan177 is currently finalizing changes for pfBlockerNG-devel for 2.7/ 23.01. When those are submitted, devel and no... Reid Linnemann
11:23 AM Bug #13539: Missing descriptions for referrers to firewall aliases cause empty strings for references to be returned when deleting an in-use alias
Alhusein Zawi wrote in #note-3:
> the error when deleting used alias "Cannot delete alias. Currently in use by filte...
Reid Linnemann
09:55 AM pfSense Packages Bug #13588: Arping package PHP8.1 Error in 2.7
Fixed https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/290/diffs?commit_id=9693f93967a14baabbcc6a5b2... Christian McDonald
09:54 AM pfSense Packages Bug #13588 (Feedback): Arping package PHP8.1 Error in 2.7
Christian McDonald
07:41 AM pfSense Packages Bug #13582 (Not a Bug): Zabbix service gives error about required "Hostname" field, even when the field is populated
Hostnames/FQDNs have rules governing their format. Hostnames cannot have spaces. While Zabbix may allow spaces in the... Jim Pingle
07:35 AM pfSense Plus Bug #13577 (Not a Bug): Network Time Protocol (NTP) Mode 6 Scanner
Jim Pingle

10/23/2022

04:33 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
https://imgur.com/a/HBI6tS1 Marcus GM
03:00 PM pfSense Packages Todo #13590: Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
grep -ri 'sudo' file_name Marcus GM
02:59 PM pfSense Packages Todo #13590 (Closed): Fix inconsistent capitalization of ``sudo`` in package (menu entry, config page, etc.)
Guys,
I have installed the 'sudo' package.
It appears in small case ( 'sudo' ) under the Main Menu -> System.
...
Marcus GM
09:43 AM Regression #13581: Empty Dynamic DNS entry causes PHP errors in various contexts
I have been receiving this error too. No RFC2136 client enabled and no RFC2136 entries in the backup config file.
I...
Ronald Schellberg
02:31 AM pfSense Packages Bug #13587: Zabbix-agent62 install fails
I can confirm this behavior on 2.7 CE
Full output of install
>>> Installing pfSense-pkg-zabbix-agent62...
Updat...
aleksei prokofiev
02:28 AM pfSense Packages Bug #13588: Arping package PHP8.1 Error in 2.7
Yes, I can confirm such bug on 2.7 CE aleksei prokofiev
02:22 AM pfSense Packages Bug #13589: PHP Errors during cellular package installation on CE 2.7
Yes, I can confirm such bug on 2.7 CE aleksei prokofiev

10/22/2022

08:59 PM Regression #13581: Empty Dynamic DNS entry causes PHP errors in various contexts
I have unbound enabled because I am using pfblockerng - I am not using a dyndns client. TyphooN .
07:58 PM pfSense Packages Todo #13532: Sync ACME package with upstream v3.0.5
was successfully able to update ACME to 0.7.3 on 22.05 Jordan G
07:51 PM pfSense Packages Bug #13571: Tailscale disconnection problem
Kris Phillips wrote in #note-1:
> There is not enough information here for a proper bug report. Please provide more...
fang xn
12:45 PM pfSense Packages Bug #13571 (Incomplete): Tailscale disconnection problem
There is not enough information here for a proper bug report. Please provide more details, including the pfSense or ... Kris Phillips
07:33 PM Bug #13539: Missing descriptions for referrers to firewall aliases cause empty strings for references to be returned when deleting an in-use alias

the error when deleting used alias "Cannot delete alias. Currently in use by filter rule id 3. " in built of Fri Oc...
Alhusein Zawi
07:06 PM Regression #13583: PHP error when defining an IP address and gateway manually from the Console menu using option 2) Set Interface(s) IP address
just confirming this is present on Plus as well when testing snapshot 22.11-DEVELOPMENT-amd64-20221021-0600 Jordan G
06:52 PM pfSense Packages Bug #13582: Zabbix service gives error about required "Hostname" field, even when the field is populated
Kris Phillips wrote in #note-2:
> Are you editing the config file manually or something and just using the webConfig...
Caleb Hornbeck
02:30 PM pfSense Packages Bug #13582 (Incomplete): Zabbix service gives error about required "Hostname" field, even when the field is populated
Marking as Incomplete until additional information can be provided. Kris Phillips
02:30 PM pfSense Packages Bug #13582: Zabbix service gives error about required "Hostname" field, even when the field is populated
Are you editing the config file manually or something and just using the webConfigurator interface to start and manag... Kris Phillips
05:14 PM Feature #13584: Input validation for numbered DHCP options in static mappings
This is on 2.6.0-RELEASE (amd64). Jonathan DeFreeuw
12:42 PM Feature #13584: Input validation for numbered DHCP options in static mappings
Hello Jonathan,
What version of pfSense or pfSense Plus did you test this on? The bug report includes no Affected...
Kris Phillips
02:48 PM pfSense Packages Bug #13589: PHP Errors during cellular package installation on CE 2.7
Full crash report:
Crash report begins. Anonymous machine information:
amd64
14.0-CURRENT
FreeBSD 14.0-CURRE...
Kris Phillips
02:47 PM pfSense Packages Bug #13589 (Resolved): PHP Errors during cellular package installation on CE 2.7
Full install log:
>>> Installing pfSense-pkg-cellular...
Updating pfSense-core repository catalogue...
pfSense-...
Kris Phillips
02:45 PM pfSense Packages Bug #13588: Arping package PHP8.1 Error in 2.7
Full crash report:
Crash report begins. Anonymous machine information:
amd64
14.0-CURRENT
FreeBSD 14.0-CURRE...
Kris Phillips
02:44 PM pfSense Packages Bug #13588 (Resolved): Arping package PHP8.1 Error in 2.7
Attempting to use arping in 2.7 produces the following error:
Parse error: Unmatched ']' in /usr/local/www/pkg_edi...
Kris Phillips
02:39 PM pfSense Packages Feature #13560: Update FreeRADIUS to version 3.0.26
Current release of freeRADIUS is 3.0.25 in the 2.7/23.01 builds.
Checking FreshPorts this is the latest availabl...
Kris Phillips
02:35 PM pfSense Packages Regression #13570 (Resolved): openvpn-client-export php error in 2.7
OpenVPN Client Export throws no PHP errors now in my testing either. Closing as Resolved. Kris Phillips
02:26 PM pfSense Packages Bug #13587 (Resolved): Zabbix-agent62 install fails
When installing the Zabbix-agent62 package, it will attempt install Zabbix-agent6 and then fail. Installing zabbix-a... Kris Phillips
01:31 PM pfSense Plus Bug #13577: Network Time Protocol (NTP) Mode 6 Scanner
Checking /var/etc/ntpd.conf on 22.05, the proper "notrap" and "nomodify" config line items are present
restrict defa...
Kris Phillips
12:06 PM Bug #13555: When WAN is lost, ipv6 interface will not renew upon WAN availability
Kris Phillips wrote in #note-3:
> Correction: I was able to reproduce this with one of my two ISPs after I changed so...
quiet lion
11:16 AM pfSense Docs Todo #13586: Add note for adjusting MSS on IPsec VTIs
https://gitlab.netgate.com/docs/pfSense-docs/-/merge_requests/54 Chris W
11:13 AM pfSense Docs Todo #13586 (Closed): Add note for adjusting MSS on IPsec VTIs
System > Advanced > Firewall & NAT: Enable Maximum MSS only applies to Phase 2 connections in tunnel mode. Added a no... Chris W
06:57 AM Bug #13585 (Closed): Multiple VPN Gateways will not completely start a boot.
This issue was discussed at forum thread [[https://forum.netgate.com/topic/175376/strange-gateway-issues-with-2-7-0-d... Keith Townsend

10/21/2022

08:20 PM Feature #13584 (Resolved): Input validation for numbered DHCP options in static mappings
Bug: Incorrectly formatted values in Additional BOOTP/DHCP Options for Static DHCP Mappings cause dhcpd to crash. For... Jonathan DeFreeuw
07:06 PM Revision 81777072: Fixes for problematic config access in rc.initial.setlanip. Fixes #13583
Christian McDonald
04:17 PM pfSense Packages Bug #13582: Zabbix service gives error about required "Hostname" field, even when the field is populated
Upon further testing, this seems to be an issue related to bug #13128 as it relates to input validation. If I set the... Caleb Hornbeck
02:57 AM pfSense Packages Bug #13582 (Not a Bug): Zabbix service gives error about required "Hostname" field, even when the field is populated
When configuring the Zabbix agent service, I can't seem to get around the error that says "The following input errors... Caleb Hornbeck
02:15 PM Regression #13583: PHP error when defining an IP address and gateway manually from the Console menu using option 2) Set Interface(s) IP address
Applied in changeset commit:817770726a20d50523a6bd5247c6b17ac6e5c897. Christian McDonald
02:09 PM Regression #13583: PHP error when defining an IP address and gateway manually from the Console menu using option 2) Set Interface(s) IP address
https://gitlab.netgate.com/pfSense/pfSense/-/commit/817770726a20d50523a6bd5247c6b17ac6e5c897 Christian McDonald
02:09 PM Regression #13583 (Feedback): PHP error when defining an IP address and gateway manually from the Console menu using option 2) Set Interface(s) IP address
Christian McDonald
12:25 PM Regression #13583 (Resolved): PHP error when defining an IP address and gateway manually from the Console menu using option 2) Set Interface(s) IP address
... Danilo Zrenjanin
02:14 PM Regression #13581: Empty Dynamic DNS entry causes PHP errors in various contexts
The line number seems to indicate that you might have RFC2136 dyndns client enabled? Can you share anything related t... Christian McDonald
12:31 PM pfSense Packages Feature #13361 (Resolved): Add Zabbix 6.2 (agent and proxy) packages
Zabbix 6.2 Proxy and Agent are now both available in CE and Plus repos Christian McDonald
12:16 PM Regression #13563: PHP Error when attempting to save configuration after disabling a gateway
This one is fixed. Danilo Zrenjanin
11:26 AM Regression #13563 (Resolved): PHP Error when attempting to save configuration after disabling a gateway
Christian McDonald
11:25 AM Regression #13563: PHP Error when attempting to save configuration after disabling a gateway
I have a fix in progress for that, please make a new redmine for it. Christian McDonald
07:06 AM Regression #13563: PHP Error when attempting to save configuration after disabling a gateway
Tested against:... Danilo Zrenjanin

10/20/2022

11:20 AM Regression #13581: Empty Dynamic DNS entry causes PHP errors in various contexts
I have 2 users that are in the admins group, if that is relevant. TyphooN .
11:19 AM Regression #13581: Empty Dynamic DNS entry causes PHP errors in various contexts
I get this error upon logging into the web interface. Unsure if it is related but the traffic graphs are no longer wo... TyphooN .
11:07 AM Regression #13581 (Resolved): Empty Dynamic DNS entry causes PHP errors in various contexts
PHP Errors:
[20-Oct-2022 11:23:20 America/New_York] PHP Fatal error: Uncaught TypeError: Cannot access offset of typ...
TyphooN .
10:50 AM pfSense Packages Bug #13515 (Resolved): Snort with PHP 8.1 - TypeError when saving edits to an interface
Jim Pingle
10:35 AM pfSense Packages Bug #13515: Snort with PHP 8.1 - TypeError when saving edits to an interface
This issue has been resolved with the merging of Pull Request 1191 as detailed here: https://github.com/pfsense/FreeB... Bill Meeks
10:50 AM pfSense Packages Bug #13531 (Resolved): Suricata GUI broken with PHP 8.1
Jim Pingle
10:37 AM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
This issue and several other PHP 8.1 related issues in the Suricata package have been resolved by the merging of Pull... Bill Meeks
05:59 AM Feature #13580 (New): Batch creation of User Certificates
Hello,
I would like to request a method to generate a lot of certificate users at once (as i am in the process of ch...
Xavier Sirard
02:20 AM pfSense Packages Bug #12916: pfBlockerNG-devel cron job does not trigger xmlrpc sync
Viktor Gurov wrote in #note-3:
> fix:
> https://github.com/pfsense/FreeBSD-ports/pull/1158
I've manually added t...
Caleb Hornbeck

10/19/2022

07:50 PM Revision 9178a649: More PHP81 fixes for gwlb.inc. Fixes #13563
Christian McDonald
06:50 PM pfSense Packages Bug #13154 (Resolved): pfBlocker causing excessive CPU load
Fixes are merged and working:
3.1.0_6 for pfSense CE
3.1.0_7 for pfSense Plus
Marcos M
06:50 PM pfSense Packages Regression #13156 (Resolved): pfBlockerNG IP block stats do not work
Fixes are merged and working:
3.1.0_6 for pfSense CE
3.1.0_7 for pfSense Plus
Marcos M
04:47 PM Revision a1ca121f: Change text in info block on Status > IPsec. Fixes #13398
Christopher Cope
03:47 PM pfSense Packages Feature #11163 (Feedback): Preferred Chain option
Addressed in ACME pkg v0.7.3 Jim Pingle
03:46 PM pfSense Packages Feature #12789 (Feedback): Show expiration date of certificates in the ACME package list
Addressed in ACME pkg v0.7.3 Jim Pingle
03:46 PM pfSense Packages Bug #13053 (Feedback): LoopiaAPI error handling
Addressed in ACME pkg v0.7.3 Jim Pingle
03:46 PM pfSense Packages Bug #13467 (Feedback): ACME: "Unable to find domain name" error when updating Namesilo
Addressed in ACME pkg v0.7.3 Jim Pingle
03:46 PM pfSense Packages Bug #13495 (Feedback): ACME package's "DNS-Sleep" field's help text is incorrect
Addressed in ACME pkg v0.7.3 Jim Pingle
03:45 PM pfSense Packages Todo #13532 (Feedback): Sync ACME package with upstream v3.0.5
https://github.com/pfsense/FreeBSD-ports/commit/80c6bb731c469fabcc41a90a2a648fecde2c6f12
ACME pkg v0.7.3
Synchroniz...
Jim Pingle
07:14 AM pfSense Packages Todo #13532 (In Progress): Sync ACME package with upstream v3.0.5
Jim Pingle
03:29 PM pfSense Plus Bug #13577: Network Time Protocol (NTP) Mode 6 Scanner
The remote NTP server responds to mode 6 queries. Devices that respond to these queries have the potential to be used... Adam Esslinger
03:13 PM pfSense Plus Bug #13577 (Not a Bug): Network Time Protocol (NTP) Mode 6 Scanner
Im running a Nessuss scan against my pfsense+ firewall version pfsense+ 22.05-RELEASE (amd64) and it reports that pfs... Adam Esslinger
03:24 PM Revision e759996d: OVPN linkdown script improvements
Jim Pingle
03:23 PM Bug #13579 (Resolved): Incorrect quoting of Split DNS attribute value in ``strongswan.conf``

Configuring more than one domain name (space separated) in IPsec mobile client Split DNS UI incorrectly wraps the s...
Rogelio Baucells
03:20 PM Bug #13578 (Rejected): FreeBSD Vulnerabilities
We run our own scans and deal with such things internally, we do not need outside input in this area.
Jim Pingle
03:19 PM Bug #13578 (Rejected): FreeBSD Vulnerabilities
Im running a Nessuss scan against my pfsense+ firewall version pfsense+ 22.05-RELEASE (amd64) and it reports that Fre... Adam Esslinger
02:55 PM Regression #13563 (Feedback): PHP Error when attempting to save configuration after disabling a gateway
Applied in changeset commit:9178a64972685f1e66dd4429e37becdcad47ac99. Christian McDonald
02:51 PM Regression #13563: PHP Error when attempting to save configuration after disabling a gateway
Fixed some more potential problematic config access https://gitlab.netgate.com/pfSense/pfSense/-/commit/9178a64972685... Christian McDonald
11:48 AM Todo #13398 (Feedback): Information box on ``status_ipsec.php`` says "IPsec not enabled" even when a tunnel is established
Merged. Christopher Cope
10:30 AM pfSense Packages Regression #13570: openvpn-client-export php error in 2.7
Yes, the shared key parts are deprecated and should be removed. I made a separate issue for that: https://redmine.pfs... Jim Pingle
09:03 AM pfSense Packages Regression #13570: openvpn-client-export php error in 2.7
Hi,
I just updated to the newest Version an it looks good. Client-Export seems to work now.
Shared Key Expo...
John Doe
10:30 AM pfSense Packages Todo #13576 (Resolved): Remove OpenVPN Shared Key Export
The OpenVPN Client Export package has a function to export shared key tunnels. As shared key is now deprecated upstre... Jim Pingle
07:28 AM pfSense Packages Feature #11931: Add support for validating a domain's ownership via Google Cloud Cloud DNS
This would also require adding a dependency for @net/google-cloud-sdk@ to get the @gcloud@ command on the firewall. T... Jim Pingle
07:24 AM pfSense Packages Todo #9200 (Needs Patch): Add DNS support for Google domain to Acme manager
There is #11931 for Google Cloud, there is nothing we can do got Google Domains. Google needs to come up with an API ... Jim Pingle
07:10 AM pfSense Packages Bug #13567 (Resolved): Confirmation Prompt Missing Text on Deletion
Jim Pingle
03:59 AM pfSense Packages Bug #13567: Confirmation Prompt Missing Text on Deletion
After applying the patch, I was prompted with the following text:... Danilo Zrenjanin
07:03 AM pfSense Plus Bug #13572 (Not a Bug): SG-3100 switch wrong behavior
Jim Pingle
05:31 AM pfSense Docs Todo #13557 (Resolved): Minnowboard Turbo: Add ZFS install warning
It looks good.
I am marking this ticket resolved.
Danilo Zrenjanin
04:48 AM pfSense Packages Bug #11961 (Resolved): FRR OSPF add unwanted area 0 authentication to router ospf
Adding Simple Authentication on the interface doesn't add any kind of authentication on the router OSPF part.... Danilo Zrenjanin

10/18/2022

08:47 PM pfSense Plus Bug #13569: Restarting an OpenVPN server running on a CARP VIP in an HA cluster can disrupt unrelated TCP states
Additional notes while working with cjl:
Commenting out the line @/sbin/pfctl -i $1 -Fs@ in @/usr/local/sbin/ovpn-lin...
Marcos M
04:38 PM pfSense Plus Bug #13572: SG-3100 switch wrong behavior
The problem has been solved with the help of stephenw10 and johnpoz
Details can be found here:
https://forum.netg...
Marcelo Cury
09:05 AM pfSense Plus Bug #13572: SG-3100 switch wrong behavior
Disregard that VLAN199 in the topology, that doesn't exist anymore.
Follows a pcap made in host 192.168.255.251:
Marcelo Cury
08:53 AM pfSense Plus Bug #13572 (Not a Bug): SG-3100 switch wrong behavior
Problem description: Connections going to host 192.168.255.253 are being sent to 192.168.255.251
*VLAN100 LAN: 192...
Marcelo Cury
03:14 PM Revision 9633ec32: Omit irrelevant info from auth error. Fixes #13574
Jim Pingle
10:37 AM pfSense Packages Bug #11836 (Confirmed): FRR ACCEPTFILTER shows out of order prefix-list
Marcos M
03:50 AM pfSense Packages Bug #11836: FRR ACCEPTFILTER shows out of order prefix-list
When I generate the FRR config via the GUI, it actually formats and displays the ACCEPTFILTER correctly, so the above... Gavin Owen
10:31 AM pfSense Packages Feature #13575 (Resolved): Update to frr 9.0.1
The current frr package version is 7.5.1_3 - frr 7.5.1 was released on 2021-03-07 https://github.com/FRRouting/frr/re... Marcos M
10:20 AM Bug #13574 (Feedback): Extra remote address information can confuse ``sshguard``
Applied in changeset commit:9633ec324eada0b870962d3682d264be577edc66. Jim Pingle
10:09 AM Bug #13574 (Resolved): Extra remote address information can confuse ``sshguard``
The authentication system attempts to be informative and print extra information along with IP addresses to completel... Jim Pingle
09:25 AM Bug #13573: DHCP Server generates an invalid configuration for static mappings when defining network booting and UEFI HTTPBoot URL
May be the same or related to https://redmine.pfsense.org/issues/13554, but this was referencing vlan configuration i... Jason Montleon
09:15 AM Bug #13573 (Resolved): DHCP Server generates an invalid configuration for static mappings when defining network booting and UEFI HTTPBoot URL
If I go down to Network Booting, check enable, and add a UEFI HTTPBoot URL pfSense adds an option for every static ma... Jason Montleon
08:40 AM pfSense Packages Regression #13570: openvpn-client-export php error in 2.7
Hi, thanks for the feedback. This should be resolved in the next build. I also saw another potentially problematic co... Christian McDonald
05:41 AM pfSense Packages Regression #13570: openvpn-client-export php error in 2.7
Greetings,
fyi:
I just updated to the newest Version 2.7.0.a.20221018.0600 and got a different php Error:
P...
John Doe
03:10 AM pfSense Packages Bug #13571 (Incomplete): Tailscale disconnection problem
pppoe dial-up network, Tailscale will fail to connect after redialing after disconnection, and needs to change the po... fang xn
02:09 AM Regression #13488: All Captive Portal users are given the same limiter pipe pair
any clue when a patch for 22.05 will be available ? jeroen van breedam

10/17/2022

09:41 PM pfSense Packages Bug #11836: FRR ACCEPTFILTER shows out of order prefix-list
Matthew D wrote in #note-7:
> It looks to me like, with the patch, the "seq xx" numbering has been corrected so that...
Gavin Owen
03:21 PM pfSense Packages Bug #13567 (Feedback): Confirmation Prompt Missing Text on Deletion
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/commit/c7e504583ade6839b7f4e271761c332f637fe194 Christian McDonald
02:44 PM pfSense Docs Todo #13568 (Closed): SG-1100 usb/serial console:driver installation: macOS ≥ 10.13: add note about enabling driver
Note added and deployed for both 1100 and 5100 (the only two using PL2303). The actual prompt/procedure was a bit dif... Jim Pingle
01:45 PM Revision 01e3679a: Excluded valgrind from arm since it has not been ported there
Brad Davis
10:36 AM pfSense Packages Regression #13570 (Feedback): openvpn-client-export php error in 2.7
Fixed https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/commit/39a6cd58f0fdc790ccd8eacd0c98b8e81b3e3fc5 Christian McDonald
08:17 AM pfSense Packages Regression #13570 (Resolved): openvpn-client-export php error in 2.7
Greeting,
opening the Client Export Utility with pfSense 2.7 throws a php-Error:
Fatal error: Uncaught TypeErro...
John Doe
08:56 AM pfSense Plus Bug #13569: Restarting an OpenVPN server running on a CARP VIP in an HA cluster can disrupt unrelated TCP states
A few points here after working with cjl a bit trying to narrow it down:
* The states that disappear are not direc...
Jim Pingle
06:48 AM pfSense Plus Bug #13569: Restarting an OpenVPN server running on a CARP VIP in an HA cluster can disrupt unrelated TCP states
Verified. Running OpenVPN server bound to Localhost and port forwarding an IP Alias/CARP VIP to it looks like a reaso... Chris Linstruth
03:43 AM pfSense Plus Bug #13569: Restarting an OpenVPN server running on a CARP VIP in an HA cluster can disrupt unrelated TCP states
forgot to add: without OpenVPN running on VIP or even with OpenVPN runnning on WAN, there is no problem with TCP stre... Azamat Khakimyanov
03:37 AM pfSense Plus Bug #13569 (New): Restarting an OpenVPN server running on a CARP VIP in an HA cluster can disrupt unrelated TCP states
Our customer (Ticket #1161128024) pointed out on possible problem with HA cluster and TCP streams. During troubleshoo... Azamat Khakimyanov
07:55 AM Bug #13565: LOR on Boot for Static Routes Startup Item in KVM environment
It's a non-fatal LOR. Can leave this open to investigate since it's already here but we decided not to open individua... Jim Pingle
07:50 AM Regression #13559 (Resolved): GUI not starting after update to 2.7
Jim Pingle
07:48 AM pfSense Packages Bug #11185 (Resolved): Redis service stopping before NtopNg
Jim Pingle
07:47 AM pfSense Packages Bug #11404 (New): Incorrect prefix/access lists migration on update
Jim Pingle
07:45 AM Regression #13553 (Closed): PHP error when creating a new limiter
Jim Pingle
07:42 AM Bug #13525: Memory leak in PF when retrieving Ethernet rules
any eta on a fix for 22.05 ?
remembering (to reboot a firewall every 20 days) is not my thing.
jeroen van breedam

10/16/2022

01:18 PM pfSense Docs Todo #13568 (Closed): SG-1100 usb/serial console:driver installation: macOS ≥ 10.13: add note about enabling driver
https://docs.netgate.com/pfsense/en/latest/solutions/sg-1100/connect-to-console.html
should include a note, copied...
Steven Kan

10/15/2022

09:50 PM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
I can also confirm this issue exists in 3.1.0_6, the same line has to be changed. Adrian Hansraj
09:30 PM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
Yep, same problem, same fix still works. O E
09:03 PM Bug #13561 (Resolved): Unable to set web interface session timeout to ``0`` (i.e. never expire)
Looks good. Using the snapshot:
2.7.0-DEVELOPMENT (amd64)
built on Fri Oct 14 06:04:12 UTC 2022
FreeBSD 14.0-CUR...
Chris W
07:56 PM pfSense Packages Bug #13567 (Resolved): Confirmation Prompt Missing Text on Deletion
When you delete a cron task, the browser prompt to confirm states "Are you sure you want to ?", like it's missing a v... Kris Phillips
07:46 PM pfSense Packages Bug #13566 (Resolved): Non-devel pfBlocker Package Broken in 2.7 CE with PHP 8.1
Several PHP 8.1-related bugs are fixed in the devel version, but these persist in the stable release.
Going to t...
Kris Phillips
07:40 PM pfSense Docs Todo #13543 (Confirmed): Feedback on Packages — pfBlocker-NG Package
Confirmed to be present on both the stable and devel branches of pfBlockerNG Kris Phillips
06:56 PM Bug #13555: When WAN is lost, ipv6 interface will not renew upon WAN availability
Correction: I was able to reproduce this with one of my two ISPs after I changed some settings.
Disabling the opti...
Kris Phillips
06:49 PM Bug #13555: When WAN is lost, ipv6 interface will not renew upon WAN availability
I'm unable to reproduce this. I have two WANs with IPv6 and when I unplug the cable on either one, then reconnect it... Kris Phillips
06:44 PM Bug #13565 (Closed): LOR on Boot for Static Routes Startup Item in KVM environment
When booting the following message is present in the boot list:
Setting up static routes...Invoking IPv6 network d...
Kris Phillips
06:38 PM Regression #13559: GUI not starting after update to 2.7
Looks good here as well. This can be marked as resolved. Kris Phillips
06:35 PM pfSense Packages Bug #13564 (Confirmed): PHP error after creating a Route Map
I can confirm this bug report. Creating an empty Route Map produces this error even when not settings are applied. Kris Phillips
05:10 AM pfSense Packages Bug #13564 (Resolved): PHP error after creating a Route Map
... Danilo Zrenjanin
06:12 PM pfSense Packages Bug #11185: Redis service stopping before NtopNg
not seeing this when disabling via ntopng settings or stopping the service from the dashboard widget 22.11.a.20221013... Jordan G
04:57 PM pfSense Packages Bug #11404: Incorrect prefix/access lists migration on update

upgraded from 22.01 to 22.05
IPv6 prefix list was not changed to IP4
ipv6 prefix-list test2 seq 10 deny fe80...
Alhusein Zawi
02:09 PM Regression #13550 (Closed): Pfsense 2.7 October 7 Snapshot manualmount, failed boot
Chris W
02:05 PM Regression #13550 (Resolved): Pfsense 2.7 October 7 Snapshot manualmount, failed boot
From the Oct 14 snapshot (current latest at the time), this is resolved. The system boots normally, GUI is accessible... Chris W
07:52 AM pfSense Packages Bug #13562 (Confirmed): HAProxy PHP error on upgrade to PHP8.1 update
I was able to successfully install haproxy-devel 0.62_11.... Danilo Zrenjanin
03:40 AM Regression #13553: PHP error when creating a new limiter
Tested:... Danilo Zrenjanin
02:44 AM Regression #13563 (Confirmed): PHP Error when attempting to save configuration after disabling a gateway
Tested on the:... Danilo Zrenjanin

10/14/2022

07:39 PM Revision 46245a43: Make a better effort to describe an alias reference. Fixes #13539
Each of deleteAlias(), openvpnAlias(), and staticrouteAlias() are called when
deleting or modifying an alias to indic...
Reid Linnemann
07:39 PM Revision f2523415: Do no reload the filter if $apply is false in deleteAlias. Fixes #13538
Reid Linnemann
03:50 PM Bug #13539 (Feedback): Missing descriptions for referrers to firewall aliases cause empty strings for references to be returned when deleting an in-use alias
Applied in changeset commit:46245a43caa5bab36406fa9591922dd383d1d954. Reid Linnemann
03:50 PM Bug #13538 (Feedback): Deleting an alias marks the subsystem as unclean but also unconditionally reloads the filter configuration
Applied in changeset commit:f2523415a7eabf1c9552870b97c48c878bd819c5. Reid Linnemann
01:03 PM Bug #13545 (Pull Request Review): Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/909 Christopher Cope
11:27 AM pfSense Docs Todo #13557 (Feedback): Minnowboard Turbo: Add ZFS install warning
Notes added and deployed to published docs:
https://gitlab.netgate.com/docs/platforms-docs/-/commit/f50bae3e222322...
Jim Pingle
07:01 AM Regression #13563 (Resolved): PHP Error when attempting to save configuration after disabling a gateway
PHP Error when attempting to save configuration after disabling a gateway
PHP ERROR: Type: 1, File: /etc/inc/gwlb....
Keith Townsend

10/13/2022

08:08 PM pfSense Packages Bug #13562: HAProxy PHP error on upgrade to PHP8.1 update
Robert Johnston wrote:
> Attempting to install either version of haproxy gives the following error on installation
...
Robert Johnston
05:53 PM pfSense Packages Bug #13562 (Duplicate): HAProxy PHP error on upgrade to PHP8.1 update
Attempting to install either version of haproxy gives the following error on installation... Robert Johnston
07:44 PM Regression #13559: GUI not starting after update to 2.7
Looks good. Upgraded from CE 2.6 to 2.7.0.a.20221013.0600 and the GUI started up on reboot as expected. Chris W
12:20 PM Regression #13559: GUI not starting after update to 2.7
Applied in changeset commit:5a63c712e519b3a07f4e0877cd18f5199ec26278. Christian McDonald
12:14 PM Regression #13559 (Feedback): GUI not starting after update to 2.7
https://gitlab.netgate.com/pfSense/pfSense/-/commit/5a63c712e519b3a07f4e0877cd18f5199ec26278 Christian McDonald
09:30 AM Regression #13559 (Confirmed): GUI not starting after update to 2.7
Christian McDonald
07:58 AM Regression #13559 (Resolved): GUI not starting after update to 2.7
Greetings,
I have not found a thread that already mentioned it, so i post it here.
After I updated my pfSense...
John Doe
05:42 PM Revision 8d3e1bb5: Add Zabbix 6.2 pfSense packages to the list to build
Brad Davis
05:13 PM Revision 5a63c712: Fix LDAP authentication for PHP8.1. Fixes #13559
Christian McDonald
05:04 PM Bug #13545 (In Progress): Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
Christopher Cope
04:39 PM Revision 092a715a: Fix session timeout expiry. Fixes #13561
Christian McDonald
11:45 AM Bug #13561: Unable to set web interface session timeout to ``0`` (i.e. never expire)
Applied in changeset commit:092a715abb98605a54cf66b79fbd737d09c064da. Christian McDonald
11:39 AM Bug #13561: Unable to set web interface session timeout to ``0`` (i.e. never expire)
https://gitlab.netgate.com/pfSense/pfSense/-/commit/092a715abb98605a54cf66b79fbd737d09c064da Christian McDonald
11:38 AM Bug #13561 (Resolved): Unable to set web interface session timeout to ``0`` (i.e. never expire)
Incorrect validation code was matching @<= 0@ instead of @< 0@ Christian McDonald
10:57 AM pfSense Packages Feature #13560 (New): Update FreeRADIUS to version 3.0.26
3.0.26 has been released with support for TLS 1.3 in EAP-TLS, PEAP, and TTLS. Some users have asked about updating th... Max Leighton
05:53 AM pfSense Packages Bug #11477: FRR does not recognize some BFD options
Tested on:... Danilo Zrenjanin
04:20 AM pfSense Packages Bug #13558 (New): PFBlockerNG Incorrect planning of GeoIP updates
PFBlockerNG incorrectly only downloads GeoIP updates on the first Thursday of the month.
1. Maxmind indicates on i...
Juan V. Rodríguez Rodríguez

10/12/2022

07:15 PM pfSense Docs Todo #13557 (Resolved): Minnowboard Turbo: Add ZFS install warning
In 2.6 and 22.01 the installer defaults to ZFS but the MBT cannot currently boot ZFS if the the i915 driver module is... Steve Wheeler
05:22 PM Revision fb82d307: Add valgrind to pfPorts
Christian McDonald
04:08 PM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
Same here, problem still exists.
Atte Laukkanen
01:40 AM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
I can confirm this also. Problem still exists in 3.1.0_6 OpIT GmbH
09:07 AM Bug #13555: When WAN is lost, ipv6 interface will not renew upon WAN availability
> IPv4 WAN setup ?
Ethernet to [Nokia] Fibre ONT [Verizon US]
> Multi WAN or not ?
Single WAN.
> What is...
quiet lion
06:57 AM Bug #13556 (Not a Bug): "Clear all DHCP leases" button breaks ability to view DHCP leases
That action stops the daemon, removes the lease database, then starts it again. Entries are not automatically added b... Jim Pingle
01:41 AM pfSense Packages Bug #13154: pfBlocker causing excessive CPU load
I can confirm this also. Problem still exists in 3.1.0_6 OpIT GmbH

10/11/2022

09:45 PM Bug #13554: Configuration file error caused by setting UEFI HTTPBoot URL in DHCP Service
Interestingly, this issue does not arise if the UEFI HTTPBoot URL is enabled on the default LAN interface DHCP Servic... Paul Hiatt
06:59 PM Bug #13556 (Not a Bug): "Clear all DHCP leases" button breaks ability to view DHCP leases
After doing a fresh install of pfsense 2.6.0 on top of Protectli Vault FW4B, everything seemed to be going well.
T...
Bubba Sparxxx
05:30 PM Bug #13466: dhcp server with static mapping and aditional pools with "mac allow" list , dont work as expected.
Jim Pingle wrote in #note-1:
> You're feeding the configuration conflicting information. If you add a MAC address to...
Alex Werle Baule
04:41 PM Revision 6d457a52: Fixed usage of image_type_to_extension. Fixes #13396
Christopher Cope
04:17 PM Bug #13555 (Duplicate): When WAN is lost, ipv6 interface will not renew upon WAN availability
See: https://forum.netgate.com/topic/174029/if-internet-goes-down-ipv6-won-t-work-until-reboot
Steps to reproduce:...
quiet lion
03:13 PM Todo #12782 (Resolved): Disable ``pkg`` compatibility flag which creates ``txz`` file extension symbolic links
Brad Davis
03:10 PM Bug #13014: Deadlock in Charon VICI interface
It didn't get pushed back to the next version, there won't be a 22.11 as there is still a significant amount of work ... Jim Pingle
03:02 PM Bug #13014: Deadlock in Charon VICI interface
Is there any idea when this issue may get fixed? It keeps being endlessly pushed back to the next version. The forum ... Gassy Antelope
01:27 PM Revision 727ed08b: Fix shaper.inc for PHP81. For #13553
Christian McDonald
11:50 AM Bug #13396 (Feedback): Custom logo or background image is created with two dots (``..``) before the file extension
Applied in changeset commit:6d457a52bf0e4cdacd741ecb9c86faefb6def722. Christopher Cope
09:36 AM Bug #13257 (Resolved): Exporting a PKCS#12 file from the certificate manager does not use the intended encryption algorithm
That's a good enough test in addition to all the testing I've done. It's passed and functional testing and inspection... Jim Pingle
07:54 AM Bug #13257: Exporting a PKCS#12 file from the certificate manager does not use the intended encryption algorithm
I looked at this mainly using macos as a client and it seemed to function well. Successful import using "low" and uns... Chris Linstruth
08:28 AM Regression #13553 (Feedback): PHP error when creating a new limiter
https://gitlab.netgate.com/pfSense/pfSense/-/commit/727ed08bbdf53fd62a2cb4e8d59cc0576da71363 Christian McDonald
07:40 AM Regression #13553 (Confirmed): PHP error when creating a new limiter
... Jim Pingle
06:55 AM Bug #8087: Provide Calling-Station-ID to RADIUS backed VPN connections
Has there been any update on this? Ran into the same issue, pfSense OpenVPN not forwarding the Radius parameters to DUO. Brandon Verkada
05:54 AM Bug #3132: Gateway events for IPv6 affect IPv4 services and vice versa
Possible also related to this issue I found https://redmine.pfsense.org/issues/13552 where IPv4 signpost files in the... Phil Lee
12:44 AM pfSense Packages Feature #10818: UDP Broadcast Relay
So glad you sirs are developing this. Thank you very much.
However, my only issue right now is I cant add wireguar...
gen hwe

10/10/2022

11:01 PM Bug #13554: Configuration file error caused by setting UEFI HTTPBoot URL in DHCP Service
NOTE: *Affected Architecture* should be SG-1100, arm64 (not amd64), I selected the wrong one. Paul Hiatt
09:17 PM Bug #13554 (Duplicate): Configuration file error caused by setting UEFI HTTPBoot URL in DHCP Service
I'm attempting to enable Network Booting from a UEFI HTTPBoot URL on one of my VLANs.
I can enable network booting...
Paul Hiatt
06:56 PM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
FWIW, I believe that this issue is still present in the just released pfBlockerNG-devel 3.1.0_6.
Same fix needed a...
Denny Page
06:48 PM pfSense Packages Bug #13154: pfBlocker causing excessive CPU load
This issue is still present in the just released pfBlockerNG-devel 3.1.0_6.
Same fix as before:...
Denny Page
04:44 PM Regression #13553 (Resolved): PHP error when creating a new limiter
Adding a new Limiter to Firewall>Traffic Shaper>Limiters results in a PHP Error/Crash
2.7 Developer snapshot
Keith Townsend
02:34 PM Bug #13552: Dashboard - uptime shows nothing and gateway widget loses default gateway soon after PPPoE comes up
In addition to the above, I would think that ppp-linkdown, when bringing down an IPv6 network, should also be removin... Phil Lee
12:32 PM Bug #13552 (Duplicate): Dashboard - uptime shows nothing and gateway widget loses default gateway soon after PPPoE comes up
This seems to be the same as #12811 Jim Pingle
11:41 AM Bug #13552 (Duplicate): Dashboard - uptime shows nothing and gateway widget loses default gateway soon after PPPoE comes up
Most attempts at bringing up PPPoE will result in about 5 seconds of uptime showing before the uptime count and the I... Phil Lee
10:23 AM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
aleksei prokofiev wrote in #note-4:
> I've tested it on firefox, chrome and edge. 22.05 release.
> To recreate the ...
Christopher Cope
08:32 AM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
Also noticed that /boot/loader.conf is almost empty and missing the usual params.. Only has this:
autoboot_delay="...
RED SKULL
07:11 AM Regression #13535 (Resolved): Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
Jim Pingle
07:09 AM Bug #13551 (Duplicate): Pfsense 2.7 October 9 Snapshot manualmount, failed boot
No need for a new/separate issue, the other one is still open.
Jim Pingle
06:12 AM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
Tested on 22.05, 2.7-CE-DEV and 22.11-DEV (built on Fri Oct 07 15:14:37 UTC 2022)
I created different aliases:
- ...
Azamat Khakimyanov

10/09/2022

07:15 PM Bug #13487: GUI IPV6-WAN-status stays "Offline, Packetloss" after a short communication hick up
I'm pretty sure this is one of those beautiful filter-reload issues that causes packet loss. It's a regression that w... Flole Systems
05:18 PM Bug #13551 (Duplicate): Pfsense 2.7 October 9 Snapshot manualmount, failed boot
Same failed boot issue due to opensolaris, zfs kos, and kernel not loading.
First noted and opened here: https://...
RED SKULL
05:11 PM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
btw, this is also an issue on the latest October 9th build so I will open another ticket RED SKULL
05:10 PM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
thanks Christian. I found that this is partially correct. the load commands work but you will need to enter the follo... RED SKULL
01:59 PM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
I want to apologize for selecting 2.6 in "affected version". Wasn't certain what to pick, so I picked the current CE.... Jens Kristensen
01:54 AM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
I've tested it on firefox, chrome and edge. 22.05 release.
To recreate the issue:
1. Create port forward, then auto...
aleksei prokofiev
09:26 AM Bug #13542: Boot delay caused when OpenVPN config uses alias list that relies on DNS
I just realized you were confused by what I was referring to in my workaround.
I meant that if I change the setting:...
Adrien Carlyle
09:19 AM Bug #13542: Boot delay caused when OpenVPN config uses alias list that relies on DNS
In the OpenVPN server configuration option "IPv4 Local network(s)" I use an alias that contains FQDN hostnames like s... Adrien Carlyle

10/08/2022

08:21 PM Regression #12821: Intel e1000 driver (``em``, ``igb``) cannot pass packets tagged with VLAN ``0``
Here is my test script in the event that disabling vlanhwfilter becomes necessary for next release instead. Kris Phillips
08:17 PM pfSense Packages Bug #13513: Cannot install Squid
Confirmed still present in Oct 7th builds. Kris Phillips
08:14 PM pfSense Packages Bug #13526 (Not a Bug): Invalid message from WireGuard about a wrong public key for peer
Marking as Not a Bug as it seems to have been a copy/paste error in Android. Thank you for following up! Kris Phillips
08:11 PM Regression #13535: Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
Appears to be fixed without a patch needed in Oct 7th builds. Kris Phillips
08:08 PM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
Christian McDonald wrote in #note-2:
> Reboot into the loader prompt, press 3 at the pfSense/FreeBSD boot menu
>
...
Kris Phillips
08:52 AM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
Reboot into the loader prompt, press 3 at the pfSense/FreeBSD boot menu
Then run the following
load /boot/kernel/k...
Christian McDonald
03:23 AM Regression #13550: Pfsense 2.7 October 7 Snapshot manualmount, failed boot
FYI: I see the October 7th update shows error 404 when attempting to download on pfsense site but is still available ... RED SKULL
02:27 AM Regression #13550 (Closed): Pfsense 2.7 October 7 Snapshot manualmount, failed boot
Pulled October 7th Snapshot fails to boot and stops as manualroot> prompt. none of the options work.
Loader vari...
RED SKULL
07:59 PM Bug #13542: Boot delay caused when OpenVPN config uses alias list that relies on DNS
This doesn't sound like a bug, as the issue is not present when using different DNS servers based on the original rep... Kris Phillips
07:55 PM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
Lev Prokofev wrote in #note-2:
> I can confirm it on the 22.05
>
> The associated FW rule will be disabled/enable...
Kris Phillips
02:25 AM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
I can confirm it on the 22.05
The associated FW rule will be disabled/enabled if you use a blue check pictogram to...
Lev Prokofev
06:48 PM pfSense Packages Bug #10692: PIMD starts twice at boot
this is still present on 22.11 20221007-1510/pimd0.0.3_5
just enabling the package shows it starting twice in the l...
Jordan G
05:39 PM pfSense Plus Bug #13358 (Resolved): Traffic to OpenVPN DCO RA clients above the first available tunnel IP address is incorrectly routed
This is fixed in current snapshots.... Steve Wheeler

10/07/2022

10:25 PM Revision 499d7033: Fix PHP error when editing aliases w/o if groups.
Jim Pingle
05:45 PM Revision 960388e0: Fix PHP error in LAGG pages
Jim Pingle
04:02 PM Revision ff0255bc: Convert RSS Widget to use simplepie via Composer
Christian McDonald
01:03 PM Revision 6df6e035: Revert adding textproc/php81-xml{,reader}
Glen Barber
12:56 PM Feature #6960: Introduce Kea DHCP as an alternative DHCP server for IPv4 and IPv6
ISC DHCP Server is EOL, so this appears to be the path forward.
https://www.isc.org/blogs/isc-dhcp-eol/
Will ne...
Jim Pingle
12:47 PM Revision f74e3d89: Sort poudriere_bulk package list.
Glen Barber
12:46 PM Revision 453a663f: Add textproc/php81-xml and textproc/php81-xmlreader
Glen Barber
12:22 PM Bug #13545: Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
I am unable to reproduce this. Enabling or disabling NAT rules also does the same to the firewall rules as expected. ... Christopher Cope
11:02 AM Bug #13014: Deadlock in Charon VICI interface
David Vazquez wrote in #note-17:
> I've been having the same issue as everyone above so I wrote a script to restart ...
Mikael Karlsson
10:09 AM Regression #13535: Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
Tested on:
Version 2.7.0-DEVELOPMENT (amd64)
built on Thu Oct 06 06:04:33 UTC 2022
FreeBSD 14.0-CURRENT
Freerad...
Georgiy Tyutyunnik
04:18 AM Regression #13514 (Resolved): PHP 8.1 - Syntax error when disabling a gateway under SYSTEM > GATEWAYS > EDIT
Tested:... Danilo Zrenjanin

10/06/2022

02:44 PM Revision 80e41507: Update firewall_nat_out.inc for PHP81
Christian McDonald
02:43 PM Revision c267fb45: Fix firewall_nat_1to1.inc for PHP81
Christian McDonald
02:42 PM Revision dc7efffb: Fix PHP81 error in firewall_nat.inc
Christian McDonald
01:45 PM pfSense Packages Bug #13548: FreeRadius does not pay attention to local groups
Got it thanks so much for clarification. Mikael *
12:11 PM pfSense Packages Bug #13548: FreeRadius does not pay attention to local groups
Then you are configuring it wrong. If you set the Class reply attribute with groups on a user in FreeRADIUS then the ... Jim Pingle
12:08 PM pfSense Packages Bug #13548: FreeRadius does not pay attention to local groups
Sorry, I may been unclear on the actual issue Jim. I'm referring to this piece of code for @getUserGroups@ : https:/... Mikael *
08:09 AM pfSense Packages Bug #13548 (Rejected): FreeRadius does not pay attention to local groups
FreeRADIUS is an add-on package and its usage may not be for authenticating items on the firewall itself. It shouldn'... Jim Pingle
03:29 AM pfSense Packages Bug #13548 (Rejected): FreeRadius does not pay attention to local groups
Freeradius should be aware of which groups a freeradius defined user is assigned to in the local groups to the system... Mikael *
01:14 PM Feature #13547: Limit allowed VPN users based on group association
Looking into this request, basically this request sums up the feature wanted: https://redmine.pfsense.org/issues/10748 Mikael *
11:52 AM Feature #13547: Limit allowed VPN users based on group association
I may have expressed my self-wrong, on the system side I can create a group and assign the appropriate permissions to... Mikael *
03:21 AM Feature #13547 (New): Limit allowed VPN users based on group association
Hi,
Currently I'm using Freeradius as my source of users who have access to VPN and the firewall. On the system side...
Mikael *
12:15 PM Regression #13316 (Resolved): ``vmstat -m`` value for ``temp`` is accounted for incorrectly, resulting in underflows
Christopher Cope
12:15 PM Regression #13316: ``vmstat -m`` value for ``temp`` is accounted for incorrectly, resulting in underflows
Working as expected on... Christopher Cope
08:54 AM Regression #13522: Minnowboard Turbot additions are no longer present
I have started the work to add the customizations back Brad Davis
08:08 AM Bug #13546 (Not a Bug): OpenVpn with FreeRadius Framed-Ip-Address does not work if client name differs common name
There is no bug here, it's working exactly as it should. If the username doesn't match the certificate, you can toggl... Jim Pingle
08:05 AM pfSense Docs Correction #13549 (Rejected): Feedback on pfSense® software Configuration Recipes — OpenVPN Site-to-Site Configuration Example with SSL/TLS
No, it should not. The recipe is correct. Using /30 tunnel networks is incorrect for a multi-site setup like the reci... Jim Pingle
05:01 AM pfSense Docs Correction #13549 (Rejected): Feedback on pfSense® software Configuration Recipes — OpenVPN Site-to-Site Configuration Example with SSL/TLS
*Page:* https://docs.netgate.com/pfsense/en/latest/recipes/openvpn-s2s-tls.html
*Feedback:* The tunnel network in ...
Paal Andreas Lindsetmo
06:14 AM Bug #13262 (Resolved): File browser on ``diag_edit.php`` does not encode filenames before display
Tested on the:... Danilo Zrenjanin
02:40 AM Bug #13337: After upgrading from 22.01 to 22.05 unbound intermittently stops resolving until manually restarted
This sounds like how I've always had #11316 , services window says its online but all DNS is dead until manually rest... Chris R

10/05/2022

11:57 PM Bug #13546 (Not a Bug): OpenVpn with FreeRadius Framed-Ip-Address does not work if client name differs common name
Hi,
I've been troubleshooting why framed-ip-address assigned by FreeRadius did not work with OpenVpn. First off I wa...
Mikael *
09:15 PM Revision 7df0039f: Set the correct ABI/ALTABI for the next release.
Luiz Souza
07:41 PM Revision cef711cf: Add simplepie to composer manifest
Christian McDonald
03:42 PM Revision a46b9274: poudriere: add drm-510-kmod
The i915kms driver is no longer part of the base system, but has to be
installed from ports instead. Build the port.
...
Kristof Provost
02:07 PM Bug #9149 (Rejected): Continued issues with /tmp and /var in RAM on 2.4
RAM disk implementation has been worked on quite a bit. This is very likely to be irrelevant at this point. Christian McDonald
02:04 PM Bug #5658 (Not a Bug): Files with the same name cannot be uploaded to multiple captive portal zones
... Christian McDonald
01:57 PM Bug #13545 (Resolved): Toggling NAT rules using the button method does not enable/disable corresponding firewall rules
Check the checkbox of one or more existing NAT rule(s). Click the toggle button. Click Apply button.
The NAT rule(2)...
Jens Kristensen
08:09 AM Bug #13533 (Resolved): pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Tested on the:... Danilo Zrenjanin
02:25 AM Bug #13525: Memory leak in PF when retrieving Ethernet rules
seems to have landed in our tree
https://github.com/pfsense/FreeBSD-src/commit/0044bd90f2397dfad5f4bbd12c64be86e0b...
Jim Thompson
01:40 AM pfSense Packages Bug #13544 (New): SquidGuard either denying everything or proxying everything
Hey,
I truly doubt this is a configuration issue as I've tried all the possible combinations.
Relevant images a...
Jimmy Michaelson

10/04/2022

04:07 PM pfSense Docs Todo #13543 (Confirmed): Feedback on Packages — pfBlocker-NG Package
*Page:* https://docs.netgate.com/pfsense/en/latest/packages/pfblocker.html
*Feedback:*
The action options on th...
Loh Phat
03:52 PM Revision 40997699: Fix carp_status.widget.php for PHP81. Fixes #13535
Christian McDonald
12:44 PM Feature #1831: Captive portal IPv6 support
Updated target versions as this is not in the body of work for 11/2022. Reid Linnemann
12:41 PM Bug #13282 (Feedback): Alias content is sometimes incomplete if the firewall cannot resolve an FQDN in the alias
I'm pretty sure the invalid FQDN is a red herring, I found a lot of thread synchronization issues with filterdns that... Reid Linnemann
12:36 PM Bug #13067 (Feedback): Resolve interval for ``filterdns`` may not match the configured value
The code inexplicably added the interval mod 30 to the interval, I've fixed this as of https://github.com/pfsense/Fre... Reid Linnemann
11:08 AM Bug #13500: Remote groups with special characters ($) / LDAP not supported.
This should only work for Remote scoped groups. Local scoped groups are subject to the local group naming restriction... Christian McDonald
11:00 AM Regression #13535: Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
Applied in changeset commit:40997699d4fda1b3f851f2dcc816c346ebce7d91. Christian McDonald
10:52 AM Regression #13535 (Feedback): Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
https://gitlab.netgate.com/pfSense/pfSense/-/commit/40997699d4fda1b3f851f2dcc816c346ebce7d91 Christian McDonald
10:03 AM pfSense Packages Bug #13045: Firewall floating rules ignore WireGuard traffic
*edit*: I was able to make it work for now by making sure to kill states and then having this pair of quick/block flo... → luckman212
08:08 AM pfSense Packages Bug #13045: Firewall floating rules ignore WireGuard traffic
@cmcdonald can you comment on whether rules (specifically block rules) are working for assigned Wireguard interfaces,... → luckman212
07:51 AM Bug #13541 (Not a Bug): openvpn doesn't auto connect if there was a power loss
There isn't nearly enough information here to identify anything actionable. OpenVPN reconnects fine on reboot/power o... Jim Pingle
06:01 AM Bug #13541 (Not a Bug): openvpn doesn't auto connect if there was a power loss
i'm using pfsense 2.6 and if there is a power loss or for a test i switch off the power after the new boot the openvp... fabio fabio
07:14 AM Bug #13542 (Closed): Boot delay caused when OpenVPN config uses alias list that relies on DNS
pfSense+ 22.05 in Azure
I use OpenVPN with an alias list that includes 76 (and growing) FQDNs.
When the system ...
Adrien Carlyle
03:38 AM pfSense Packages Feature #13540 (New): Check what rule is triggered by a Domain or IP
Test a Domain or IP in pfBlockerNG to see what rule they trigger.
This allows an admin to quickly check what rule ...
Jon Brown

10/03/2022

07:08 PM Revision a5c00e98: Update composer.lock for PHP81
Christian McDonald
05:34 PM Bug #13539 (Resolved): Missing descriptions for referrers to firewall aliases cause empty strings for references to be returned when deleting an in-use alias
If an alias is in use by another alias, filter rule, nat rule, route, or OVPN configuration, attempting to delete it ... Reid Linnemann
04:47 PM Revision fbade897: Add a new core package, pfSense-boot to hold the OS boot files.
This package will be used to allow the update of the OS loader,
which needs to happen on the first phase of the updat...
Luiz Souza
01:03 PM Bug #13538 (Resolved): Deleting an alias marks the subsystem as unclean but also unconditionally reloads the filter configuration
The parameter $apply to deleteAlias() appears to be intended to control whether the change is applied with a filter r... Reid Linnemann
07:07 AM Regression #13506 (Resolved): Services Status Widget always shows hiddebn
Jim Pingle
07:05 AM Bug #12901 (New): DNS Forwarder refuses valid retries from clients in certain cases
We'll pick it up the next time we sync our ports tree with main on the dev snapshot branches. It's a manually process... Jim Pingle
07:02 AM Bug #13534 (Not a Bug): IPsec Status contains doubled entries per tunnel
Jim Pingle

10/02/2022

06:31 PM pfSense Packages Bug #13485 (Resolved): Interfaces are not listed correctly in pfBlockerNG-devel when selecting the cURL interface
Merged. Marcos M
05:24 PM pfSense Packages Regression #13156: pfBlockerNG IP block stats do not work
Thx Marcos tested V1 patch an V2 and they do their jobs thanks a lot ==> version tested pfBlockerNG-devel, version 3.... collin Collen
06:54 AM Todo #13537 (Resolved): Update vendor files
Update jquery and jquery_ui
https://github.com/pfsense/pfsense/pull/4618
Reasons for update:
jquery_ui v1.13...
GChuf 6
06:49 AM Todo #13536 (Rejected): Compress website images
Compress 35 _.png_ files used for web interface in order to reduce size and processing/loading times.
https://gith...
GChuf 6
02:02 AM Bug #13329: Traffic shaping Wizard sets invalid values for qVoip queue
I've tested on 22.05 and can confirm that behavior. When I use HFSC and finish the wizard the qVoip is set to 32Kb
!c...
aleksei prokofiev

10/01/2022

10:14 PM Regression #12821: Intel e1000 driver (``em``, ``igb``) cannot pass packets tagged with VLAN ``0``
Did some additional testing today. Ran a pcap in promisc mode. The Netgraph interface and physical interface attach... Kris Phillips
09:18 PM pfSense Packages Bug #13045: Firewall floating rules ignore WireGuard traffic
Any further updates here? → luckman212
07:42 PM Regression #13535 (Resolved): Pfsense 2.7 (14.0-CURRENT) - Freeradius, Pfblocker not working or showing up in menu
Crash report begins. Anonymous machine information:
amd64
14.0-CURRENT
FreeBSD 14.0-CURRENT #0 devel-main-n2557...
RED SKULL
07:12 PM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
And one further note -- I am the volunteer package maintainer for Suricata and Snort in case any of the newer Netgate... Bill Meeks
01:59 PM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
I believe all of the PHP8 issues are fixed in the pull request I offered, but it has not been merged pending review b... Bill Meeks
01:57 PM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
I am getting the same error as Kris. But it seems that PHP8 compatibility issues fixes are included in the 6.0.6_1, w... Danilo Zrenjanin
12:16 PM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
Testing all other menus and buttons seems to produce no errors. However, there are some menus that cannot be accesse... Kris Phillips
12:11 PM pfSense Packages Bug #13531 (Confirmed): Suricata GUI broken with PHP 8.1
Installation of Suricata is fixed in September 30th builds and all main menu items are loading now.
However, att...
Kris Phillips
06:27 PM Regression #13506: Services Status Widget always shows hiddebn
working as expected now on Plus also, tested on 22.11-DEVELOPMENT-20221001-0252 Jordan G
06:22 PM Revision 9ebd6ff3: PHP81 fix in gwlb.inc. For #13514
Christian McDonald
05:59 PM Regression #13514: PHP 8.1 - Syntax error when disabling a gateway under SYSTEM > GATEWAYS > EDIT
this is also present on Plus 20221001-0252 build of 22.11 fyi Jordan G
01:24 PM Regression #13514 (Feedback): PHP 8.1 - Syntax error when disabling a gateway under SYSTEM > GATEWAYS > EDIT
Fixed Christian McDonald
01:05 PM Regression #13514 (Confirmed): PHP 8.1 - Syntax error when disabling a gateway under SYSTEM > GATEWAYS > EDIT
Chris W
01:01 PM Regression #13514: PHP 8.1 - Syntax error when disabling a gateway under SYSTEM > GATEWAYS > EDIT
Confirmed on latest build (running on KVM, and IPv6 was switched off upstream):
2.7.0-DEVELOPMENT (amd64)
built on Fr...
Chris W
05:38 PM Bug #12901: DNS Forwarder refuses valid retries from clients in certain cases
The upstream patch has landed in the latest release 2.87 from a few days ago. Does pfsense need to manually pull in t... Flole Systems
04:37 PM pfSense Packages Bug #13526: Invalid message from WireGuard about a wrong public key for peer
To transfert the key from the Wireguard Android device to my PC, I made a copy using the builtin touch-to-copy to cli... Yann Papouin
02:42 PM pfSense Packages Bug #13526: Invalid message from WireGuard about a wrong public key for peer
Can you please detail the steps you took which resulted in the key not being accepted?
I'm unable to reproduce thi...
Chris W
02:38 PM pfSense Packages Bug #13526 (Feedback): Invalid message from WireGuard about a wrong public key for peer
Chris W
02:50 PM Bug #13534 (Closed): IPsec Status contains doubled entries per tunnel
OK, Steve helped to find the issue. I restored a config made earlier while this bug was present. After creating a new... Danilo Zrenjanin
02:35 PM Bug #13534: IPsec Status contains doubled entries per tunnel
Tested on the:... Danilo Zrenjanin
02:12 PM Bug #13534 (Not a Bug): IPsec Status contains doubled entries per tunnel
After establishing an IPsec tunnel, I can see the same tunnel twice under status_ipsec.php
pfSense side IPsec sett...
Danilo Zrenjanin
02:02 PM pfSense Packages Bug #13515: Snort with PHP 8.1 - TypeError when saving edits to an interface
The request is being reviewed by Jim Pingle and is not yet merged. Bill Meeks
12:51 PM pfSense Packages Bug #13515 (Confirmed): Snort with PHP 8.1 - TypeError when saving edits to an interface
Tested on September 30th builds of CE. Doesn't appear this has been merged as the error is still present. Kris Phillips
02:01 PM Todo #13505 (Resolved): Correct DHCP client rule descriptions in the generated firewall ruleset

added
pass in quick on $WAN proto udp from any port = 67 to any port = 68 ridentifier 1000000461 label "allow ...
Alhusein Zawi
01:41 PM Bug #13533: pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Tested with the above commit
Kris Phillips wrote in #note-4:
> Christian McDonald wrote in #note-2:
> > Fixed.
...
Kris Phillips
12:42 PM Bug #13533: pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Christian McDonald wrote in #note-2:
> Fixed.
For testing commit ID is 216cca9cbbde63584244e817a5ce288d12113d97
Kris Phillips
12:04 PM Bug #13533: pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Still seeing this on the September 30th builds:
Parse error: syntax error, unexpected token "as", expecting ")" in...
Kris Phillips
07:22 AM Bug #13533: pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Fixed. Christian McDonald
07:22 AM Bug #13533 (Feedback): pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Christian McDonald
03:33 AM Bug #13533 (Resolved): pfsense 2.7 (FreeBSD 14) system_authservers.php - syntax error
Crash report begins. Anonymous machine information:
amd64
14.0-CURRENT
FreeBSD 14.0-CURRENT #0 devel-main-*****...
RED SKULL
12:49 PM pfSense Packages Bug #13516 (Resolved): Snort with PHP 8.1 - TypeError when attempting to view a Suppression List on a Snort interface
Tested on September 30th builds. No PHP errors present when viewing the Alert Suppression and Filtering under the in... Kris Phillips
12:20 PM Revision 216cca9c: Fix syntax error in system_authservers.php. For #13533
Christian McDonald
12:02 PM pfSense Packages Bug #13513 (Confirmed): Cannot install Squid
Marking as confirmed Kris Phillips
12:02 PM pfSense Packages Bug #13513: Cannot install Squid
Tested on September 30th build and problem is still present.
Fatal error: Uncaught TypeError: Cannot access offs...
Kris Phillips
11:40 AM pfSense Packages Bug #11345 (Resolved): FRR-OSPF - No "prefix-list" possible
Danilo Zrenjanin
11:40 AM pfSense Packages Bug #11345: FRR-OSPF - No "prefix-list" possible
Tested on:... Danilo Zrenjanin
01:01 AM Feature #12982: Add support for RFC7499 in RADIUS library.
Hello Christian. Ok, I finally understand what you are saying. I've install a stand along FreeRadius (as one of you... Frank Lee
12:41 AM Bug #13396: Custom logo or background image is created with two dots (``..``) before the file extension
Looks good, no more additional dots, after the patch. Lev Prokofev
12:27 AM Bug #13499: Namecheap service type is missing help text for the password field

I'd say enter a dynamic DNS password generated under the Namecheap DNS configuration tab, but totally agree that it...
Lev Prokofev

09/30/2022

06:41 PM pfSense Packages Bug #13531: Suricata GUI broken with PHP 8.1
The PHP8 errors have been fixed in Pull Request 1192 posted to the pfSense Package DEVEL branch on GitHub here: [http... Bill Meeks
08:12 AM pfSense Packages Bug #13531 (Resolved): Suricata GUI broken with PHP 8.1
Opening this ticket as a generic placeholder for documenting PHP 8.1 issues in the Suricata GUI package.
Installat...
Bill Meeks
06:11 PM Bug #13528 (Duplicate): pfSense sends wrong NAS-IP-Address to RADIUS server
Marcos M
04:39 PM Bug #13436: Input validation on ``system_advanced_firewall.inc`` uses incorrect variable references for some fields
Tested on... Christopher Cope
04:24 PM Regression #13512 (Resolved): PHP 8.1 Syntax Error in DNS Resolver Configuration Screen
Working as expected on... Christopher Cope
03:36 PM Bug #13448 (Resolved): Table row selection has poor contrast in Dark theme
Christopher Cope
01:46 PM pfSense Plus Bug #13530 (Incomplete): Remote Logging strange behavior
Unless this can be replicated and reliably reproduced there doesn't seem to be anything actionable here. Without some... Jim Pingle
01:36 PM Bug #12708 (Feedback): Alias with non-resolving FQDN entry breaks underlying PF table
I've found numerous thread synchronization problems in the filterdns sources, I believe they are responsible for this... Reid Linnemann
01:35 PM Bug #9296 (Feedback): Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
Fixed as of https://github.com/pfsense/FreeBSD-ports/commit/eebf583cb47ad8255f3890b66349f8eb7d66bc95 Reid Linnemann
12:07 PM Feature #12982: Add support for RFC7499 in RADIUS library.
Any update? thank you! Frank Lee
10:34 AM pfSense Packages Todo #13532 (Closed): Sync ACME package with upstream v3.0.5
Sync pfSense-pkg-acme with latest upstream acme.sh Christian McDonald
09:21 AM Regression #13522: Minnowboard Turbot additions are no longer present
https://gitlab.netgate.com/pfSense/Crossbuild/-/merge_requests/102
https://gitlab.netgate.com/pfSense/pfSense/-/merg...
Kristof Provost
08:15 AM Regression #13522: Minnowboard Turbot additions are no longer present
It looks like the i915kms driver has been removed from the kernel in main (14) so that's why we don't have the module... Kristof Provost

09/29/2022

08:22 PM Revision 79eec8e2: Fix a PHP81 bug in system_authservers.php
Christian McDonald
07:03 PM pfSense Plus Bug #13530: Remote Logging strange behavior
Kindly change the Priority from this bug from normal to low or very low.
Thanks.
Marcelo Cury
06:43 PM pfSense Plus Bug #13530 (Incomplete): Remote Logging strange behavior
My SG-3100 (22.05) is configured to send logs to a remote syslog server in my LAN on port 1514.
pfsense remote log...
Marcelo Cury
05:15 PM Revision 73ca6743: Encode path+fn in browser.php. Fixes #13262
Jim Pingle
04:43 PM Revision 9bada3e0: Update dhcp rule description
Steve Wheeler
04:11 PM Bug #13529 (Resolved): Intel i226 network interfaces do not honor a manually selected link speed
When you set anything other than autoselect in igc it can't actually set a fixed speed so instead it simply removes a... Steve Wheeler
01:19 PM Bug #13528: pfSense sends wrong NAS-IP-Address to RADIUS server
Just in case it matters, the hardware is a Netgate 6100. Michael Mercier
01:18 PM Bug #13528 (Duplicate): pfSense sends wrong NAS-IP-Address to RADIUS server
22.05-RELEASE (amd64)
built on Wed Jun 22 18:56:13 UTC 2022
FreeBSD 12.3-STABLE
OpenVPN is setup to auth against...
Michael Mercier
01:00 PM Feature #13527 (New): Password policy for local users
I know the recommended action if you want password controls/password policy is to use an external authentication serv... Robert Jerina
12:25 PM Bug #13262 (Feedback): File browser on ``diag_edit.php`` does not encode filenames before display
Applied in changeset commit:73ca6743954ac9f35ca293e3f2af63eac20cf32e. Jim Pingle
12:12 PM Bug #13262 (In Progress): File browser on ``diag_edit.php`` does not encode filenames before display
Someone else reported this isn't completely solved. There is one place where @$fqpn@ is used without encoding, but th... Jim Pingle
11:50 AM Todo #13524: Update reserved alias names
Applied in changeset commit:286e685d14b8148182a5c9f28d3eeddd215a9a08. Marcos M
11:41 AM Todo #13524 (Feedback): Update reserved alias names
Christian McDonald
11:44 AM Todo #13505 (Feedback): Correct DHCP client rule descriptions in the generated firewall ruleset
Christian McDonald
09:59 AM Bug #8179: Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
It is working. @Yousif Hassan you have to set two zones:
208.24.172.in-addr.arpa and 209.24.172.in-addr.arpa
not 24...
Andrzej Milewski
09:54 AM pfSense Packages Bug #13526 (Not a Bug): Invalid message from WireGuard about a wrong public key for peer
Making an experimentation with Wireguard Package on pfSense 2.6
After using Wireguard android apps to generate a pee...
Yann Papouin
09:39 AM Bug #13525 (Resolved): Memory leak in PF when retrieving Ethernet rules
In 2.7 and 22.05 the wired memory increases over time due to an apparent leak.
This appears to be in pf when it us...
Steve Wheeler
08:19 AM pfSense Docs Correction #13494 (Resolved): Documentation on decryption of encrypted config.xml files is not correct
Jim Pingle
02:39 AM pfSense Plus Feature #13227: Group-based Mobile IPsec Virtual Address Pool assignment via RADIUS
I posted in the netgate forum about this functionality and got redirected to this record.
https://forum.netgate.co...
Tom Huerlimann

09/28/2022

11:05 PM Revision 286e685d: Update reserved alias names. Fix #13524
Marcos M
07:33 PM Revision 0d121100: DHCP/v6 PHP8 error fixes for some cases.
If a config starts with only WAN, no LAN assigned, there are a number of
tags that were not handled properly on DHCP,...
Jim Pingle
06:51 PM Revision 5dbc7118: Initialize $groups in local_user_get_groups to non-null. Issue #13446
Reid Linnemann
06:08 PM Todo #13524 (Pull Request Review): Update reserved alias names
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/902 Marcos M
05:38 PM Todo #13524: Update reserved alias names
Original (from parse.y):... Marcos M
05:22 PM Todo #13524 (Resolved): Update reserved alias names
From @/sbin/pfctl/parse.y@ Marcos M
03:27 PM Revision 2b5c0a18: Merge branch 'master' of gitlab.netgate.com:pfSense/pfSense
Glen Barber
03:25 PM Revision 25be740e: Add net/intel-em-kmod to the poudriere_bulk list of packages.
Requested by: stevew Glen Barber
02:01 PM Revision ade64ca6: Fix service status widget listing of non-disabled services
Jim Pingle
01:24 PM Revision 941eca9a: Fix handling of empty entries in NTP interfaces.
Jim Pingle
11:26 AM pfSense Packages Bug #13509: NRPE: Checks requiring net-snmp fail
Something more that that is required here. Attempting to actually use it produced the following error:... Steve Wheeler
07:33 AM Bug #13523 (New): Cloudflare DynDNS Updates are slow and cause multiple notification E-Mails
I have about 30 DynDNS Domains configured. When those are updated I get 30 E-Mails for those updates with about 10 se... Flole Systems

09/27/2022

10:55 PM Bug #9296: Alias content is sometimes incomplete when an alias contains both FQDN and IP address entries
I think I have this pretty well nailed down to a race on initial thread creation for added aliases where the created ... Reid Linnemann
07:27 PM Revision 5538e593: Prevent array/config_get_path() from overriding 0 values
Change the semantics of array_get_path() and config_get_path() so that only
empty strings at a path are overridden by...
Reid Linnemann
07:27 PM Revision b542396e: Replace direct config accesses in auth.inc. Issue #13446
Additionally, change local_group_del_user() to include the index of the group in
the path to the group's member list ...
Reid Linnemann
06:12 PM Regression #13522 (Resolved): Minnowboard Turbot additions are no longer present
The installer no longer detects an MBT device and adds the expected loader.conf.local file and values.
The require...
Steve Wheeler
02:43 PM Revision 44dc33f9: Build Realtek kmod pkg for testing.
Steve Wheeler
02:40 PM Revision e083ae9f: Revert "Temporarily remove lsof and Telegraf from the build until fixed on main"
This reverts commit 363ea6b079308123e8286bbf10fef3625b523fab.
Patches needed for building on main have landed, so br...
Brad Davis
02:14 PM pfSense Packages Bug #13380: OpenVPN client options cause "Options error: --proto tcp is ambiguous in this context. Please specify --proto tcp-server or --proto tcp-client"
For reference, the option needs to be changes as follows:
22.01
> remote <ip> <port> tcp
22.05 acting as client
...
Marcos M
07:05 AM Regression #12215: OpenVPN does not resync when running on a gateway group
I'm also affected by this.
OpenVPN Client on DSL (PPPoE) and another OpenVPN Client on LTE (DHCP), both on Tier 1 in...
Oskar Stroka
05:05 AM Revision 270badaf: Add pkg rootdir support to core packages
Brad Davis

09/26/2022

10:38 PM pfSense Packages Bug #13516: Snort with PHP 8.1 - TypeError when attempting to view a Suppression List on a Snort interface
This issue has been resolved in the latest Snort GUI package pull request posted here for review and merge: [https://... Bill Meeks
10:38 PM pfSense Packages Bug #13515: Snort with PHP 8.1 - TypeError when saving edits to an interface
This issue has been resolved in the latest Snort GUI package pull request posted here for review and merge: [https://... Bill Meeks
03:26 PM Revision 829083b9: Add quotes around variable usage to prevent word splitting
Brad Davis
03:25 PM Revision 13691f23: Avoid using -o in test(1)
Brad Davis
03:20 PM Revision c4c2ecd8: -1 is not allowed, exit only uses 0-255
Brad Davis
03:07 PM Revision 5d800e8b: Avoid using -a in test(1)
Brad Davis
03:07 PM Revision d0732158: -1 is not allowed, exit only uses 0-255
Brad Davis
02:36 PM pfSense Packages Bug #13521 (Rejected): userland calling deprecated sysctl, please rebuild world
There is not enough information here to classify this as a bug or to rule out something improper on that setup/enviro... Jim Pingle
02:34 PM pfSense Packages Bug #13521: userland calling deprecated sysctl, please rebuild world
hello!
i have fresh install pfsense 2.6.0
i have install zabbix5-agent-5.0.17 package
in zabbix agent settings in ...
itfabrica Tech
02:32 PM pfSense Packages Bug #13521 (Rejected): userland calling deprecated sysctl, please rebuild world
hello!
i have fresh install pfsense 2.6.0
i have install zabbix5-agent-5.0.17 package
in zabbix agent segging in g...
itfabrica Tech
02:31 PM Revision abedf73d: Add quotes around variable usage to prevent word splitting
Brad Davis
01:34 PM Feature #7085: Edit Firewall Rules Seperator
+1 Marcel Kallinger
07:45 AM Bug #13393 (Feedback): DNS Resolver responds with unexpected source address when the DNS over TLS server function is enabled
Applied in changeset commit:910a468672a6dcfe9f3567ffcb25e0fd94e74073. Marcos M
03:29 AM Feature #13520 (Closed): Improve Thermal Sensors Dashboard widget readability
https://github.com/pfsense/pfsense/pull/4616
The PR features a couple of changes.
1. improved upon the graph la...
GChuf 6

09/25/2022

09:06 PM Bug #13510: HA Proxy, HAProxy-devel Installation Failure
cant apply update until debugging is removed (performance hit) and it supports ZFS + UEFI upgrade path. I can always ... RED SKULL
01:02 PM Regression #12821: Intel e1000 driver (``em``, ``igb``) cannot pass packets tagged with VLAN ``0``
Steve Wheeler wrote in #note-24:
> As Kris wrote, there's no GUI switch for that. Yet. So you have to disable it at ...
Hayden Hill
07:49 AM Regression #12821: Intel e1000 driver (``em``, ``igb``) cannot pass packets tagged with VLAN ``0``
As Kris wrote, there's no GUI switch for that. Yet. So you have to disable it at the command line. For example:
<pre...
Steve Wheeler
09:23 AM Bug #13518 (Duplicate): Firewall Rules get duplicated <rule> <id></id><tracker>1664099550</tracker> after Copy Tracking ID
Marcos M
07:05 AM Bug #13518 (Duplicate): Firewall Rules get duplicated <rule> <id></id><tracker>1664099550</tracker> after Copy Tracking ID
Hi After Copy rules in firewall from one interface to another using the botton of Copy rules Set to a diferent interf... Marcelo Nogueira
08:21 AM Feature #12070 (Feedback): Support for VLAN ``0``
This works in 2.7 and 22.11 with the exception of Intel e1000 NICs where vlan hardware filtering must currently be di... Steve Wheeler
 

Also available in: Atom