Projet

Général

Profil

Révision:

Révisions

# Date Auteur Commentaire
482c93e5 19 février 2014 16:28 Ermal

Another fix even for XHTML compliance and proper selection

08005d0a 19 février 2014 16:27 Ermal

Fix some obvious problems in the code

aa1183ef 19 février 2014 16:21 Ermal Luçi

Merge pull request #930 from nagyrobi/patch-4

Update services_ntpd.php

a5240b7a 19 février 2014 16:20 Ermal Luçi

Merge pull request #928 from nagyrobi/patch-2

Update rrd.inc

6b2df902 19 février 2014 15:27 Ermal Luçi

Merge pull request #947 from stilez/patch-2

Filter log - ensure IPv6 AJAX resolve works too

30a84036 19 février 2014 15:09 stilez

Filter log - ensure IPv6 AJAX resolve works too

Using str_replace(array('.', ':') as asked

ecdf264f 19 février 2014 15:00 Ermal Luçi

Merge pull request #946 from phil-davis/master

Remove old webguiport code

8fc2a648 19 février 2014 14:07 stilez

Filter log - ensure IPv6 works too

0c8cc915 19 février 2014 13:53 Phil Davis

Remove old webguiport code

webguiport is managed in system_advanced_admin.php these days, not here in system.php. This validation is never executed, so might a well clean up old unused code.

e09da6c2 19 février 2014 13:26 Renato Botelho

Fix #3469

Before downloading file to process urltable, there is a random wait
time between 5 and 60 seconds. Because of this, the difference between
file mtime and current time can be less than $freq * 86400 and it'll be
skipped. Add 90 seconds (60 of max random wait + 30 just to be sure) to...

47f7842f 19 février 2014 13:22 Renato Botelho

Fix #3469

Before downloading file to process urltable, there is a random wait
time between 5 and 60 seconds. Because of this, the difference between
file mtime and current time can be less than $freq * 86400 and it'll be
skipped. Add 90 seconds (60 of max random wait + 30 just to be sure) to...

869dfb66 19 février 2014 12:48 Renato Botelho

Fix #3468, wording fix

d06ad5eb 19 février 2014 12:48 Renato Botelho

Fix #3468, wording fix

96fc5388 19 février 2014 12:23 Renato Botelho

Merge pull request #945 from phildd/master

Enhance interface gateway data entry descriptions

69498c01 19 février 2014 12:23 Renato Botelho

Merge pull request #944 from N0YB/RELENG_2_1

XHTML Compliance

e2a6a6fb 19 février 2014 11:41 Phillip Davis

Enhance interface gateway data entry descriptions

6e2eabe5 19 février 2014 11:33 N0YB

XHTML Compliance

CARP Status

db8450cb 19 février 2014 09:50 Ermal Luçi

Merge pull request #939 from phil-davis/master

Dodgy-looking stuff in graph calculations

b1455571 19 février 2014 08:57 Ermal Luçi

Merge pull request #659 from mss/extended-query-example-work

Improve LDAP DN examples

63fd5773 19 février 2014 08:54 Ermal Luçi

Merge pull request #903 from phildd/RELENG_2_1

Releng 2 1 Enhance interface gateway data entry descriptions

45c9de4e 19 février 2014 08:53 Ermal Luçi

Merge pull request #943 from stilez/patch-1

AJAX-ify DNS lookups in standard firewall/filter

18e5723b 19 février 2014 08:51 Ermal

The msgbox is no longer needed since there will be a validation process per se

3e38084b 19 février 2014 08:50 Ermal

The msgbox is no longer needed since there will be a validation process per se

25ba63fb 19 février 2014 08:48 Renato Botelho

Take single and double quotes into consideration

a257e8e5 19 février 2014 08:47 Ermal Luçi

Merge pull request #942 from N0YB/RELENG_2_1

XHTML Compliance

f15c1f3d 19 février 2014 03:53 stilez

AJAX-ify DNS lookups in standard firewall/filter

The standard firewall log has lookup ability but these open in a new tab/window, they don't show in the log, other places the same IP appears in the log aren't visibly resolved, - basically its begging for AJAX-ing....

94bf59b1 19 février 2014 03:39 N0YB

XHTML Compliance

Settings Logs Status

d5d192a1 19 février 2014 03:36 N0YB

XHTML Compliance

NTP Logs Status

3d1a290b 19 février 2014 03:35 N0YB

XHTML Compliance

Open VPN Logs Status

6b0d7871 19 février 2014 03:34 N0YB

XHTML Compliance

Load Balancer Logs Status

7e23690a 19 février 2014 03:33 N0YB

XHTML Compliance

VPN Logs Status

ec56ae9d 19 février 2014 03:32 N0YB

XHTML Compliance

PPP Logs Status

5e736c8a 19 février 2014 03:31 N0YB

XHTML Compliance

Portal Auth Logs Status

1fe3c758 19 février 2014 03:29 N0YB

XHTML Compliance

DHCP Logs Status

56e3ea85 19 février 2014 00:31 Renato Botelho

Only add dhcpv6 client allow rules if ipv6allow is set

5a47e9b1 19 février 2014 00:31 Renato Botelho

Only add dhcpv6 client allow rules if ipv6allow is set

b74bf685 18 février 2014 22:19 Ermal Luçi

Merge pull request #941 from N0YB/RELENG_2_1

XHTML Compliance

8749f693 18 février 2014 22:07 N0YB

XHTML Compliance

Queues Status

eba8aa8c 18 février 2014 21:58 Ermal Luçi

Merge pull request #940 from N0YB/RELENG_2_1

XHTML Compliance

0c8a8127 18 février 2014 21:45 N0YB

XHTML Compliance

Package Logs Status

e9567122 18 février 2014 20:51 Ermal

Sprinkle ob_flush to avoid some warnings on 2.1

d291634a 18 février 2014 20:38 Renato Botelho

Take single and double quotes into consideration

738fab3d 18 février 2014 20:16 jim-p

Fix issue with CSR generation. Ticket #2820

26e58bb2 18 février 2014 20:16 jim-p

Fix issue with CSR generation. Ticket #2820

8a4d1dbd 18 février 2014 20:00 Renato Botelho

Move 'allow dhcpv6 client' rules above block bogonsv6 ones, it should fix #3395

a60c6356 18 février 2014 20:00 Renato Botelho

Move 'allow dhcpv6 client' rules above block bogonsv6 ones, it should fix #3395

540c012b 18 février 2014 18:23 nagyrobi

Update status_ntpd.php

fixed tail path

fe5ad8af 18 février 2014 18:22 nagyrobi

Update ntp_status.widget.php

fixed tail path

69a0c735 18 février 2014 17:41 Ermal

Fixes #3460. Ask for validation when real operation will be done and ask for the operation with POST to get protection from CRSF.

133f8b33 18 février 2014 17:39 Ermal

Fixes #3460. Ask for validation when real operation will be done and ask for the operation with POST to get protection from CRSF.

0635519b 18 février 2014 17:39 Ermal

Remove code that is commented

f9983a87 18 février 2014 17:12 Phil Davis

Dodgy-looking stuff in graph calculations

I noticed that the graphs in this post - https://forum.pfsense.org/index.php/topic,72794.0.html - had numbers for in-block and out-block that had similar numbers to in-pass and out-pass. That seemed hard to believe. Found these calculations that look wrong.

617f9edf 18 février 2014 16:07 nagyrobi

Update rrd.inc

corrected path

0fd64e94 18 février 2014 16:06 nagyrobi

Update system.inc

Corrections made as requested

de3ba995 18 février 2014 16:01 nagyrobi

Update ntp_status.widget.php

Updated errorneous paths. Sorry.

d950f929 18 février 2014 15:32 nagyrobi

Create ntp_status.widget.php

Dedicated widget which has a javascript clock showing the server time accurately, and based on NTP's running state displays information about sync source, GPS state etc. It refreshes contents every minute, without reloading the entire page.

b2c559da 18 février 2014 15:30 nagyrobi

Create ntp_status.inc

NTP widget helper

c53834f9 18 février 2014 15:29 nagyrobi

Update status_rrd_graph_settings.php

Add NTP graph to settings

a592ec6a 18 février 2014 15:26 nagyrobi

Update status_rrd_graph_img.php

Add NTP graph drawing

2cdb75f8 18 février 2014 15:24 nagyrobi

Update status_rrd_graph.php

Add NTP graphing

c56d07dc 18 février 2014 15:19 nagyrobi

Update status_ntpd.php

A bit more informative NTP status page...

2ebeabac 18 février 2014 15:16 nagyrobi

Create services_ntpd_pps.php

Separate page for other PPS sources config

b8ab37b8 18 février 2014 15:16 Ermal Luçi

Merge pull request #927 from nagyrobi/patch-1

Update priv.defs.inc - add new NTP pages

aa2aebfd 18 février 2014 15:15 nagyrobi

Create services_ntpd_gps.php

Separate page to set GPS receiver pps sync

c1e68244 18 février 2014 15:14 nagyrobi

Update services_ntpd.php

Extended options for NTPd

142f7393 18 février 2014 15:12 nagyrobi

Update system.inc

Add new NTPd functions

1f3eff9b 18 février 2014 15:06 nagyrobi

Update rrd.inc

Add NTP graphing to RRD

43c4687b 18 février 2014 15:01 nagyrobi

Update priv.defs.inc

1ac5a652 18 février 2014 14:59 Renato Botelho

Take single and double quotes into consideration

6766e477 18 février 2014 14:18 Ermal

Fixes #3461. Remove any special char that can lead to shell/XSS compromises from submitted input.

82921e73 18 février 2014 12:55 Ermal

Fixes #3461. Remove any special char that can lead to shell/XSS compromises from submitted input.

9e875e0c 18 février 2014 12:35 Renato Botelho

Revert "Replaced gethostbyname() with gethostbynamel() to get a list of all IPs associated with the dns name and add them to the allowed list"

This change is not needed, filterdns will handle it.

This reverts commit d460371416d4e2cfef976d5a7616f63f6faa203f.

6d43e1f2 18 février 2014 12:33 Ermal

Check if the package is installed before deleting opteration is started

248b0124 18 février 2014 12:28 Ermal

Ticket #3461. Protect output to browser by using htmlspecialchars.

b6584d17 18 février 2014 12:25 Ermal

Do not do any operations on system libraries. Nowdays pbis are used and those do not break things by definition

8c147077 18 février 2014 12:25 Ermal

Do not do any operations on system libraries. Nowdays pbis are used and those do not break things by definition

33d1b241 18 février 2014 11:48 PiBa-NL

captive portal, don't generate rules for disabled portal

8f821cbc 18 février 2014 11:38 Renato Botelho

Merge pull request #891 from PiBa-NL/captive_disable

captive portal, don't generate rules for a disabled portal

aecb7a79 18 février 2014 11:31 Renato Botelho

Merge pull request #890 from N0YB/Gateway_Monitor

Gateway Monitor Advanced Settings

9305e219 18 février 2014 11:15 Renato Botelho

Merge pull request #904 from dv-user1/master

Replaced gethostbyname() with gethostbynamel() to get a list of all IPs ...

4b7b190b 18 février 2014 10:26 Ermal

Revert "Pass the family to the get_real_interface function to retrieve the correct real interface. Might help Ticket #3357"

This reverts commit 7c77641060bc5662f75519556af5e4566078dfc6.

70b49cba 18 février 2014 10:26 Ermal

Really need the interface where v6 is running toa dd the gateway/route rather than the one used for the configuration. This Fixes #3357

adf1c3fa 18 février 2014 10:26 Ermal

Revert "Pass the family to the get_real_interface function to retrieve the correct real interface. Might help Ticket #3357"

This reverts commit cb431dbf47c53b72119bd8feca0217e1c25d998b.

c79f717a 18 février 2014 10:25 Ermal

Really need the interface where v6 is running toa dd the gateway/route rather than the one used for the configuration. This Fixes #3357

7f921690 18 février 2014 10:23 Ermal

Do not call rc.newwanip when pppoe gets a v6 ip.

d671c1d0 18 février 2014 10:22 Ermal

Do not call rc.newwanip when pppoe gets a v6 ip.

7c776410 18 février 2014 10:00 Ermal

Pass the family to the get_real_interface function to retrieve the correct real interface. Might help Ticket #3357

cb431dbf 18 février 2014 09:59 Ermal

Pass the family to the get_real_interface function to retrieve the correct real interface. Might help Ticket #3357

faf92d53 18 février 2014 09:03 Ermal Luçi

Merge pull request #926 from N0YB/RELENG_2_1

XHTML Compliance

1370befa 18 février 2014 08:45 N0YB

XHTML Compliance

Open VPN Status

cb061c7f 17 février 2014 23:16 Renato Botelho

Merge pull request #925 from N0YB/RELENG_2_1

XHTML Compliance

b9a494f0 17 février 2014 22:37 N0YB

XHTML Compliance

NTP Status

cce4efbd 17 février 2014 21:19 Ermal Luçi

Merge pull request #924 from N0YB/RELENG_2_1

XHMTL Compliance

5a2e0c3b 17 février 2014 21:13 N0YB

XHMTL Compliance

Load Balancer Status

ecd9fd53 17 février 2014 21:00 Ermal

Move this global declaration to the proper file rather than backend code

64a093d6 17 février 2014 21:00 Ermal

Put a timeout of 30 seconds to aid with Ticket #3412

2076dc46 17 février 2014 21:00 Ermal

Put a timeout of 30 seconds to aid with Ticket #3412

ee9783e9 17 février 2014 21:00 Ermal

Move this global declaration to the proper file rather than backend code

548564f2 17 février 2014 20:30 Ermal Luçi

Merge pull request #923 from N0YB/RELENG_2_1

XHMTL Compliance

3ac9b8ae 17 février 2014 20:18 N0YB

XHMTL Compliance

IPsec Status Tabs
Mostly element closings and minimizations (nowrap), empty table row.

18b4e253 17 février 2014 19:45 Renato Botelho

Help ticket #3449:

Improve data validation to avoid save a host/subnet or a IPv4 with
invalid mask. The reported error is on javascript and only happen on
IE8,but this fix will prevent the same issue happening in the future on
a different browser.

c00e6bd4 17 février 2014 19:43 Renato Botelho

Help ticket #3449:

Improve data validation to avoid save a host/subnet or a IPv4 with
invalid mask. The reported error is on javascript and only happen on
IE8,but this fix will prevent the same issue happening in the future on
a different browser.

d78a548c 17 février 2014 19:02 Ermal Luçi

Merge pull request #922 from N0YB/RELENG_2_1

XHTML Compliance

fe672816 17 février 2014 18:52 N0YB

XHTML Compliance

RRD Graphs Update
Use CDATA section instead of clunky decode hex value for ampersand in script.

838e1f63 17 février 2014 16:20 Renato Botelho

Use correct parameter (bootfile-url) to configure netboot on DHCPdv6, it fixes #3421

b67ec10c 17 février 2014 16:20 Renato Botelho

Fix typo on variable name and really add custom options for dhcpdv6

bd942860 17 février 2014 16:20 Renato Botelho

Use correct parameter (bootfile-url) to configure netboot on DHCPdv6, it fixes #3421

547f1e65 17 février 2014 16:20 Renato Botelho

Fix typo on variable name and really add custom options for dhcpdv6

2b2d0d54 17 février 2014 15:18 Ermal

Normally when an ip is set the interface comes up on BSD stacks. Though push this commit which Fixes #3281

11ad160e 17 février 2014 15:18 Ermal

Normally when an ip is set the interface comes up on BSD stacks. Though push this commit which Fixes #3281

db9199d7 17 février 2014 15:18 Ermal

Whitespace fix

acbab51a 17 février 2014 15:11 Renato Botelho

Use htmlspecialchars(), a better solution for #2952

a8495e50 17 février 2014 15:11 Renato Botelho

Grab exec result just to be careful

f458b2cb 17 février 2014 15:11 Renato Botelho

Use htmlspecialchars(), a better solution for #2952

e4a4ec89 17 février 2014 15:11 Renato Botelho

Grab exec result just to be careful

fb92e332 17 février 2014 15:06 Ermal

Put a kludge for now which Fixes #3280. It should be improved later on to have proper handling and overloading of configuration functions

6191b321 17 février 2014 15:03 Ermal

Put a kludge for now which Fixes #3280. It should be improved later on to have proper handling and overloading of configuration functions

8f642577 17 février 2014 14:22 Ermal Luçi

Merge pull request #921 from phil-davis/RELENG_2_1

Enhanced validation of general DNS servers and gateways

cd5d6241 17 février 2014 13:00 Phil Davis

Enhanced validation of general DNS servers and gateways

e8b05b83 17 février 2014 11:37 Ermal

Consider setting of noconcurrent login for passthrough expiry of users. Fixes #3340

bae729da 17 février 2014 11:36 Ermal

Consider setting of noconcurrent login for passthrough expiry of users. Fixes #3340

89c7a9c8 17 février 2014 11:22 Ermal

Some tweaking to handle when switching off dhcpv6.

eae91304 17 février 2014 10:59 Ermal

Merge 10 -> 10.1 and 10.1 -> 10.2 function upgrade since the recent changes done on 2.1.1 for Ticket #3441

ec96f17d 17 février 2014 10:56 Ermal

Provide upgrade code after changes done for Ticket #3441

378296af 17 février 2014 10:48 Ermal

Use descr as the field name for voucher description so it gets CDATA protection. Fixes #3441

bd369bcf 17 février 2014 10:48 Ermal

Use descr as the field name for voucher description so it gets CDATA protection. Fixes #3441

2b76f145 17 février 2014 10:34 Ermal

Use the 11th column for the radius context rather than overriding the interim interval field with it. Fixes #3447

74a40221 17 février 2014 10:34 Ermal

Use the 11th column for the radius context rather than overriding the interim interval field with it. Fixes #3447

7a3f5120 17 février 2014 08:39 Ermal Luçi

Merge pull request #917 from phil-davis/master

Enhanced validation of general DNS servers and gateways

e505af1b 17 février 2014 08:36 Ermal Luçi

Merge pull request #920 from N0YB/RELENG_2_1

XHTML Compliance

4c0c5365 17 février 2014 08:22 N0YB

XHTML Compliance

Filter Reload Status
Mark script as CDATA section to avoid expansion of the begin tag entity (<).

6aa8b0de 15 février 2014 22:24 N0YB

XHTML Compliance

Filter Reload Status

df4471e2 15 février 2014 17:04 Phil Davis

Improve processing of DNS server changes

What a pain this was. The user can blank out a DNS server from a position in the middle of the list. e.g. they had all 4 entries previously filled, and then they blank out DNS server #3. The way the DNS servers are stored in the config, they are just the defined ones in an "un-indexed" array. So actually entries 1, 2 and 4 on the screen become 1st, 2nd and 3rd in the config. The selected gateways for 1, 2 and 4 then have to end up in positions 1, 2 and 3 to match the stored DNS servers....

349fdb3c 15 février 2014 10:30 Ermal Luçi

Merge pull request #919 from N0YB/RELENG_2_1

XHTML Compliance

00537a6b 15 février 2014 08:14 N0YB

XHTML Compliance

System Logs Wireless Tab

37227fbc 15 février 2014 08:11 N0YB

XHTML Compliance

System Logs Routing Tab

0681f6df 14 février 2014 19:02 Ermal Luçi

Merge pull request #918 from N0YB/RELENG_2_1

XHTML Compliance

fd889d72 14 février 2014 18:50 N0YB

XHTML Compliance

Status DHCPv6 Leases

bf4e62ac 14 février 2014 17:03 jim-p

Add a knob to let the user select which console (video or serial) is preferred in cases where there are multiple consoles present. Also provide a way to force this preference.

01c15762 14 février 2014 17:02 jim-p

Add a knob to let the user select which console (video or serial) is preferred in cases where there are multiple consoles present. Also provide a way to force this preference.

407fbf45 14 février 2014 15:58 jim-p

Add a mechanism by which the serial port can be forced on always regardless of the config setting. (useful for nano+vga setups)

9525f7a6 14 février 2014 15:58 jim-p

Add a mechanism by which the serial port can be forced on always regardless of the config setting. (useful for nano+vga setups)

fe640345 14 février 2014 14:19 Renato Botelho

Abort installation when pbi_add fails

d210dddf 14 février 2014 13:24 Renato Botelho

Fix #2952, escape necessary chars to avoid xss injection

429f454d 14 février 2014 13:24 Renato Botelho

Respect g['tmp_path']

5d56f235 14 février 2014 13:24 Renato Botelho

Use https to get updates, it helps #2952

dbfa041c 14 février 2014 13:23 Renato Botelho

Fix #2952, escape necessary chars to avoid xss injection

5f1c154d 14 février 2014 13:23 Renato Botelho

Respect g['tmp_path']

52acb1ff 14 février 2014 13:04 Phil Davis

Enhanced validation of general DNS servers and gateways

aea33635 14 février 2014 11:19 Renato Botelho

Add https to update URLs and replace RELENG_8_3 by RELENG_10_0

7d437401 14 février 2014 10:33 Renato Botelho

Merge pull request #916 from N0YB/RELENG_2_1

XHTML Compliance

d6e58836 14 février 2014 10:11 N0YB

XHTML Compliance

Status DHCP Leases

bbec4947 14 février 2014 08:40 Ermal Luçi

Merge pull request #915 from N0YB/RELENG_2_1

XHTML Compliance

909a3e55 14 février 2014 06:41 N0YB

XHTML Compliance

Create an empty row in tbody if there are no log entries displayed.

c5523ea6 14 février 2014 06:19 N0YB

XHTML Compliance

Create an empty row in tbody when there are no firewall log entries displayed.

6635f5b9 13 février 2014 12:32 Renato Botelho

Abort installation when pbi_add fails

8f38bc57 13 février 2014 08:42 Ermal Luçi

Merge pull request #913 from Aeyoun/string-max-connections-per-host-per-second

Change string to "Maximum new connections per host / per second(s)"

d5bdbe0c 13 février 2014 00:10 Daniel Aleksandersen

Change string to "Maximum new connections per host / per second(s)"

Clarifying the setting's meaning.

As suggested by forum member "Senser" on
https://forum.pfsense.org/index.php/topic,65472.msg356024.html#msg356024

25333e5a 12 février 2014 15:08 Renato Botelho

Obsolete old ipsec tools files

ff3d516f 12 février 2014 15:05 Ermal

Be specific on the authentication method to use since xauth-eap will be active as well

ede14b23 12 février 2014 10:42 Ermal

Correct script path

6c576b27 12 février 2014 10:41 Ermal

Remove references to racoon and correct some handling of ipsec configuration

ecc37958 12 février 2014 10:36 Ermal

Remove copy paste leftover

91287d1f 12 février 2014 10:35 Ermal

If specified add authentication script configuration to strongswan.conf

fe63645d 12 février 2014 10:28 Ermal

Remove not used anymore parameters

2a3e3057 12 février 2014 10:13 Ermal

Teach script to read authentication servers from environment

5833def1 11 février 2014 15:31 Renato Botelho

Fix symlink calls adding full link name, it fixes issue reported at https://forum.pfsense.org/index.php/topic,72405.0.html

80d708de 11 février 2014 15:30 Renato Botelho

Fix symlink calls adding full link name, it fixes issue reported at https://forum.pfsense.org/index.php/topic,72405.0.html

443ba8c9 11 février 2014 11:59 Ermal

Properly set the configuration here based on https://forum.pfsense.org/index.php/topic,68531.0.html

3442e353 11 février 2014 11:59 Ermal

Properly set the configuration here based on https://forum.pfsense.org/index.php/topic,68531.0.html

f188be51 11 février 2014 10:37 Ermal

Catch a validation issue reported on the mailing list thread: IPv6 address data validation from: Brian Candler. It prevents putting a subnet in the address field since it then breaks the whole filter generation process

ee41ab02 11 février 2014 10:37 Ermal

Catch a validation issue reported on the mailing list thread: IPv6 address data validation from: Brian Candler. It prevents putting a subnet in the address field since it then breaks the whole filter generation process

8c466abb 11 février 2014 10:30 Ermal

Make improvement to the check

6ce0e31c 11 février 2014 10:28 Ermal

When adding ip aliases on top of carp not in the subnet of the carp configured address but an ip alias of the real interface do not error out but accept this as a valid configuration.

d53d17ee 11 février 2014 09:21 Ermal Luçi

Merge pull request #912 from phil-davis/master

Check for tmp captiveportal dir before making it

6240ba7b 11 février 2014 04:05 Phil Davis

Check for tmp captiveportal dir before making it

In forum: https://forum.pfsense.org/index.php/topic,72483.0.html
Warning: mkdir(): File exists in /etc/inc/system.inc on line 878
Not sure if you would rather call safe_mkdir here?

83491ba5 10 février 2014 19:55 jim-p

Declare $config global so we can test the pkg_nochecksig option

51623673 10 février 2014 19:32 jim-p

Fixup pkg_nochecksig option

56e75b0b 10 février 2014 17:23 Ermal Luçi

Merge pull request #911 from candlerb/candlerb/3416

Fix for #3416

e0fc15d1 10 février 2014 17:03 Brian Candler

Fix for #3416

Correct javascript error which prevents PPP/PPPoE per-link settings from
being displayed (bandwidth, MTU, MRU, MRRU).

5ba0cdf6 10 février 2014 12:16 Ermal Luçi

Merge pull request #910 from phil-davis/RELENG_2_1

Releng 2 1 Standardize LAN net display

ad9f79d3 10 février 2014 12:06 Phil Davis

Standardise LAN net display

2e769d69 10 février 2014 12:02 Phil Davis

Standardise LAN net display

50e10c80 10 février 2014 12:00 Phil Davis

Standardise LAN net display

for 2.1.1

6901d6af 10 février 2014 11:54 Renato Botelho

Merge pull request #909 from phil-davis/RELENG_2_1

Releng 2 1 Return all stats when all or remote is selected on Traffic Graph

54995d41 10 février 2014 11:45 Phil Davis

Reorder Traffic Graph filter options so Local is default

188a4d55 10 février 2014 11:43 Phil Davis

Return all stats when all or remote is selected on Traffic Graph

and make the default query return "Local" traffic.

086191ba 10 février 2014 11:31 Renato Botelho

Merge pull request #906 from phil-davis/master

Return and filter appropriately when all or remote is selected on Traffic Graph

4b5554a8 10 février 2014 11:26 Renato Botelho

Merge pull request #908 from N0YB/XHTML_Compliance_RRD_Graphs

XHTML Compliance - RRD Graphs

18ed5f7d 10 février 2014 04:21 N0YB

XHTML Compliance - RRD Graphs

Close input tag

5f242576 09 février 2014 19:23 PiBa-NL

openvpn, allow for entering client user credentials in the WebGUI

fa6af314 09 février 2014 06:24 Phil Davis

Make Local the default filter for Traffic Graph

to preserve the previous standard behavior that shows "Local" when Traffic Graph starts.

737aef33 09 février 2014 06:21 Phil Davis

Make Local the default filter for Traffic Graph

to preserve the old behavior, that it shows "Local" traffic when first started.

5177b583 08 février 2014 16:41 Phil Davis

Return all when all or remote is selected on Traffic Graph

80f51429 08 février 2014 14:00 Ermal Luçi

Merge pull request #905 from N0YB/XHTML_Compliance_RRD_Graphs

XHTML Compliance - RRD Graphs

c7a1d428 08 février 2014 08:05 N0YB

XHTML Compliance - RRD Graphs

d4603714 07 février 2014 21:11 Francois Blanchette

Replaced gethostbyname() with gethostbynamel() to get a list of all IPs associated with the dns name and add them to the allowed list

c1d59c7a 07 février 2014 18:55 Phillip Davis

Enhance interface gateway data entry descriptions

6002c9be 07 février 2014 18:54 Phillip Davis

Enhance interface gateway data entry descriptions

b36aad25 07 février 2014 18:51 Phillip Davis

Enhance interface gateway data entry descriptions

974fb32c 07 février 2014 18:50 Phillip Davis

Enhance interface gateway data entry descriptions

657eabdf 07 février 2014 18:48 Phillip Davis

Enhance interface gateway data entry descriptions

59c6e218 07 février 2014 17:56 jim-p

Add specific permission for easyrule.

949735aa 07 février 2014 17:55 jim-p

Add specific permission for easyrule.

9143aaf4 07 février 2014 17:47 jim-p

Remove this sort. It's unnecessary and causes problems when editing and saving privileges, it can reorder users and cause edits to the wrong account.

b7ef3d17 07 février 2014 17:47 jim-p

Remove this sort. It's unnecessary and causes problems when editing and saving privileges, it can reorder users and cause edits to the wrong account.

eb83317a 07 février 2014 15:55 Chris Buechler

s/http/https/ for doc.pfsense.org

2fede2d9 07 février 2014 15:54 Chris Buechler

s/http/https/ for doc.pfsense.org

e5b5e29c 07 février 2014 13:41 Renato Botelho

Add support for signed PBI, help ticket #3365:

- Add an option to allow user to accept unsigned packages
- The only missing part is public key, that needs to be added to
/var/db/pbi/keys/pfSense.ssl

db58ccd0 07 février 2014 12:06 Ermal Luçi

Merge pull request #902 from phil-davis/master

Standardise LAN net display

447ad2f5 07 février 2014 11:03 Phil Davis

Standardise LAN net display

33b1bc17 07 février 2014 10:58 Phil Davis

Standardise LAN net display

04d270fe 07 février 2014 10:54 Phil Davis

Standardise LAN net display

On the main firewall rules multi-rule display it shows "LAN net" "WAN net" etc. But on the edit screen it shows "LAN subnet" "WAN subnet" etc. Make the edit screen have the same text as the main screen - this has ben a source of enough little questions/queries on the forum.

d292bd8d 06 février 2014 20:02 jim-p

Fix test, allows restoring last backup in the list. Fixes #3438

8d112d7d 06 février 2014 20:00 jim-p

Fix test, allows restoring last backup in the list. Fixes #3438

7b5a22ab 06 février 2014 13:37 Renato Botelho

Remove PBI scripts since it'll be installed dynamically by tools

496acde1 06 février 2014 12:49 Ermal

First swing at converting from racoon to StrongSWAN.
It allows to use existing configurations on xml to generate StrongSWAN configurations.
So its only IKEv1

  • Missing support for dynamic ips(hostnames)
    - resolver plugin of StrongSWAN needs to be configured in strongswan.conf...
dab351f3 05 février 2014 15:30 Renato Botelho

escapeshellarg() is not required here

b3e1ccb5 05 février 2014 15:29 Renato Botelho

escapeshellarg() is not required here

5293c5c7 05 février 2014 14:58 Warren Baker

Teach php-fpm about our required environment path

275f4b5a 05 février 2014 14:50 Renato Botelho

Revert "Set PATH before call pbi related binaries"

This was pushed by mistake

This reverts commit 4c9bda43f5bcfd5ba9812c84199bbe4f1f158960.

bc30d9c5 04 février 2014 21:39 Renato Botelho

Silent recently added symlink() calls

b3cbb077 04 février 2014 21:38 Renato Botelho

Fix some wrong escapeshellarg() calls

Conflicts:
etc/inc/filter_log.inc
etc/inc/pkg-utils.inc

38207029 04 février 2014 21:32 Renato Botelho

Silent recently added symlink() calls

7b27b18b 04 février 2014 21:14 Renato Botelho

Fix some wrong escapeshellarg() calls

af7a8373 04 février 2014 20:07 Renato Botelho

Simplify logic calling grep less times, as done on mail_reports.inc on 2c6efc9

7b7ad7f6 04 février 2014 20:06 Renato Botelho

Simplify logic calling grep less times, as done on mail_reports.inc on 2c6efc9

4bdb08e3 04 février 2014 20:02 Renato Botelho

Use unlink_if_exists or @unlink to avoid PHP errors when file doesn't exist

Conflicts:
usr/local/www/firewall_aliases_edit.php

552f5a6a 04 février 2014 20:01 Renato Botelho

Use unlink_if_exists or @unlink to avoid PHP errors when file doesn't exist

4b9011f5 04 février 2014 19:08 Ermal Luçi

Merge pull request #901 from Klaws--/patch-2

Added previously missing DSCP VA (requires kernel patch patch submitted ...

2517148e 04 février 2014 19:08 Ermal Luçi

Merge pull request #900 from Klaws--/patch-1

Added previously missing DSCP VA (requires kernel patch patch submitted ...

1eb03024 04 février 2014 15:47 Renato Botelho

Add escapeshellarg() calls on exec parameters. While I'm here, replace some exec() calls by php functions like symlink, copy, unlink, mkdir

Conflicts:
usr/local/www/diag_logs_vpn.php
usr/local/www/firewall_aliases_edit.php
usr/local/www/guiconfig.inc

46b12609 04 février 2014 15:43 Renato Botelho

Add escapeshellarg() calls on exec parameters. While I'm here, replace some exec() calls by php functions like symlink, copy, unlink, mkdir

Conflicts:
etc/inc/filter_log.inc
etc/inc/interfaces.inc
etc/inc/pfsense-utils.inc
etc/inc/pkg-utils.inc

44f2ef9b 04 février 2014 15:36 Renato Botelho

Fix an obvious typo on var name

0ae6d916 04 février 2014 15:36 Renato Botelho

Use php function to get hostname instead of exec()

93e350f5 04 février 2014 15:36 Renato Botelho

Add path for sysctl, also use -n param instead of awk

4dc89803 04 février 2014 15:36 Renato Botelho

Simplify logic

645018b2 04 février 2014 15:35 Renato Botelho

Use php function to get hostname instead of exec()

4744c6e4 04 février 2014 15:35 Renato Botelho

Add {} between variables inside quotes

7ea30d60 04 février 2014 15:35 Renato Botelho

Use php function to get hostname instead of exec()

eda41792 04 février 2014 15:35 Renato Botelho

Add {} between variables inside quotes

d31ca336 04 février 2014 15:34 Renato Botelho

Add escapeshellarg() calls on exec parameters. While I'm here, replace some exec() calls by php functions like symlink, copy, unlink, mkdir

39ed87e5 04 février 2014 15:34 Renato Botelho

Fix an obvious typo on var name

873c1701 04 février 2014 15:34 Renato Botelho

Add escapeshellarg() calls on exec parameters. While I'm here, replace some exec() calls by php functions like symlink, copy, unlink, mkdir

4f188f54 04 février 2014 15:34 Renato Botelho

Use php function to get hostname instead of exec()

1d9b51c6 04 février 2014 15:34 Renato Botelho

Add path for sysctl, also use -n param instead of awk

306f8556 04 février 2014 15:34 Renato Botelho

Simplify logic

f1777174 04 février 2014 15:34 Renato Botelho

Use php function to get hostname instead of exec()

8340d956 04 février 2014 15:34 Renato Botelho

Add {} between variables inside quotes

e6867c81 04 février 2014 15:34 Renato Botelho

Use php function to get hostname instead of exec()

3f4bd83b 04 février 2014 15:34 Renato Botelho

Add {} between variables inside quotes

4c9bda43 04 février 2014 15:34 Renato Botelho

Set PATH before call pbi related binaries

7962a55f 04 février 2014 14:31 Klaws--

Added previously missing DSCP VA (requires kernel patch patch submitted by me)

28c49959 04 février 2014 14:30 Klaws--

Added previously missing DSCP VA (requires kernel patch patch submitted by me)

2b8dfa4e 03 février 2014 15:35 jim-p

Using "limited" for ntp in this way denies client access. Issue #3384

ca79de53 03 février 2014 15:34 jim-p

Using "limited" for ntp in this way denies client access. Issue #3384

cf3189ff 03 février 2014 12:17 Renato Botelho

Merge pull request #897 from N0YB/RELENG_2_1

XHTML Compliance - Status: System logs: Firewall

be9f7794 31 janvier 2014 17:23 Warren Baker

Add link to Unbound under the menu item name of 'DNS Resolver'

511a51b3 31 janvier 2014 12:15 Ermal Luçi

Merge pull request #899 from N0YB/patch-12

Update shortcuts.inc

472e484c 31 janvier 2014 07:16 N0YB

Update shortcuts.inc

XHTML Compliance
Shortcuts edit link - r/&id/&id

30a58cf8 31 janvier 2014 03:29 N0YB

Couple style vertical-align corrections

f747c08c 30 janvier 2014 18:46 Renato Botelho

Sync pbi_create with pcbsd, add required functions.sh

03734bf7 30 janvier 2014 18:46 Renato Botelho

Remove arch from fall back url since it's a single dir now

e2ffc9d3 30 janvier 2014 11:06 Warren Baker

Dig is no longer available, drill is now the tool

327a4fc6 30 janvier 2014 11:03 Warren Baker

Make sure unbound starts

8e552911 30 janvier 2014 08:10 Warren Baker

Some grammer fixes spotted by Phil Davis

8fccab67 29 janvier 2014 20:51 Warren Baker

Make sure ACLs are saved correctly

519597bc 29 janvier 2014 20:08 Warren Baker

Reference right service reconfig function

1319d0f3 29 janvier 2014 20:08 Warren Baker

Add new xml array

9961044a 29 janvier 2014 19:49 Warren Baker

More html formatting

06b17388 29 janvier 2014 19:42 Warren Baker

Formatting

13ecf949 29 janvier 2014 19:41 Warren Baker

Table summary fix

7d8c57cd 29 janvier 2014 19:23 Warren Baker

Rename ACL file

56a87b19 29 janvier 2014 16:07 Warren Baker

Add additional functionality for stats and preconfigure variables

3b95d9ec 29 janvier 2014 16:06 Warren Baker

Add EDNS support for to resolv.conf

7ed0e844 29 janvier 2014 16:06 Warren Baker

Add GUI components for Unbound

923e49b1 29 janvier 2014 12:29 Warren Baker

Start and configure Unbound on boot

175dc861 29 janvier 2014 12:29 Warren Baker

Add Unbound service configuration

6671b7cd 29 janvier 2014 12:27 Warren Baker

Add chroot for Unbound

f20afeb6 29 janvier 2014 12:27 Warren Baker

Add Unbound code

33232486 29 janvier 2014 12:26 Warren Baker

Add Unbound to the services list

6d9a572d 29 janvier 2014 10:29 Warren Baker

Add Unbound to the system password and group files

d2848453 29 janvier 2014 01:50 N0YB

Include these check boxes.

82482a69 28 janvier 2014 20:01 Renato Botelho

Fix typo on variable name, it fixes #3414

f4a4bcbc 28 janvier 2014 20:01 Renato Botelho

Fix typo on variable name, it fixes #3414

f70adc82 28 janvier 2014 10:37 Phil Davis

Really fix #3376

Thanks to Grischa Zengel for spotting the semi-colon at the end of the "if" line that was the real cause. Please also back merge this to 2.1 branch.

f71b440b 28 janvier 2014 10:36 Renato Botelho

Merge pull request #896 from phil-davis/master

Really fix #3376 Alias Edit does not display correctly

93dcedc1 28 janvier 2014 07:49 N0YB

XHTML Compliance - Status: System logs: Firewall

An attribute value specification must be an attribute value literal unless SHORTTAG YES is specified
Quote (or escape) the quotes so they show up in the HTML.
Use style where attribute not supported.
Relocate tfoot to supported location and add tbody....

4dd00d25 28 janvier 2014 04:04 Phil Davis

Really fix #3376

Thanks to Grischa Zengel for spotting the semi-colon at the end of the "if" line that was the real cause. Please also back merge this to 2.1 branch.

886926e0 27 janvier 2014 20:03 Jim P

Merge pull request #895 from N0YB/RELENG_2_1

Also make the dialog_output query string option XHTML compliant.

4efc1c8d 27 janvier 2014 19:59 N0YB

Also make the dialog_output query string option XHTML compliant.

a43bdc39 27 janvier 2014 19:58 Jim P

Merge pull request #894 from N0YB/RELENG_2_1

Make select option XHTML compliant for "Number of lines to display".

df5501dc 27 janvier 2014 19:45 N0YB

Make select option XHTML compliant for "Number of lines to display".

http://validator.w3.org/check
"SELECTED" is not a member of a group specified for any attribute
<option value="7" SELECTED >7</option>

The name and VI delimiter can be omitted from an attribute specification only if SHORTTAG YES is specified...

2704796a 27 janvier 2014 11:10 Renato Botelho

Merge pull request #893 from N0YB/RELENG_2_1

The service status icon is not always in a table.

30469c9b 27 janvier 2014 07:53 N0YB

Missing a couple table element end tags.

cd6173f4 27 janvier 2014 06:58 N0YB

The service status icon (get_service_status_icon) is not always in a table.

So the caller should apply table td element, rather than the function.

Document type does not allow element "td" here <td class="listr" align="center">
The element named above was found in a context where it is not allowed.

ec5c28cd 25 janvier 2014 21:49 N0YB

Gateway Monitor Advanced Settings

Recommended changes made to calculated value input behavior.
Restrict interval to integer of 1 or greater.

452eb31e 25 janvier 2014 21:06 PiBa-NL

captive portal, don't generate rules for disabled portal

fbdd0466 25 janvier 2014 19:26 Renato Botelho

Obsolete openssl from ports files and also base nsupdate

22cc6582 25 janvier 2014 17:56 Renato Botelho

Fix nsupdate path

3c6787ed 25 janvier 2014 07:28 N0YB

Gateway Monitor Advanced Settings

Exposes 3 additional apinger configuration options in the gateway monitor advanced section which can either be set manually, calculated based on interval, or use the hard coded defaults.
1) Avg Delay Samples
2) Avg Loss Samples...

c241a3e8 25 janvier 2014 02:33 Renato Botelho

Merge pull request #888 from PiBa-NL/pkg-utils-append-log

pkg-utils do not clear first part of installation log.

206c15cc 25 janvier 2014 00:14 PiBa-NL

pkg-utils do not clear first part of installation log.

2ec95f1f 24 janvier 2014 11:33 Renato Botelho

Fix openssl path

8467c588 23 janvier 2014 13:05 Renato Botelho

Do not list the same CARP ip as an option for Interface

54597012 21 janvier 2014 19:49 Renato Botelho

Replace regex by explode as suggested by Ermal

505d5c7a 21 janvier 2014 19:40 Renato Botelho

Fix typo on variable name

613a94b3 21 janvier 2014 19:38 Renato Botelho

Fix typo on variable name

43045948 21 janvier 2014 13:38 Renato Botelho

Revert "Fix #3350. Do not destroy an interface when it's being disabled"

Ermal reported issues when changes are made on VLAN parent interface
with this patch. He did other changes and interface_configure() will now
be able to re-create VLAN interface

This reverts commit f70a140fe18cb80012e53f82c268788fbcae5436.

d9797fd6 21 janvier 2014 13:36 Renato Botelho

Revert "Fix #3350. Do not destroy an interface when it's being disabled"

Ermal reported issues when changes are made on VLAN parent interface
with this patch. He did other changes and interface_configure() will now
be able to re-create VLAN interface

This reverts commit 5bc623536d8bb3b93e68a1b1535c9de582721a09.

b4d772dc 20 janvier 2014 19:59 Ermal Luçi

Correct this i thought i already did. Thanks-to: Phil Davis for spotting

d760445e 20 janvier 2014 16:09 Ermal

Do not need to go in the internet world to start a package

44b19298 20 janvier 2014 16:00 Ermal
  • Do not call stop service in the start command.
  • Add some more checks into the functions to avoid errors
  • Also silence some output that can cause issues
770a7759 20 janvier 2014 13:53 Renato Botelho

Fix FreeBSD version detection for 10.x

aefc6bc2 20 janvier 2014 12:36 Renato Botelho

Obsolete old ntp binaries

c42d721b 20 janvier 2014 12:35 Renato Botelho

Obsolete old ntp binaries

93a79543 16 janvier 2014 15:13 jim-p

Bump version

254df317 16 janvier 2014 14:30 Ermal Luçi

Merge pull request #887 from brunostein/tracker_firewall_rule

added input hidden with tracker value

72b774aa 16 janvier 2014 13:31 bruno

added input hidden with tracker value

fdfa8f43 15 janvier 2014 18:35 jim-p

ports ntp moved to sbin, follow

3d54553b 15 janvier 2014 18:28 jim-p

ports ntp moved to sbin, follow

096f73b4 15 janvier 2014 00:34 Renato Botelho

Merge pull request #886 from dotike/master

locale path name clarification

7219bde6 14 janvier 2014 04:05 Isaac (.ike) Levy

include gettext locales in line encoding list

portable object (.po) and portable object translation (.pot) files

Signed-off-by: Isaac (.ike) Levy <>

2459a956 14 janvier 2014 04:05 Isaac (.ike) Levy

Cleanup- most languages simply need the ascii abreviation.

Ful country code and encoding was necessary for pt_BR.ISO8859-1, (Brazilian Portuguese), and since it was the first translation, I followed the same format.

Signed-off-by: Isaac (.ike) Levy <>

d2dd5794 13 janvier 2014 09:56 Chris Buechler

updates to license.php

c80f2b44 13 janvier 2014 09:54 Chris Buechler

updates to license.php

706ba0e4 10 janvier 2014 17:41 jim-p

Use "disable monitor" in NTP config to mitigate CVE-2013-5211.

3e146089 10 janvier 2014 17:41 jim-p

Use "disable monitor" in NTP config to mitigate CVE-2013-5211.

c349f263 10 janvier 2014 08:40 Chris Buechler

Merge pull request #884 from dotike/master

Phase 1 ja_JA.UTF8 Translation

43656206 09 janvier 2014 09:23 Chris Buechler

Should to go master, not RELENG_2_1. Revert "Merge pull request #882 from derelict-pf/cp-nohttpsforwards"

This reverts commit f8d1587b6e2cd8441fa16733a02af25257fc7708, reversing
changes made to 51922cb793b83bf7d22fdaa47205fd59b4d70e87.

f8d1587b 09 janvier 2014 09:18 Chris Buechler

Merge pull request #882 from derelict-pf/cp-nohttpsforwards

Add checkbox and logic to disable forwarding HTTPS/SSL (Port 443)

fadfef2b 09 janvier 2014 04:05 Isaac (.ike) Levy

removing my fork README

Signed-off-by: Isaac (.ike) Levy <>

e424ca74 09 janvier 2014 04:05 Isaac (.ike) Levy

bug address

Signed-off-by: Isaac (.ike) Levy <>

93847971 09 janvier 2014 04:05 Isaac (.ike) Levy

Machine Translation (Phase 1) Complete.

Next steps:
- generate the .mo files and try loading it up
- Japanese Native Speaker(s) sanity pass through
(roughly 20% complete already)
- Review by pfSense authors/community

Signed-off-by: Isaac (.ike) Levy <>

04571fb6 09 janvier 2014 04:05 Isaac (.ike) Levy

Machine generation used Google Translate API, translate.google.com, and Mort Yao's goog le-translate-cli

Wrapped some parsing around the following utility by Mort Yao,
https://github.com/soimort/google-translate-cli

Signed-off-by: Isaac (.ike) Levy <>

fe8747ed 09 janvier 2014 04:05 Isaac (.ike) Levy

first full machine run

Signed-off-by: Isaac (.ike) Levy <>

a2e31d7d 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: great, but this process requires tedious re-running the program.

Next step: wrap the translation step in a timeout, and print some simple hook in the output so you can find it for the machine translation copy/paste dance

Signed-off-by: Isaac (.ike) Levy <>

5e269b45 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: cleanup and continued translation

Signed-off-by: Isaac (.ike) Levy <>

20c5f316 09 janvier 2014 04:05 Isaac (.ike) Levy

X-Generator: vim(1), awk(1), sed(1) - for real.

Signed-off-by: Isaac (.ike) Levy <>

7a716fa2 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: trying to speed up machine translation

Signed-off-by: Isaac (.ike) Levy <>

21e23bc2 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: pass through to correct minor syntax

Signed-off-by: Isaac (.ike) Levy <>
Signed-off-by: Kiyo Takami <>

0cd6ed3b 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: mechincal first pass

Signed-off-by: Isaac (.ike) Levy <>

f8c3f30d 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: continuing with machine translation, several heavily repeated phrases scrutinized

Signed-off-by: Isaac (.ike) Levy <>

60644dad 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: plowing ahead with machine translation

Signed-off-by: Isaac (.ike) Levy <>

5f01b774 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: continuing machine translation first pass

Signed-off-by: Isaac (.ike) Levy <>

c7056c99 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: carp and interface bits, continued first pass machine translation

Signed-off-by: Isaac (.ike) Levy <>

5d2b2df0 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: firewall, interfaces, still plowing through machine translation

Signed-off-by: Isaac (.ike) Levy <>

fbf5a7d8 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: RADIUS and Captive Portal messages, machine translations

Signed-off-by: Isaac (.ike) Levy <>

1023edb2 09 janvier 2014 04:05 Isaac (.ike) Levy

encoding change, and wrapping up LDAP sections rough pass

Signed-off-by: Isaac (.ike) Levy <>

70d8b7b0 09 janvier 2014 04:05 Isaac (.ike) Levy

continued cumulative machine translations

Signed-off-by: Isaac (.ike) Levy <>

cd134df7 09 janvier 2014 04:05 Isaac (.ike) Levy

Temporary README for GitHub fork

Signed-off-by: Isaac (.ike) Levy <>

2129ac6a 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot: country names

Signed-off-by: Isaac (.ike) Levy <>

826cfb5c 09 janvier 2014 04:05 Isaac (.ike) Levy

jp syntax change

Signed-off-by: Isaac (.ike) Levy <>

8908eeed 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot, continuing to run through with rough human-augmented machine translation

Signed-off-by: Isaac (.ike) Levy <>

086689be 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot, continuing to run through with rough human-augmented machine translation

Signed-off-by: Isaac (.ike) Levy <>

25ae07d0 09 janvier 2014 04:05 Isaac (.ike) Levy

workspot- plowing through with rough human-augmented machine translation

Signed-off-by: Isaac (.ike) Levy <>

002722b7 09 janvier 2014 04:05 Isaac (.ike) Levy

start by copying pt_BR locale

Signed-off-by: Isaac (.ike) Levy <>

33e72874 07 janvier 2014 16:59 Ermal Luçi

Merge pull request #880 from phil-davis/master

Check for vertical bars in alias detail descriptions

7d14b000 07 janvier 2014 16:05 Phil Davis

Check for vertical bar at start or end of description

24445691 07 janvier 2014 15:59 Phil Davis

Check for vertical bars in alias detail descriptions

The descriptions of each entry in an alias are stored in config.xml as a list delimited by "||". So you cannot have "||" in the actual description (or the description effectively splits into the next entry). Also you cannot start or end the description with "|" or it will be very confusing having the config with "|||" in it....

51922cb7 07 janvier 2014 11:58 Renato Botelho

Add 'limited' to ntpd restrict list to workaround CVE-2013-5211. It fixes #3384

6b660731 07 janvier 2014 11:58 Renato Botelho

Add 'limited' to ntpd restrict list to workaround CVE-2013-5211. It fixes #3384

7c2ea0cc 07 janvier 2014 10:41 Phil Davis

Update reserved_keywords checks to match firewall_aliases_edit

firewall_aliases_import should have the same checks for reserved names as firewall_aliases_edit
This code should really be in a function in a common include file, but which one is the appropriate one?...

fe56417f 07 janvier 2014 10:39 Renato Botelho

Merge pull request #879 from phil-davis/master

Update reserved_keywords checks to match firewall_aliases_edit

4410f699 06 janvier 2014 18:09 jim-p

This might also say "icmpv6" here and lead to a bad rule.

0959b4d3 06 janvier 2014 18:08 jim-p

This might also say "icmpv6" here and lead to a bad rule.

81f19476 06 janvier 2014 17:11 Renato Botelho

Add an option to force a gateway to be down, it fixes #2847

de3987e5 06 janvier 2014 16:02 Phil Davis

Update reserved_keywords checks to match firewall_aliases_edit

firewall_aliases_import should have the same checks for reserved names as firewall_aliases_edit
This code should really be in a function in a common include file, but which one is the appropriate one?...

30e2adbc 06 janvier 2014 15:35 Ermal Luçi

Merge pull request #871 from phildd/master

Dynamic DNS: List GWGs in Interface to send update from

7ad4b9b7 06 janvier 2014 08:31 Ermal Luçi

Merge pull request #878 from phil-davis/master

Bulk Import: fix copy-paste var name error

3b4e6952 06 janvier 2014 03:43 Phil Davis

Bulk Import: fix copy-paste var name error

b760fd31 05 janvier 2014 12:18 Ermal Luçi

Merge pull request #877 from phil-davis/master

Allow individual line descriptions on alias bulk import

8c470066 05 janvier 2014 10:35 Phil Davis

Allow individual line descriptions on alias bulk import

This enhancement allows the user to make a text file of IP addresses, IP subnets and/or IP ranges, like they have always been able to do, but with this they can put a description after each IP number and that description text will be saved in the alias. All existing functionality without specifying a description is unchanged, so it is backward-compatible....

f05bf59b 03 janvier 2014 23:00 Ermal Luçi

Merge pull request #875 from dotike/spellcheck

minor spelling correction for pfSense master branch

41681aa6 03 janvier 2014 22:41 Isaac (.ike) Levy

minor spelling correction for pfSense master branch

Signed-off-by: Isaac (.ike) Levy <>

4e6405b9 03 janvier 2014 16:56 Ermal

Oops correct php syntax

21f82ab6 03 janvier 2014 16:05 Ermal

Do not allocate the same pipe to everyone rather give each person its own!

762b34c4 03 janvier 2014 16:05 Ermal

Do not allocate the same pipe to everyone rather give each person its own!

f38b383b 03 janvier 2014 15:53 Ermal

Use empty here for testing even if the setting is unset

c8d611ed 03 janvier 2014 15:52 Ermal

Use empty here for testing even if the setting is unset

a3a1b24e 03 janvier 2014 14:24 Ermal

Move to zerocopy_enbale for bpf to optimize bpf logging which uses bpf interface. This should increase the general performance since pflog is always enabled.

723f0ac9 03 janvier 2014 09:33 Chris Buechler

Merge pull request #873 from tuyan/patch/copyright_years

Update product_copyright_years end to be calculated on the fly.

2bb93345 02 janvier 2014 16:57 Tuyan Ozipek

Update copyright_years to be calculated on the fly.

8f56dd27 02 janvier 2014 12:58 phildd

DyndDNS edit: unset vars when no longer used

0350084d 02 janvier 2014 12:13 Renato Botelho

fix syntax

2a45e05f 02 janvier 2014 11:41 Renato Botelho

Fix filter regex

52311f0c 02 janvier 2014 10:20 Renato Botelho

Merge pull request #870 from blagynchy/patch-1

Happy New Year 2014!

9dc3f2bb 02 janvier 2014 00:54 blagynchy

Happy New Year 2014!

Optimal: Just updating the copyright years;

I wish to all of you all of health, happiness and good luck of earth to be in your hands for the new year! Other will come up later :)

And make pfsense better then before, more flexible for management/viewing from web (3rd party) using samba,ftp,whois,hw temp..etc....

31dce430 31 décembre 2013 13:28 Ermal

Upgrade all firewall rules to include a tracker field. Add a tracker field even for nat for later usage while here.

2006d7a4 31 décembre 2013 13:23 Ermal

Generate a tracker id for the filter rules for now. Maybe for nat rules as well?

ba1c86d9 30 décembre 2013 17:14 Ermal

Remove scrub as well

31300a95 30 décembre 2013 16:45 phildd

List GWGs in Interface to send update from

32fd1703 30 décembre 2013 16:27 Ermal

Remove even negating nat rules

a03dfc60 30 décembre 2013 15:47 Ermal

Correct matching for single rule. Somehow the egrep did not work there!

b80e29e4 30 décembre 2013 15:34 Ermal

Speed up a bit rule number identification by avoiding going into kernel but using the rules parsing of pf which gives the same effect.

239024ee 30 décembre 2013 12:56 Renato Botelho

Merge pull request #866 from andrespetralli/master

Enabling advanced RFC 2136 configuration for DHCPd service

44b72c67 30 décembre 2013 10:23 Phil Davis

Fix display of CIDR/Update Freq in Alias Edit

Fixes #3376. I have no idea what the "^" characters were meant to do, but removing them makes the CIDR/Update Freq value be displayed correctly when editing. Will there be some other side-effect from removing the "^"?

d564ed24 30 décembre 2013 10:23 phildd

Validate IP address ranges correctly on Alias Bulk Import

The code was there to attempt to validate and implement IP address range lines in Alias Bulk Import e.g.
10.20.0.0-10.21.22.0
should produce a bunch of smaller ranges with appropriate CIDRs.
This fixes the code so IP address ranges actually make it through into the resulting Alias.

737f26e9 30 décembre 2013 09:07 Ermal Luçi

Merge pull request #868 from phildd/master

Validate IP address ranges correctly on Alias Bulk Import

ef1c9f09 30 décembre 2013 09:06 Ermal Luçi

Merge pull request #867 from phil-davis/master

Fix display of CIDR/Update Freq in Alias Edit

54e81df0 29 décembre 2013 17:05 phildd

Validate IP address ranges correctly on Alias Bulk Import

The code was there to attempt to validate and implement IP address range lines in Alias Bulk Import e.g.
10.20.0.0-10.21.22.0
should produce a bunch of smaller ranges with appropriate CIDRs.
This fixes the code so IP address ranges actually make it through into the resulting Alias.

1b9ab14a 29 décembre 2013 15:12 Phil Davis

Fix display of CIDR/Update Freq in Alias Edit

Fixes #3376. I have no idea what the "^" characters were meant to do, but removing them makes the CIDR/Update Freq value be displayed correctly when editing. Will there be some other side-effect from removing the "^"?

5a890490 27 décembre 2013 22:51 Ermal

Modernize a bit the sshd sart file

9be0ec8a 27 décembre 2013 22:38 Ermal

Use the check properly!

635c00d3 27 décembre 2013 22:35 Ermal

Correct the check to what was intended

d68494e6 27 décembre 2013 22:34 Ermal

Correct the check to what was intended

57b02731 27 décembre 2013 21:50 Ermal

Remove not needed code

f6d89471 27 décembre 2013 21:49 Ermal

Make sense of interface mtu handling code. No need to do unneeded operations. This fixes slow boot times and proper handling of mtu for vlans though some work or better model is needed for other interface types. Manual merge of 53555bf2f796cd53cf649410fe1827a9a45fc4a7

53555bf2 27 décembre 2013 21:37 Ermal

Make sense of interface mtu handling code. No need to do unneeded operations. This fixes slow boot times and proper handling of mtu for vlans though some work or better model is needed for other interface types.

aaa78416 27 décembre 2013 19:10 jim-p

Add sshd service to list (if enabled)

1a4ef44e 27 décembre 2013 15:58 Renato Botelho

Delete static route when monitor IP is removed, also save monitor IP even when it's disabled

14be28af 27 décembre 2013 15:58 Renato Botelho

No reason to set the same value to ipprotocol

fcd01c8a 27 décembre 2013 15:12 Renato Botelho

Delete static route when monitor IP is removed, also save monitor IP even when it's disabled

ee574a9e 27 décembre 2013 15:02 Renato Botelho

Fix a bug introduced in commit 06b8d43c that breaks return_gateways_array() called with $disabled == false

63fee576 27 décembre 2013 14:55 Renato Botelho

No reason to set the same value to ipprotocol

ffe6f371 27 décembre 2013 04:22 Chris Buechler

fix typo

2aff8089 26 décembre 2013 22:52 jim-p

Fix wording/spacing

5c427ce7 26 décembre 2013 22:41 jim-p

Add support for local (push route) and remote (iroute) network definitions in an OpenVPN client-specific override entry.

9bc68540 26 décembre 2013 22:11 jim-p

Make this box a little narrow so it doesn't force the descriptions to wrap.

141254eb 26 décembre 2013 21:54 Ermal

Use empty even here

7cbfc265 26 décembre 2013 21:47 jim-p

Add a "status" subcommand to the svc php shell script.

fed1b372 26 décembre 2013 21:28 Ermal

Check if there is a value before trying to do any operation

c7a3356e 26 décembre 2013 21:27 jim-p

Add a setting to allow the user to specify the clog file size so more (or less) entries may be kept in the raw logs. Retain previous default size values if the user has not specified a preferred size. Files can only be resized when initialized, so provide a "Reset All Logs" button as well to force clear all logs and set them up at the new size.

7b03748b 26 décembre 2013 20:27 Ermal

Correct the php-fpm configuration generation

3f248cb6 26 décembre 2013 19:10 Renato Botelho

Fix #3354, savecore -C only expects dumpdev

e1ebe9e2 26 décembre 2013 18:53 jim-p

Add an option for users to be able to adjust how many configuration revisions are kept in the local backup cache.

bfe615ee 26 décembre 2013 17:07 jim-p

Show backup file size in config history.

57671f81 26 décembre 2013 16:51 jim-p

Fix syntax, unbreak dashboard

fd34b8b5 24 décembre 2013 18:27 Renato Botelho

Fix syntax

9e63dca9 24 décembre 2013 17:28 Ermal

Use intval even here

b0ae5213 24 décembre 2013 17:25 Ermal

Use intval here to not trust php and also use empty which gives more protections

59257969 24 décembre 2013 16:51 Ermal

Sprinkle some more unsets

e6756251 24 décembre 2013 16:06 Renato Botelho

Remove /var/run/booting early to be consistent with $g['booting']

f9dfaeae 24 décembre 2013 16:04 Renato Botelho

Revert "Make sure functions called by rc.start_packages can see $g['booting'] when we are booting"

This reverts commit 5eb99ec9fae6b6ff077559b3feab8565701f2635.

0450ae55 24 décembre 2013 16:04 Renato Botelho

Revert "Only unset $g['booting'] when it was set here"

This reverts commit 73abb573feae03b164d3ed4284db4ed4ff26a256.

5551d818 24 décembre 2013 16:04 Renato Botelho

Remove /var/run/booting early to be consistent with $g['booting']

677a6426 24 décembre 2013 16:01 Renato Botelho

Revert "Make sure functions called by rc.start_packages can see $g['booting'] when we are booting"

This reverts commit 8a461f41db7907b310171b6e0fb901b2f5e7e2fe.

afd33d68 24 décembre 2013 16:01 Renato Botelho

Revert "Only unset $g['booting'] when it was set here"

This reverts commit 47493bd326cd7141df7df708b69e10479ed800af.

73abb573 24 décembre 2013 15:43 Renato Botelho

Only unset $g['booting'] when it was set here

47493bd3 24 décembre 2013 15:42 Renato Botelho

Only unset $g['booting'] when it was set here

5eb99ec9 24 décembre 2013 15:17 Renato Botelho

Make sure functions called by rc.start_packages can see $g['booting'] when we are booting

e2edc30d 24 décembre 2013 15:16 Renato Botelho

When WANTIME is empty, there is nothing to do here

811ecea4 24 décembre 2013 15:16 Renato Botelho

test only does integer comparison, use bc to compare float

8f105c8a 24 décembre 2013 15:16 Renato Botelho

Save status even if no script is executed

98864780 24 décembre 2013 15:16 Renato Botelho

On first run REVIOUSSTATUS doesn't exist, so it cannot be UP or DOWN, invert the logic to fix this. While I'm here, check if file exists before cat it

8a461f41 24 décembre 2013 15:15 Renato Botelho

Make sure functions called by rc.start_packages can see $g['booting'] when we are booting

72a95734 24 décembre 2013 15:09 Renato Botelho

When WANTIME is empty, there is nothing to do here

67e86129 24 décembre 2013 15:08 Renato Botelho

test only does integer comparison, use bc to compare float

128cc1f4 24 décembre 2013 15:07 Renato Botelho

Save status even if no script is executed

cd14bb19 24 décembre 2013 15:06 Renato Botelho

On first run REVIOUSSTATUS doesn't exist, so it cannot be UP or DOWN, invert the logic to fix this. While I'm here, check if file exists before cat it

15bec718 24 décembre 2013 11:52 Ermal

While here unset some variables even on vouchers side

1f965b69 24 décembre 2013 11:45 Ermal

Merge manually 4fd85b115e2550969ddeadd43a2bc6dafff21779 3f2ae9d58f5ea3d9de175e8daa9c8902b3f23440 and e049c5e74f009430e22e446f149a552d00846d7a

a2a42c72 24 décembre 2013 11:34 Ermal

Remove not relevant comment now. Also make the operation clear to avoid priority issues.

e049c5e7 24 décembre 2013 11:28 Ermal

unset these values to not confuse php

3f2ae9d5 24 décembre 2013 11:23 Ermal

Properly initialize this

4fd85b11 24 décembre 2013 11:22 Ermal

Switch to a while loop to make things clear and readble. Also properly set zone dedicated rules in the rules/pipes DBs to properly release when a zone is deactivated

27cea9a3 24 décembre 2013 11:00 Ermal

Remove not relevant comment now. Also make the operation clear to avoid priority issues.

9172982d 24 décembre 2013 07:59 Chris Buechler

Merge pull request #863 from dhiltonp/master

/usr/local/www/system.php: strip excess whitespace from ntp field

87019fc4 24 décembre 2013 05:20 Andres Petralli

Enabling advanced RFC 2136 configuration for DHCPd service

This change adds the ability to configure RFC 2136 domain name updates
using a hmac-md5 keyname/key.

56301bed 23 décembre 2013 20:28 Renato Botelho

Fix DHCP lease time display, strftime already convert it to local timezone, so we no need to calc offset

d8b37f91 23 décembre 2013 20:27 Renato Botelho

Fix DHCP lease time display, strftime already convert it to local timezone, so we no need to calc offset

f2aa8287 23 décembre 2013 17:40 Renato Botelho

Remove 'deny unknown clients' option from DHCPv6 since it's not supported, it fixes #3364

079c2927 23 décembre 2013 17:40 Renato Botelho

Remove 'deny unknown clients' option from DHCPv6 since it's not supported, it fixes #3364

26b6e758 23 décembre 2013 17:16 jim-p

Make sure to give the zone a name during the upgrade, or else it comes through with a blank/null name.

db817c93 23 décembre 2013 17:15 jim-p

Make sure to give the zone a name during the upgrade, or else it comes through with a blank/null name.

66cc4d43 23 décembre 2013 15:57 Ermal

Correct displaying states status and avoid divison by zero due to wrong data collected

e20a0af7 22 décembre 2013 14:37 phildd

Avoid dashboard divide by zero errors

0b5d55b7 22 décembre 2013 14:35 Chris Buechler

Merge pull request #865 from phildd/master

Avoid dashboard divide by zero errors

15183bcb 22 décembre 2013 12:49 phildd

Avoid dashboard divide by zero errors

e98daec5 21 décembre 2013 02:25 derelict-pf

Add checkbox and logic to disable forwarding HTTPS/SSL (Port 443)
connections to the captive portal if HTTPS logins is enabled.

3e5933f2 20 décembre 2013 23:50 Ermal

Use return rather than exit to be friendly on CGI

af8251cc 20 décembre 2013 23:49 Ermal

Addapt rc.newwanipv6 to FCGI calling

e800a773 20 décembre 2013 23:45 Ermal

Call rc.newwanipv6 efficently through FCGI

362ec35d 20 décembre 2013 23:32 Ermal

Do not register the _ENV superglobal since its not required and probably not very useful in a [F]CGI world and its limit is restricted nowdays in pfSense.

aa205c3b 20 décembre 2013 23:08 Ermal

Rmoeve register_long_arrays from php.ini and from php code the use of HTTP_*_VARS as its deprecated and luckily low use in pfSense to win memory and compativility

cc263020 19 décembre 2013 15:52 Ermal

Provide a setting to disable the auto added LAN SPDs in the DB

85d0e959 19 décembre 2013 10:20 Ermal

Make even ipsec script ready for GET arguments but later on it will be used as such

b2af12ad 19 décembre 2013 10:12 Ermal

Use closelog to explicitly close open resource.

b95b40a1 19 décembre 2013 10:10 Ermal

Move also tls-verify to fcgicli to avoid forking php process. Maybe even this should be done as a plugin to avoid overhead of forking.

5e28dad4 19 décembre 2013 09:53 Ermal

Migrate openvpn authentication to use fcgicli rather than forking a php process. Maybe should could consider to write a short library todo this

27a01557 18 décembre 2013 23:00 Ermal

Use proper function to check for ipaddr and also do not call the module ip set function since its only v4 fro now

6a3b4601 18 décembre 2013 22:59 Ermal

Correct removing the ip addresses from an interface!

00e8315b 18 décembre 2013 22:57 Ermal

Correct issues not only with vlans but all other clonable interfaces(related to Ticket #3270. Also correct removing old ip addresses from the interface and handling the right interface on interface renabling.

78c36733 18 décembre 2013 22:45 Ermal

Use does_interface_exist rather than calling ifconfig directly

e677dd06 18 décembre 2013 14:51 Ermal

Set latest config version

e7d35d84 18 décembre 2013 14:50 Ermal

Convert ipaliases over carp to new world order

f3512fca 17 décembre 2013 20:41 jim-p

Reduce the total minutes by the remote minutes used, do not use the value directly. Otherwise the voucher will be cut short or listed invalid when it otherwise should have time left over.

e183e1ce 17 décembre 2013 20:38 jim-p

Reduce the total minutes by the remote minutes used, do not use the value directly. Otherwise the voucher will be cut short or listed invalid when it otherwise should have time left over.

1848a25e 16 décembre 2013 21:12 jim-p

Fix saving of voucher sync settings.

c1d5f0ef 16 décembre 2013 21:11 jim-p

Fix saving of voucher sync settings.

00e55088 16 décembre 2013 14:57 Ermal

Register a function to unset certain globals after requests finish processing to release memory early

5be2085a 16 décembre 2013 14:34 Ermal

Rely on memory rather than LOWMEM boolean

6d7ee1ab 15 décembre 2013 22:26 Ermal

Use same value consistently for configuration and tolerate a bit more

08b64f79 15 décembre 2013 22:15 Ermal

Use events to start sshd rather than relying on forking

815f1f77 15 décembre 2013 21:43 Ermal

Support if called from fastcgi

1c3d2cd3 15 décembre 2013 21:41 Ermal

Send events to check_reload_status for carp master/backup

1590947b 15 décembre 2013 20:11 Ermal

Call all php scripts in bootup with fcgicli. For rc.bootup only the part needing input needs to be abstracted

83e46727 14 décembre 2013 22:42 Ermal

Mute the output of the command since its not really useful

73c3eed8 14 décembre 2013 22:39 Ermal

Remove deprecated sysctls. vfs.forcesync needs to be seen if the patch needs to be put in place again!

9e0fb701 14 décembre 2013 22:21 Ermal

Use system ident rather than php-fpm for system logs

4aea91d8 14 décembre 2013 20:20 Ermal

Switch to php-fpm for lighty and check_reload_status will use it. Step by step will migrate the other calls

da49fd89 14 décembre 2013 12:22 Renato Botelho

Remove a probably bad copy/paste line

c71b14fd 14 décembre 2013 00:09 Ermal

Make scripts able to react when called from FCGI with GET method

a1007e19 13 décembre 2013 23:58 Ermal

Properly detect if an ip is already configured for VIP. Remove useless checks for carp

92603e27 13 décembre 2013 19:34 Renato Botelho

Add an option to restore default logout/error/portal custom pages on Captive Portal. Fixes #3362

940ef0e3 12 décembre 2013 20:32 jim-p

Fix parsing of the rule number in the pf log on FreeBSD 10.x, part of Bug #2122

8adb814b 12 décembre 2013 12:21 David P Hilton

/usr/local/www/system.php: strip excess whitespace from ntp field before processing

aebf41df 10 décembre 2013 15:08 Renato Botelho

Use current racoon.conf syntax to avoid issues when deprecated one is removed, it fixes #3338

b3b3d115 09 décembre 2013 12:49 Phil Davis

Check that DHCP end IP is >= DHCP start IP

2c712868 09 décembre 2013 12:49 Phil Davis

Use correct vars for IPv6 when checking subnet start and end

bed4017e 09 décembre 2013 12:48 Renato Botelho

Merge pull request #862 from phil-davis/master

Fixes for DHCP range validation when entering from console

d8b011b8 09 décembre 2013 12:22 Renato Botelho

Fix vpn_pppoe_get_id and stop duplicating pppoeid for multiple servers, it fixes #2286

fb7c06b8 09 décembre 2013 12:22 Renato Botelho

Fix vpn_pppoe_get_id and stop duplicating pppoeid for multiple servers, it fixes #2286

5a997d96 09 décembre 2013 12:07 Phil Davis

Use correct vars for IPv6 when checking subnet start and end

60818ff2 09 décembre 2013 11:58 Renato Botelho

tidy up html

e9bf4980 09 décembre 2013 11:42 Renato Botelho

Fix whitespaces and indent

12f5a2d8 09 décembre 2013 10:53 Phil Davis

Check that DHCP end IP is >= DHCP start IP

9b749311 09 décembre 2013 10:08 Phil Davis

Fix checking DHCP end IP is in range

Cut-paste bug

69116e98 09 décembre 2013 10:06 Renato Botelho

Merge pull request #861 from phil-davis/master

Fix checking DHCP end IP is in range

3038ece7 09 décembre 2013 04:15 Phil Davis

Fix checking DHCP end IP is in range

Cut-paste bug

a364ecd0 07 décembre 2013 21:50 dwayne voelker

added missing quotes

thx rbgarga

0c8fb222 07 décembre 2013 21:50 dwayne voelker

Allow setting a default scale type preference for the traffic graphs widget

I originally submitted this at https://redmine.pfsense.org/issues/2994
but it seems that is not used for commits now so I am adding it here.
It works great on my box, and I can't see these changes causing any...

3c263d45 07 décembre 2013 21:49 Renato Botelho

Merge pull request #860 from iamzam/RELENG_2_1

Allow setting a default scale type preference for the traffic graphs wid...

52d5ef8d 07 décembre 2013 20:29 Ermal

Nice race on FreeBSD 10 for carp seems you cannot do on the same command line the carp config due to inherent races. Account for this

84b23cce 07 décembre 2013 19:54 Ermal

This needs to have alias added to not remove the interface ip

7a7ba89a 07 décembre 2013 19:05 Ermal

Correct curlies yet again

0c21eb70 06 décembre 2013 20:16 Ermal

Use _vip as identified for CARP vip IPs to allow easier upgrade code. This way only ipaliases on carp need to be upgraded.

e08ba4bb 06 décembre 2013 15:05 Ermal

Load only the options rather than clearing the whole ruleset. This solves a problematic issue on 2.1

86c135de 06 décembre 2013 15:04 Ermal

Load only the options and nothing else

77a341a4 06 décembre 2013 14:39 Renato Botelho

Add a knob to prefer IPv4 over IPv6, it fixes #2833

09e14acf 06 décembre 2013 14:37 Renato Botelho

Unbreak etc/sshd, add a missing quote

9401e47c 06 décembre 2013 12:43 Renato Botelho

Check if dhcp start and end addresses are inside interface subnet, helps #3196

9d1225a9 06 décembre 2013 12:43 Renato Botelho

Add function is_inrange() that calls is_inrange_v6 or is_inrange_v4 accordingly

7a25652f 06 décembre 2013 12:42 Renato Botelho

Check if dhcp start and end addresses are inside interface subnet, helps #3196

da6cb29e 06 décembre 2013 12:41 Renato Botelho

Add function is_inrange() that calls is_inrange_v6 or is_inrange_v4 accordingly

97049b79 06 décembre 2013 12:39 Renato Botelho

When user attempt to set network or broadcast address, ask again for the IP address. Issue #3196

bebf0fa8 06 décembre 2013 12:34 Renato Botelho

When user attempt to set network or broadcast address, ask again for the IP address. Issue #3196

5c43e7bd 05 décembre 2013 21:09 jim-p

Also account for a widget being null/not defined, and not just closed/open.

a6d96f9b 05 décembre 2013 21:05 jim-p

Also account for a widget being null/not defined, and not just closed/open.

f2dd61a7 05 décembre 2013 17:27 Ermal

Identify vips where needed by @ symbol that will be used

af93d29a 05 décembre 2013 17:18 Ermal

Make more strict checks

9cdc1caf 05 décembre 2013 17:16 Ermal

Provide proper interface for getting carp status

103b8e5e 05 décembre 2013 16:41 Ermal

Remove not true comment

049ed50d 05 décembre 2013 16:41 Ermal

Correct syntax

8ff83255 05 décembre 2013 16:24 dwayne voelker

added missing quotes

thx rbgarga

6363a6de 05 décembre 2013 16:13 Ermal

Create even elyptic curve keys

b6877e06 05 décembre 2013 11:51 Ermal

Handle more carp enahancements for FreeBSD 10. the interface vips will be names $if@$vhid since the interface name is the same as other ips.

0aa72930 05 décembre 2013 11:51 Ermal

Optimize a bit

943d52cf 05 décembre 2013 06:19 dwayne voelker

Allow setting a default scale type preference for the traffic graphs widget

I originally submitted this at https://redmine.pfsense.org/issues/2994
but it seems that is not used for commits now so I am adding it here.
It works great on my box, and I can't see these changes causing any...

21d74c8e 04 décembre 2013 21:21 Renato Botelho

Prevent network or broadcast address to be set on interface (console, GUI and wizard). It should fix #3196

20dda766 04 décembre 2013 21:21 Renato Botelho

Prevent network or broadcast address to be set on interface (console, GUI and wizard). It should fix #3196

f51fa0d4 04 décembre 2013 12:17 Ermal

Use proper interface here

991bd7ad 04 décembre 2013 12:17 Ermal

Correct only carp value changes

a589dc74 03 décembre 2013 17:20 jim-p

Add FreeBSD pkgng repo definition

f70a140f 03 décembre 2013 15:37 Renato Botelho

Fix #3350. Do not destroy an interface when it's being disabled

5bc62353 03 décembre 2013 15:37 Renato Botelho

Fix #3350. Do not destroy an interface when it's being disabled

8e97590d 03 décembre 2013 12:42 Renato Botelho

Remove a left testing code

77411fa7 02 décembre 2013 22:12 Ermal

Correct CARP events on devd and the argument processing on called scripts

aa87cf11 02 décembre 2013 20:35 Renato Botelho

Fix #3339. Add a way to download CP portal, error and logout html pages

61422dd4 02 décembre 2013 19:21 Renato Botelho

When reset webConfigurator password, if authentication server is not Local Database, ask user to back to it. Fix #3341

338ded9b 02 décembre 2013 18:45 Renato Botelho

Fix whitespaces and indent

0e42cad8 02 décembre 2013 15:19 Renato Botelho

Show aliases popup on Outbound NAT list

dde20226 02 décembre 2013 15:11 Renato Botelho

Declare missing global vars and fix gateway deletion

a9be92f0 02 décembre 2013 14:34 Renato Botelho

Fix typos

4e4e35dd 29 novembre 2013 13:07 Renato Botelho

One more typo on Alternative Names fill, that was setting type field with $value

4287c73a 29 novembre 2013 13:07 Renato Botelho

One more typo on Alternative Names fill, that was setting type field with $value

30c15c58 29 novembre 2013 12:57 Renato Botelho

Fix a (probably) copy/paste issue that is making all Alternative Names disapear when an input error is detected

edf37d56 29 novembre 2013 12:57 Renato Botelho

Fix a (probably) copy/paste issue that is making all Alternative Names disapear when an input error is detected

1ebb561d 28 novembre 2013 19:43 Renato Botelho

Remove 0.0.0.0 from automatic outbound nat rules

992324ef 28 novembre 2013 19:42 Renato Botelho

Remove 0.0.0.0 from automatic outbound nat rules

7238e0cf 28 novembre 2013 19:36 Ermal

Remove references to _vip interface and provide proper configuration for carp on FreeBSD 10. Still some places to deal with this and certainly missing upgrade code

4c91880c 28 novembre 2013 11:55 Renato Botelho

Fix 0.0.0.0 mask for automatic outbound NAT

d1113424 26 novembre 2013 22:23 Renato Botelho

fix 0.0.0.0 subnet for automatic outbound NAT rules, fixes #2416

3f0cc2f4 26 novembre 2013 22:22 Renato Botelho

Stop sorting 1to1 rules and leave user decide the order. Fixes #3327

70cb0375 26 novembre 2013 22:20 Renato Botelho

Allow toggle enable/disable, reorder and multiple delete static routes

e97df865 26 novembre 2013 22:17 Renato Botelho

Show all gateway entries, even if interface doesn't exist, to avoid adding duplicate items or edit config by hand to remove old entries. While I'm here, allow multiple delete, and toggle enable/disable

96ef7db0 26 novembre 2013 21:41 Renato Botelho

Add an option to disable gateway items

06b8d43c 26 novembre 2013 21:40 Renato Botelho

Add a new param to return_gateways_array and make it return gateways when interface doesn't exist. Default behavior didn't change. Also check the new gateway parameter (disabled) when filtering

a5249874 26 novembre 2013 21:38 Renato Botelho

Stop sorting static routed and leave user decide the order

c83d04dc 25 novembre 2013 19:35 Renato Botelho

Make it more visible when an item is disabled

d251a8d4 25 novembre 2013 19:24 Renato Botelho

Fix whitespaces and indent

45508803 25 novembre 2013 18:41 jim-p

Allow an "empty" CRL to be exported, since this is still a valid action.

48f1333b 25 novembre 2013 18:40 jim-p

Allow an "empty" CRL to be exported, since this is still a valid action.

531b9f0e 25 novembre 2013 15:06 Ermal

No need for a second rule forwarding http

1c69dbb0 25 novembre 2013 15:06 Ermal

Correct generation of lighty configuration with zoneid changing to lower that 4000 value

1122705e 25 novembre 2013 15:06 Ermal

Start from 2 here as well

0a806969 25 novembre 2013 15:06 Ermal

Since zoneid need to be less then 4096 provide some upgrade code to handle that from existing configs

06dc05ac 25 novembre 2013 14:39 Ermal Luçi

Merge pull request #858 from timdufrane/master

Add DHCP without gateway capability

fcaf1709 23 novembre 2013 20:32 Ermal

Catch up with mac needed for all operations in the table nowdays.

e5f2cf3a 23 novembre 2013 03:30 Pierre POMES

prefork for relayd is usefull only in DNS mode

61d744c3 22 novembre 2013 16:42 Renato Botelho

Merge pull request #859 from CharlieMarshall/loaderFix

fix up loader.js for theme pfsense_ng_fs - Fixes traffic shaper graphs not loader as reported in the forum

ae72c0ff 22 novembre 2013 13:05 Charlie Marshall

remove unneeded ';'

d285ffdb 22 novembre 2013 12:50 Charlie Marshall

fix traffic shaper progress bars not displaying

baec2b00 21 novembre 2013 22:18 Ermal

Properly create zones for the CP with the new command arguments and properly invoke ipfw for applying rules and other configuration options.

1bd021e3 21 novembre 2013 19:38 timdufrane

Add DHCP without gateway capability

4208f7b1 21 novembre 2013 19:33 timdufrane

Add DHCP without gateway capability

fc5a4f3c 21 novembre 2013 18:35 Ermal

Remove maximumtables even from the GUI since there is no option

82d1a33e 21 novembre 2013 16:57 Renato Botelho

Fix #3331. Set interface subnet as destination when VIP is in the same subnet, otherwise use VIP subnet instead of IP address

d3b17c9a 21 novembre 2013 16:57 Renato Botelho

Fix #3331. Set interface subnet as destination when VIP is in the same subnet, otherwise use VIP subnet instead of IP address

f7ec7bf9 21 novembre 2013 14:58 Ermal

FreeBSD 10 pf does not have a limit for table entries

e6000a9b 21 novembre 2013 14:14 Ermal Luçi

Merge pull request #857 from Wraul/add_city_network_dyndns

Added support for City Network to Dynamic DNS.

23d9f686 21 novembre 2013 12:37 Renato Botelho

Fix an issue that changes wrong gateway entry when items are hidden

1ad6ad27 21 novembre 2013 12:36 Renato Botelho

Fix an issue that changes wrong gateway entry when items are hidden

186ab4ea 20 novembre 2013 21:56 jim-p

Don't flush interface cache on each call of the function when looping through all gateways.

33e71f10 20 novembre 2013 21:56 jim-p

Don't flush interface cache on each call of the function when looping through all gateways.

e924cd7e 20 novembre 2013 18:20 Renato Botelho

Add hability to insert after, reorder, batch delete and enable/disable to 1:1 NAT rules. It fixes #3327

a0e1f0f1 20 novembre 2013 18:16 Renato Botelho

We do not need 2 variables to do the same thing, simplify it a bit

d39ed8c3 20 novembre 2013 17:05 Renato Botelho

Fix whitespaces and indent

bb0469f2 20 novembre 2013 15:01 Renato Botelho

Fix whitespaces and indent

858211dd 19 novembre 2013 11:45 Renato Botelho

Improve text on outbound NAT page to reflect last changes, it should fix #2416

1b4a0d79 19 novembre 2013 11:43 Renato Botelho

Fix a wrong } left on my last commit

aef6978d 19 novembre 2013 11:35 Renato Botelho

Try to detect already automatically created outbound NAT rules and avoid duplicating them. Also automatically create rules when switching from hybrid to manual. Ticket #2416

58fac695 18 novembre 2013 19:42 Renato Botelho

Add subnet to 0.0.0.0 otherwise it's not added to table, ticket #2416

6f61fea6 18 novembre 2013 18:26 Renato Botelho

Use the same code to automatically create outbound NAT rules when mode change to manual, ticket #2416

e4791418 18 novembre 2013 18:24 Renato Botelho

Add gettext() to recently added strings

3bb23264 18 novembre 2013 18:09 Renato Botelho

Add an option to return outbound NAT automatic to nat hosts with description, ticket #2416

9bed0fcd 18 novembre 2013 13:09 Renato Botelho

Add subnet to 0.0.0.0 otherwise it's not added to table, ticket #2416

c437485d 18 novembre 2013 12:56 Renato Botelho

Make sure automatic rules are created even if mode is not set, ticket #2416

6b1f9a99 15 novembre 2013 22:30 Renato Botelho

Many fixes on privileges, ticket #3216:

- Remove unused privilege page-diagnostics-logs-wireless
- Remove duplicated privileges
- Fix limiter-info, pf-info and system-pftop that were using wrong name
- Add privs for services-igmpproxy-edit
- Fix ID for acptiveportal allowedhostnames and editallowedhostnames...

7997ed44 15 novembre 2013 22:21 Renato Botelho

Many fixes on privileges, ticket #3216:

- Rename some privileges:
page-diag-system-activity => page-diagnostics-system-activity
page-interfacess-groups => page-interfaces-groups
page-interfacess-lagg => page-interfaces-lagg
page-interfacess-qinq => page-interfaces-qinq...

2d845db7 15 novembre 2013 19:20 Renato Botelho

Merge pull request #855 from ExolonDX/branch_01

Tidy up the "Helper Icons"

2206f1b9 14 novembre 2013 22:06 Mathias Andersson

Added support for City Network to Dynamic DNS.

City Network is a Swedish web hosting company.
They provide a dynamic DNS service for their customers.
This service uses the dyndns2 protocol.

a2f0b7c1 14 novembre 2013 19:28 Renato Botelho

Move automatic rules to a separate table, ticket #2416

2b41df9c 14 novembre 2013 18:54 Renato Botelho

Provide a more safe way to avoid pw userdel being interactive because of a crontab existance

0f84dee3 14 novembre 2013 18:54 Renato Botelho

Revert "local_sync_accounts: provides empty STDIN to pw userdel command"

This reverts commit c6b156bfa537754d079868653ef3561eb1330d8c.

33bcbe5a 14 novembre 2013 18:38 Renato Botelho

Merge pull request #856 from ExolonDX/branch_02

Tidy up "interface_statistics.widget.php"

bef388a7 14 novembre 2013 15:37 Renato Botelho

Show advanced outbound rules and inform user what are being used and what are being ignored. It should fix #2416

3afcc238 14 novembre 2013 15:34 Renato Botelho

Split automatic to nat hosts fill into a function to be able to call it from other place, ticket #2416

94c52ff8 14 novembre 2013 14:48 Colin Fleming

Tidy up "interface_statistics.widget.php"

Remove padding surrounding the main table, makes the widget have the
same "look and feel" as the other widgets.

17b8c60a 14 novembre 2013 14:44 Colin Fleming

Tidy up the "Helper Icons"

The "Helper Icons" at the top right of some service pages at present
produces 30+ HTML errors/warnings, this is due to the table cell being
wrapped in a span statement then in a div statement, table cells can
only be part of a table row then within a table statement....

c39c8b8f 14 novembre 2013 13:38 Renato Botelho

Remove unused variables and fix automatic nat to alias-address

34f95977 14 novembre 2013 11:19 Renato Botelho

Merge pull request #854 from icyfork/provides_empty_STDIN_to_pw_command

local_sync_accounts: provides empty STDIN to pw userdel command

4e38f1c2 13 novembre 2013 13:36 Renato Botelho

Remove unused variables and fix automatic nat to alias-address

ed25d803 13 novembre 2013 13:21 Renato Botelho

Add missing count increment

eef01b14 13 novembre 2013 10:45 Renato Botelho

Add hybrid and disabled outbound NAT, fixes #2416:

- Add 2 new outbound NAT modes, hybrid and disabled, manual and advanced
keep working the same way
- Hybrid mode applies manual rules first, automatic after
- Disabled do no create any outbound NAT rules...

d5ab3af4 13 novembre 2013 00:52 Renato Botelho

Fix whitespaces and indent

c6b156bf 13 novembre 2013 00:29 Ky-Anh Huynh

local_sync_accounts: provides empty STDIN to pw userdel command

The /usr/sbin/pw command may wait for user input. For example,
if there is a manual crontab settings for :foobar account, then
when this account is requested to be deleted, the command will
ask if user wants to delete crontab settings for the account....

858f313d 12 novembre 2013 20:46 Renato Botelho

Fix indent, whitespaces and a close a couple of unbalanced tags

d07a2a2a 12 novembre 2013 18:06 Phil Davis

Handle comma-separated list of remote networks when making vpn_networks table

If remote_networks for an OpenVPN instance is a list of more than 1 network then none of the networks gets added to the vpn_networks table. The code simply did not address this new comma-separated list feature. Now it does, and the vpn_networks table contains all the remote networks listed....

7facbef7 12 novembre 2013 18:05 Renato Botelho

Merge pull request #850 from phil-davis/master

Handle comma-separated list of remote networks when making vpn_networks table

c4421dfa 12 novembre 2013 13:45 Renato Botelho

Add an option to set no-sync on rules to keep states from being synced via pfsync. Fix #2501

d60ba078 11 novembre 2013 23:16 Renato Botelho

Merge pull request #831 from ExolonDX/branch_06

Tidy up "diag_logs_filter_summary.php" XHTML

454e09bd 11 novembre 2013 23:15 Renato Botelho

Merge pull request #829 from ExolonDX/branch_04

Tidy up "diag_logs_filter.php" XHTML

6186cdc4 11 novembre 2013 22:29 jim-p

Rework the usage of the shell i/o during stop_packages(), fixes the "Syntax error: bad fd number" for the remaining people who still saw it on shutdown

2ffc7dc3 11 novembre 2013 22:27 jim-p

Rework the usage of the shell i/o during stop_packages(), fixes the "Syntax error: bad fd number" for the remaining people who still saw it on shutdown

629f07c3 11 novembre 2013 19:12 jim-p

This tag could be present, but empty. Skip processing if the interface has no IP address.

793299b8 11 novembre 2013 19:11 jim-p

This tag could be present, but empty. Skip processing if the interface has no IP address.

58ee84b4 11 novembre 2013 19:10 jim-p

If the interface is configured and not enabled, bail. We do not need to change settings for disabled interfaces. Fixes #3313

63f72828 11 novembre 2013 19:10 jim-p

If the interface is configured and not enabled, bail. We do not need to change settings for disabled interfaces. Fixes #3313

f70121be 11 novembre 2013 13:57 Renato Botelho

Fix #3298 and few other fixes:

. Check for fixed array keys (pkg_categories_min_count,
pkg_categories_max_display and pkg_default_categories) instead of
undeclared variables
. Add a new default category "All"
. Use proper class on 'Category' columns when it is visible...

29840546 11 novembre 2013 13:19 Renato Botelho

Fix indent and whitespaces

e09fcde5 11 novembre 2013 12:19 Renato Botelho

Merge pull request #844 from ExolonDX/branch_20

Tidy up "diag_logs_openvpn.php" XHTML

4f3d3052 11 novembre 2013 12:18 Renato Botelho

Merge pull request #843 from ExolonDX/branch_19

Tidy up "diag_logs.php" XHTML

5f8fc8d8 11 novembre 2013 12:18 Renato Botelho

Merge pull request #842 from ExolonDX/branch_17

Tidy up "diag_logs_wireless.php" XHTML

ad411437 11 novembre 2013 12:18 Renato Botelho

Merge pull request #841 from ExolonDX/branch_16

Tidy up "diag_logs_vpn.php" XHTML

d869c813 11 novembre 2013 12:17 Renato Botelho

Merge pull request #840 from ExolonDX/branch_15

Tidy up "diag_logs_settings.php" XHTML

750adb5c 11 novembre 2013 12:15 Renato Botelho

Merge pull request #839 from ExolonDX/branch_14

Tidy up "diag_logs_routing.php" XHTML

d3b01546 11 novembre 2013 12:15 Renato Botelho

Merge pull request #838 from ExolonDX/branch_13

Tidy up "diag_logs_resolver.php" XHTML

d24de56a 11 novembre 2013 12:14 Renato Botelho

Merge pull request #837 from ExolonDX/branch_12

Tidy up "diag_logs_relayd.php" XHTML

12f1bd24 11 novembre 2013 12:14 Renato Botelho

Merge pull request #836 from ExolonDX/branch_11

Tidy up "diag_logs_ppp.php" XHTML

77ad3ea3 11 novembre 2013 12:14 Renato Botelho

Merge pull request #834 from ExolonDX/branch_09

Tidy up "diag_logs_ntpd.php" XHTML

abf49196 11 novembre 2013 12:13 Renato Botelho

Merge pull request #833 from ExolonDX/branch_08

Tidy up "diag_logs_ipsec.php" XHTML

5395194e 11 novembre 2013 12:13 Renato Botelho

Merge pull request #832 from ExolonDX/branch_07

Tidy up "diag_logs_gateways.php" XHTML

9c76ad6d 11 novembre 2013 12:12 Renato Botelho

Merge pull request #830 from ExolonDX/branch_05

Tidy up "diag_logs_filter_dynamic.php" XHTML

10f3e734 11 novembre 2013 12:07 Renato Botelho

Merge pull request #828 from ExolonDX/branch_03

Tidy up "diag_logs_dhcp.php" XHTML

8802b918 11 novembre 2013 12:06 Renato Botelho

Merge pull request #827 from ExolonDX/branch_02

Tidy up "diag_logs_auth.php" XHTML

62c5794d 09 novembre 2013 17:03 Phil Davis

Handle comma-separated list of remote networks when making vpn_networks table

If remote_networks for an OpenVPN instance is a list of more than 1 network then none of the networks gets added to the vpn_networks table. The code simply did not address this new comma-separated list feature. Now it does, and the vpn_networks table contains all the remote networks listed....

6d5fcf57 07 novembre 2013 20:35 Ermal

Unset this variable used in the loop to avoid having wrong information

892d23bc 07 novembre 2013 20:35 Ermal

Unset this variable used in the loop to avoid having wrong information

a00acb4c 07 novembre 2013 20:27 Ermal

Do not forget the trace in the pf.conf that something went wrong during rules generation to be able to at least detect what is going on

8194f288 07 novembre 2013 20:26 Ermal

Do not forget the trace in the pf.conf that something went wrong during rules generation to be able to at least detect what is going on

215319ce 07 novembre 2013 19:34 Ermal Luçi

Merge pull request #846 from jean-m-cyr/RELENG_2_1

Give clients the IPV6 address of the DNS server

96a60eb4 07 novembre 2013 19:34 Phil Davis

system_camanager init $input_errors so array_push works

Fixes input validation when creating an internal certificate. Reported in forum http://forum.pfsense.org/index.php/topic,68849.0.html

96907170 07 novembre 2013 19:33 Ermal Luçi

Merge pull request #848 from phil-davis/master

system_camanager init $input_errors so array_push works

35f584e3 07 novembre 2013 19:32 Ermal Luçi

Merge pull request #845 from jean-m-cyr/master

Give clients the IPV6 address of the DNS server

e30dd11d 07 novembre 2013 19:31 Ermal Luçi

Merge pull request #849 from Robert-Nelson/RELENG_2_1

Fix #3301

84eaea96 07 novembre 2013 18:52 Robert Nelson

Simplify the code.

No need to worry about the second column, we only need to pad the first one.

b24622e2 07 novembre 2013 18:52 Robert Nelson

Rewrite the display_host_results() function to use spaces instead of
tabs. It does a much better job of aligning the fields in each column
and works in all the browsers, particularly chrome which doesn't
support the tab character.

It still isn't perfect due to the javascript alert() function's...

2b8bfda4 07 novembre 2013 12:11 Phil Davis

system_camanager init $input_errors so array_push works

Fixes input validation when creating an internal certificate. Reported in forum http://forum.pfsense.org/index.php/topic,68849.0.html

c475a009 07 novembre 2013 10:24 Ermal Luçi

Merge pull request #847 from Robert-Nelson/master

Rewrite the display_host_results() function to use spaces instead of tabs

79f5aebe 07 novembre 2013 09:34 Robert Nelson

Simplify the code.

No need to worry about the second column, we only need to pad the first one.

6ff71328 07 novembre 2013 07:54 Robert Nelson

Rewrite the display_host_results() function to use spaces instead of
tabs. It does a much better job of aligning the fields in each column
and works in all the browsers, particularly chrome which doesn't
support the tab character.

It still isn't perfect due to the javascript alert() function's...

91d647b4 07 novembre 2013 03:21 Jean Cyr

Give clients the IPV6 address of the DNS server

For IPV6 WAN tracking interfaces, dhcpdv6 does not provide an IPV6
address for the DNS server... fix that. The IPV6 address should be the
LAN interface IPV6 address, which is served by dnsmask, unbound, or
bind.

70da4172 07 novembre 2013 03:15 Jean Cyr

Give clients the IPV6 address of the DNS server

For IPV6 WAN tracking interfaces, dhcpdv6 does not provide an IPV6
address for the DNS server... fix that.

d7ba0370 05 novembre 2013 15:51 Colin Fleming

Tidy up "diag_logs_openvpn.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements

c7b94a26 05 novembre 2013 15:48 Colin Fleming

Tidy up "diag_logs.php" XHTML

Add SUMMARY to tables

d027e810 04 novembre 2013 22:19 Colin Fleming

Tidy up "diag_logs_wireless.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell statement

e3762a2a 04 novembre 2013 22:17 Colin Fleming

Tidy up "diag_logs_vpn.php" XHTML

Move NOWRAP Boolean operator into CLASS statements
Add ALT and close IMG statements
Add SUMMARY to table statements
Deprecate ampersands
Close INPUT statements
Add closing BODY and closing HTML statements

00491625 04 novembre 2013 22:15 Colin Fleming

Tidy up "diag_logs_settings.php" XHTML

Add "closehead" PHP variable and close the HEAD statement
Add CDATA to script statement
Add SUMMARY to table statement
Tidy up HTML Boolean operators
Close BR and INPUT statements
Remove duplicate closing table cell statement

a2f86379 04 novembre 2013 22:12 Colin Fleming

Tidy up "diag_logs_routing.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell

085955a3 04 novembre 2013 22:10 Colin Fleming

Tidy up "diag_logs_resolver.php" XHTML

Add SUMMARY to table statements

68c5d859 04 novembre 2013 22:10 Colin Fleming

Tidy up "diag_logs_relayd.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell

60219c69 04 novembre 2013 22:08 Colin Fleming

Tidy up "diag_logs_ppp.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements

2680a3e9 04 novembre 2013 22:06 Colin Fleming

Tidy up "diag_logs_ntpd.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM into table cell

e51b6dbf 04 novembre 2013 22:05 Colin Fleming

Tidy up "diag_logs_ipsec.php" XHTML

Add SUMMARY to table statements
Close INPUT statement

9890d0c7 04 novembre 2013 22:03 Colin Fleming

Tidy up "diag_logs_gateways.php" XHTML

Add SUMMARY to table statements

d13c2368 04 novembre 2013 22:02 Colin Fleming

Tidy up "diag_logs_filter_summary.php" XHTML

Remove "px" from width statement, not valid in XHTML
Add SUMMARY to table statements
Add ALT and close img statements
Add CDATA to script statements
Add secondary TAB row for "filter" and "dynamic" logs
Add closing BODY and HTML statements

512ae370 04 novembre 2013 21:59 Colin Fleming

Tidy up "diag_logs_filter_dynamic.php" XHTML

Add CDATA to script statements
Move NOWRAP Boolean operator into class statement
Add SUMMARY to table statements
Add secondary TAB row for "filter" and "summary" logs
Close INPUT tags

2f1e4020 04 novembre 2013 21:56 Colin Fleming

Tidy up "diag_logs_filter.php" XHTML

Add SUMMARY to table statements
Add secondary row of TABS for "Dynamic" and "Summary" logs
Closing BR and INPUT tags
Tidy up HTML Boolean operators
Move NOWRAP Boolean operator into CLASS statement
Deprecate Ampersand

0a6cb6b1 04 novembre 2013 21:52 Colin Fleming

Tidy up "diag_logs_dhcp.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM into table cell

1bc95a31 04 novembre 2013 21:51 Colin Fleming

Tidy up "diag_logs_auth.php" XHTML

Add SUMMARY to table statements
Close BR and INPUT statements
Move close FORM into table cell

90caf54e 02 novembre 2013 11:48 Renato Botelho

Call conf_mount_rw before delete user, a better fix for #3294

03e156ef 02 novembre 2013 11:48 Renato Botelho

Revert "Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294"

This reverts commit fa757d146c85261b7e90d226c1aecd38089d7e20.

8a0ae97f 02 novembre 2013 11:48 Renato Botelho

Call conf_mount_rw before delete user, a better fix for #3294

23b5b16a 02 novembre 2013 11:48 Renato Botelho

Revert "Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294"

This reverts commit b1e5a286bb47d7e4a5b3d589cc27b557b3b13c41.

19b10216 01 novembre 2013 15:45 jim-p

Prevent a Fall Back Pool from being selected when the DNS protocol is in use. If one is present in the config, ignore it. Fixes #3300

c5d4d97b 01 novembre 2013 15:43 jim-p

Prevent a Fall Back Pool from being selected when the DNS protocol is in use. If one is present in the config, ignore it. Fixes #3300

add913b1 01 novembre 2013 15:23 Renato Botelho

Teach system_timezone_configure() to deal with symlinks to avoid having timezone misconfigured. This fixes #3293

87060898 01 novembre 2013 15:21 Renato Botelho

Teach system_timezone_configure() to deal with symlinks to avoid having timezone misconfigured. This fixes #3293

6ae050ae 01 novembre 2013 14:31 Renato Botelho

Update zoneinfo to 2013.h

d1f6c3bf 01 novembre 2013 14:31 Renato Botelho

Update zoneinfo to 2013.h

fa757d14 01 novembre 2013 13:56 Renato Botelho

Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294

b1e5a286 01 novembre 2013 13:55 Renato Botelho

Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294

9ed52990 31 octobre 2013 20:03 jim-p

Unset value should be '' and not 'none'

edba1982 31 octobre 2013 19:50 jim-p

Change OpenVPN Compression settings to cover the full range of allowed settings on OpenVPN (unset, off, on, adaptive) rather than a simple off/on switch that either doesn't set the value or enables it with adaptive (OpenVPN's default).

85bdf997 30 octobre 2013 21:01 jim-p

Add Auth Digest to OpenVPN wizard also.

97d5b59b 30 octobre 2013 20:47 jim-p

Add an Authentication Digest Algorithm drop-down to OpenVPN server/client (SHA1 is the default since that is OpenVPN's default)

204bec28 29 octobre 2013 10:35 Renato Botelho

Revert "Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280"

Another solution will be implemented

This reverts commit 6721d6d0443bd7e697bd6ca33f470c801608df7e.

34e17813 29 octobre 2013 10:35 Renato Botelho

Revert "Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280"

Another solution will be implemented

This reverts commit bb6291e0204ffe2828fe9c9425bdae9c8541fe54.

6721d6d0 29 octobre 2013 10:06 Renato Botelho

Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280

bb6291e0 29 octobre 2013 10:05 Renato Botelho

Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280

d3ad6cf0 29 octobre 2013 01:20 Chris Buechler

fix typo

9aca7390 29 octobre 2013 01:20 Chris Buechler

fix typo

1dc0e7f4 28 octobre 2013 17:20 Renato Botelho

Make return_gateways_array() return all disabled gateways when $disabled is true, it should fix #3291

aec89bd3 28 octobre 2013 17:19 Renato Botelho

Make return_gateways_array() return all disabled gateways when $disabled is true, it should fix #3291

b84ac9c6 28 octobre 2013 14:29 Ermal Luçi

Merge pull request #822 from CharlieMarshall/interfacesWidget

cleanup interfaces.widget.php

20623f57 28 octobre 2013 13:35 Renato Botelho

Fix an attempt to read unset variable $rtent

7610d228 28 octobre 2013 13:35 Renato Botelho

Fix an attempt to read unset variable $rtent

0c951d98 25 octobre 2013 21:15 Charlie Marshall

cleanup interfaces.widget.php

bf755503 25 octobre 2013 14:42 Renato Botelho

Use a more accurate error message, fixes #3282

f44ac2e9 25 octobre 2013 14:41 Renato Botelho

Use a more accurate error message, fixes #3282

53c5407e 24 octobre 2013 22:34 jim-p

Add source address selection to syslog settings, so it can work more effectively over a VPN. Fixes #355

cbe12b8d 24 octobre 2013 22:33 jim-p

Add source address selection to syslog settings, so it can work more effectively over a VPN. Fixes #355

b8250344 24 octobre 2013 22:07 Renato Botelho

Fix #3235

. diag_nanobsd.php:
. Since conf_mount_ro() is always being called, always call
conf_mount_rw to keep refcount correct
. Do not show refcount_read() return when it's -1
. config.lib.inc
. Increment and decrement refcount even if nanobsd_force_rw is set....

785158c6 24 octobre 2013 22:01 Renato Botelho

Fix #3235

. diag_nanobsd.php:
. Since conf_mount_ro() is always being called, always call
conf_mount_rw to keep refcount correct
. Do not show refcount_read() return when it's -1
. config.lib.inc
. Increment and decrement refcount even if nanobsd_force_rw is set....

599d564e 23 octobre 2013 17:19 Ermal

Prepend ipsec_ here as well for better protection

37a4fc94 23 octobre 2013 17:19 Ermal

Use the pid of the process for the tmp file also prepend ovpn_ here to make it clear

c4844c2c 23 octobre 2013 17:19 Ermal

Correct even here the routes from cisco-avpair processing

56fbff2e 23 octobre 2013 17:19 Ermal

Use the pid of the process for the tmp file

a4e4b560 23 octobre 2013 15:58 Renato Botelho

Make sure pf rule labels never have more than 63 chars. It should fix #3208

9d879385 23 octobre 2013 15:58 Renato Botelho

Make sure pf rule labels never have more than 63 chars. It should fix #3208

5d21bce0 23 octobre 2013 13:58 Phil Davis

Remove redundant test for OpenVPN resync_needed

f8804b74 23 octobre 2013 13:58 Phil Davis

Check for disabled OpenVPN instances in openvpn_resync_if_needed

It is much cleaner if we check first for disabled OpenVPN instances, before diving into all the other checks. Note, the final openvpn_resync() does call other routines that finally check if the instance is disabled, but there are so many checks here for various conditions to be met before calling openvpn_resync that it looks better (safer) to bail out early if the instance is disabled.

4bf23d32 23 octobre 2013 13:57 Phil Davis

Fix logic inn detecting if OpenVPN resync needed

Commit https://github.com/pfsense/pfsense/commit/f33dcc5c79c54af7daf91a81cfdd7f489e8cb67c reversed the logic sequence when testing if $resync_needed - the individual tests were changed from "==" to "!=" and so on, but the conjunction also need to be changed - "or" needs to be "and". I had noticed that VPNs on some gateway groups of mine didn't failover recently, but hadn't gone looking for the problem until now....

a3e232db 23 octobre 2013 13:52 Renato Botelho

Merge pull request #813 from phil-davis/master

Fix logic in detecting if OpenVPN resync needed, fixes #3255

10d9290f 22 octobre 2013 20:49 Ermal

Prepend ipsec_ here as well for better protection

7b95ffdd 22 octobre 2013 20:46 Ermal

Use the pid of the process for the tmp file also prepend ovpn_ here to make it clear

45758be4 22 octobre 2013 20:44 Ermal

Correct even here the routes from cisco-avpair processing

eb7d43c0 22 octobre 2013 20:42 Ermal

Use the pid of the process for the tmp file

9f293b1c 22 octobre 2013 17:45 jim-p

Fix cisco-avpair processing, and route processing from avpair replies.

a35bae66 22 octobre 2013 17:45 jim-p

Fix cisco-avpair processing, and route processing from avpair replies.

aad5eef2 22 octobre 2013 16:53 jim-p

Make the RADIUS settings respect the description of the timeout field. If the timeout value is left blank, use 5 seconds, don't print an error.

afdf29d3 22 octobre 2013 16:53 jim-p

Make the RADIUS settings respect the description of the timeout field. If the timeout value is left blank, use 5 seconds, don't print an error.

f144493c 22 octobre 2013 16:42 Renato Botelho

Make it more explicit that 'update freq.' unit is days

dd8e414e 22 octobre 2013 16:40 Renato Botelho

Remove unused variable

2b6e6fee 22 octobre 2013 16:40 Renato Botelho

Make it more explicit that 'update freq.' unit is days

6ff71781 22 octobre 2013 16:39 Renato Botelho

Remove unused variable

edc56e48 22 octobre 2013 15:31 Renato Botelho

Add missing privileges to the list, it fixes #3279

c03d4be1 22 octobre 2013 15:31 Renato Botelho

Fix typo and whitespace

9b104557 22 octobre 2013 15:31 Renato Botelho

Fix priv name

69aba859 22 octobre 2013 15:31 Renato Botelho

Add missing privileges to the list, it fixes #3279

93f51e4b 22 octobre 2013 15:30 Renato Botelho

Fix typo and whitespace

a8521a63 22 octobre 2013 15:29 Renato Botelho

Fix priv name

6ccefb28 22 octobre 2013 14:59 jim-p

Optimize DHCPv4 lease display online status for static leases. Do not re-parse complete ARP table for each lease, as it can be slow with large ARP tables.

63a1e1ee 22 octobre 2013 14:58 jim-p

Optimize DHCPv4 lease display online status for static leases. Do not re-parse complete ARP table for each lease, as it can be slow with large ARP tables.

53523624 21 octobre 2013 22:09 Renato Botelho

Fix #3283, use jQuery to change attributes based on id

521504d1 21 octobre 2013 22:03 Renato Botelho

Set id for select elements created dynamicaly created

6794e407 21 octobre 2013 22:01 Renato Botelho

Fix #3283, use jQuery to change attributes based on id

f4100c0e 21 octobre 2013 21:58 Renato Botelho

Set id for select elements created dynamicaly created

dd8722db 21 octobre 2013 16:03 Renato Botelho

Limit CIDR choices for IPv4 on GRE interface, fixes #3277

de304598 21 octobre 2013 16:02 Renato Botelho

Limit CIDR choices for IPv4 on GRE interface, fixes #3277

e782e8f4 21 octobre 2013 14:59 Renato Botelho

Fix #3259. Save 'packet loss rate' and 'bucket size' for limiter queues

dda9c67f 21 octobre 2013 14:59 Renato Botelho

Fix #3259. Save 'packet loss rate' and 'bucket size' for limiter queues

ea838318 18 octobre 2013 22:43 Renato Botelho

Fix #3273

- When you disable a interface, it destroys vlan interface from system.
Do not report error when interface doesn't exist.
- While I'm here, use pfSense_interface_destroy() instead of ifconfig

36b7f215 18 octobre 2013 22:41 Renato Botelho

Fix #3273

- When you disable a interface, it destroys vlan interface from system.
Do not report error when interface doesn't exist.
- While I'm here, use pfSense_interface_destroy() instead of ifconfig

40a8f669 18 octobre 2013 22:32 Renato Botelho

Prevent a possible division by zero. it fixes #3212

488e8c81 18 octobre 2013 22:32 Renato Botelho

Prevent a possible division by zero. it fixes #3212

6666ef48 18 octobre 2013 16:38 Renato Botelho

Actually there is no reason to set a variable just to use once

06896c6a 18 octobre 2013 16:38 Renato Botelho

Actually there is no reason to set a variable just to use once

2db5f9c2 18 octobre 2013 16:31 Renato Botelho

Fix #3242 and some code cleanup:

- Only explode '/' and set address_subnet when address is a subnet, it
fixes issue reported at #3242
- While I'm here, do some cleanup on the way addresses are treated
- Remove unecessary variable $tracker, we already have $counter set...

4e8a79a8 18 octobre 2013 16:26 Renato Botelho

Fix #3242 and some code cleanup:

- Only explode '/' and set address_subnet when address is a subnet, it
fixes issue reported at #3242
- While I'm here, do some cleanup on the way addresses are treated
- Remove unecessary variable $tracker, we already have $counter set...

ea108447 18 octobre 2013 15:40 Renato Botelho

Make sure vlan interface exist when it's being configured, it fixes #3270

bae42aaf 18 octobre 2013 15:40 Renato Botelho

Make sure vlan interface exist when it's being configured, it fixes #3270

dd33fd4e 17 octobre 2013 10:43 Warren Baker

Split SSL/TLS into separate checkboxes so that plaintext connections can be made secured by using STARTTLS. Support for SMTPS connections should probably be done away with in future. Fixes #3180

78b0e51e 16 octobre 2013 14:18 Renato Botelho

Fix #3268 - avoid pf table names conflict:

. Create a list of reserved table names for the hardcoded ones
. Use this list to validate aliases and load balance pool names
. Check if alias names don't conflict with LB pool names and vice-versa

c48fdaa4 16 octobre 2013 14:18 Renato Botelho

Fix #3268 - avoid pf table names conflict:

. Create a list of reserved table names for the hardcoded ones
. Use this list to validate aliases and load balance pool names
. Check if alias names don't conflict with LB pool names and vice-versa

c858a035 15 octobre 2013 15:30 Renato Botelho

Merge pull request #817 from stephanel/master

Added OVH DynHOST in dynamic DNS services

09dfec24 15 octobre 2013 15:10 Renato Botelho

Merge pull request #819 from CharlieMarshall/responsive

make dashboard responsive (theme pfsense_ng_fs)

b18a99d3 14 octobre 2013 21:33 Charlie Marshall

some tidying up

e5e0fd39 14 octobre 2013 21:27 Charlie Marshall

make dashboard responsive

4a913451 14 octobre 2013 20:54 Renato Botelho

Add Captive Portal Zones privileges definition. Fix #3216

8deaf333 14 octobre 2013 20:53 Renato Botelho

Add Captive Portal Zones privileges definition. Fix #3216

babc58d3 11 octobre 2013 15:59 Renato Botelho

Allow special chars to be used on IPSec mobile login banner. Fixes #3247

b4a62651 11 octobre 2013 15:59 Renato Botelho

Allow special chars to be used on IPSec mobile login banner. Fixes #3247

a518b337 11 octobre 2013 14:20 Renato Botelho

Set default value to radius_protocol during upgrade, it should fix #3226

2d72659a 11 octobre 2013 14:19 Renato Botelho

Set default value to radius_protocol during upgrade, it should fix #3226

0f0f7b2c 11 octobre 2013 13:25 Renato Botelho

Fix 'Packet loss rate' and 'Bucket Size' range checking

7e7a65b0 11 octobre 2013 13:25 Renato Botelho

Fix 'Packet loss rate' and 'Bucket Size' range checking

feb2e013 11 octobre 2013 11:20 Phil Davis

Remove redundant test for OpenVPN resync_needed

b35bcd45 11 octobre 2013 06:28 Jared Dillard

added favicon to logged in pages

e97b547e 11 octobre 2013 06:11 Jim P

Merge pull request #818 from jdillard/master

added favicon to logged in pages

cfa352c6 11 octobre 2013 04:46 Jared Dillard

added favicon to logged in pages

aa0753e3 10 octobre 2013 18:59 jim-p

Needs parens

9f212aea 10 octobre 2013 18:57 jim-p

Needs parens

151f5cb7 10 octobre 2013 18:50 jim-p

Remove newsyslog cron job on upgrade, if present.

12f7e3d4 10 octobre 2013 18:49 jim-p

Add upgrade code to change the DHCP next-server value to nextserver since it was renamed sometime in 2.1 but upgrade code didn't follow.

a3cc1409 10 octobre 2013 18:47 jim-p

Add upgrade code to change the DHCP next-server value to nextserver since it was renamed sometime in 2.1 but upgrade code didn't follow. Also shuffle the upgrade code blocks a bit since we need these on 2.1.x and nobody should be on 2.2 yet, so the impact should be minimal to renumber the one bit specific to 2.2.

a4a56eb0 09 octobre 2013 21:01 Stéphane

Added OVH DynHOST in dynamic DNS services

6f4a2864 09 octobre 2013 16:03 jim-p

Perform a much more accurate comparison between two certificates to determine if they are identical when checking their revocation status. Fixes #3237

04761344 09 octobre 2013 16:02 jim-p

Perform a much more accurate comparison between two certificates to determine if they are identical when checking their revocation status. Fixes #3237

090b9a4a 09 octobre 2013 14:54 jim-p

Remove newsyslog cron job on upgrade, if present.

fda96df0 09 octobre 2013 14:51 jim-p

We do not use nor include newsyslog, so remove the cron job.

f324698c 09 octobre 2013 14:51 jim-p

We do not use nor include newsyslog, so remove the cron job.

0b5636fc 09 octobre 2013 14:50 jim-p

Remove this check, the value can be 0 here if the target is the first item in the array.

506ff948 09 octobre 2013 14:48 jim-p

Remove this check, the value can be 0 here if the target is the first item in the array.

2b4f2f23 07 octobre 2013 19:35 Warren Baker

Replace pfSense with the rebrand

2df0e712 07 octobre 2013 19:35 Warren Baker

Replace pfSense with the rebrand

b93fd19b 04 octobre 2013 14:40 jim-p

Now that doc.pfsense.org does https and redirects http to https, we may as well send the help links to the https destinations.

2dd9b120 04 octobre 2013 14:39 jim-p

Now that doc.pfsense.org does https and redirects http to https, we may as well send the help links to the https destinations.

9e3cc25b 04 octobre 2013 13:41 Chris Buechler

use (self) instead of any for web lockout

c3b9bcb2 04 octobre 2013 13:40 Chris Buechler

use (self) instead of any for web lockout

7825f71e 04 octobre 2013 08:47 Chris Buechler

use (self) rather than any as the destination for the lockout rules

b762e3dc 04 octobre 2013 08:46 Chris Buechler

use (self) rather than any as the destination for the lockout rules

619753ee 03 octobre 2013 16:10 jim-p

Fix display of pools in the LB status widget and on the LB Virtual Server status.

c1e48e9b 03 octobre 2013 16:10 jim-p

Fix display of pools in the LB status widget and on the LB Virtual Server status.

58ba4513 02 octobre 2013 14:15 Ermal Luçi

Merge pull request #815 from marcelloc/patch-1

fix pkg_edit.php to show interface description instead of interface name

f82cbe49 02 octobre 2013 13:41 Marcello Coutinho

fix pkg_edit.php to show interface description instead of interface name

634054cc 02 octobre 2013 07:03 Phil Davis

Check for disabled OpenVPN instances in openvpn_resync_if_needed

It is much cleaner if we check first for disabled OpenVPN instances, before diving into all the other checks. Note, the final openvpn_resync() does call other routines that finally check if the instance is disabled, but there are so many checks here for various conditions to be met before calling openvpn_resync that it looks better (safer) to bail out early if the instance is disabled.

80f88b3b 30 septembre 2013 12:23 Warren Baker

Patch applied manually. Fixes bug #3245 and old interface names

adbfe851 30 septembre 2013 08:44 Warren Baker

Merge pull request #814 from phildd/master

Traffic graphs widget has old interface names

1ed963d7 30 septembre 2013 07:49 phildd

Traffic graphs widget has old interface names

Fixes bug #3245

78b2a705 29 septembre 2013 14:42 Phil Davis

Fix logic inn detecting if OpenVPN resync needed

Commit https://github.com/pfsense/pfsense/commit/f33dcc5c79c54af7daf91a81cfdd7f489e8cb67c reversed the logic sequence when testing if $resync_needed - the individual tests were changed from "==" to "!=" and so on, but the conjunction also need to be changed - "or" needs to be "and". I had noticed that VPNs on some gateway groups of mine didn't failover recently, but hadn't gone looking for the problem until now....

ff8affb4 28 septembre 2013 15:26 Richard Connon

Fix codel not being applied on non-priq queue types

931f3890 28 septembre 2013 15:26 Richard Connon

Fixed typo in CoDel wiki link

8ad84ebb 28 septembre 2013 15:16 Renato Botelho

Remove redundant copies of getNasIP(), it should fix #3234

0bb7bfbb 28 septembre 2013 15:15 Renato Botelho

Merge pull request #812 from irconan/master

Minor CoDel fixes, fix #3239 and #3240

9f6919e6 28 septembre 2013 14:12 Richard Connon

Fix codel not being applied on non-priq queue types

c27edf55 28 septembre 2013 13:37 Richard Connon

Fixed typo in CoDel wiki link

f3a4601c 27 septembre 2013 19:14 jim-p

If rc.newwanip is run on an interface that should not have an IP address, do not take any action.

93821aea 27 septembre 2013 19:14 jim-p

If rc.newwanip is run on an interface that should not have an IP address, do not take any action.

f58bfb93 27 septembre 2013 15:25 Renato Botelho

Remove redundant copies of getNasIP(), it should fix #3234

bab13e1f 27 septembre 2013 13:58 Renato Botelho

Merge pull request #811 from Scavy/patch-1

Patch to include GratisDNS as dynDNS service

58e1f8f2 27 septembre 2013 12:37 Scavy

Update to include GratisDNS dynDNS service

5458bc59 27 septembre 2013 11:29 Scavy

Update to include GratisDNS dynDNS service

97c78e19 26 septembre 2013 15:53 Renato Botelho

Merge pull request #810 from ExolonDX/branch_04

Update "status_rrd_graph_settings.php" XHTML

b9147430 26 septembre 2013 15:53 Renato Botelho

Merge pull request #809 from ExolonDX/branch_02

Update "status_rrd_graph.php" XHTML

61ba12f0 26 septembre 2013 15:52 Renato Botelho

Merge pull request #808 from ExolonDX/branch_01

Update "pkg_edit.php" XHTML

65fec80d 26 septembre 2013 15:47 Renato Botelho

require service-utils.inc for find_service_by_openvpn_vpnid()

857ff425 26 septembre 2013 15:47 Renato Botelho

Add missing td

1650e1ec 26 septembre 2013 15:47 Renato Botelho

Remove use of undefined var $conn and fix some td class

c92ccc70 26 septembre 2013 15:45 Renato Botelho

require service-utils.inc for find_service_by_openvpn_vpnid()

a5eb046f 26 septembre 2013 15:40 Renato Botelho

Add missing td

7717ee0b 26 septembre 2013 15:32 Renato Botelho

Remove use of undefined var $conn and fix some td class

75f4bdbd 26 septembre 2013 13:41 Colin Fleming

Update "status_rrd_graph_settings.php" XHTML

Close INPUT tags
Update HTML Boolean operators
Update TABLE tag with summary statement

c2cc1721 26 septembre 2013 13:35 Colin Fleming

Update "status_rrd_graph.php" XHTML

Update SCRIPT statements with CDATA
Move the close HEAD statement
Move the FORM statement outside the main table
Close INPUT tag
Update HTML Boolean operators
Add closing table cell (TD) and table row (TR) tags so that the rows are...

5655d48b 26 septembre 2013 13:18 Colin Fleming

Update "pkg_edit.php" XHTML

Update HTML Boolean operator

9c43a910 26 septembre 2013 00:45 Renato Botelho

Merge pull request #806 from ccesario/master

Set network interfaces description as interface name.

2d9063af 25 septembre 2013 22:16 ccesario

Set network interfaces description as interface name.

5205b0eb 25 septembre 2013 17:49 jim-p

Make sure no extra spaces end up in the parsed IP, it can lead to issues in other places (Easy Rule, etc)

d2399f99 25 septembre 2013 17:49 jim-p

Make sure no extra spaces end up in the parsed IP, it can lead to issues in other places (Easy Rule, etc)

93ee6032 25 septembre 2013 02:28 Renato Botelho

Respect default gateway option when adding a gateway from interfaces page. It fixes #3230

197099cf 25 septembre 2013 02:27 Renato Botelho

Respect default gateway option when adding a gateway from interfaces page. It fixes #3230

1207b1d6 24 septembre 2013 18:35 jim-p

OpenSSL does not like country codes longer than two letters, so remove these entries that are not actually country codes.

1fcb90d0 24 septembre 2013 18:34 jim-p

OpenSSL does not like country codes longer than two letters, so remove these entries that are not actually country codes.

a338d381 24 septembre 2013 15:32 jim-p

Allow multiple valid time servers to be entered in the wizard, as they are allowed under System > General

11d8b2cd 24 septembre 2013 15:31 jim-p

Allow multiple valid time servers to be entered in the wizard, as they are allowed under System > General

6f969455 23 septembre 2013 21:27 jim-p

Add patch from Ermal to fix ifconfig error on gif in certain cases.

7786cd6e 23 septembre 2013 21:27 jim-p

Add patch from Ermal to fix ifconfig error on gif in certain cases.

be773f24 23 septembre 2013 16:01 jim-p

Include the CP zone in the form parameters if one is defined. Fixes access to concurrent graph on zones other than the first/default.

428ea19f 23 septembre 2013 16:01 jim-p

Fix CP stats generation for concurrent users. Fixes #3225

c4877616 23 septembre 2013 16:00 jim-p

Include the CP zone in the form parameters if one is defined. Fixes access to concurrent graph on zones other than the first/default.

9e378421 23 septembre 2013 15:56 jim-p

Fix CP stats generation for concurrent users. Fixes #3225

9e768daf 23 septembre 2013 13:35 Ermal

Prevent assigned vlans from being changed the tag.

ac8e8506 21 septembre 2013 20:17 Renato Botelho

Fix #3218, reaload filter rules when activate or deactivate dhcpdv6

472ad9a0 21 septembre 2013 20:16 Renato Botelho

Fix #3218, reaload filter rules when activate or deactivate dhcpdv6

a4dc9632 19 septembre 2013 19:53 jim-p

Make this name a little more general in case we decide to have multiple similar files.

a40e7761 19 septembre 2013 19:52 jim-p

Make this name a little more general in case we decide to have multiple similar files.

baeb0599 19 septembre 2013 15:45 Xon

Alix 2D6 crashes upgrade process withou out of diskspace

Updating the the RRD graphs causes two copies of each RRD's XML file to be stored in /tmp.

On Nanobsd, the default /tmp size is 40mb. It doesn't require very many RRD XML dumps before this is exhausted.

fd750cd0 18 septembre 2013 22:20 PiBa-NL

Certificate Manager, for 'Create an internal Certificate' use the correct 'Digest Algorithm'

c13a7052 18 septembre 2013 12:14 Renato Botelho

Merge pull request #795 from razzfazz/ia-pd-hint

add option to send prefix hint for requesting desired prefix length for delegation (for master branch)

336e899a 17 septembre 2013 22:30 jim-p

Fix ufslabels.sh logic to avoid trying to convert slices which are already using appropriate labels. Fixes #3207

c4eeb1c4 17 septembre 2013 22:29 jim-p

Fix ufslabels.sh logic to avoid trying to convert slices which are already using appropriate labels. Fixes #3207

819a603c 17 septembre 2013 21:13 jim-p

Switch to rw mode before file operations on RFC2136 cache. Fixes #3201

78db4f1a 17 septembre 2013 21:12 jim-p

Switch to rw mode before file operations on RFC2136 cache. Fixes #3201

2e9d9ede 16 septembre 2013 21:57 Renato Botelho

Merge pull request #803 from PiBa-NL/outboundnat_disable_checkbox

outboundnat, disable rule checkbox

6ae8c4f2 16 septembre 2013 20:46 PiBa-NL

outboundnat, disable checkbox

1cddd59c 16 septembre 2013 15:13 Warren Baker

Split SSL/TLS into separate checkboxes so that plaintext connections can be made secured by using STARTTLS. Support for SMTPS connections should probably be done away with in future. Fixes #3180

4f947669 16 septembre 2013 09:28 Ermal Luçi

Merge pull request #802 from Xon/patch-1

Alix 2D6 crashes during 2.1 upgrade process with an out of diskspace error

73c569ea 15 septembre 2013 19:45 Xon

Alix 2D6 crashes upgrade process withou out of diskspace

Updating the the RRD graphs causes two copies of each RRD's XML file to be stored in /tmp.

On Nanobsd, the default /tmp size is 40mb. It doesn't require very many RRD XML dumps before this is exhausted.

67e5e3c6 14 septembre 2013 16:17 Renato Botelho

Set action = pass for configured mac addresses on CP passtrumac

81ce28d8 14 septembre 2013 15:54 Renato Botelho

Remove unecessary blockedmacs db and read it directly from config

204e16db 12 septembre 2013 20:03 Renato Botelho

Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195

01ba8ec6 12 septembre 2013 20:01 Renato Botelho

Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195

4f7bba46 12 septembre 2013 19:53 Renato Botelho

Do not allow local mac address to be added to passtrumac list in CP. It fixes #3122

30cbc007 12 septembre 2013 16:29 Renato Botelho

Fix php short tag opening and silent php -l

ea51e9f8 12 septembre 2013 16:29 Renato Botelho

Remove call-time pass by reference from traffic shaper files, it should fix #2565

1e9b4611 12 septembre 2013 16:28 Renato Botelho

Remove call-time pass by reference for do_input_validation, helps ticket #2565

a413e743 12 septembre 2013 14:43 Renato Botelho

Do not add a ipfw rule to block mac since auth can take care of block or redirect it

8d5ddc09 12 septembre 2013 14:43 Renato Botelho

Redirect blocked macs to desired URL or show an error message

2f1548d6 12 septembre 2013 14:42 Renato Botelho

Add a redirect url option to blocked macs

3b2769be 12 septembre 2013 13:44 Renato Botelho

Make sure db doesn't exist when start to configure macs

a7c00d8d 12 septembre 2013 13:44 Renato Botelho

Delete the old mac when action changes, not the current one

0d33f1fc 12 septembre 2013 13:44 Renato Botelho

When block a MAC address, add it to a DB to make it possible to redirect it to a URL

6b1cb3fd 12 septembre 2013 13:44 Renato Botelho

Add action to auto created passtru mac rule

0bf1e925 12 septembre 2013 13:44 Renato Botelho

Remove unused variable $macdb

5eee3755 12 septembre 2013 13:44 Renato Botelho

Make captiveportal_passthrumac_delete_entry() return rules instead of execute them as other similar functions do

736c36c6 12 septembre 2013 13:44 Renato Botelho

Use same tab name on all pages

ed8899b5 12 septembre 2013 13:44 Renato Botelho

Change 'Pass-through MAC' tab name to reflect current reality

6ffb064f 12 septembre 2013 13:44 Renato Botelho

Add action to auto created passtru mac rule

666f88e0 12 septembre 2013 13:44 Renato Botelho

Add actions (block or pass) to Captive Portal passtrumac

cfd88fbc 12 septembre 2013 13:44 Renato Botelho

Fix indent and whitespaces

bf2afff0 12 septembre 2013 00:12 Chris Buechler

s/BSDP/ESF/

90a27e64 12 septembre 2013 00:12 Chris Buechler

s/BSDP/ESF/

611f2910 11 septembre 2013 20:33 jim-p

Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync

049d4211 11 septembre 2013 20:32 jim-p

Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync

eed5b507 10 septembre 2013 20:02 jim-p

Include CA in generated .p12 file. Fixes #2147 the way it was originally intended.

1e2cb1f8 10 septembre 2013 17:44 jim-p

No need to treat PHP errors as a crash on -RELEASE for now.

b832d617 10 septembre 2013 17:08 jim-p

This broke correct detection of primary/secondary -- the person in that thread may have had some other config issue, but this broke working/valid configurations. Revert "Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html"...

a3d6166b 10 septembre 2013 17:07 jim-p

Fix didn't help -- backing this out and the change that made it necessary. Revert "Correctly check the secondary/primary parameter setting on dhcp failover configuration"

This reverts commit 24670866827b4e2d7a4a05baaf6d09ee377ce7cb.

9633e518 10 septembre 2013 15:08 jim-p

Simplify the update URL definition in globals.inc and add some comments to it.

408ebb78 10 septembre 2013 15:06 jim-p

Fix update URL so the -RELEASE version looks at the stable updates URL by default rather than the snapshots server.

c312ee8f 10 septembre 2013 14:15 Phil Davis

Update an existing cron entry for pppoe periodic resets

The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192

09d2bef3 10 septembre 2013 14:14 Renato Botelho

Merge pull request #801 from phil-davis/master

Update an existing cron entry for pppoe periodic resets

f1593bfe 10 septembre 2013 13:52 Phil Davis

Update an existing cron entry for pppoe periodic resets

The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192

767afbb1 10 septembre 2013 11:35 Ermal

Require IPv6.inc header so that if ipv6 functions are called no surprises arise

8d8f5e49 10 septembre 2013 11:35 Ermal

Require IPv6.inc header so that if ipv6 functions are called no surprises arise

fa4d4be6 10 septembre 2013 11:27 Ermal

Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier

58fbb3f0 10 septembre 2013 11:26 Ermal

Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier

e4cf52ed 10 septembre 2013 11:22 Phil Davis

Do not include disabled OpenVPN in vpn_networks and negate_networks

a01f8bfc 10 septembre 2013 11:10 Ermal

Correctly check the secondary/primary parameter setting on dhcp failover configuration

24670866 10 septembre 2013 11:10 Ermal

Correctly check the secondary/primary parameter setting on dhcp failover configuration

20809a21 10 septembre 2013 10:20 Ermal

Correct typo that prevents dhcp rules from properly being generated.

168a1948 10 septembre 2013 10:18 Ermal

Correct typo that prevents dhcp rules from properly being generated.

6e46621b 10 septembre 2013 08:49 Ermal Luçi

Merge pull request #800 from phil-davis/master

Do not include disabled OpenVPN in vpn_networks and negate_networks

771c14a3 10 septembre 2013 04:30 Phil Davis

Do not include disabled OpenVPN in vpn_networks and negate_networks

d2f0b142 09 septembre 2013 23:44 Chris Buechler

the time has come - bump to 2.1-RELEASE

0281db8c 09 septembre 2013 21:18 jim-p

Fix errant display of "0 table deleted" during filter reload on console.

b841bc23 09 septembre 2013 21:18 jim-p

Fix errant display of "0 table deleted" during filter reload on console.

772e49ce 09 septembre 2013 21:10 Renato Botelho

Remove unecessary capitalized WARNING from disabled APC message

4831f5df 09 septembre 2013 21:09 Renato Botelho

Remove unecessary capitalized WARNING from disabled APC message

fae7ef31 09 septembre 2013 01:57 jim-p

Test growl whether or not growl is disabled.

1e940f77 09 septembre 2013 01:57 jim-p

Test growl whether or not growl is disabled.

cf07d574 06 septembre 2013 19:56 jim-p

Do not sync DHPCv6, it must operate independetly. Ticket #3184

d3b3240b 06 septembre 2013 19:56 jim-p

Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184

1d47cb37 06 septembre 2013 19:56 jim-p

Do not sync DHPCv6, it must operate independetly. Ticket #3184

8571cdd5 06 septembre 2013 19:56 jim-p

Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184

279c2f42 06 septembre 2013 18:59 Renato Botelho

Disable kill_states by default on upgrade, it fixes #3183

af0a477a 06 septembre 2013 18:58 Renato Botelho

Disable kill_states by default on upgrade, it fixes #3183

da95bdcd 06 septembre 2013 13:10 Renato Botelho

Fix #3127

By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using it. Replace value attribute
set to use double quotes on places where it's obviously recieving a
result of htmlspecialchars() call.

605ae553 06 septembre 2013 13:08 Renato Botelho

Fix #3127

By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using it. Replace value attribute
set to use double quotes on places where it's obviously recieving a
result of htmlspecialchars() call.

9e6043cc 05 septembre 2013 20:27 jim-p

Allow for easier override on $g values if needed.

8346b5c4 05 septembre 2013 20:27 jim-p

Allow for easier override on $g values if needed.

25f9f332 05 septembre 2013 14:39 Ermal

Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html

9d7ca11f 05 septembre 2013 14:39 Ermal

Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html

36fa13a6 05 septembre 2013 14:29 Ermal

Ticket #3181 do the state flushing only on down gateway detection rather than any time.

19d723d2 05 septembre 2013 14:28 Ermal

Ticket #3181 do the state flushing only on down gateway detection rather than any time.

5aa44e98 05 septembre 2013 14:24 Ermal

Revert "Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives"

A bit too excessive need to get right.

This reverts commit c59dd719e0a6d9ee8deecaa7bff0d6ee8c76e4ca.

c22f4809 04 septembre 2013 22:27 jim-p

Ba-bump-bump.

d6df2c4c 04 septembre 2013 17:03 Ermal

When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.

0b18ef05 04 septembre 2013 17:03 Ermal

When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.

b9eae2ba 04 septembre 2013 12:43 Ermal

Actually the / here is not needed.

0ec64bd2 04 septembre 2013 12:43 Ermal

Actually the / here is not needed.

c088fe72 04 septembre 2013 12:36 Ermal

Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.

b8b78b9a 04 septembre 2013 12:36 Ermal

Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.

8171a2c2 04 septembre 2013 10:48 Ermal

Introduce two new functions to be used on locking.

- try_lock: used for trying to get an EXCLUSIVE lock for a specified timeout by default of 5
- unlock_force: which just releases any locks held on a specified lock

Use this new functions on rc.openvpn to avoid spurious stale locks around.

f33dcc5c 04 septembre 2013 10:31 Ermal

Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around

5d1bde96 04 septembre 2013 10:31 Ermal

Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around

48085d0c 04 septembre 2013 10:19 Ermal

Make the operation of saving old rule nearby the writing operation to be logical to spot

dc8b4c4e 04 septembre 2013 10:18 Ermal

Make the operation of saving old rule nearby the writing operation to be logical to spot

b214bf3a 04 septembre 2013 10:12 Ermal

Sprinkle some unsets to reduce footprint and correct some whitespaces

53ce7798 04 septembre 2013 10:12 Ermal

Sprinkle some unsets to reduce footprint and correct some whitespaces

e8090840 04 septembre 2013 09:22 Phil Davis

filter_generate_port error log function name

Absolutely minor adjustment to make the error log message refer to the new function name.

2eebeecb 04 septembre 2013 09:19 Ermal Luçi

Merge pull request #797 from phil-davis/master

filter_generate_port error log function name

3b6596b7 04 septembre 2013 03:03 Phil Davis

filter_generate_port error log function name

Absolutely minor adjustment to make the error log message refer to the new function name.

c59dd719 03 septembre 2013 21:05 Ermal

Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives

44f0f09b 03 septembre 2013 20:40 Ermal

Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.

81d81b94 03 septembre 2013 20:39 Ermal

Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.

3cb55704 03 septembre 2013 20:19 Renato Botelho

Remove SPD when disable phase2, it fixes #2719

03131eb9 03 septembre 2013 20:13 Renato Botelho

Remove SPD when disable phase2, it fixes #2719

f70df069 03 septembre 2013 19:31 Individual IT Services

Increased needed memory for APC to 512M + code cleanup

- Increased the needed memory for APC to 512M as we often run into memory problems on our 256M box
- fixed the RAM calculation to divide by 1024 and not 1000
- code cleanup (renaming variables and creating new to avoid magic numbers)

fcca1783 03 septembre 2013 19:29 Renato Botelho

Merge pull request #786 from individual-it/master

Increased needed memory for APC to 512M + code cleanup

be40ce0b 03 septembre 2013 19:08 Chris Buechler

Merge pull request #796 from phil-davis/master

Traffic Shaper GUI text typos

faf4b1fc 03 septembre 2013 19:05 Chris Buechler

Merge pull request #796 from phil-davis/master

Traffic Shaper GUI text typos

0c1870ca 03 septembre 2013 19:04 Chris Buechler

Merge pull request #790 from shahidsheikh/RELENG_2_1

#3174 Added handling of gateway groups in openvpn_restart
fcb5121d 03 septembre 2013 19:03 Chris Buechler

Merge pull request #793 from shahidsheikh/master

Fix #3174 Handling of gateway groups in openvpn_restart()

96551a20 03 septembre 2013 19:03 Chris Buechler

Merge pull request #794 from phil-davis/RELENG_2_1

Backport get_memory changes to 2.1

32a9eb18 03 septembre 2013 18:52 Ermal

Bring back static routes to fix issues reported on Ticext #3179

c9d099d7 03 septembre 2013 18:52 Ermal

Bring back static routes to fix issues reported on Ticext #3179

c59e21b5 03 septembre 2013 18:36 Renato Botelho

Fix #3004:

. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_values_recursive to fix
VIP interface names instead of touch config.xml directly

243680e5 03 septembre 2013 18:00 Chris Buechler

Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here.

7050776a 03 septembre 2013 18:00 Chris Buechler

Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here.

497841f5 03 septembre 2013 17:42 Ermal

Correct typo on variable name

6f8cf553 03 septembre 2013 17:39 Ermal

Correct typo on variable name

f2cc3344 03 septembre 2013 17:37 Renato Botelho

Fix #3004:

. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_values_recursive to fix
VIP interface names instead of touch config.xml directly

628a64a9 03 septembre 2013 16:20 Ermal

Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html

a8ab2b76 03 septembre 2013 16:20 Ermal

Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html

7ca8bef4 03 septembre 2013 13:56 Renato Botelho

Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159

42ec9337 03 septembre 2013 13:55 Renato Botelho

Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159

794195d1 03 septembre 2013 13:45 Phil Davis

Traffic Shaper GUI text typos

and note the Queue Limit is a number of packets (not packets per second)

7cb3f7d2 03 septembre 2013 12:27 Ermal

Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.

(2001-3000/25468) Par page : 25, 50, 100, 500, 1000

Formats disponibles : Atom