# 2.4.4-p1 First 2.4.4 public update * Bug #7143: filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed * Bug #9081: signed long rollover in "Log file size (Bytes)" can cause self-inflicted DoS * Bug #8001: Invalid FQDN in alias causes alias table to fail *silently* * Bug #8465: Lost default gateway after recover from failover with CARP VIP and HA * Bug #8499: IPv6 fragment logging causes panic in some circumstances * Bug #8554: /etc/rc.kill_states code not correctly parsing pfctl output * Bug #8590: sshd does not allow agent forwarding * Bug #8758: filterdns stops working on a regular basis. * Bug #8859: VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address * Bug #8864: SSH Guard Sensitivity/Whitelist on 2.4.4 * Bug #8924: FreeDNS Dynamic DNS update needs IP * Todo #8898: Update strongswan to 5.7.1 * Bug #8914: Gateway switch events cause a huge amount of log spew * Bug #8915: After updating to 2.4.4-rc an empty crash report is shown * Bug #8921: dpinger without .pid files.?. 'pending' status * Bug #8934: IPv6 fragment reassembly regression following FreeBSD-SA-18:10.ip * Bug #8935: IGMP Proxy not starting with PPPoE IF * Bug #8937: LAGG shows wrong ether address * Feature #8943: Additions to wake on lan section * Bug #8956: traffic shaper after upgrade to 2.4.4 not showing queue under each limiter * Bug #8959: Restoring a <2.4.4 config with legacy gold auto backup package re-adds the menu option under Diagnostics * Bug #8961: IPSEC issues with Asynchronous Cryptography * Bug #8973: Traffic not going to Limiter queues * Feature #8976: Status -> Traffic Graph, provide SAVE button for graph settings. * Bug #8977: Dynamic DNS - Custom (V6) - Throws Error "php-fpm: /services_dyndns_edit.php: phpDynDNS: (ERROR!) No Hostname Provided." * Bug #8978: vidconsole is invalid for efi booted systems * Bug #8980: Disabling hardware checksums does not disable IPv6 transmit checksum * Bug #8993: PHP error from filter_rules_sort() when config.xml contains no rules * Bug #8994: Two RRDDATA Sections in Restored Config Breaks Unit * Bug #8995: MTU Trouble with Orange is back * Bug #9019: Hyper-V hn NICs drop UDP6 traffic when transmit checksums are enabled * Bug #8998: All Captive Portal zones send only "CaptivePortal" as NAS Identifier * Feature #9001: Add checkbox to disable SSL peer verification for SMTP notifications * Bug #9002: [Interfaces :: WAN :: PPPoE] The service name contains invalid characters * Bug #9006: Using umlauts in client specific overrides common names field causes restore of old config backup * Bug #9009: Cannot create Schedule * Bug #9010: Captive Portal Unable to logout * Bug #9015: Default gateway doesn't switch as expected * Todo #9026: PTI checkbox wording can be confusing, should give a little more detail and show current PTI status * Bug #9029: Proxy authentication is not working for HTTPS * Feature #9032: RADIUS MAC Authentication: display the login page when MAC auth failed * Bug #9042: Web GUI does not recognise NVMe devices as SMART capable * Bug #9045: Race condition in package reinstall/startup after restore can lead to no packages restored * Bug #9048: Installer memsticks using GPT should always have partition count that is a multiple of 4 * Bug #9051: Privileges on 'all' group are not being honored * Bug #9055: IKEv2 EAP Identity vs client ID matching for per-client settings with local users * Bug #9056: DNS search domain omitted in some cases * Bug #9059: Update Unbound to 1.8.1 * Bug #9061: PowerD command parameter validation and escaping * Bug #9066: ecl.php: Checking /config path is not working due to lack of trailing slash * Bug #9067: PHP error when installing first package with empty installedpackages tag * Bug #9071: Package restore after fresh install can fail, claiming packages do not exist * Bug #9080: firewall_nat_1to1.php: PHP error with empty 1:1 NAT rule list * Bug #9083: Config upgrade issue with empty IPsec P1 * Bug #9086: Local Database authentication is failing in other languages * Bug #9095: PHP error when saving logs with empty syslog tag * Bug #9098: Default CRL lifetime of 9999 rolls over at 2038 on ARM * Bug #9099: system_certmanager.php: Empty cert tag can lead to PHP error * Bug #9100: CA/Cert valid end dates after 2038 are blank on ARM * Bug #9102: PHP7: Error on restoring a config with packages * Feature #9104: Add a FAT32 partition to memstick installer images * Bug #9105: WebGUI option toggles that need nginx restart are not triggering when disabled * Bug #9106: strongSwan 5.7.1 will not start on some 2.4.4/2.4.5 systems, log shows "charon has quit: integrity test of libstrongswan failed" * Bug #9116: IPsec VTI routes not applied at boot time when gateway monitoring is disabled * Bug #9109: interfaces_qinq_edit.php: PHP error when editing QinQ entries * Bug #9114: Captive Portal Blocked MAC Address Redirect URL not working * Bug #9115: A large number of VLANs causes PHP issues when making an interface change * Bug #9119: PHP error from easyrule with no aliases in the config * Bug #9121: PHP array reference Cleanup * Bug #9128: Descriptive text on rules is incorrect when drag-to-reorder is disabled * Bug #9131: Captive Portal Radius Accounting "unauthenticated" * Bug #9134: Several spelling mistakes in captive portal settings page * Bug #9144: Set interface IP address from console crashes if DHCP is selected * Bug #8607: Suricata package fails to prune suricata.log * Todo #9041: update ntopng 3.6.0