Fix full path to executable files. Issue #11941
Static IPv6 route delete fix. Issue #12728
Update the Copyright year of the files owned by Rubicon/Netgate.
Static routes handling update. Fixes #11599 #11895 #7547
Allow to select 3 (8s) NTP min poll value. Implements #9439
DNS check improvements for fw check and ACB. Fixes #12141
NTP Peer mode. Implements #11496
DNS check optimization for NDP diag page. Fixes #11512
DNS check optimization. Fixes #11512
Rename a few missing Netgate devices.
Super Micro XG-1537 -> Super Micro 1537Super Micro XG-1541 -> Super Micro 1541
Fix a typo in the Netgate 5100 name.
Rename the Netgate devices.
XG-15xx -> 15xxSG-5100 -> Netgate-5100
Do not delete disabled routes. Fixes #10706
NTP Server SHA256 authentification support. Implements #12213
Correct syntax. Fixes #12229
Improve NTP serial port validation. Fixes #12191
Validate gpsport. Fixes #12191
This appears to be causing unintended fallout. Reverting for now.
Revert "Delete static routes on gateway down. Fixes #11296"
This reverts commit 3fca57f8fae3733845c90338943c418bb77e68b7.
Add QEMU and KVM detection to system_identify_specific_platform()
Do not delete disabled routes on boot. Fixes #3709
Fix removing automatic DNS server route. Issue #11578
Delete static routes on gateway down. Fixes #11296
Add option to set IPsec filtering mode. Implements #11395
User can choose between filtering enc (tunnel+VTI) or filtering onassigned VTI interface tabs (VTI only, drops all tunnel mode traffic).See https://redmine.pfsense.org/issues/11395 for details.
Identify minnowboard with BIOS 1.0
Intel has changed MBT identification
Obtained from: https://github.com/pfsense/pfsense/pull/4495
Update the Copyright year.
A subsequent commit will deal with .po's.
Add product_label global variable
Introduce product_label global variable, by default with same value ofproduct_name. The idea is to make it easier for rebranded products tochange the name on all visual texts while internal structures arepreserved.
While here, remove deprecated $g['platform'] and also replace places...
Remove use of deprecated $g['platform']
Dynamic IPv6 DNS servers fix. Feature #10931
Force NTP peers DNS resolution protocol. Implements #10322
NTP server authentication. Issue #8794
System DNS Server changes. Implements #10931
There are significant changes here, but ultimately should be a smoothtransition. See https://redmine.pfsense.org/issues/10931 for moredetails.
Handle net.pf.request_maxcount via sysctl. Fixes #10861
Merge pull request #4443 from vktg/unboundmultiip
Rework route functions
- Created route_table() that returns an array containing all items from route table. It uses --libxo to get a json object- Created route_get() that return an array with route items to desired target- Created route_get_default() to get current default route for inet or...
DNS Resolver multi IP for host overrides. Implements #10896
Full IPv6 host address for DHCP6 static entries. Fixes #8156
Make sure dhcpleases is killed before writing the hosts file.
Needs to happen before fopen($hosts, "w") as it is going to truncate the fileand that breaks the tracking of hosts size in dhcpleases.
Ticket: #9383
Fix Google Cloud Platform spelling
Deect Azure and differentiate from Hyper-V by looking at hte bios version
Fixed #10621. Identify Amazon AWS instances without breaking Hyper-V
Fixed #10621. Identify Amazon AWS instances
NTPd GPS baud rate set fix. Issue #7284
Merge pull request #4252 from vktg/cleandnsdhcpleases
Add option to disable NTP server. Issue #3567
Clear DNS dhcpleases entries. Issue #8981
Merge pull request #4224 from kiokoman/master
Update system.inc
string before the if
NTPd Autoset GPS device baud rate. Issue #7284
orphan mode and maximum candidate ntp peers on the same tos lineincreased default maxclock to 5 if config empty
change from space to tab
Feature #10323
Add min-max ntp peers default 4
NTP: do not add noserve to restrict source. Issue #9830
Server cert lifetime reduced to 398. Fixes #9825
New requirements coming this fall will require new certs to be valid for at most398 days. Setup this new requirement now, rather than waiting.
While here, reduce usage of hardcoded value where possible.
Update SSL refs to SSL/TLS. Fixes #10172
This is 2020. Issue #9245
fixes
cosmetic
fix route delete code
Don't dedup DNS from dyn sources if override is disabled. Fixes #9963
Merge pull request #4112 from vktg/poly1305tls12
order fix
add poly1305-chacha20 to nginx cipher list
Certificate strength improvements. Fixes #9825
Fix #6846: Properly detect Super Micro C2558/C2758
Merge pull request #4042 from plumbeo/fix-reconfig
Merge pull request #3985 from luckman212/system-general-sr-fix1
Additional logs & optimizations. Issue #9714
Move log-related functions to their own file. Issue #8350
Also add a simple shell program that will dump all log entries for a givenlog + all rotated/compressed logs in order.
Log rotation settings. Issue #9711 and Issue #9712
Add log compression type option. Issue #9711
Merge branch 'master' into system-general-sr-fix1
Change logging to plain text, deprecate clog. Issue #8350
Fix some model detection instances. Issue #8051
Make NTP minpoll and maxpoll user-configurable. Implements #6787
Fix copyright message years to reflect BSDP -> ESF -> Netgate
Update comment. Issue #9607
Update TLS versions used by nginx. Implements #9607
Ticket #3500: Implement system_get_dhcpleases()
Implement system_get_arp_table()
Captive portal: cleanup pipe database at shutdown
Create an option for saving connected users across rebootImplement redmine #5644
Deprecate the built-in relayd Load Balancer. Closes #9386
It is not available on FreeBSD 12 with OpenSSL 1.1.x.
Users can migrate to the HAProxy package.
Update copyright notices to 2019. Happy New Year
Fix nginx resolver handling when a cert needs OCSP stapling. Fixes #9160
Fix #9121: Initialize arrays to prevent PHP 7 errors
Remove obsolete OLSRD code. Implements #9117
Prevent log size from being too large, which breaks clog. Fixes #9081
Fix #8864: Let users modify sshguard parameters and whitelist
Validate and protect powerd option values. Fixes #9061
Use the fw domain for DNS search when no other choices exist. Fixes #9056
fix a few bugs in system.inc and system.php
Add missing regex to validate serial
Use all possible kenv variables to detect serial
Fix #7694: Replace sshlockout_pf by sshguard
Fix Minnowboard Turbot model names. SG-2320 -> MBT-2220, SG-2340 -> MBT-4220
Certs: Fix CA subject assumptions. Fixes #8801
Several areas made assumptions about the number and order of CA subjectfields that were no longer correct after issue #8381 was corrected.
While here, also remove some outdated references to fields that are no...
Update captiveportal RADIUS Accounting
8552 - enable http2
Make SG-2220 to use RCC-DFFresetbtn binary