Project

General

Profile

Download (71.6 KB) Statistics
| Branch: | Tag: | Revision:

# Date Author Comment
de7d6cb8 08/14/2017 06:17 PM Jim Pingle

Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771

(cherry picked from commit 0e78c2f544ad577234a0a2f87ce2e8caefdfdb77)

021332fa 07/13/2017 05:58 PM Jim Pingle

Restructure how unbound zone data is written to fix processing of "redirect" zone entries. Fixes #7690
Also corrects some other misc issues for formatting of zone data.
While here, add an option, not exposed in the GUI, for users to get the previous behavior of defining short names for hosts.

cb61e2d8 07/05/2017 04:00 PM Renato Botelho

Move uniqueid read to a function system_get_uniqueid()

576cbe26 05/17/2017 03:06 PM Jim Pingle

Backport changes for syslogd handling to fix #7256

7ba3a020 05/09/2017 04:37 PM Doktor Notor

Fix APU2 with coreboot v4.x detection

See https://forum.pfsense.org/index.php?topic=106444.msg716558#msg716558
(cherry picked from commit 9457d0f616506bf0e50e49d7d977ebc1aa945e4f)

cad0d5bc 04/26/2017 01:50 PM Jim Pingle

Always add the CN as the first SAN when creating a certificate in the GUI or an automatic GUI self-signed certificate. Per RFC 2818, relying on the CN to determine the hostname is deprecated, SANs are required. Chrome 58 started enforcing this requirement. Fixes #7496

809022b9 02/22/2017 04:07 PM Doktor Notor

Only start dhcpleases if DHCP server is enabled (Bug #6750)
(cherry picked from commit 3d8b01e8c6392b4177572d540c8160c7e6e071ca)

d1fe01d2 02/03/2017 09:03 AM Jack Booth

Set ntp gps mode for pgrmf even if no other modes are being set.

(cherry picked from commit 821110e8ff76564c23783c554fc89cd9458683ac)

5476b118 02/03/2017 09:03 AM Jack Booth

Add to NTP GPS processing of PGRMF sentence

(cherry picked from commit 6924a2bf34a70cd33284a28ca3575f33f9834375)

d88f26df 01/13/2017 08:50 PM Phil Davis

Redmine #5549 Allow variable number of DNS Servers

(cherry picked from commit a2d23e88596deab6bbed2818385a0b72c913843a)

8c305c80 01/11/2017 05:15 PM Renato Botelho

Simplify logic

82897042 01/11/2017 04:47 PM Renato Botelho

Ticket #6712: Create system_hosts_entries()

This function will return an array all items to be added to /etc/hosts.

829f3ca3 01/11/2017 04:46 PM Renato Botelho

Ticket #6712: Create system_hosts_dhcpd_entries()

This function will return an array with dhcpd and dhcpdv6 items to be added to
/etc/hosts.

470efdfc 01/11/2017 04:46 PM Renato Botelho

Ticket #6712: Create system_hosts_override_entries()

This function will return an array with dnsmasq or unbound items to be added to
/etc/hosts

e0696aa4 01/11/2017 04:46 PM Renato Botelho

Ticket #6712: Create system_hosts_local_entries()

This function will return an array with 127.0.0.1, ::1 and LAN (or
first interface with no gateway when LAN is not there) items to be
added to /etc/hosts

6f7e852f 01/11/2017 04:46 PM Renato Botelho

Kill dhcpleases after we are sure we can write /etc/hosts

2354cc09 01/11/2017 04:45 PM Renato Botelho

Fix style

9c276201 01/11/2017 04:45 PM Renato Botelho

Make sure IP address is v4 before create /etc/hosts entry

8d058e79 01/11/2017 04:45 PM Chris Buechler

Exclude non-qualified hostnames from hosts file. Ticket #6064

6ca5c3ca 01/11/2017 01:54 PM Jim Pingle

Do not write a 'restrict' line to the NTP config if it will be empty. Fixes #7110

414d2720 01/04/2017 04:37 PM Caio Plumbeo

Captive portal: rework logging and RADIUS accounting when disabling a zone or rebooting

Make captiveportal_radius_stop_all() log the disconnections in the system log and fix it so that it works with the zone id parameter and sends complete RADIUS accounting packets....

fe81d18f 12/19/2016 12:00 PM Doktor Notor

Add missing include
(cherry picked from commit 12094fd551055c40b3d0da8d27a5fcaabed0ae54)

2f15609c 12/19/2016 12:00 PM Doktor Notor

Restart unbound after clearing logs (Bug #6915)
(cherry picked from commit ef72cd5c2d36ff300de8de5971c05e19d1c9443c)

28b3cba8 12/13/2016 12:46 PM Brett Keller

Add specific platform detection for PC Engines APU2

Based detection on $product rather than $hw_model, because $hw_model
returns the name of the AMD SoC, which might be used on other boards.

(cherry picked from commit ffda0181a4c0989085a201e1a9b6bb0b1d691889)

36868398 12/06/2016 07:44 PM Doktor Notor

Add BIND logging to proper facility (Bug #5524)

Stop the /etc/inc/system.inc patching by dns/pfSense-pkg-bind9 package.
(cherry picked from commit 957ec89e7959e966e87f83055f57936a945a6b00)

f6bea44d 11/24/2016 12:43 PM Renato Botelho

Silence kenv calls

6f012614 11/09/2016 05:33 PM Pi Ba

syslogd, create configured logsocket directories

(cherry picked from commit 4406922edb1000ef79f4fccfb484aa1103105ac0)

836bb622 10/12/2016 03:37 PM Leland Roach

Fixup ntpd IPv6 restrict clauses.

This should eliminate the following errors from the ntpd log file when
using IPv6 or dual-stack networks:
"syntax error, unexpected T_Mask, expecting T_EOC"

(cherry picked from commit daed7646d7e8e5d555676299ce660408b490ef81)

e1776d71 10/06/2016 06:03 PM Leland Roach

Fix static blackhole routes. Bug was introduced in
8be135cd114fbc9294ec9dafed2125d0e553956c (February, 2013).

(cherry picked from commit 580bef1ee3052437487553fcc5dc8428ca665098)

786d411d 09/13/2016 06:36 PM Phil Davis

Fix #6768 IPv6 static mapping on delegated prefixes

For example, WAN receives a /48 delegated from the upstream (ISP...),
e.g. "2001:470:abcd::" pfSense then uses this as a starting point to
calculate the addresses on LAN, OPT1, OPT2 etc where they have been...

4d09ffde 09/13/2016 05:34 PM k-paulius

Code style changes

(cherry picked from commit b2836666a8e7fc021ea750fafc8fc6e8097d52ff)

7066f0cc 09/13/2016 05:34 PM k-paulius

Allow packages to request syslogd log socket to be created inside chroot by specifying it in /package/logging/logsocket element. Implements #4898.

Example:
<package>
<logging>
<logsocket>/var/appname/var/run/log</logsocket>
</logging>...

ff1af69d 09/09/2016 06:51 PM Jim Pingle

Fix up/catch up remote syslog areas. Fixes #6780

c1b86deb 09/09/2016 06:12 PM Jim Pingle

More pptp bits

54d3b4ba 09/09/2016 03:58 PM Jim Pingle

Remove some more dangling PPTP bits.

2a2396a6 09/06/2016 09:19 PM Renato Botelho

Move copyright from ESF to Netgate

1e0d9c89 09/02/2016 01:31 PM NewEraCracker

Improve dhcpd and dhcpleases reload

1) Avoid running services_dhcpd_configure() more times than needed.
2) Always restart dhcpleases after it's killed during interface recycle.
3) It's not necessary to restart dhcpdv4 when doing changes in ipv6 config.

(cherry picked from commit 509e9357df4755a4fe5d1d9b20eda65bafb855e7)

48759936 08/29/2016 07:07 PM NewEraCracker

system_dhcpleases_configure() - Improve pidfile handling

1) Set the pidfile variable in the correct place.
pidfile variable is required in both 'if' and 'else' blocks.

2) Ensure pidfile is valid before sending term signal

(cherry picked from commit 4509abc380552554cbdf3f42c6783b47112f245a)

d5906132 07/18/2016 06:41 PM Renato Botelho

Set HTTP_PROXY to empty as recommended at https://httpoxy.org/#fix-now

aaec5634 07/15/2016 06:32 PM Renato Botelho

Review license / copyright on all files (final round)

8acd654a 07/14/2016 09:36 PM Renato Botelho

Review license / copyright on all files (1st round)

84b6f05a 07/09/2016 01:19 AM Doktor Notor

Missing closing quote

6ee6c8bb 07/09/2016 01:18 AM Doktor Notor

Create /var/run/dmesg.boot symlink for vm-bhyve (Feature #6573)

See https://redmine.pfsense.org/issues/6573

8e8108e6 06/24/2016 06:35 AM Chris Buechler

Include interface scope on IPv6 static routes to link local gateway IPs. Ticket #6506

36990b1f 06/06/2016 06:21 PM Jim Pingle

This needs a newline

54e7222e 06/03/2016 05:51 AM Chris Buechler

Set keepalive_timeout 0 where captive portal in use, and update otherwise to nginx's current default of 75. Ticket #6421

6c6e8e34 05/11/2016 09:33 PM Chris Buechler

Prefer index.php over index.html where both exist.

65aac79d 05/09/2016 01:29 PM Renato Botelho

A simple fix for #6120

- Retire system_console_configure()
- Replace above call on rc.bootup by setup_serial_port()

df5c2c73 04/23/2016 07:52 AM Chris Buechler

Add Hyper-V support to system_identify_specific_platform, and disable S.M.A.R.T. actions in Hyper-V guests. Ticket #6147

5a758355 04/04/2016 08:40 PM Renato Botelho

Ticket #6053

- Do not call ntpdate before start ntpd, ntpd g parameter is enough
Deprecate /usr/local/sbin/ntpdate_sync_once.sh
- Remove system_ntp_configure parameter and always start ntpd

67c93444 04/04/2016 08:18 PM Renato Botelho

Remove unused function sync_system_time()

884914ce 03/28/2016 08:12 PM Renato Botelho

Implement system_get_serial()

98b9c304 03/28/2016 08:12 PM Renato Botelho

Remove dead code

042326a3 03/28/2016 06:52 PM Renato Botelho

Identify specific hardware models of some Netgate products

24d4fdde 03/28/2016 06:48 PM Renato Botelho

Rename variable to a name that make sense

2f004405 03/27/2016 06:48 AM Chris Buechler

Don't log 404s for captive portal. Ticket #6027

af85fb0c 03/22/2016 07:57 PM Chris Buechler

Remove ssl_stapling. Ticket #6020

54bbb646 03/22/2016 02:44 AM Chris Buechler

Don't log to filter.log when local logging is disabled. Ticket #6018

8e2090a1 03/19/2016 03:03 PM Jose Luis Duran

Cleanup nginx configuration file

- Fix indentations
- Use the `ssl` parameter of the `listen` directive [1]
- Change the rewrite rule to use the recommended syntax [2]

[1]: http://nginx.org/en/docs/http/ngx_http_ssl_module.html#ssl
[2]: http://nginx.org/en/docs/http/converting_rewrite_rules.html

2ae79c20 03/14/2016 09:01 PM Chris Buechler

Use product name rather than smbios here.

677f0a18 03/12/2016 08:07 AM Chris Buechler

Disable TLSv1.0 for web GUI's nginx instance. Ticket #5984

bf648a15 03/12/2016 12:42 AM Chris Buechler

Merge RCC add, 1540 name fix, from 2_2 branch.

08acb038 03/09/2016 01:22 AM Chris Buechler

log dhcpleases and dhcpleases6 to dhcpd.log. Ticket #5968

c6e8317d 03/05/2016 11:23 AM Chris Buechler

Remove duplicated text/javascript

15c9c921 03/05/2016 12:52 AM Chris Buechler

Update nginx gzip_types. Remove text/html since it's redundant, and add a few others. Particularly useful, json, since status_monitoring.php uses it. Reduces load time on slow connections to about 1/4th of what it is without gzip on json. Ticket #5498

31b15180 03/03/2016 10:16 PM Jim Pingle

Move NTP access restrictions to their own tab and add the ability to craft custom restrictions for arbitrary networks. Fixes #4463

ada3eeb3 02/19/2016 12:57 PM Renato Botelho

Fix #3029

Teach system_hosts_generate() to deal with PD length != 64

2bf455ca 02/19/2016 12:57 PM Renato Botelho

Ticket #3029

Import patch from @Robert-Nelson to enable DHCPv6 Server/RA to
interfaces configured to track DHCP-PD

This patch only works for PD with length 64

e8c516a0 02/18/2016 12:19 PM Phil Davis

Internationalize etc inc i through s

d6fa0b47 02/11/2016 11:57 PM Chris Buechler

Prefer dnsmasq's host overrides when it's enabled. Ticket #5883

d9901ff4 02/09/2016 11:56 PM Chris Buechler

Fix style issues.

2a5960b0 02/09/2016 09:58 PM Luiz Souza

Review of CARP uniqid changes.

It turns out that current CARP implementation is not much different from an IP alias.

This commit converts the IP alias to also use the CARP uniqid scheme, this simplify the code in all other places because now we have only two different cases to deal with:...

c4da754d 02/04/2016 10:03 PM Chris Buechler

Enable gzip compression in nginx.

3fafb89b 02/02/2016 03:40 AM Chris Buechler

Set fastcgi_read_timeout to 180 seconds rather than the default 60 for the occasional long-running page.

7222324e 02/01/2016 12:41 PM Renato Botelho

Remove all additional packages from the system before reset to factory default. Fixes #5829

138e4140 01/28/2016 03:54 PM Renato Botelho

Remove static routes to DNS servers when gateway is disabled. It should fix #4921

c6079517 01/28/2016 03:54 PM Renato Botelho

Simplify logic

e163952f 01/17/2016 03:30 AM Jim Pingle

Fix dns test for localhost inclusion, when saving now the port value can be set but empty. Fixes #5775

09221bc3 01/15/2016 01:44 PM Renato Botelho

Update license on files from /etc/inc

8f10bc95 01/11/2016 11:05 PM Chris Buechler

Use case-insensitive regex matching for http_host in nginx captive portal configs.

f6a65ccb 01/11/2016 09:44 PM Chris Buechler

Match nginx max body size with PHP's upload_max_filesize

05c20f6d 01/11/2016 09:01 PM Chris Buechler

set nginx client_max_body_size large enough for config restore and other purposes.

66a962cb 01/07/2016 09:15 PM Chris Buechler

10m ssl_session_cache is adequate for our use cases.

02ba2c97 01/07/2016 08:26 PM Chris Buechler

Use the local dh-parameters for nginx rather than the default.

716d10e0 01/07/2016 01:45 PM Renato Botelho

Make sure httpsname is a valid domain to avoid breaking nginx conf

c2aa7860 01/07/2016 12:05 AM Chris Buechler

Merge pull request #2355 from jlduran/no-preload-in-hsts

f225cb92 01/06/2016 04:29 AM Chris Buechler

Include limit_conn config for CP maxprocperip

6c301424 01/06/2016 03:13 AM Chris Buechler

Only log to remote syslog server(s) if remote logging is enabled

657cb0db 01/06/2016 02:57 AM Jose Luis Duran

Remove preload token from HSTS header

Please see the documentation on how to include your domain in the
preload lists:

https://hstspreload.appspot.com

ab4e9539 01/05/2016 02:25 PM Jim Pingle

Fix nginx startup on NanoBSD

d1f9426a 01/05/2016 11:08 AM Renato Botelho

Fix spaces and indent

d47fe949 01/05/2016 11:08 AM Chris Buechler

fix redirurl for nginx

32818dd9 01/05/2016 11:08 AM Chris Buechler

Include CA chain in certificate for nginx

1d0c3a10 01/05/2016 11:08 AM Chris Buechler

Add nginx redirection for captive portal

48190921 01/05/2016 11:08 AM Chris Buechler

lighty clean up

e90d9933 01/05/2016 11:08 AM Chris Buechler

some CP clean up in nginx start

257fdefe 01/05/2016 11:08 AM Chris Buechler

Bring back $ca in config function

d15f76be 01/05/2016 11:08 AM Renato Botelho

Retire system_generate_lighty_config()

57cc06af 01/05/2016 11:08 AM Chris Buechler

un-break SVG graphs

f77f43ff 01/05/2016 11:08 AM Chris Buechler

Skip error_log when disabled.