Report file system type in metrics
Refactor firewall_nat_npt for MVC
Refactor firewall_nat_1to1_edit for MVC
Refactor 1 to 1 NAT for MVC
One.com, NIC.RU, Yandex DynDNS support. Implements #11293 #11294 #11358
Set explicit-exit-notify to 1 for new OpenVPN Server instances. Issue #11684
Fix missing ')' in openvpn.inc
Merge pull request #4515 from znerol-forks/feature/master/radvd-linklocal-vip-2
Unbound devfs mount check. Fixes #11456
NTP status widget fix. Issue #11495
Merge pull request #4509 from JonathonReinhart/floating-rule-no-matching-iface-master
PPPoE custom reset crontab entry fix. Issue #11698
Set default OpenVPN inactive timeout to 300. Issue #11699
Set default_socket_timeout on XMLRPC sync. Fixes #11718
saveVIP() fix. Issue #11723
Checking multiple backups when detecting invalid configuration. Fixes #11748
Include Chelsio temperature values.
https://redmine.pfsense.org/issues/11787
Do not start an OpenVPN instance if vip aliased to BACKUP CARP. Fixes #11793
Merge pull request #4518 from bauerstefan/master
NoIP.com DynDNS fix. Issue #11815
openvpn.tls-verify.php fixes. Issue #11830
ipsec_vti() skipdisabled fix. Issue #11832
Refactor hide logic for fields on DynDNS edit page. Fixes #11840
The page included hide/show logic for username field only for fewproviders, which meant that if a provider with the hide logic wasselected, then the field was lost for all others too. This commit...
Correctly change default IPv6 route MTU if both IPv4/IPv6 gateways are configured on interface. Fixes #11855
OpenVPN TAP ifconfig-ipv6 syntax fix. Issue #11869
Merge pull request #4517 from vajonam/fix_address_clone
DHCP6: Do not wait for a RA & Advanced Configuration script fix. Issue #11883
IPsec Dashboard widget improvement. Fixes #11893
Change firmware update message text. Issue #11897
Do not restart IGMP Proxy on IPv6 gateway events. Fixes #11904
Add QEMU and KVM detection to system_identify_specific_platform()
Merge branch 'viktor/pfSense-nat11ipsecfix'
Merge branch 'viktor/pfSense-defaultipv4llfix'
Merge branch 'viktor/pfSense-ng6255fix'
Merge branch 'viktor/pfSense-11873fix'
Merge branch 'viktor/pfSense-quotecshproxyvariables'
Merge branch 'viktor/pfSense-11850fix'
Merge branch 'viktor/pfSense-ipsecvtidisable'
Merge branch 'viktor/pfSense-sanitize_pass_radmac_secret'
Merge branch 'viktor/pfSense-noticeshtmlencfix'
Merge branch 'viktor/pfSense-tcpflagsinputvalidation'
Merge branch 'danilo/pfSense-bug11754fix'
Merge branch 'viktor/pfSense-codelqlimitfix'
Merge branch 'viktor/pfSense-delovpndnsonboot'
Show Export P12 icon if certificate is not locally renewable. Fixes #11884
Radvd config page reload/logs buttons. Fixes NG #6255
HTTP Referer Message accurate path. Fixes #11873
Quote proxy user/pass variables in dot.tcshrc. Fixes #11867
NTP Authentication key input validation fix. Issue #11850
Delete OpenVPN DNS entries on boot. Fixes #11704
CODELQ scheduler Qlimit input validation. Issue #11725
1:1 NAT IPsec/OpenVPN/L2TP/PPPoE and interface groups input validation fix. Issue #11751
Firewall Rule TCP flags input validation. Fixes #11762
Notices modal window HTML encoding fix. Issue #11765
Sanitize pass and radmac_secret. Fixes #11767 and #11769
Allow to disable IPsec PH1 when related P2s are in VTI mode and enabled. Fixes #11792
IPv4 link-local (169.254.x.x) gateway fix. Issue #11806
IPsec multiple identical P1 tunnels input validation improvement. Fixes NG #6010
Kill IPv6 client states on OpenVPN disconnect. Implements #11700
Do not try to display too large PHP_errors.log file. Fixes #11685
Remove unused killall qstats command. Issue #11229
Reroot is safe on ZFS now, so allow it. Fixes NG 6304
Update services_dyndns_edit.php
Fix additional typo in description.
Allow group authentication for NoIP dyndns service.Extend information for service NoIP to replace ':' in username by '#'.Allow '#' in username.
Ensure mobile IPsec pools are always in config. Issue #11891
Correct IPsec P1 Child SA Start Action validation. Fixes #11576
Add spinning icon to IPsec status wait message
fix for missing 0 subnet when clone address entry, needed for vpn's that need two 0 subnets one for ipv4 and ipv6
Add IPsec GUI control for Child SA Start Action. Implements #11576
Skip expired DHCP leases for ARP table content. Fixes #11510
Fix variable being used before assignment. Fixes #11842
Fix missing ';'
Move protocol setup outside of foreach. It only needs to happen once
Revise resolve_retry timing/action to avoid long delays in ipsec status results
Test for empty negated addrs in pf rules. Fixes #11861
Do not read cert key details if parsing key failed. Fixes #11859
Fix PHP error in upgrade code. Fixes #11801
Change upgrade_212_to_213() so it unsets variables individually afterfirst testing if they are set. This avoids an error if a tunnel entrydoes not contain a value or has a deeper config issue which renders it...
Improve Captive Portal redirect URL handling.
Do not remove IPv6 link-local vips on secondary during hasync, refs: #11103
Do not remove route upon radvd shutdown, refs: #11103
Load MAC OEM list when preparing ARP table. Fixes #11819
List /etc/inc/web as obsolete, no longer all the files therein
Moved web include files from /etc/inc/web to /usr/local/pfSense/include/www
VTI: Fix interface number limit
Code introduced by commit 3b85b43bb4b tried to keep the old way used todecided VTI interface number using reqid and index but it was wrong andallowed numbers bigger than limit (32767) to be used.
This commit removes this logic completely and use incremental numbers...
Show Unbound used certificate on the Certificate Manager page. Fixes #11678
Reload NAT config before testing
Add cronjob only for limiters applied to firewall rules. Fixes #11636
Note says that gateway or failover gatewaygroup are valid options #11164
Disable RA mode in rc.initial.setlanip. Fixes #11609
OpenVPN Cisco AVPair {clientipv6} template. Implements #11596
Accommodate 'after' property when creating a NAT rule
Fix #11760: Make sure log file exist
Prevent PHP complaining about log file not found and create an emptyfile when it doesn't exist. In this case return code will not be readand it will not break the loop, trying one more time.
Revise MVC provision
Automatic default gateway set fix. Issue #11729
Remove Wireguard reference in header
Allow general access to create_interface_list() for MVC
Updates the help text for DigitalOcean client setup. Issue #11754
Firewall Schedules edit fix. Issue #11747
Upgrade: Improve information when it fails
Since first version after pfSense-upgrade, pkg_mgr_install.php waits forpkg socket to start presenting information to users. This socket isresponsible for providing needed data to make progress bar to work.
When socket never shows up, usually because pfSense-upgrade aborted...
Display a suitable message in the textarea if the update process aborts for any reason. Tighten up timing so that update attempts that complete very quickly are not missed.