# 2.2.4 2.2.x maintenance release * Bug #4523: master.passwd/group file corruption may occur after kernel panic or unclean shut down * Bug #4551: DNS forwarder/resolver - some consistency needed in the WebGUI * Bug #4580: IKEv2 certificate lacks [mumble] attribute required by Windows 7 Agile VPN client * Bug #4807: Unbound interface-automatic not added where interfaces list is empty * Bug #4713: Gateway added via console menu option 2 is not picked up by the setup wizard * Bug #4791: AES-NI on 2.2.3-RELEASE broken with non AES-GCM modes * Bug #4792: IPSec ASN.1 DN needs double quotes in config file * Bug #4794: Handling of ASN1.DN values for RSA IPsec during upgrades from previous versions * Bug #4797: Display any advanced DHCP server settings when opening Services DHCP webGUI page * Bug #4803: config.xml is empty if power loss or panic happens shortly after config write * Bug #4806: Mobile IPSec Broken on iOS devices after 2.2.3 Upgrade from 2.2.2 * Bug #4809: Dashboard - Hardware crypto (aesni) display cut off with Netgate ADI Board * Bug #4810: Load Balancing GUI does not properly handle port ranges in relayd.conf * Bug #4811: keyid identifiers not working * Bug #4814: read-only to read-write mount very slow on nanobsd with slow flash media * Bug #4818: IPSec makes worse in some cases - since 2.2.3 Update * Bug #4822: nanobsd corruption issues after unclean shut down when rw mounted and SU * Bug #4829: Prefix delegation broken by new ISC DHCP Server 4.2.8 subnet check * Todo #4832: Upgrade PHP to 5.5.27 * Bug #4836: pfSense does not support more than 10 serial devices for PPPS * Bug #4838: shaper VoIP match rules not added when no IP/alias specified in wizard * Bug #4842: Port aliases broken on 2.2.4 snapshots * Bug #4844: Error loading rules for numeric host name in alias * Todo #4846: Remove isc-dhcp42-server from pfPorts when prefix6 fixed * Bug #4852: Unbound outgoing-interface not working with CARP VIPs * Bug #4853: Firewall - Aliases GUI inconsistencies for URL Table type aliases * Bug #4854: OpenVPN bound to gateway group using CARP IP doesn't start with CARP master status * Bug #4859: Cosmetic dashboard issue with bce/bge interfaces * Bug #4860: CRLs missing authorityKeyIdentifier * Bug #4865: Save IPsec Advanced Settings before IPsec is enabled gives error * Bug #4873: Key Exchange version "Auto" isn't really useful, remove it. * Bug #4875: Security issue with OpenSSH "ChallengeResponseAuthentication yes" (implies KbdInteractiveAuthentication yes)