Project

General

Profile

Statistics
| Branch: | Tag: | Revision:

# Date Author Comment
f451ea09 06/02/2011 04:47 PM Jim Pingle

Show how much data has passed on an SAD entry.

2e88102d 06/01/2011 09:39 PM Jim Pingle

Disable this until it can be properly fixed.

f4645d7f 06/01/2011 02:03 PM Ermal LUÇI

Add tunable, by default disabled, to enable the default gateway switching feature when the default one 'disappears'.

3dbceb92 05/30/2011 04:02 PM Scott Ullrich

Include .inc files for plugin system

d97ff036 05/30/2011 01:11 PM Ermal LUÇI

Prevent races on resovlconf generation as well by adding a lock.

f40a03a4 05/27/2011 04:02 PM Jim Pingle

Only add pppoe to the interfaces list if it both has an entry and is in server mode (i.e. not disabled.)

685c9776 05/27/2011 04:02 PM Jim Pingle

Some extra protection against putting empty values into the ruleset.

a1b86994 05/27/2011 03:32 PM Ermal LUÇI

Ticket #1534. Try to stop packages during reboot of system.

93b8df2a 05/27/2011 10:46 AM Ermal LUÇI

Increase timeout to 2 minutes. Ticket #1545.

71070cc5 05/27/2011 10:45 AM Ermal LUÇI

Ticket #1545. Lock each dnsHost to be updated to prevent running two instances in parallell.

224ddbad 05/27/2011 08:24 AM Ermal LUÇI

Silence the route changing since it fills the logs with not needed info.

adcf909a 05/26/2011 07:39 PM Ermal LUÇI

Just use the long reference here instead of creating potential dangerous reference.

e4a8ed97 05/25/2011 11:51 PM Scott Ullrich

Add function header

d65962a7 05/25/2011 11:43 PM Scott Ullrich

Adding a new hook system for firewall nat edit and firewall rules edit page.
Basically if the directory exists it will suck in the files to extend these pags.

/usr/local/pkg/firewall_nat/input_validation
/usr/local/pkg/firewall_nat/pre_write_config
/usr/local/pkg/firewall_nat/htmlphpearly...

838e4eb8 05/25/2011 10:43 PM Warren Baker

Rather make use of $global variable for RRD path.

474f36d1 05/25/2011 10:02 PM Scott Ullrich
  • Add is_ipaddr_configured() so that people do not need to reinvent the wheel for this task
  • Check to make sure the administrator is not entering the IP address of the same host preventing a issue where the firewall will sync the voucher database to itself and cause the webConfigurator to crash.
5c723d9f 05/25/2011 10:00 PM Warren Baker

Remove out-dated RRD file as it will cause broken images to appear on RRD graphs page.

05771a24 05/25/2011 08:28 PM Ermal LUÇI

Provide a voucher_expire function so that voucher can be expired through a POST.

dceff62e 05/25/2011 05:08 PM Ermal LUÇI

Put some debug info during dyndns update under debug conditionals.

193ee786 05/25/2011 04:51 PM Ermal LUÇI

Actually add more error checking and do not schedule a scan if it is not possible to retreive the wan ip address.

dd575ea4 05/25/2011 04:41 PM Ermal LUÇI

Improve some code and check return value from _checkIP.

7788c76a 05/25/2011 04:29 PM Jim Pingle

Don't overwrite the $target variable. Fixes #1415

c749ef62 05/25/2011 03:38 PM Ermal LUÇI

Check that the returned ip is an ip_address and not blindly trust the returned information.

f0e80b72 05/25/2011 01:35 PM Jim Pingle

Correct dhcpd statement for unknown-clients. Fixes #1555

f6f1c847 05/25/2011 11:02 AM Ermal LUÇI

Update some code to be more readble and more compliant to php5

b7475a81 05/24/2011 08:13 PM Ermal LUÇI

Correct the interface alias generation. Wrong copy-pasto before.

77bd744e 05/24/2011 08:11 PM Ermal LUÇI

Correct the interface alias generation.

d1a44a5f 05/24/2011 08:05 PM Ermal LUÇI

Correct the interface alias generation.

7e107d2e 05/24/2011 08:01 PM Ermal LUÇI

Use remoteips here.

ee6d2b52 05/24/2011 07:35 PM Ermal LUÇI

Resolves #1243. Properly handle pppoe new format of config so correct rulesets are generated.

4e12754d 05/24/2011 05:39 PM Jim Pingle

Fix automatic and manual outbound NAT for PPTP. Fixes #954

bdb6bd30 05/24/2011 04:49 PM Jim Pingle

Fix syntax error/typo. Fixes #1372

7a18dfa4 05/23/2011 02:56 PM Luiz Gustavo S. Costa

Fixes #1444. Implements the same fix that issue ermal made in #1522 to the console menu

abcdca83 05/20/2011 04:54 PM Ermal LUÇI

Fixes #1386. Correct unlooping nested port aliases.

aa3c4866 05/20/2011 04:10 PM Ermal LUÇI

Correct code to use correct refernces for proxy settings set in Advanced->misc. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html

2a57a4d1 05/20/2011 03:45 PM Ermal LUÇI

Correct curl setting for setting a proxy username and password. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html

bac9941b 05/19/2011 05:34 PM Jim Pingle

Reject alias names that are too long. Fixes #1510

941baf1e 05/18/2011 10:49 PM Ermal LUÇI

When uninstalling packages try to remove even any rc files created by packages.

ce107ca5 05/18/2011 08:56 PM Jim Pingle

When converting 1.2.3 LB pools to 2.0 gateway groups, strip invalid characters from the group names and update any rules referencing the old name. Fixes #1515

ee7f1647 05/18/2011 08:35 PM Ermal LUÇI

Correct default code disabling! Ponty-hat: myself

77b70d6b 05/18/2011 07:43 PM Ermal LUÇI

Disable the default route switching code since its causing more issues than solving. It needs more work to get re-enabled.

7171b7b6 05/18/2011 04:53 PM Jim Pingle

Fix PPTP server radius settings upgrade from 1.2.3. Fixes #1292

7eea4407 05/17/2011 10:23 PM Ermal LUÇI

When uninstalling a service actually stop it first.

b27ade8e 05/17/2011 10:19 PM Ermal LUÇI

Test for null names passed to these functions as a safety precaution.

8bf2e9e5 05/17/2011 10:08 PM Ermal LUÇI

Test for null names passed to these functions as a safety precaution.

098820e2 05/17/2011 09:47 PM Ermal LUÇI

Ticket #1534. Check if a rc file exists before trying to run it. Also return if we execute a stop command through rc file to be consistent with the start_service function.

a7af5ddc 05/17/2011 06:04 PM Jim Pingle

Don't put an empty PSK into the file, and try to avoid extra whitespace to be safe.

24fa000b 05/16/2011 02:24 PM Warren Baker

Remove Total users graph this has become redundant and replaced with a cumulative result.

4450527f 05/14/2011 04:23 PM Evgeny Yurchenko

Fix small typo

57f2840e 05/14/2011 04:23 PM Evgeny Yurchenko

MAC prefix to vendor resolution at Status->Interfaces, Status->DHCP leases, Diagnostics->ARP table

92ca10c1 05/14/2011 04:16 PM Bill Marquette

Merge branch 'axscode-pfs'

23b774e0 05/14/2011 04:08 PM Bill Marquette

Merge branch 'master' into yakatz-ssl

2ad2758f 05/14/2011 03:48 PM Bill Marquette

Merge branch 'drcookie-he.net'

8ea77433 05/14/2011 02:39 PM Chris Wells

Added HE.net (dns.he.net) to the list of available dyndns services.

4e4de1d1 05/14/2011 01:59 PM Ermal LUÇI

Resolves #1529. Check if the file exists before opening it.

5e80046a 05/13/2011 07:24 PM Ermal LUÇI

Resolves #1524. USe the correct field from netstat parsed output.

60c5d29b 05/13/2011 01:45 PM Jim Pingle

Test for array before using variable as one.

2b094d21 05/12/2011 05:26 PM Jim Pingle

This function takes two parameters, fix PHP error. Reported at http://forum.pfsense.org/index.php/topic,36648.0.html

1031c9ea 05/12/2011 02:45 PM Jim Pingle

Make autocomplete on the login form optional.

a1bad141 05/11/2011 09:03 PM Jim Pingle

Fix IPsec descr trimming for rule labels. Ticket #1426

4bc2c676 05/11/2011 08:12 PM Jim Pingle

Test for array/size before foreach

728003c8 05/11/2011 08:10 PM Jim Pingle

Various CRL fixes, handle empty internal CRLs better.

9c04a8c0 05/07/2011 02:51 AM Chris Buechler

passive should always be on for mobile clients per racoon man page

6f5ed6f0 05/06/2011 07:36 PM Jim Pingle

Reorder where inetd gets started to after where the package rules are generated, so that a package can add a line to inetd.conf using that process.

a59831e7 05/05/2011 08:27 PM Jim Pingle

If we have deleted the last cert from the CRL, blank out the text.

5fd3cb92 05/05/2011 10:23 AM Ermal LUÇI

Ticket #CZH-831780. If gif(4) is part of a bridge and its mtu is smaller than 1500(ethernet standard) do not consider it in finding the smaller mtu because we have a patch to allow gif(4) be member of a bridge with smaller mtu. See https://rcs.pfsense.org/projects/pfsense-tools/repos/mainline/commits/67d3135722db4a3c911761ead5c881ccaef02c65 for details.

4a916dc8 05/04/2011 11:39 PM Warren Baker

Timeout is either a global option and/or a table stanza option. For now made it a global option.
For the future each pool should probably have a configurable timeout.

56da23dc 05/04/2011 09:31 PM Ermal LUÇI

Fixes #1394. Create a function get_itnerface_default_mtu and use it for resetting the mtu of a interface to default when needed. This adds the overhead of fetching the interface mtu and comparing with the default one every interface configuration run.

131f3a50 05/04/2011 05:58 PM Jim Pingle

Disable this log message, as it can be extremely spammy in the logs.

0130b756 05/03/2011 08:12 AM Warren Baker

Some more whitespace fixes.

327ef8eb 05/03/2011 08:07 AM Warren Baker

Use correct config variable and fix some whitespaces.

8c218e1d 05/02/2011 10:26 PM Ermal LUÇI

Give time to filterdns to exit gracefully and after that start a new process.

9b0ddd8c 05/02/2011 10:04 PM Ermal LUÇI

Resolves #1486. When sticky option is selected under advanced->misc honor it even in the relayd.conf setting.

0b1321e2 05/02/2011 08:57 PM Ermal LUÇI

Bring back the optimization on max-packets at pf(4) level now that the issues with daemon have been identified.

81e14406 05/02/2011 08:57 PM Ermal LUÇI

Bring back the optimization on max-packets at pf(4) level now that the issues with daemon have been identified.

2dc14ea2 05/02/2011 08:57 PM Ermal LUÇI

Now that layer7 daemon issues are resolved bring back this optimization.

Revert "Do not write ont rules anymore max-packets. This apparently was done by me in a previous commit, it helps with Ticket #636."

This reverts commit c8703797e5c24e6619ad14819fc62b3cb8a6ae3d.

3bae60be 05/02/2011 04:53 PM Ermal LUÇI

Add a newline to the igmpproxy config to resolve issues of it not parsing correctly the file. Reported-by: http://forum.pfsense.org/index.php/topic,36279.0.html

9cf46050 04/28/2011 09:21 PM Ermal LUÇI

Correct saving of qinq specified members and also correctly destroy parent vlan when deleteing the interfaces. Also take care of attaching to netgraph now that we detach by default.

a7ee5777 04/28/2011 08:44 PM Ermal LUÇI

Remove rndtest sysctl since the kernel module is not anymore part of our kernels. Leftover noticed by: Jim

2d14181b 04/28/2011 08:31 PM Ermal LUÇI

Remove rndtest sysctl since the kernel module is not anymore part of our kernels.

65531b4b 04/28/2011 07:33 PM Ermal LUÇI

Make sure that openvpn tunnels are not impacted by hitting 'Save' on the Interface->Configuration page when assigned.

d1ae9705 04/28/2011 07:29 PM Ermal LUÇI

Use the needed variable here so hitting 'Save' from Interface->Configuration section does not leave the assigned gif interfaces without tunnel addresses.

d7f1891b 04/28/2011 07:09 PM Ermal LUÇI

Some configurations might have gre/gif on top of carp. Make sure to handle this configurations and to bring the tunnel correctly up.

0b9d02f3 04/26/2011 02:18 PM Jim Pingle

Don't just blindly echo to the ntpd.log, it's a clog file and that will break it.

bce14123 04/22/2011 06:28 PM Ermal LUÇI

Actually call interfaces_carp_setup after the carp interfaces are created so carp traffic can only flow after we have all vips up and running. This prevents premption more early than necessary. Ticket #1432.

2d4003aa 04/21/2011 09:39 PM Ermal LUÇI

If the bandwidth value is coming from radius scale it up to the requested Kbit/s unit.

a29aeb47 04/21/2011 06:34 PM Yehuda Katz

Merge branch 'master' of http://gitweb.pfsense.org/pfsense/mainline.git

a828210b 04/21/2011 06:29 PM Yehuda Katz

checking moduli of ssl csr request and response

1f0c76cf 04/21/2011 05:10 PM Jim Pingle

Fix PPPoE upgrade, the <pppoe> tag is considered an array these days and the upgrade code wasn't treating it properly, accessing it directly instead of using the first entry ([0]). Fixes #1439 - PPPoE credentials upgrade properly now.

0cc5ab42 04/21/2011 01:59 PM Jim Pingle

Confirmed working fix for ticket #1417 - with this change I have two-way connectivity on Site-to-Site (SSL/TLS) with iroutes.

bd24573b 04/19/2011 11:59 PM Jim Pingle

Backing out changes from ticket #1417, it was not a valid openvpn config that the user was trying to make.

673ee7b1 04/19/2011 09:06 PM Scott Ullrich

Harden SSL settings a bit. Verified OK with Chris Buechler and Bill Marquette

6c9cf466 04/18/2011 10:27 PM Jim Pingle

Slightly different fix for #1417 that doesn't mess up other parameters needed by p2p_tls

359f6307 04/18/2011 06:56 PM Ermal LUÇI

Block instead of allowing proto carp/pfsync during bootup since this may cause issues. Ticket #1432

42c07003 04/18/2011 06:25 PM Ermal LUÇI

Add an option under advanced->misc to specify a proxy for retreiving pfsense package info or downloading packages.

ca90133b 04/14/2011 08:50 PM Jim Pingle

Save a little space on the interface list for console assignment.

c8cc0c1c 04/13/2011 07:52 AM Seth Mos

Add missing fields for l2tp to define dns and wins servers

a93020d5 04/12/2011 10:18 PM Scott Ullrich

Do not send growl notices twice

2632934e 04/12/2011 10:08 PM Scott Ullrich

Remove blank trailing c/r.

10c3d4c0 04/12/2011 10:08 PM Scott Ullrich

Notify via smtp as well as growl