Project

General

Profile

Statistics
| Branch: | Tag: | Revision:

# Date Author Comment
b7475a81 05/24/2011 08:13 PM Ermal LUÇI

Correct the interface alias generation. Wrong copy-pasto before.

77bd744e 05/24/2011 08:11 PM Ermal LUÇI

Correct the interface alias generation.

d1a44a5f 05/24/2011 08:05 PM Ermal LUÇI

Correct the interface alias generation.

7e107d2e 05/24/2011 08:01 PM Ermal LUÇI

Use remoteips here.

ee6d2b52 05/24/2011 07:35 PM Ermal LUÇI

Resolves #1243. Properly handle pppoe new format of config so correct rulesets are generated.

4e12754d 05/24/2011 05:39 PM Jim Pingle

Fix automatic and manual outbound NAT for PPTP. Fixes #954

bdb6bd30 05/24/2011 04:49 PM Jim Pingle

Fix syntax error/typo. Fixes #1372

7a18dfa4 05/23/2011 02:56 PM Luiz Gustavo S. Costa

Fixes #1444. Implements the same fix that issue ermal made in #1522 to the console menu

abcdca83 05/20/2011 04:54 PM Ermal LUÇI

Fixes #1386. Correct unlooping nested port aliases.

aa3c4866 05/20/2011 04:10 PM Ermal LUÇI

Correct code to use correct refernces for proxy settings set in Advanced->misc. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html

2a57a4d1 05/20/2011 03:45 PM Ermal LUÇI

Correct curl setting for setting a proxy username and password. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html

bac9941b 05/19/2011 05:34 PM Jim Pingle

Reject alias names that are too long. Fixes #1510

941baf1e 05/18/2011 10:49 PM Ermal LUÇI

When uninstalling packages try to remove even any rc files created by packages.

ce107ca5 05/18/2011 08:56 PM Jim Pingle

When converting 1.2.3 LB pools to 2.0 gateway groups, strip invalid characters from the group names and update any rules referencing the old name. Fixes #1515

ee7f1647 05/18/2011 08:35 PM Ermal LUÇI

Correct default code disabling! Ponty-hat: myself

77b70d6b 05/18/2011 07:43 PM Ermal LUÇI

Disable the default route switching code since its causing more issues than solving. It needs more work to get re-enabled.

7171b7b6 05/18/2011 04:53 PM Jim Pingle

Fix PPTP server radius settings upgrade from 1.2.3. Fixes #1292

7eea4407 05/17/2011 10:23 PM Ermal LUÇI

When uninstalling a service actually stop it first.

b27ade8e 05/17/2011 10:19 PM Ermal LUÇI

Test for null names passed to these functions as a safety precaution.

8bf2e9e5 05/17/2011 10:08 PM Ermal LUÇI

Test for null names passed to these functions as a safety precaution.

098820e2 05/17/2011 09:47 PM Ermal LUÇI

Ticket #1534. Check if a rc file exists before trying to run it. Also return if we execute a stop command through rc file to be consistent with the start_service function.

a7af5ddc 05/17/2011 06:04 PM Jim Pingle

Don't put an empty PSK into the file, and try to avoid extra whitespace to be safe.

24fa000b 05/16/2011 02:24 PM Warren Baker

Remove Total users graph this has become redundant and replaced with a cumulative result.

4450527f 05/14/2011 04:23 PM Evgeny Yurchenko

Fix small typo

57f2840e 05/14/2011 04:23 PM Evgeny Yurchenko

MAC prefix to vendor resolution at Status->Interfaces, Status->DHCP leases, Diagnostics->ARP table

92ca10c1 05/14/2011 04:16 PM Bill Marquette

Merge branch 'axscode-pfs'

23b774e0 05/14/2011 04:08 PM Bill Marquette

Merge branch 'master' into yakatz-ssl

2ad2758f 05/14/2011 03:48 PM Bill Marquette

Merge branch 'drcookie-he.net'

8ea77433 05/14/2011 02:39 PM Chris Wells

Added HE.net (dns.he.net) to the list of available dyndns services.

4e4de1d1 05/14/2011 01:59 PM Ermal LUÇI

Resolves #1529. Check if the file exists before opening it.

5e80046a 05/13/2011 07:24 PM Ermal LUÇI

Resolves #1524. USe the correct field from netstat parsed output.

60c5d29b 05/13/2011 01:45 PM Jim Pingle

Test for array before using variable as one.

2b094d21 05/12/2011 05:26 PM Jim Pingle

This function takes two parameters, fix PHP error. Reported at http://forum.pfsense.org/index.php/topic,36648.0.html

1031c9ea 05/12/2011 02:45 PM Jim Pingle

Make autocomplete on the login form optional.

a1bad141 05/11/2011 09:03 PM Jim Pingle

Fix IPsec descr trimming for rule labels. Ticket #1426

4bc2c676 05/11/2011 08:12 PM Jim Pingle

Test for array/size before foreach

728003c8 05/11/2011 08:10 PM Jim Pingle

Various CRL fixes, handle empty internal CRLs better.

9c04a8c0 05/07/2011 02:51 AM Chris Buechler

passive should always be on for mobile clients per racoon man page

6f5ed6f0 05/06/2011 07:36 PM Jim Pingle

Reorder where inetd gets started to after where the package rules are generated, so that a package can add a line to inetd.conf using that process.

a59831e7 05/05/2011 08:27 PM Jim Pingle

If we have deleted the last cert from the CRL, blank out the text.

5fd3cb92 05/05/2011 10:23 AM Ermal LUÇI

Ticket #CZH-831780. If gif(4) is part of a bridge and its mtu is smaller than 1500(ethernet standard) do not consider it in finding the smaller mtu because we have a patch to allow gif(4) be member of a bridge with smaller mtu. See https://rcs.pfsense.org/projects/pfsense-tools/repos/mainline/commits/67d3135722db4a3c911761ead5c881ccaef02c65 for details.

4a916dc8 05/04/2011 11:39 PM Warren Baker

Timeout is either a global option and/or a table stanza option. For now made it a global option.
For the future each pool should probably have a configurable timeout.

56da23dc 05/04/2011 09:31 PM Ermal LUÇI

Fixes #1394. Create a function get_itnerface_default_mtu and use it for resetting the mtu of a interface to default when needed. This adds the overhead of fetching the interface mtu and comparing with the default one every interface configuration run.

131f3a50 05/04/2011 05:58 PM Jim Pingle

Disable this log message, as it can be extremely spammy in the logs.

0130b756 05/03/2011 08:12 AM Warren Baker

Some more whitespace fixes.

327ef8eb 05/03/2011 08:07 AM Warren Baker

Use correct config variable and fix some whitespaces.

8c218e1d 05/02/2011 10:26 PM Ermal LUÇI

Give time to filterdns to exit gracefully and after that start a new process.

9b0ddd8c 05/02/2011 10:04 PM Ermal LUÇI

Resolves #1486. When sticky option is selected under advanced->misc honor it even in the relayd.conf setting.

0b1321e2 05/02/2011 08:57 PM Ermal LUÇI

Bring back the optimization on max-packets at pf(4) level now that the issues with daemon have been identified.

81e14406 05/02/2011 08:57 PM Ermal LUÇI

Bring back the optimization on max-packets at pf(4) level now that the issues with daemon have been identified.

2dc14ea2 05/02/2011 08:57 PM Ermal LUÇI

Now that layer7 daemon issues are resolved bring back this optimization.

Revert "Do not write ont rules anymore max-packets. This apparently was done by me in a previous commit, it helps with Ticket #636."

This reverts commit c8703797e5c24e6619ad14819fc62b3cb8a6ae3d.

3bae60be 05/02/2011 04:53 PM Ermal LUÇI

Add a newline to the igmpproxy config to resolve issues of it not parsing correctly the file. Reported-by: http://forum.pfsense.org/index.php/topic,36279.0.html

9cf46050 04/28/2011 09:21 PM Ermal LUÇI

Correct saving of qinq specified members and also correctly destroy parent vlan when deleteing the interfaces. Also take care of attaching to netgraph now that we detach by default.

a7ee5777 04/28/2011 08:44 PM Ermal LUÇI

Remove rndtest sysctl since the kernel module is not anymore part of our kernels. Leftover noticed by: Jim

2d14181b 04/28/2011 08:31 PM Ermal LUÇI

Remove rndtest sysctl since the kernel module is not anymore part of our kernels.

65531b4b 04/28/2011 07:33 PM Ermal LUÇI

Make sure that openvpn tunnels are not impacted by hitting 'Save' on the Interface->Configuration page when assigned.

d1ae9705 04/28/2011 07:29 PM Ermal LUÇI

Use the needed variable here so hitting 'Save' from Interface->Configuration section does not leave the assigned gif interfaces without tunnel addresses.

d7f1891b 04/28/2011 07:09 PM Ermal LUÇI

Some configurations might have gre/gif on top of carp. Make sure to handle this configurations and to bring the tunnel correctly up.

0b9d02f3 04/26/2011 02:18 PM Jim Pingle

Don't just blindly echo to the ntpd.log, it's a clog file and that will break it.

bce14123 04/22/2011 06:28 PM Ermal LUÇI

Actually call interfaces_carp_setup after the carp interfaces are created so carp traffic can only flow after we have all vips up and running. This prevents premption more early than necessary. Ticket #1432.

2d4003aa 04/21/2011 09:39 PM Ermal LUÇI

If the bandwidth value is coming from radius scale it up to the requested Kbit/s unit.

a29aeb47 04/21/2011 06:34 PM Yehuda Katz

Merge branch 'master' of http://gitweb.pfsense.org/pfsense/mainline.git

a828210b 04/21/2011 06:29 PM Yehuda Katz

checking moduli of ssl csr request and response

1f0c76cf 04/21/2011 05:10 PM Jim Pingle

Fix PPPoE upgrade, the <pppoe> tag is considered an array these days and the upgrade code wasn't treating it properly, accessing it directly instead of using the first entry ([0]). Fixes #1439 - PPPoE credentials upgrade properly now.

0cc5ab42 04/21/2011 01:59 PM Jim Pingle

Confirmed working fix for ticket #1417 - with this change I have two-way connectivity on Site-to-Site (SSL/TLS) with iroutes.

bd24573b 04/19/2011 11:59 PM Jim Pingle

Backing out changes from ticket #1417, it was not a valid openvpn config that the user was trying to make.

673ee7b1 04/19/2011 09:06 PM Scott Ullrich

Harden SSL settings a bit. Verified OK with Chris Buechler and Bill Marquette

6c9cf466 04/18/2011 10:27 PM Jim Pingle

Slightly different fix for #1417 that doesn't mess up other parameters needed by p2p_tls

359f6307 04/18/2011 06:56 PM Ermal LUÇI

Block instead of allowing proto carp/pfsync during bootup since this may cause issues. Ticket #1432

42c07003 04/18/2011 06:25 PM Ermal LUÇI

Add an option under advanced->misc to specify a proxy for retreiving pfsense package info or downloading packages.

ca90133b 04/14/2011 08:50 PM Jim Pingle

Save a little space on the interface list for console assignment.

c8cc0c1c 04/13/2011 07:52 AM Seth Mos

Add missing fields for l2tp to define dns and wins servers

a93020d5 04/12/2011 10:18 PM Scott Ullrich

Do not send growl notices twice

2632934e 04/12/2011 10:08 PM Scott Ullrich

Remove blank trailing c/r.

10c3d4c0 04/12/2011 10:08 PM Scott Ullrich

Notify via smtp as well as growl

cd11a142 04/12/2011 05:52 PM Jim Pingle

Drop the ntpdate sync in favor of using ntpd -s, which should have the same net effect without needing the shell script that has been prone to hanging.

127eb8e0 04/11/2011 08:58 PM Jim Pingle

Add a toggle under System > Advanced on the misc tab to enable/disable debug mode for racoon.

fbfd675a 04/08/2011 12:59 PM Jim Pingle

Add an IPsec xauth permission. Try to use the nologin shell first (just unlock the account). Ticket #1202

02d99511 04/08/2011 12:28 PM Jim Pingle

Putting client-config-dir in the config is valid also for p2p_tls servers. Fixes #1417.

9a36dc9d 04/06/2011 06:22 PM Ermal LUÇI

Resolves #1391. Bring back VPN auto rule disable advanced setting.

ab75b4ee 04/06/2011 05:36 PM Jim Pingle

CRL is read in as an array now, so even in the imported config it will appear to be an array even though it can only have one value. Fixes #1358

6177fd92 04/06/2011 05:14 PM Jim Pingle

Fixup text.

557300a7 04/06/2011 04:55 PM Jim Pingle

Actually re-parse the config if a valid config was not written. (Should help stop installs from blowing up on failed config upgrades). Save the bad config for inspection, and print a message to the console about what was done.

4c613f84 04/06/2011 02:59 PM Ermal LUÇI

Correct error message for gateways to report down when the gateway is down and not high latency.

19d91466 04/06/2011 02:58 PM Ermal LUÇI

Another sweep at keeping the default route always present when the default setup route is marked as down. This now adds checks for configuration where a defaultgw is not specified by the user but deduced automatically.

262595f0 04/05/2011 07:55 PM Ermal LUÇI

Unbreak inetd.conf generation to avoid entries containing Array entries. This gixes nat reflection and a spamming of the system with nc processes with wrong parameters.

5b64e336 04/05/2011 03:16 PM Jim Pingle

Fix variable name

1d60ed9b 04/04/2011 11:09 AM Ermal LUÇI

Try to always keep pfSense with a default gateway to avoid errors for service running from pfSense itself. Previously PBR should be configured for such services. While PBR is a better fix this at least keeps users from complaining in simple setups. Reported by many.

f206afb5 04/04/2011 10:32 AM Ermal LUÇI

On interface ip change reload even igmpproxy. Reported-by: http://forum.pfsense.org/index.php/topic,34372.0.html

056df2d9 04/04/2011 10:24 AM Ermal LUÇI

Add -a to include all updaterrd.sh scripts running and also remove top killing since its not used anymore in stat gathering.

d7f4030a 04/01/2011 09:51 PM Ermal LUÇI

Fix indent.

4936ff53 04/01/2011 06:11 PM Jim Pingle

Switch back to dev_mode so existing configs aren't broken by the other changes.

bc788561 03/31/2011 05:52 PM Ermal LUÇI

Correct the conditional testing.

57c448d0 03/31/2011 05:45 PM Ermal LUÇI

Do not show the default queue selection for a queue that has child queues

d1bd01ff 03/31/2011 05:39 PM Ermal LUÇI

Prevent non-numeric chars from being inputed on bandwidth field.

857a4a79 03/31/2011 12:36 AM Jim Pingle

Use a different loop counter variable to avoid a name collision

56a8bbf3 03/30/2011 10:21 PM Ermal LUÇI

Test for value present before using.

d5b45feb 03/30/2011 10:13 PM Ermal LUÇI

Test for value present before using.

ccf46756 03/30/2011 09:49 PM Ermal LUÇI

Unset xmlrpcauth and not the first member of the array.

cb0e3f8e 03/30/2011 08:58 PM Ermal LUÇI

Check for function existence before calling it.