Project

General

Profile

Statistics
| Branch: | Tag: | Revision:

# Date Author Comment
ee1b024e 08/02/2007 11:43 AM Martin Fuchs

- correct behaviour of dhcpd.conf creation
- enable root-path

dc3d25d2 08/02/2007 08:47 AM Martin Fuchs

DHCP remove duplicate option domain-name ind dhcpd.conf

1ebf937f 08/02/2007 08:31 AM Martin Fuchs

DHCP: domainname / HEAD > RELENG_1

6c23757b 08/01/2007 08:19 PM Martin Fuchs

Add TFTP and LDAP server options to dhcpd

9c55515a 08/01/2007 06:44 PM Bill Marquette

Users that have specific page access can now login

431484c8 07/23/2007 05:26 PM Ryan Wagoner

-move upnp_action to services.inc
-make sure to clear rules when stopping miniupnpd
-fix status_upnp and status_services pages so they use upnp_action and not the rcfile

b047196e 07/23/2007 03:19 AM Scott Dale

remove previous commit, moving function to index.php to support package installation

c955b315 07/23/2007 03:06 AM Scott Dale

add tab for widgets function

69487053 07/21/2007 09:47 PM Seth Mos

Add rrd graph settings page.
Bump config out of line with 1.2
Add rrd config upgrade code.

7828fd5b 07/16/2007 07:56 PM Seth Mos

Keep longer archives, allow for a 4 year span

70baaf2f 07/15/2007 09:16 PM Seth Mos

Axe unused archives, correct average times.

77109a5f 07/09/2007 12:52 PM Seth Mos

Commit missed checkin, supress debug message

d852c526 07/08/2007 09:06 PM Seth Mos

Unbreak IPSEC, correct pathnames

7a5e1563 07/07/2007 03:42 AM Scott Ullrich

CAPS kills. Literally. Do not set the description to upper case LAN when we are looking for lower case.

efb9942f 07/07/2007 03:20 AM Scott Ullrich

Kill off old pftpx processes correctly

8a58063d 07/06/2007 06:46 PM Scott Ullrich

Improve the load balancing pool edit screen.

Submitted-by: Chris Daniel

8e537b3c 07/05/2007 10:04 PM Scott Ullrich

Use $lanif for lan anti-lockout rule

f2d7bc11 07/05/2007 08:40 PM Scott Ullrich

Escape $lan correctly

6f82a11f 07/05/2007 08:38 PM Scott Ullrich

Do not use $iface as source or destination as it may be a member of a bridge without an ip address and pfctl will complain.

7f37926c 07/05/2007 07:00 PM Scott Ullrich

Since we are matching traffic on incoming interface, do not link wan or lan to bridgeX

2b6e777d 07/05/2007 06:51 PM Scott Ullrich

Only pass anti-lockout traffic on $lan

b9d8cc51 07/04/2007 12:11 PM Seth Mos

Fix loading and reloading config for IPSEC.
MFC: Possible candidate, works for seth. Needs test.

be41c193 07/04/2007 12:09 PM Seth Mos

Supress debug logging

b770450e 07/01/2007 07:59 PM Scott Ullrich

Cleanup IPSEC rules. We where blocking port = 500 UDP on CARP interfaces, for one.

5e4b6e35 07/01/2007 07:24 PM Scott Ullrich

Be more verbose on logging so that we can correctly deterimine protocol, etc.

Ticket #1348

d08299cc 06/30/2007 10:25 PM Scott Ullrich

$config needs to be global

6e35cf3f 06/30/2007 10:04 PM Scott Ullrich

unbreak policy routing rules network access to LAN IP

Ticket #1320

6f20377b 06/30/2007 09:48 PM Scott Ullrich

Correctly move upnp to base since LiveCD cannot write files to /usr/local/etc or /usr/local/etc/rc.d/

Ticket #1342

d739dbe9 06/30/2007 09:20 PM Scott Ullrich

Kill trailing space

c876662c 06/30/2007 09:19 PM Scott Ullrich

Remove openvpn csc file when option is disabled.

Ticket #1339

66cc67c6 06/30/2007 08:57 PM Scott Ullrich

Add ASN1DN identities support to IPSEC.

Subbmitted-by: Nic Bernstein <nic_AT_onlight.com>

d584a897 06/30/2007 08:38 PM Scott Ullrich

Do not antispoof on wan when it is bridged.

Ticket #1352

8cf74634 06/29/2007 04:22 PM Scott Ullrich

Move CARP and PFSYNC allow traffic before USER_RULES section. If a person has a restrictive ruleset then it is possible to disallow traffic.

8fc63cd8 06/24/2007 09:03 PM Martin Fuchs

Add Type-Of-Service-passthru for server and client

2cd5c340 06/21/2007 01:07 PM Timo Boettcher

remove part of solution of problem solved elsewhere

cd72ded3 06/21/2007 01:01 PM Timo Boettcher

Make OpenVPN usable in status_service.php

10f4ac6c 06/19/2007 08:23 PM Scott Ullrich

Default to nat-reflection inactivity of 2000 which is roughtly 33 minutes.

b35521f7 06/18/2007 05:24 AM Scott Ullrich

Correct location of use_rrd_gateway.

251ca022 06/09/2007 09:02 PM Scott Ullrich

Make sure we are writable for /etc/crontab

1fadb31d 06/09/2007 08:54 PM Scott Ullrich

Unbreak captive portal images.

6d031071 06/07/2007 06:11 PM Martin Fuchs

correct code formatting

54816afd 06/07/2007 04:28 PM Martin Fuchs

Add OpenVPN CSC-DHCP Options (override per Client), add TLS-Authentication, add connection-limit for server

8f262ce2 06/04/2007 10:47 PM Scott Ullrich

Restore previous PPTP changes.

50db0bd7 06/03/2007 09:00 PM Scott Ullrich

With the tweaks that have occured today fastcgi can now run again on 64 megabyte machines.

d0a371bf 06/03/2007 06:25 PM Daniel Stefan Haischt
  • fix: background on login screen
9bda2241 06/02/2007 10:20 PM Scott Ullrich

Close STDIN ($fp) handle before returning back to shell. Major doh's.

fc041d55 06/02/2007 09:17 PM Scott Ullrich

use killall

4614df6b 06/02/2007 09:10 PM Scott Ullrich
  • Flush SPD's on reload
  • Kilall -HUP racoon if its already running since racoonctl is brokie brokie
2eae7fc9 06/02/2007 08:51 PM Scott Ullrich
  • Remove path from racoon grep
  • Remove [r] from racoon and simply grep for racoon
c9b0942d 06/02/2007 08:49 PM Scott Ullrich

Correct ps location

bcc49d35 05/31/2007 04:33 PM Scott Ullrich

Instead of skipping DHCP server on LAN in a bridged environment, simply log an error letting the operator know that DHCP Server is enabled on LAN in a bridging environment.

06110a2a 05/30/2007 01:22 AM Scott Ullrich

Do not check for disabled nat reflection before installing tftp helper.

a38bf245 05/30/2007 01:14 AM Scott Ullrich

NITPICK, line up tabs.

6bd75cda 05/30/2007 01:13 AM Scott Ullrich

Fix minor variable mismatches.

e93c8467 05/30/2007 01:03 AM Scott Ullrich

Backport tftp proxy helper

b0b774b4 05/29/2007 11:13 PM Scott Ullrich

Use keep state instead of modulate state

9fb1eaf5 05/29/2007 10:23 PM Scott Ullrich

Initialize variable to false.

46ee3232 05/29/2007 10:21 PM Scott Ullrich

Really only allow adavanced tunables when some kind of state tracking is enabled.

be4237b0 05/29/2007 10:07 PM Scott Ullrich

Only allow adavanced tunables when some kind of state tracking is enabled.

ea089c29 05/29/2007 09:49 PM Scott Ullrich

Pass gre in any direction.

97a8ffd5 05/27/2007 05:13 PM Scott Ullrich

Update static routes on filter reload

Ticket #1330

a704b650 05/27/2007 05:00 PM Scott Ullrich

Unbreak local queries that where broken in Ticket #1190 until we hear back from author of the patch.

cbe2ebe0 05/27/2007 12:25 AM Scott Ullrich

Remove trailing space / cr

7ee2fccf 05/26/2007 11:41 PM Scott Ullrich

Correct descriptions.

2f0c10b3 05/26/2007 10:51 PM Scott Ullrich

Upgrade configuration correctly.

e5b987f0 05/26/2007 10:41 PM Scott Ullrich

Upgrade configuration correctly.

08472116 05/26/2007 10:37 PM Scott Ullrich

Upgrade to config.xml sysctl's. Bump configuration version to 3.1.

6df9d7e3 05/26/2007 10:00 PM Scott Ullrich

Add system tunables area which allows the user to fine control sysctl's.

fe19ac6d 05/23/2007 10:35 PM Scott Ullrich
  • Add functions required for dashboard
  • Killing trailing space
d0556634 05/21/2007 05:20 PM Scott Ullrich

Don't check carp settings, check if vip addresses exist.

cf79d727 05/21/2007 12:15 AM Scott Ullrich

usleep(1000); between down and delete. this appears to fix the carp issues.

4587cb54 05/20/2007 11:40 PM Scott Ullrich

Do not destroy carp interface which can lead to a panic. This has been tested and works just fine after deleting and adding new carp interfaces.

36db0082 05/20/2007 04:51 PM Seth Mos

Commit forgotten vpn_ipsec_force_reload()

b42ad736 05/14/2007 11:56 PM Scott Ullrich

Use pfSync SYNCPEER directive if defined.

Ticket #1317

5571432d 05/11/2007 07:00 PM Scott Ullrich

Scrub the absolute minimum amount for PPPoE

b9597b5b 05/11/2007 05:24 PM Scott Ullrich

when pppoe aliases on pppoe server are made they make aliases for ng0 to whatever. but ng1 should be the start for pppoe-server ng0 should be reserved for pppoe client this problem could effect pptp server as well.

Ticket #1308

b8d19308 05/11/2007 02:31 PM Seth Mos

Correct style sheet class.

842294f3 05/11/2007 07:12 AM Seth Mos

Do not flush SPA and SPD before starting. It upsets racoon.

8797aa32 05/10/2007 05:16 PM Scott Ullrich

$config needs to be a global item

6fb65ecd 05/10/2007 04:23 PM Scott Ullrich

Honor sticky-address setting from system->advanced for outgoing load balancing items if it is enabled.

7528fc09 05/10/2007 03:56 PM Scott Ullrich

Patch from Martin to fix http://forum.pfsense.org/index.php/topic,4773.0.html

2f1e0311 05/10/2007 08:01 AM Seth Mos

Rework stop and start logic. If we are already alive, reload instead of stop and start.
Tested by Seth.

9c22a703 05/09/2007 05:01 PM Seth Mos

Update XML_RPC to 1.5.1
This fixes sync issues on configs > 500KB

9534ea8b 05/09/2007 04:50 PM Scott Ullrich

Port load balancer sticky address option

91adc5c1 05/08/2007 04:20 PM Scott Ullrich

Sometimes people have local domains which they do not want forwarded to upstream servers. This is accomodated by using server options without the server IP address. To make things clearer local is a synonym for server. For example the option local=/localnet/ ensures that any domain name query which ends in .localnet will be answered if possible from /etc/hosts or DHCP, but never sent to an upstream server....

ad171999 05/08/2007 02:47 PM Seth Mos

Add NTP server field to dhcp config.
From: Alexander Schaber

fe80446f 05/07/2007 05:23 PM Seth Mos

Add is_wan_interface_up($interface)
Can be optional interface as well.

f9927473 05/07/2007 05:02 PM Scott Ullrich

Add openvpn server tos and dhcp server options.

Submitted-by: Martin Fuchs

3abc1918 05/07/2007 10:14 AM Seth Mos

Trigger on right opt interface

1db766df 05/07/2007 02:21 AM Scott Dale

Widget base. Note: changes to widgets are not saved yet.

aacd6b3d 05/06/2007 10:12 PM Seth Mos

get_interface_gateway() does not understand pppoe

017ceb5e 05/06/2007 09:43 PM Seth Mos

Return the virtual interface for PPPoE

1f1958ba 05/05/2007 08:23 PM Seth Mos

Do not create nat on rules for opt interfaces with a gateway.

c8c416db 05/04/2007 04:48 PM Scott Ullrich

further changes to 1.3 for pppoe server and pptp server. added to gui add radius acct and auth ports add acct update in seconds option for external radius servers add backup radius server changes

rearranges xml for better use moved radius specific features inside tags added options for additional server above 2 miner bug fixes

Ticket #1306

53f32329 05/03/2007 05:21 AM Scott Ullrich

Add hidden command to disable authoritative mode (dhcp server).

To utilize do something like this in php pfSense shell:

$config['dhcpd']['optx']['disableauthoritative'] = true;
write_config();

5a6f3ca0 05/02/2007 10:36 PM Scott Ullrich
  • Do not allow duplicate entries by default in add_text_to_file()
  • Add option which allows duplicates

Submitted-by: Uranellus via IRC

d3819fcb 05/02/2007 09:46 PM Scott Ullrich

Import smtp.inc which allows sending e-mails from PHP. This will be used later down the road for the automatic logging/emailing system. This will also allow pfSense developers to begin e-mail equipping portions of the system as well.

0f7a319b 05/02/2007 04:00 PM Scott Ullrich

Install frickin pptp proxy rules correctly.

d87fc50b 05/02/2007 12:42 PM Seth Mos

Do not allow - in aliases. This breaks port aliases.
tables are fine with the - and the _. Ports only work with _.

4cc6345e 05/02/2007 12:08 AM Scott Ullrich
  • Do not close a buffer that has failed
  • Automatically retry failed connection