Set correct TCP MSS for IPv6. Fixes #11409
Allow to use host portion of IPv6 in firewall rules. Feature #6626
L2TP VPN MTU option. Feature #11406
Xen console support. Feature #11402
Display negotiated cipher on Status / OpenVPN page. Implements #7077
Hide Shared Key field on OpenVPN client page in SSL/TLS mode. Fixes #11382
Mythic-Beasts.com DynDNS provider support. Implements #7842
RADIUS Advanced parameters. Feature #11211
Do not prefix FQDN IPsec IDs with @. Fixes #11442
Show gateway groups in OpenVPN Wizard. Fixes #11141
Check that DHCP has gateway in interface_has_gateway(). Fixes #5135
Randomize ACB cron minutes. Implements #10811
RADVD set AdvRDNSSLifetime. Fixes #11105
Down disabled interfaces on boot. Fixes #11091
Do not restart unchanged services on XMLRPC sync. Fixes #11082
Improve the handling of crypto offload hardware.
Remove support to deprecated hardware.
Task: #11426
Find IPsec IKE SAs by their full name. Issue #11435
Update comments
Provide system_advanced_firewall.inc
Revised system_advanced_notificaions for MVC
Merged system_advanced_network for MVC
remove obsolete system_advanced.inc
Fix hnaltqenable setting
Split system_admin.inc into separate files per tab
Fix custom XMLRPC port for Captive Portal. Fixes #11425
Completed networking section, subject to testing
Mark 2.5.0 as current stable version
Add input_errors to returned array
Revised system_advanced_notifications for MVC
Fix WireGuard add/next name behavior. Fixes #11407
Handle case where copyright file is downloaded but has a size of zero
Do not exclude unlisted package
Do not build unused packages
Revert copyright symbols
Add option to set IPsec filtering mode. Implements #11395
User can choose between filtering enc (tunnel+VTI) or filtering onassigned VTI interface tabs (VTI only, drops all tunnel mode traffic).See https://redmine.pfsense.org/issues/11395 for details.
Fix Microsoft's idea of an apostropphe
Increment requested copyright version
Revise copyright modal to accommodate larger content
Use new URLs for pkg repo
Use Netgate domain for bogons. Issue NG 5446
Detect Plus by product label
Rename Factory -> Plus
This file moved, remove old copy. Fixes #11389
Revert "Refactor system_advanced_misc for MVC"
This reverts commit c33b0ab6c2fcd4c9786d1b5e7903c01fa1fafa7d.
Refactor system_advanced_misc for MVC
Typo
Add registered trdemark symbol where appropriate
Nested alias checking fix. Issue #11372
Return correct Track IPv6 address if >1 VIP on interface. Issue #5999
Respect REPO_BRANCH_PREFIX on FREEBSD_BRANCH
It's time to move to 2.6.0-DEVELOPMENT
Remove what I suspect is a debug leftover
OpenVPN rmdir fix. Issue #11254
Check RA service on interface IPv6 type change. Fixes #11367
Style fixes
OpenVPN User Auth fix. Issue #11368
OpenVPN input validation fix. Issue #11362
Fixed #11328 by fixing jQuery and error when 'protocol' is undefined
Captive Portal custom logo fix. Issue #11360
Fix #8954: Enable hn_altq_enable on default config
Refactored system_advanced_* pages for MVC
Sanitize PKCS11 PIN from swanctl.conf. Issue #11348
Sanitize securiteinfo_id. Issue #11344
Sanitize DHCP DDNS keys. Issue #11342
Sanitize WireGuard PresharedKey from config. Fixes #11341
Issue #11340Hide WireGuard interfaces on DHCP/DHCPv6 Relay pages,Hide mediaopt field for WireGuard interfaces on interfaces.php page
Hide TLS keydir for p2p openvpn mode. Issue #11336
Add brackets around IPv6 endpoint address. Issue #11338
Clarify that Peer WireGuard Address can be multiple addrs.
Merge pull request #4498 from BBcan177/Fixes
Update vpn_wg_edit.php
Gateway Group Policy rule creation fix. Issue #11298
OpenVPN Server page fields hide fix. #11272
Delete all OpenVPN related files on instance deletion. Issue #11254
Mute console before load crypto modules
Fix WireGuard interface name assignment. Fixes #11323
Only set the name when it's empty/unset (e.g. when first created),automatically determine the next available wg interface number.
WireGuard: Always derive public key. Issue #11322
If the user enters a different private key, using the supplied publickey would lead to a mismatch. So always derive the public key when saving.
WireGuard: Make pubkey read only, populate automatically. Fixes #11322
While here, add a link to copy the public key to the clipboard.
Merge branch 'viktor/pfSense-ipsecmobileinperror'
Mobile IPsec certificate validation. Issue #11319
Fix PHP error in Mobile IPsec validation if Group Auth is selected. Fixes #11212
Update OpenVPN Wizard to match current server options. Fixes #10919
Fix WG Keep Alive field variable name. Fixes #11288
Fix WG Generate button descr.
Improve WireGuard field labels & descriptions.
Improve WireGuard port validation. Fixes #11311
Encode WireGuard tunnel edit/peer values. Issue #11312
Encode WireGuard tunnel list values. Issue #11312
Suppress errors when opening router file. Fixes #11314
Merge branch 'viktor/pfSense-checkipsecwildcardcert'
IPsec wildcard certificates input validation. Implements #11297
Attempt to use peer wg address if possible for gateway. Implements #11300
Add WireGuard to backup areas. Implements NG 5485
Refine Unbound auto ACL generation. Implements #11309
Rework WireGuard tonatsubnets/unbound ACL entries. Fixes #11304
Init var before use. Fixes #11307
Add units to source tracking timeout description. Fixes #11303
Allowe peer port < 512
Allowe listen port < 512