Projet

Général

Profil

Révision:

Révisions

# Date Auteur Commentaire
ccb2af23 17 mars 2015 16:47 Thomas Noël

config.xml: use idps-only renater federation

16b9c78e 17 mars 2015 15:04 Thomas Noël

add UnivNautes in version

f9a5d44b 17 mars 2015 14:36 Thomas Noël

config.xml: add idp group & firmwareurl

95282bb2 27 janvier 2015 12:09 Thomas Noël

idp: syncdata when federations are updated

16d78fb8 27 janvier 2015 12:07 Thomas Noël

config.xml: prepare idp by default (disable but ready)

b62e4e4d 26 janvier 2015 18:01 Thomas Noël

local idp (beta)

4af9283c 26 janvier 2015 16:20 Thomas Noël

rc.bootup: start idp

69f21f64 22 janvier 2015 15:26 Thomas Noël

idp: management interface

9344d387 15 janvier 2015 19:01 Thomas Noël

univnautes: custom templates&static (#5570)

202e2f2c 15 janvier 2015 16:34 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

b57ea0b7 22 décembre 2014 12:04 Ermal LUÇI

Do not apply bw limits if the setting is not enabled in CP. Though still respect radius attributes for now with this setting. Resolves #4127

be544b90 01 décembre 2014 09:47 Ermal LUÇI

Ticket #4053, manually merge improvements on rrd restore handling.

02b81e84 01 décembre 2014 09:43 Ermal LUÇI

Ticket #4053, manually merge improvements on rrd backup handling.

64cda11e 21 novembre 2014 12:10 Ermal LUÇI

Actually an interface is detstroyed here no need for this merge!

Revert "Merge e3cffd6cefc - Properly remove IPv6 carp vips as reported from https://forum.pfsense.org/index.php?topic=84392.0"

This reverts commit e5e16cfc962bcc98a06b89574309bc2ef0ed3542.

e5e16cfc 21 novembre 2014 12:10 Ermal LUÇI

Merge e3cffd6cefc - Properly remove IPv6 carp vips as reported from https://forum.pfsense.org/index.php?topic=84392.0

c1a50dd7 20 novembre 2014 13:25 Renato Botelho

Remove debugging code that can lead us to XSS injection, also pass variables through htmlspecialchars() to sanitize

a8c82ef9 18 novembre 2014 15:03 Renato Botelho

Pass path parameter through htmlpecialchars()

f376043c 18 novembre 2014 15:03 Renato Botelho

Define a local boolean var for showact to avoid security issues, also pass order parameter trough htmlspecialchars()

7e44a029 13 novembre 2014 15:14 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

8105ffa6 13 novembre 2014 13:10 Renato Botelho

Fix logic to find available next number for limiters and queues. It fixes #3998

89cf3dc0 13 novembre 2014 13:09 Renato Botelho

Fix logic to find available next number for limiters and queues. It fixes #3998

340ce958 13 novembre 2014 12:10 Renato Botelho

Add an extra protection to avoid having an empty group created

bd0bb466 12 novembre 2014 22:06 Ermal

Do not display the disabled tunnels since they are not needed in the widget. Ticket #3955

6a151c91 12 novembre 2014 21:43 Ermal

Commit the other part of the fix for Ticket #3955

21cd92ac 12 novembre 2014 21:41 Ermal

Oops wrong choice the checkbox is only for javascript

c9b70c0a 12 novembre 2014 21:41 Ermal

Remove redundant code and check for dpd_enable checkbox to be set

38d21414 12 novembre 2014 19:44 jim-p

Fixup some redirected URLs.

4dbabbc6 12 novembre 2014 19:36 jim-p

Fixup some URLs that changed.

4b2223f2 12 novembre 2014 19:36 jim-p

Standardize quotes in help.php

71f45fed 12 novembre 2014 18:26 Chris Buechler

Don't allow interface descriptions that are strictly numbers as that
generates an invalid ruleset. Ticket #4005

a19cc600 12 novembre 2014 18:22 Chris Buechler

fix variable typo

2b114010 12 novembre 2014 18:20 Chris Buechler

fix text

61dec0b0 12 novembre 2014 17:22 Renato Botelho

Make sure empty group or user are not created when editing

2951a06a 12 novembre 2014 15:27 Renato Botelho

Only create missing ssh keys, do not overwrite existing ones. It fixes #4003

aa5acb42 12 novembre 2014 14:57 Ermal

Use route command directly rather than trying to make a route search on php thorugh netstat. It Fixes #4000

285acd60 12 novembre 2014 12:46 Ermal

Oops do the right thing here by passing proper argument rather than breaking the ipsec status page. Ticket #3955

39f93e00 12 novembre 2014 12:42 Ermal

Revert "Make phase1_status function wok whnever there is a smp dump. This should unbreak Ticket #3955"

This reverts commit 694d368d818508a40bdef4f1a3f64b414b11c442.

5823df59 12 novembre 2014 07:32 Chris Buechler

remove this log, it's never logged anything useful that I've seen, and unnecessarily spams the secondary's system log on every config sync.

4de91fda 12 novembre 2014 02:13 Chris Buechler

hn(4) is ALTQ-capable, mark as such.

694d368d 11 novembre 2014 23:18 Ermal

Make phase1_status function wok whnever there is a smp dump. This should unbreak Ticket #3955

c7f5b55a 11 novembre 2014 21:36 Ermal

Actually require group name!

baca968c 11 novembre 2014 21:35 Ermal

Do not do operations for empty group members

e16f6d03 11 novembre 2014 21:28 Ermal

Do not do this during boot

63ba4729 11 novembre 2014 20:57 Ermal

Use leftcert for more options on IPsec authentication

1f2f38f5 11 novembre 2014 20:49 Ermal

Ticket #3967 also sync other vip types that can be synched.

94115b93 11 novembre 2014 20:08 Ermal

Fixes #3967, properly resolve interface

992f60d0 11 novembre 2014 14:57 Renato Botelho

Set proxy env vars on interactive shell and also on crontab to make all scripts be able to use it. Ticket #3789

eacdbc4d 11 novembre 2014 14:33 Renato Botelho

Revert "Ticket #3789. Put a start at using the proxyurl/proxyport from system configured settings for bogons. It still does not consider the user/pass configured"

This reverts commit 664adf3845cf1df89769bb0ed5fc113048e0912e.

0b7dbebe 11 novembre 2014 07:03 Chris Buechler

touch up text

5f4f8365 11 novembre 2014 06:53 Chris Buechler

fix text

29aef6c4 11 novembre 2014 06:36 Jim Thompson

Change copyright statement to reflect reality

dd447bde 11 novembre 2014 05:49 Jim Thompson

modify copyright statement to reflect reality

e7896fc8 11 novembre 2014 05:24 Jim Thompson

Change copyright statement to reflect reality

e120d5ce 11 novembre 2014 05:13 Chris Buechler

Fix syntax error in CARP status page. Ticket #3967

a1b66bec 11 novembre 2014 05:07 Chris Buechler

Restore the CARP parent display in firewall_virtual_ip.php. Ticket #3967

a9b305a8 11 novembre 2014 04:52 Chris Buechler

Set this to /8 instead since that's how it's done in stock FreeBSD 10.1. Ticket #3941

b0533f16 11 novembre 2014 04:37 Chris Buechler

Setting an interface's IP to 0.0.0.0 with mask 0.0.0.0 overwrites the
default route with that interface's link route. Later in dhclient, that
gets deleted and leaves the system with no default route. Using a /32 mask
here works in every scenario I can find, and stops the default route...

7cdfe39e 10 novembre 2014 23:45 Ermal

Strengthen check

f4443dce 10 novembre 2014 23:32 Ermal

Compare the right things here.

d87fcac9 10 novembre 2014 21:47 Ermal

Do not require the default sysctl items to be set on the config.xml but rather extract the definitions from the sysctl tree. Also to reduce config.xml size

24d728bb 10 novembre 2014 20:36 Ermal

Retire flowtable_configure as a useless code since its not in kernel

c46f9695 10 novembre 2014 20:32 Ermal

Actually make default sysctls reside on globals.inc and use those by default this allows to trim down the config.xml sysctl and also fixes #3666 by setting set source interface on reply of icmp

d3c36b1d 10 novembre 2014 20:29 Ermal

Put the new sysctl on the config as needed.

894a0159 10 novembre 2014 17:03 Ermal

Tighten checks here to avoid overriding the default gw with garbage

d3c269d3 10 novembre 2014 16:15 Ermal

Make some more useful checks here

6704590b 10 novembre 2014 16:09 Ermal

Be sure the same gateway is not processed for v4 and v6

c87d89ae 10 novembre 2014 15:38 Ermal

Lets put a logging to see what is bing passed to the rtsold script on calling. Helps with Ticket #3361

6f55af1c 10 novembre 2014 15:20 Ermal

Ticket 3967, revert upgrade code. Existing 2.2 installs might be impacted

b0d054ca 10 novembre 2014 15:18 Ermal

Fixes #3967, configure ip alias on top of carp by joining them to the same vhid as its parent

5063f1df 10 novembre 2014 15:00 Ermal

Ticket #3967. Allow to have carp as parent of ipaliases - continued

9c97df26 10 novembre 2014 14:34 Ermal

Ticket #3967. Allow to have carp as parent of ipaliases

80be089f 07 novembre 2014 19:28 Ermal

Fixes #3995. Do not set rightsourceip on site-to-site VPNs but only on mobile users ones otherwise nothing works.

20a95904 07 novembre 2014 14:37 Ermal

Make ipsec_starter log go to ipsec.log rather than system one

e82a1d11 07 novembre 2014 14:14 Ermal

Reload also the configuration not only the secrets before trying to apply existing configuration. Ticket #3981

a8380480 07 novembre 2014 05:11 Chris Buechler

fix text

6859f881 07 novembre 2014 05:09 Chris Buechler

show interface name, not identifier

d3d23754 07 novembre 2014 05:03 Chris Buechler

fix text, PPPoE Server, not VPN

7bd413eb 07 novembre 2014 03:19 Chris Buechler

add a route debug option to log info about route commands executed (where those aren't already logged) to help with troubleshooting various routing scenarios.

708af634 07 novembre 2014 00:16 Chris Buechler

remove unnecessary is_array check, thanks Renato

6c3be365 06 novembre 2014 23:36 Chris Buechler

Don't allow P2 local+remote network combinations that overlap with
interface+remote-gateway of the P1. Fixes #3812

dbb95f38 06 novembre 2014 19:49 Chris Buechler

set install_routes=no for charon to avoid the issues noted in ticket

459e95a3 06 novembre 2014 19:39 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

27c2e32e 06 novembre 2014 19:38 Renato Botelho

Pass zone id to pfSense_ipfw_getTablestats(), should fix #3990

118218cb 06 novembre 2014 14:54 Renato Botelho

Make sure target has scope when it's a link-local. Fixes #3969

049c74ec 06 novembre 2014 14:40 Renato Botelho

Check if array is set

10435fa9 06 novembre 2014 14:07 jim-p

Merge pull request #1330 from phil-davis/patch-1

3f6525c1 06 novembre 2014 11:30 Renato Botelho

Make sure srcip has scope when it's link-local. Should fix #3969

e7752fc4 06 novembre 2014 10:57 Renato Botelho

Remove extra ; and space

e7a00514 06 novembre 2014 10:57 Renato Botelho

Process obsolete files in shell script instead of php

48f77cef 06 novembre 2014 10:57 Renato Botelho

Simplify post_upgrade_command logic and obsolete /usr/local/sbin/cvs_sync.sh instead of removing it on post_upgrade_command

a68c6785 06 novembre 2014 10:29 Phil Davis

Fix to SMART disk matching

preg_match returns 0 when the string does not match the regex.
0 does not "===" FALSE
So this check is not always working.
preg_match returns 1 when the string matches the regex.
IMO it is better to check for !== 1 - then anything that is not success (0 or false or...) will be unset.

a012464e 06 novembre 2014 05:58 Chris Buechler

fix captive portal status page display

bb18cfcb 06 novembre 2014 05:45 Chris Buechler

fix up text

e8fa9843 06 novembre 2014 03:45 Chris Buechler

Pass friendlyifname to handle_argument_group, not realifname. Fixes #3984. clean up some text while here.

e55e4b74 06 novembre 2014 02:47 Chris Buechler

isset($_GET) seems to always evaluate to true, use something more specific. Fixes use of rc.linkup when run from CLI. Others likely fix similar circumstances, though maybe not ones that are used anywhere.

c75e8aed 06 novembre 2014 02:33 Chris Buechler

Disable delete_old_states in dhclient-script. rc.newwanip handles this correctly in 2.2, and this killed states in multiple circumstances where that isn't necessary nor desirable.

9aec47b7 06 novembre 2014 00:18 Chris Buechler

don't duplicate $message in CP log entries

d9b05eb4 05 novembre 2014 18:31 Renato Botelho

When an alias contain hosts, add IPs and networks to filterdns too, otherwise you end up with a pre-defined and non-persistent table. Fixes #3939

fcfa23da 05 novembre 2014 10:12 Renato Botelho

Merge pull request #1319 from phil-davis/patch-1

87d4456c 05 novembre 2014 10:07 Renato Botelho

Merge pull request #1323 from derelict-pf/master

5940e655 05 novembre 2014 10:06 Renato Botelho

Merge pull request #1326 from phil-davis/patch-5

798d8644 05 novembre 2014 10:06 Phil Davis

Fix obviously broken test in rc.initial.setlanip

IMO might as well back-port any obviously wrong code to 2.1 branch, just in case anybody on 2.1.n cares for it or there is a need for another 2.1.n release.

f81011ea 05 novembre 2014 10:05 Renato Botelho

Merge pull request #1320 from phil-davis/patch-2

e39c963a 05 novembre 2014 06:31 Chris Buechler

fix up text

75756ab9 05 novembre 2014 06:19 Chris Buechler

use a bit stronger of defaults in OpenVPN wizard

1c1fe666 05 novembre 2014 06:08 Chris Buechler

Fix WINS description. It's not 1999, and it wasn't a good description for back then either. If you're running WINS at this point on your AD DCs...get rid of the Win 9x boxes, or realize you don't actually need or want WINS on anything Windows 2000 and newer.

7a22ab9b 05 novembre 2014 06:05 Chris Buechler

fix up text

cbc6a13f 05 novembre 2014 05:01 Chris Buechler

Fix updating of hosts file on host override updates by bringing back the same behavior from previous releases.

b7419cfc 05 novembre 2014 04:22 Chris Buechler

skip disabled phase 1 entries in status output

261f2efe 05 novembre 2014 02:57 Chris Buechler

fix NAT-T status. The 'nat' in the status array just tells how the connection is configured, not what it's actually using. Port seems to be the best way to determine what it's using. Fix up some other text while here

531686c1 05 novembre 2014 02:09 Chris Buechler

use tabs rather than spaces, as most of this already did.

d3c414e3 05 novembre 2014 02:02 Chris Buechler

strongswan only has two options for NAT-T, force or auto.

a43ddd1a 05 novembre 2014 01:44 Chris Buechler

setting nmbclusters to 0 just results in an error, remove unnecessary line

41367b9c 05 novembre 2014 01:34 Chris Buechler

remove old DISABLE_PHP_LINT_CHECKING, which dates way back to the CVS days and hasn't been relevant in years.

276efd64 05 novembre 2014 01:24 Chris Buechler

touch up text

32171e59 05 novembre 2014 01:18 Chris Buechler

fix invalid ipsec.conf

f643a1f1 05 novembre 2014 01:02 Chris Buechler

clean up text

ea20169a 04 novembre 2014 21:49 jim-p

Use a better method of finding disks for SMART.
Old code was inaccurate and also listed entries that were symlinks to other disks

0810a719 04 novembre 2014 21:21 Ermal

Restore 3 values back on NAT-T settings Just Enable now its Auto as per strongswan default. and off disabled mobike. Ticket #3979

1db2634e 04 novembre 2014 21:08 Ermal

Rename the options to actually make sense with strongswan

86ef7a0a 04 novembre 2014 21:07 Ermal

Remove Force options since it has not meaning for now.

756d867a 04 novembre 2014 20:31 Chris Buechler

fix comment

5711c446 04 novembre 2014 18:44 jim-p

Catch some more sensitive info when sanitizing.

8a2229e3 04 novembre 2014 18:43 jim-p

Catch some more sensitive info when sanitizing.

f384d8a5 03 novembre 2014 18:27 Renato Botelho

Merge pull request #1329 from phil-davis/patch-3

a3fad592 03 novembre 2014 17:43 Phil Davis

Fixup dhcpd interface enabled check

ba667cc6 03 novembre 2014 16:04 Phil Davis

Fix console set interface IP address

Problem as per forum https://forum.pfsense.org/index.php?topic=83651.0
The problem comes whenever services_dhcpd_configure is called - the global $config gets reset from the actual current config, and any pending changes in the current process are lost....

ec290464 03 novembre 2014 13:56 Renato Botelho

Merge pull request #1328 from wagonza/master

fe9d4894 03 novembre 2014 13:54 Renato Botelho

Fix indent

2783e408 03 novembre 2014 13:52 Renato Botelho

Revert "Indent better"

This reverts commit a431bfc9e698c753d9a54218af9076184deb6251.

d5566d43 03 novembre 2014 13:45 Warren Baker

Make sure defaults values are actually used. Fixes #3974

7bb24e18 03 novembre 2014 11:48 Renato Botelho

Merge pull request #1327 from wagonza/pfSense-master

46a989ce 03 novembre 2014 11:08 Warren Baker

Indent here as well

a431bfc9 03 novembre 2014 11:08 Warren Baker

Indent better

1b436de1 03 novembre 2014 11:04 Warren Baker

Be consistent with the other pages

be11b6f1 03 novembre 2014 11:03 Warren Baker

Add braces

4c3abd34 03 novembre 2014 09:27 Phil Davis

Fix obviously broken test in rc.initial.setlanip

IMO might as well back-port any obviously wrong code to 2.1 branch, just in case anybody on 2.1.n cares for it or there is a need for another 2.1.n release.

0a89d059 03 novembre 2014 08:54 Renato Botelho

Merge pull request #1324 from phil-davis/patch-3

8727b3c8 03 novembre 2014 07:04 Phil Davis

Set interface address from consol tidy output

While trying to see why this is not working for me (forum https://forum.pfsense.org/index.php?topic=83651.0 ) I have fixed some little things:
1) Get the new-lines right so the output of the restarting looks neat...

ce21dfca 02 novembre 2014 00:20 Ermal

Correct dispaly of checkboxes for ipsec

8cb7d3e3 01 novembre 2014 23:41 Ermal

Properly configure NAT Tranversal setting.

6af85718 01 novembre 2014 20:54 Ermal

Remove debugging code

f3dd7e8c 01 novembre 2014 18:56 Ermal

Properly test if FCGI is calling or are being triggered from shell. Normally Fixes #3361

9fdc167f 01 novembre 2014 18:55 Ermal

Properly test if FCGI is calling or are being triggered from shell. Normally Fixes #3361

d338018f 01 novembre 2014 18:49 Ermal

Fixes #3938. Do more error checking.

935fcedb 01 novembre 2014 18:44 Ermal

Fixes #3941. When optimizations of the loops were made this brought the problems of overriding default gateway by dynamic interfaces. Try to stick to the first found for now!

d35dfaae 01 novembre 2014 18:43 Ermal

Fixes #3941. When optimizations of the loops were made this brought the problems of overriding default gateway by dynamic interfaces. Try to stick to the first found for now!

038f6e96 01 novembre 2014 07:42 Chris Buechler

clarify logs generated by newwanip(v6) when restarting packages, it's not only IP changes that end up here (by design).

a94a16cd 31 octobre 2014 23:05 derelict-pf

s/a/an/ and speling.

162a7b4e 31 octobre 2014 22:55 derelict-pf

s/then/than/

4045cf1e 31 octobre 2014 15:26 jim-p

Fix two more instances of rrd.tgz renaming.

8560c756 31 octobre 2014 15:26 jim-p

Fix two more instances of rrd.tgz renaming.

c656bc75 31 octobre 2014 03:24 Phil Davis

Fix getext to gettext typo

41aa5cd4 31 octobre 2014 03:23 Phil Davis

Fix getext to gettext typo

29af6265 31 octobre 2014 03:23 Phil Davis

Fix getext to gettext typo

24516832 31 octobre 2014 03:22 Phil Davis

Fix getext to gettext typo

b3f0b2e1 31 octobre 2014 03:21 Phil Davis

Fix getext to gettext typo

687712ee 31 octobre 2014 03:10 Phil Davis

More gettext typos

95169728 31 octobre 2014 03:10 Phil Davis

More gettext typos

c69f62b8 31 octobre 2014 03:09 Phil Davis

More gettext typos

91ee10c0 31 octobre 2014 03:07 Phil Davis

More gettext typos

e4982b90 31 octobre 2014 02:30 Chris Buechler

fix typoed gettext

1ae41bfe 30 octobre 2014 22:37 Chris Buechler

Kill states associated with the old WAN IP when WAN IP has changed. Retain
hidden config option to wipe all states on IP change, as there seemed to
be circumstances where the 'pfctl -k $oldip' didn't suffice for others
(much of history in redmine ticket, some on forum and elsewhere). ticket

737b18f2 30 octobre 2014 21:35 Ermal

Allow accept_unencrypted_mainmode_messages to be enabled if needed

461eac09 30 octobre 2014 19:15 Chris Buechler

only kill all states if the IP changed. ticket #1629

a2bb22e9 30 octobre 2014 17:44 Thomas Noël

config.xml: better examples for blacklists

58c2a7da 30 octobre 2014 17:42 Thomas Noël

css: red messages !

64bfdb18 30 octobre 2014 17:19 Thomas Noël

blacklisted people cannot see homepage

6ef1aac1 30 octobre 2014 16:11 Thomas Noël

update-geoinfos: use shutil.move (cross-device mv) (#5831)

5274102e 29 octobre 2014 21:39 Chris Buechler

Hide burst for limiters, since it doesn't do anything. more details in
ticket #3933

f9299058 29 octobre 2014 15:54 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

beead36d 29 octobre 2014 15:51 Thomas Noël

fix next_url cookie, don't store "None" (#5819)

adcce0a3 29 octobre 2014 15:23 Thomas Noël

redirect after login: organize options page

706c7eef 29 octobre 2014 15:09 Thomas Noël

config.xml: add example of local federation

f0626bd5 29 octobre 2014 14:48 Thomas Noël

config.xml: add default blacklists (empty, commented examples) (#5820)

a4372874 29 octobre 2014 14:02 Renato Botelho

Fix a typo on array index, related to ticket #3963

b24998f3 29 octobre 2014 13:22 Thomas Noël

fix default blacklists (#5820)

a663852e 29 octobre 2014 13:06 Thomas Noël

fix utf8 for local metadata (pfsense use iso8859-1)

5db56e35 29 octobre 2014 12:14 Thomas Noël

update-metadatas.py: fix local metadata system

714be795 29 octobre 2014 11:51 Thomas Noël

pluralize: whitelistS and blacklistS

002d286c 29 octobre 2014 07:08 Chris Buechler

fix up text

eea2ad5d 28 octobre 2014 22:33 Chris Buechler

FreeBSD fails to set advskew back to 0 after you set it to any other
value. That's a separate issue that needs fixing upstream, but in the mean
time, we can work around it by removing all CARP VIPs in the same way we
do when "Temporarily Disable CARP" is chosen before adding them all back....

70eef835 28 octobre 2014 20:06 Renato Botelho

Remove redundancy as pointed out by phil-davis

44c7d73c 28 octobre 2014 20:06 Renato Botelho

Decode recently created cert and key. It fixes #3964. While here, fix logical condition to create a new cert if crt or key is not present

569e2fdf 28 octobre 2014 19:31 Chris Buechler

Add option to kill all states on IP change, currently a hidden option for more testing. ticket #1629

fd057a56 28 octobre 2014 18:00 Renato Botelho

Merge pull request #1317 from phil-davis/patch-1

0a8dd27b 28 octobre 2014 17:55 Renato Botelho

Remove redundancy as pointed out by phil-davis

7c199791 28 octobre 2014 17:26 Renato Botelho

Merge pull request #1297 from phil-davis/patch-23

c2071338 28 octobre 2014 14:49 Serghei Mihai

useless code removed

143c22f7 28 octobre 2014 13:17 Renato Botelho

Decode recently created cert and key. It fixes #3964. While here, fix logical condition to create a new cert if crt or key is not present

d0b100eb 28 octobre 2014 12:50 Serghei Mihai

redirecting user after login: to a specific url or to one requested by him

Closes #5574

0a8d7fe9 28 octobre 2014 12:49 Renato Botelho

Back to use listr instead of vncellt since it has small fonts and mitigate changes of go outside the sidget. It should fix #3937

30cb409d 28 octobre 2014 12:24 Renato Botelho

Simplify logic

bf50b0a4 28 octobre 2014 12:10 Renato Botelho

Remove unecessary variables

9c76c0f1 28 octobre 2014 12:08 Renato Botelho

Whitespace and indent

4721677d 27 octobre 2014 21:36 Chris Buechler

fix ping_hosts.sh to not ping IPsec if CARP is in backup

7e1aa4b7 27 octobre 2014 21:32 Chris Buechler

fix ping_hosts.sh to not ping IPsec if CARP is in backup

c8a28de7 27 octobre 2014 18:46 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

0782931a 27 octobre 2014 17:08 Serghei Mihai

tiles url can be specified in SP params

Closes #5579

de95c825 27 octobre 2014 16:57 Thomas Noël

consolidate local metadata system (#5568)

9136aa1f 27 octobre 2014 16:02 Serghei Mihai

federation's metadata raw content can be added

Closes #5568

e8b5f724 26 octobre 2014 04:11 Chris Buechler

domain and search should not both be defined in resolv.conf per FreeBSD man page and handbook (only the latter is actually used). Change this to just not use domain, and set the search to the system's domain where not using the function that generates the search list for dynamic WANs.

23ed5b78 24 octobre 2014 19:18 Ermal

Enable unity plugin as per request from https://forum.pfsense.org/index.php?topic=79737.msg452808#msg452808

577b776e 24 octobre 2014 16:38 Phil Davis

Warn if attempting to import IPv6 range

There is currently no code to convert an IPv6 range to a set of corresponding IPv6 subnets, so warn the user if they attempt that from the alias bulk import GUI.

bb67ac32 24 octobre 2014 16:32 Phil Davis

Support converting an IP range to an array of addresses

so that it can be used for expanding ranges in host alias input.

feb1953e 24 octobre 2014 16:25 Phil Davis

Expand range or subnet for host alias

When entering a host alias, if the user put an IP range (like 192.168.0.10-192.168.0.20) or a subnet (like 192.168.1.200/29) then expand it into a list of individual IP addresses. Check that it will not make too many rows to exceed the existing 5000 row limit on the GUI....

e112f9ee 23 octobre 2014 16:25 Renato Botelho

Merge pull request #1312 from phil-davis/patch-8

095707fe 23 octobre 2014 16:24 Renato Botelho

Merge pull request #1313 from phil-davis/patch-9

0ffacdb6 22 octobre 2014 16:40 Jérôme Schneider

Add support for mac addresses blacklist

Closes #5572

f4578106 22 octobre 2014 16:34 Jérôme Schneider

Add support for mac addresses blacklist

Closes #5571

f2bfdcbb 22 octobre 2014 16:31 Jérôme Schneider

Add support for nameIDs blacklist

Closes #5571

c2c61717 22 octobre 2014 16:31 Jérôme Schneider

Interface: add a page to configure blacklists

fa12833c 22 octobre 2014 16:31 Jérôme Schneider

www: factorise saml tabs in a function

a596b114 21 octobre 2014 23:36 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

63b2c30c 21 octobre 2014 20:45 Chris Buechler

Merge pull request #1312 from phil-davis/patch-8

Prevent Internal Server Error if range is backwards

a376c57d 21 octobre 2014 20:43 jim-p

Teach the certificate generation code how to make a self-signed certificate, and
change the GUI cert generation code to use it. Also, move the GUI cert
generation code to its own function so we can add a GUI option to regenerate it
later. Also use some more sane defaults for the contents of the default self-...

c25d1fd7 21 octobre 2014 20:25 jim-p

Encode values before displaying them back to the user in notification settings

5b473705 21 octobre 2014 20:25 jim-p

Encode values before displaying them back to the user in notification settings.

687d0a6d 21 octobre 2014 19:46 Chris Buechler

remove the command number shown in the shell prompt, it's a pointless
waste of screen space

99ba943a 21 octobre 2014 11:32 Phil Davis

Prevent Internal Server Error if range is backwards

Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered them the wrong way around. That is both friendly to the caller and ensures that a hostile caller can't blow up the routine....

29b3bb05 21 octobre 2014 11:18 Phil Davis

Prevent Internal Server Error if range is backwards

Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered them the wrong way around. That is both friendly to the caller and ensures that a hostile caller can't blow up the routine....

9b86d3fe 21 octobre 2014 08:54 Chris Buechler

+ is a valid character in some dynamic DNS providers' usernames. Fixes #3912

2fb66948 21 octobre 2014 07:40 Chris Buechler

hostnames can end with a . (and actually always do, it's just usually implied), so allow that here. Fixes wrong input validation in parts of nsupdate GUI, among other things.

a23adfba 20 octobre 2014 19:00 Renato Botelho

Merge pull request #1306 from phil-davis/patch-3

6d951458 20 octobre 2014 17:41 Renato Botelho

Let user decide if he wants to proceed to the upgrade when sha256 fails to download. Fixes #3576

2c296872 20 octobre 2014 02:31 Chris Buechler

h-node should be 8

13ec619c 20 octobre 2014 02:30 Chris Buechler

h-node should be 8

bc12ae8a 20 octobre 2014 01:38 Chris Buechler

Underscores are valid characters in domains. Fixes #3219

621fed0e 18 octobre 2014 01:33 Ermal

Ticket #3932 For more than 100 entries create pipes in line with the rules file to speedup the process

2ac79ade 16 octobre 2014 23:46 Renato Botelho

Merge pull request #1310 from phil-davis/patch-6

308e3042 16 octobre 2014 23:44 Renato Botelho

Merge pull request #1311 from phil-davis/patch-7

2f17d32e 16 octobre 2014 21:22 jim-p

Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829

497563be 16 octobre 2014 21:21 jim-p

Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829

7c89cb5c 16 octobre 2014 10:29 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

b6dbbebc 15 octobre 2014 20:01 jim-p

Add command line script to generate and activate a new GUI certificate.

2cf2c62b 15 octobre 2014 20:01 jim-p

Fix descriptions and cn on generated GUI cert to be consistent.

2f5488df 15 octobre 2014 16:23 Ermal

Reintroduce the vfs.forcesync systl

29fb23d4 15 octobre 2014 15:49 Renato Botelho

Merge pull request #1309 from phil-davis/patch-5

29be59ad 15 octobre 2014 14:41 jim-p

Tame the poodle. Disable SSLv3.

5ff7f58e 15 octobre 2014 14:40 jim-p

Tame the poodle. Disable SSLv3.

466aae83 15 octobre 2014 10:41 Phil Davis

Manage dhcpleaseinlocaltime consistently

dhcpleaseinlocaltime is actually a global setting, but the setting is stored per-DHCP-enabled-interface.
The display code in status_dhcp_leases already sorts this out - if any interface has the setting enabled then the displayed lease times are adjusted to local time....

73a96698 15 octobre 2014 08:41 Phil Davis

Provide an edit button for static mapped entries

As suggested in forum https://forum.pfsense.org/index.php?topic=82883.msg0#new
Instead of a non-functioning red plus icon, show an edit icon for static mapped entries, and take the user to services_dhcp_edit page if it is clicked. IMHO this makes it much easier to correct things that are noticed when viewing the Status, DHCP Leases display.

fff9ee45 15 octobre 2014 07:47 Phil Davis

Whitespace in status_dhcp_leases.php

5d49ceac 15 octobre 2014 06:19 Phil Davis

Fix #3935 Properly allow WAN without LAN

Was broken by https://github.com/pfsense/pfsense/commit/bd0b5d2dc7a279d3473a65a11d67efb5e39392be

8ff85c39 15 octobre 2014 01:39 Ermal

rename interfaces_carp_setup to interfaces_sync_setup and call it during bootup since it does not only relate to carp interfaces.

4703c007 15 octobre 2014 00:59 Ermal

Fixes #3727 Do not unset ondemand for ppp type interfaces since it is controlled here only for pppoe/l2tp

664adf38 15 octobre 2014 00:55 Ermal

Ticket #3789. Put a start at using the proxyurl/proxyport from system configured settings for bogons. It still does not consider the user/pass configured

e02ea742 15 octobre 2014 00:36 Ermal

Fixes #3213. Allow up to 2900 limiters. This was set to 30 since limiters are to be controlled by mask and not created manually!

febe0112 14 octobre 2014 23:21 Ermal

Make proper check here

7c4c77ee 14 octobre 2014 21:30 jim-p

Teach the certificate generation code how to make a self-signed certificate, and change the GUI cert generation code to use it. Also, move the GUI cert generation code to its own function so we can add a GUI option to regenerate it later.
Also use some more sane defaults for the contents of the default self-signed certificate's fields so it will be more unique and less likely to trigger problems in browser certificate storage handling.

1f4ad8f4 14 octobre 2014 20:44 Chris Buechler

update comment to reflect breakage caused here and reference associated redmine ticket, not high priority, can be fixed later

eb71461c 14 octobre 2014 20:21 Chris Buechler

block IPv4 link-local. Per RFC 3927, hosts "MUST NOT send the packet to
any router for forwarding", and "any network device receiving such a
packet MUST NOT forward it". FreeBSD won't route it (route-to can override in
some circumstances), so it can't be in use as a real network anywhere with...

69b79ff0 14 octobre 2014 19:41 Renato Botelho

Fix PSK for non-ascii also here, ticket #3917

5a42d9ef 14 octobre 2014 19:23 Renato Botelho

Fix initial console menu layout, it fixes #3884

b907136c 14 octobre 2014 18:50 Renato Botelho

Improve IPsec status page for mobile. It fixes #3917

ca1fdcce 14 octobre 2014 18:46 Renato Botelho

Add missing gettext call

d6c9dcf9 14 octobre 2014 18:40 Renato Botelho

Add missing gettext calls

6795e0da 14 octobre 2014 18:23 Renato Botelho

Fix indent and spaces

123d8700 14 octobre 2014 17:50 Renato Botelho

Does not accept non-ascii characters on IPsec PSK. It fiixes #3931

a4c1fff2 14 octobre 2014 17:48 Renato Botelho

Close this form early since there is another form below

8d745901 14 octobre 2014 17:43 Jérôme Schneider

snmp: update SNMP ucd to work with univnautes 2.1

Closes #5566

9f813a61 14 octobre 2014 17:42 Jérôme Schneider

univnautes.js: move idp link outside the button for Fx

Closes #5678

dc4a8b9e 14 octobre 2014 06:07 Chris Buechler

update input_error description after changes for ticket #3491

71c26c22 13 octobre 2014 19:36 Renato Botelho

Properly set MTU for lagg interface, it fixes #3922

5c2e6873 13 octobre 2014 18:09 Renato Botelho

Make sentence more accurate as pointed out by phil-davis

1c764a3a 13 octobre 2014 17:42 Renato Botelho

GIF interfaces MTU must be something between 1280 and 8192, make the correct check. It fixes #3927

c772b37c 13 octobre 2014 14:23 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

07c24bf1 13 octobre 2014 13:54 Renato Botelho

Merge pull request #1308 from phil-davis/patch-4

3b5b437b 11 octobre 2014 05:17 Chris Buechler

fix text

0c4cd13f 11 octobre 2014 04:54 Chris Buechler

fix up text on sys_adv_misc

5046435d 11 octobre 2014 04:10 Chris Buechler

fix text and descriptions in GRE edit page

b22f436a 11 octobre 2014 02:09 Chris Buechler

s/removing/omitting/g for gateway monitor log entires. "Removing" is not necessarily correct, there are many circumstances where this runs where it wasn't there to begin with, and is potentially misleading.

1f237bb4 10 octobre 2014 16:17 Renato Botelho

Fix pf syntax s/divert/divert-to/. It should fix #3921

cce09d94 09 octobre 2014 18:42 Phil Davis

Ticket #3860 Correctly display SMTP SSL TLS boxes

After using the "Test" button, $_POST['smtpssl'] and $_POST['smtptls'] was 'on' or null - this got blindly copied back into $pconfig[] and resulted in the state of the SSL/TLS/STARTTLS checkboxes not being redisplayed....

9da083fc 08 octobre 2014 13:54 Renato Botelho

Fix an error introduced in bd0b5d2dc7 that makes system believe interfaces always mismatch

bd0b5d2d 08 octobre 2014 06:33 Chris Buechler

Remove the minimum NIC warning, this dates back to when minimum 2 NICs were supported and it made sense to throw this message at people. It's obvious a network appliance requires at least one NIC.

b4bd9c56 07 octobre 2014 20:17 Ermal

Update the URL for snapshots update

86ce2df7 07 octobre 2014 19:44 Renato Botelho

Be more strict when checking if olsrd is enabled, otherwise when package is deinstalled and configuration is kept dhcpd will consider it's always as enabled

3b5707db 07 octobre 2014 04:00 Phil Davis

Support up to 4 DNS Servers in DHCP

81af6a08 07 octobre 2014 03:59 Phil Davis

Support up to 4 DNS Servers in DHCP

3d88ea11 07 octobre 2014 03:57 Phil Davis

Support up to 4 DNS Servers in DHCP

6190312f 07 octobre 2014 03:55 Phil Davis

Support up to 4 DNS Servers in DHCP

8cbb140a 07 octobre 2014 03:52 Phil Davis

Support up to 4 DNS Servers in DHCP

a3cc8dcc 06 octobre 2014 18:05 Ermal

Add an option to restart php-fpm from console

9c296826 06 octobre 2014 12:31 Ermal

Fixes #3909 Properly report and detect carp_status

2d5fd3c2 06 octobre 2014 10:22 Ermal

Remove function that is not implemented properly. Nothing seems to use it.

4aa7f542 06 octobre 2014 10:21 Ermal

Merge pull request #1303 from PiBa-NL/carp_without_matching_subnet

042f0d12 06 octobre 2014 10:16 Ermal

Merge pull request #1304 from sselph/powerd_normal_mode

78aadc14 06 octobre 2014 10:15 Ermal

Merge pull request #1305 from phil-davis/patch-2

fb0a4e7a 06 octobre 2014 06:48 Phil Davis

Fix not rules for OPTn network case

Reported in forum https://forum.pfsense.org/index.php?topic=82319.0
The "if (is_subnet($src)) ... filter_address_add_vips_subnets" code needs to go outside all of the if that checks for opt interfaces (not just in the else part). That makes filter_address_add_vips_subnets get called in all cases, including when optn network is specified. (line 2264, 2265)...

3d77cc35 06 octobre 2014 00:35 Steven Selph

Add powerd normal mode flag (-n)

4665dbdd 03 octobre 2014 17:15 Renato Botelho

Make proper check if IP address is configured on another interfaces and ignore current one. It fixes #3807

3c4fc30b 02 octobre 2014 23:19 Chris Buechler

get back to our standard RFC-defined capitalization of IPsec

80a261a2 02 octobre 2014 22:56 PiBa-NL

CARP, allow carp ip to be outside interface and alias subnets (FreeBSD10 feature)

3258d442 02 octobre 2014 22:09 Renato Botelho

Merge pull request #1300 from jean-m-cyr/master

90a430c7 02 octobre 2014 22:09 Renato Botelho

Merge pull request #1298 from PiBa-NL/vips_sort

8d3c338e 02 octobre 2014 22:01 PiBa-NL

firewall_virtual_ip make the table sortable remove double tfoot, but use 2 tr inside.

d4f4ebc7 01 octobre 2014 19:06 jim-p

Remove stray 'i'.
Reported-by: https://forum.pfsense.org/index.php?topic=82393.0

c7fa58ac 29 septembre 2014 05:35 Jean Cyr

Fix up NTP status page formatting

Number of columns is not the same for all table rows

547d7641 28 septembre 2014 22:56 PiBa-NL

firewall_virtual_ip make the table sortable

762a7b89 28 septembre 2014 17:23 Phil Davis

Spelling

e7b03bc1 27 septembre 2014 21:17 Renato Botelho

Merge pull request #1295 from phil-davis/patch-21

6b18c66b 27 septembre 2014 19:19 Phil Davis

Clarify bracketing

to minimize risk of a problem when adding code here in the future.

055a43d2 27 septembre 2014 19:10 Phil Davis

Allow extended alias inputs #3890

Currently if you enter a space-separated list of subnets in the IP address box when entering an alias, the code reports that the data is invalid. But it does actually expand the list of subnets into multiple rows, and enters the various subnet CIDRs into the CIDR column for the user. The user can press Save a second time and the data is now valid so the code saves it happily. This is rather odd, as reported in redmine #3890....

da7f6588 27 septembre 2014 14:08 Phil Davis

Spelling

ff5fa759 27 septembre 2014 14:04 Phil Davis

Spelling

3c4cddc7 27 septembre 2014 14:02 Phil Davis

Spelling

0a97a7bb 27 septembre 2014 13:59 Phil Davis

Spelling

51dc66c9 27 septembre 2014 13:51 Phil Davis

Spelling

ec074a86 27 septembre 2014 13:49 Phil Davis

Spelling

f64b0b8e 27 septembre 2014 13:47 Phil Davis

Spelling

15c58806 27 septembre 2014 13:45 Phil Davis

Spelling

abe63176 27 septembre 2014 13:38 Phil Davis

Spelling

fb3b7640 27 septembre 2014 13:37 Phil Davis

Spelling

4304dd97 27 septembre 2014 13:35 Phil Davis

Spelling

8913533d 27 septembre 2014 13:34 Phil Davis

Spelling

47e1f0d4 27 septembre 2014 13:26 Phil Davis

Spelling

adab585d 26 septembre 2014 18:56 Renato Botelho

Merge pull request #1294 from phil-davis/patch-19

45cd176a 26 septembre 2014 18:56 Renato Botelho

Merge pull request #1293 from phil-davis/patch-20

bbd1f783 26 septembre 2014 18:18 Phil Davis

firewall_aliases_edit UI text changes

If type URL Table then the heading "Description" on the 3rd column gets suppressed (I am not really sure why that is, since the description data entry box still appears - I guess someone intended that the data entry box itself also be suppressed, since URL Table takes just a single line entry, the overall description of the alias should be enough - no need for a per-line description.)...

c5cfa06b 26 septembre 2014 18:01 Phil Davis

Minor fixes to firewall_aliases_edit

for 2.1 branch

ace5483e 26 septembre 2014 12:13 Renato Botelho

Merge pull request #1292 from phil-davis/patch-18

62218b4d 26 septembre 2014 04:40 Phil Davis

Remove useless check for alias description matching an interface description

While looking at other checks in the code I noticed this check. It was not effective anyway, because the first line inside "if ($_POST)" below does
unset($input_errors);
which undoes this check anyway....

7ea27b0d 25 septembre 2014 14:55 Renato Botelho

Be more strict on removing groups checking group id and group name, it avoids issues like happened to users on ticket #3856. While I'm here, replace GET by POST

fbe0d698 25 septembre 2014 14:29 Renato Botelho

Be more strict on user removal checking array id and also username to avoid removing wrong users when browser back button is used. It should fix #3856

e45e3bf4 25 septembre 2014 13:18 Renato Botelho

Merge pull request #1290 from jean-m-cyr/master

b4db2d0e 25 septembre 2014 13:13 Renato Botelho

Remove also old unbound startup script

31377265 25 septembre 2014 03:26 Jean Cyr

Support IPV6 in unbound.conf

IPv6 addresses are not included in unbound config and access list

78244277 25 septembre 2014 01:58 Renato Botelho

Merge pull request #1289 from jean-m-cyr/master

806bf882 25 septembre 2014 01:10 Jean Cyr

outgoing ip incorrectly set in unbound.conf

DNS resolver outgoing IP interface IP address is incorrectly set to the
last inbound interface IP address... fix it.

c11b7ffe 24 septembre 2014 23:43 Renato Botelho

Remove unbound files, menu and service during config upgrade, otherwise things can go really bad with functions redeclared un base and package unbound.inc and config corrupted when upgrading from 2.1.x with unbound installed to 2.2. PBI and package section are both removed later during package upgrade

90a95930 24 septembre 2014 20:28 Renato Botelho

Merge pull request #1288 from brunostein/fix_button_close_info_box

370b4666 24 septembre 2014 20:20 bruno

Fix close button in the info box

abf2e0f1 24 septembre 2014 12:10 Renato Botelho

Merge pull request #1287 from jean-m-cyr/master

a99547e4 24 septembre 2014 11:53 Ermal

Provide a toggle for apinger debug messages to be logged to syslog. To help with roubleshooting issues

3be4caf9 24 septembre 2014 04:09 Jean Cyr

NTP Service GPS page always reverts to 'Custom' GPS type

Remember and correctly display GPS type setting

73b8c162 23 septembre 2014 18:08 jim-p

Add a note clarifying the usage of OpenVPN's Auth Digest setting.

bdbb4dba 23 septembre 2014 14:08 Renato Botelho

Make sure unbound user and group is also created during upgrade config

3f257101 23 septembre 2014 13:57 Renato Botelho

Provide upgrade config code to migrate unbound settings from 2.1 package to 2.2 base. Bump config version to 11.1. It fixes #3880

8d5b31a2 23 septembre 2014 11:58 Renato Botelho

Merge pull request #1286 from jean-m-cyr/master

63d5a5e0 23 septembre 2014 09:16 Jean Cyr

NTP server configuration does not highlight selected interfaces

Missing explode of selected interface list prevent logic from working.

5d14b13e 22 septembre 2014 16:45 jim-p

Add a more obvious note about the use of WAN interface on group rules.

4ce44163 22 septembre 2014 13:42 Renato Botelho

Obsolete recently removed jquery files

c9f63b08 22 septembre 2014 13:18 Renato Botelho

Apply previous progressbar customizations for jquery-ui 1.11.1

b9cf74c3 22 septembre 2014 13:18 Renato Botelho

Update jquery-ui components to 1.11.1, it fixes #3879"

b446562b 20 septembre 2014 16:55 Renato Botelho

Simplify logic

ad970c21 20 septembre 2014 16:41 Renato Botelho

Add missing <form> and require filter.inc for filter_configure()

130a84c5 19 septembre 2014 21:58 Ermal

Do the proper action if Apply button is pressed even on the preshared keys page

8718669c 19 septembre 2014 21:53 Renato Botelho

Recent versions of miniupnpd does not accept IPv4 address anymore, use interface name always. It fixes #3874

9ec8e1f2 19 septembre 2014 19:16 Renato Botelho

Allow hostname to start with '@.' for namecheap. It fixes #3568

de29dadc 19 septembre 2014 19:15 Renato Botelho

Allow hostname to start with '@.' for namecheap. It fixes #3568

93ee78b7 19 septembre 2014 13:16 Renato Botelho

Check if there are leases to show, it fixes warning when $mobile['pool'] is empty or not array

eda1b56f 19 septembre 2014 11:59 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

9f8bbe95 19 septembre 2014 11:58 Thomas Noël

logout view: disconnect from cp

beae652c 19 septembre 2014 11:57 dariomas

Correct evaluation for "Acct-Interim-Interval" from RADIUS

Setting "Acct-Interim-Interval :=600" in FreeRadius2 evaluates to 'random' values with PfSense 2.1.
Possibly a bug related to:
https://forum.pfsense.org/index.php?topic=60079.0
https://forum.pfsense.org/index.php?topic=60262.0

880f44c1 19 septembre 2014 11:56 Ermal

Merge pull request Bug #1285: Metadata namespace definition from dariomas/patch-1

53b801b7 19 septembre 2014 11:56 Thomas Noël

add cp_disconnect command (php)

7f7705db 19 septembre 2014 11:55 Thomas Noël

auth.py: fix import django settings

d2fdc707 19 septembre 2014 11:43 dariomas

Correct evaluation for "Acct-Interim-Interval" from RADIUS

Setting "Acct-Interim-Interval :=600" in FreeRadius2 evaluates to 'random' values with PfSense 2.1.
Possibly a bug related to:
https://forum.pfsense.org/index.php?topic=60079.0
https://forum.pfsense.org/index.php?topic=60262.0

7015ccc5 19 septembre 2014 10:34 Thomas Noël

homepage.html: dont use <button>

2a9ee7e9 19 septembre 2014 10:08 Thomas Noël

update-whitelists: dont use ipfw_context

d02f08dc 19 septembre 2014 10:05 Thomas Noël

add manage configxml

e5b3335a 18 septembre 2014 20:57 Renato Botelho

Do not call write_config() when click on Apply Changes because it was already done and it causes dhcpd to restart one more time on secondary nodes. It fixes #3797

0b42518d 18 septembre 2014 19:31 jim-p

fix syntax

565488c9 18 septembre 2014 19:08 Renato Botelho

Do now call write_config() when click on Apply Changes because it was already done and it causes dhcpd to restart one more time on secondary nodes. It fixes #3797

24395438 18 septembre 2014 15:50 Renato Botelho

Update jquery to 1.11.1

  • Update jquery to latest version
  • Use production version instead of development
  • Rename file to have version on it and avoid browser cache issues
  • Add jquery-migrate to keep backward compatible with old version
2e70388a 18 septembre 2014 14:28 Thomas Noël

www/services_captiveportal_saml_*: use rc.sh actions

feeef1ac 18 septembre 2014 14:26 Thomas Noël

rc.sh: add syncwl action

844bed17 18 septembre 2014 14:00 Thomas Noël

update-whitelists: use table 42

e7fae17e 18 septembre 2014 13:45 Thomas Noël

ipfw_context_list.py (just for the record)

e5c257d1 18 septembre 2014 12:23 Thomas Noël

config.xml: no whitelist in firewall

888c4ddd 18 septembre 2014 12:21 Thomas Noël

captiveportal.inc: (re)add table 42 for whitelist

whitelist in firewall does not work...

9499ce39 18 septembre 2014 11:50 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

7c1d7949 18 septembre 2014 11:50 Thomas Noël

services_captiveportal_zones.php: direct links to saml tabs

11fbb86d 17 septembre 2014 22:54 Thomas Noël

Revert "captiveportal.inc: add table 42 for whitelist"

This reverts commit 82baf4a83e1031566bff16b51798695246f488aa
useless on UnivNautes2014

1d88bb1b 17 septembre 2014 22:38 Thomas Noël

update-whitelists.sh: to php, with love

f74657db 17 septembre 2014 22:35 Thomas Noël

rc.sh: paralleliez syncdata

347f0edc 17 septembre 2014 22:34 Thomas Noël

config.xml: whitelists aliases

f5af3d98 17 septembre 2014 22:14 Thomas Noël

minicron for update whitelists

1d30fbf1 17 septembre 2014 22:10 Thomas Noël

update-whitelists.sh (funny, isn't it ?)

1fd3903e 17 septembre 2014 19:32 jim-p

Fix typos

c4372d3c 17 septembre 2014 19:26 Renato Botelho

Restore id for cancel button to fix js error

c07e853b 17 septembre 2014 18:29 jim-p

Add a basic command line password reset script.

ac5934df 17 septembre 2014 16:10 Renato Botelho

While I'm touching this file, replace GET by POST

b1b5bb79 17 septembre 2014 15:35 Thomas Noël

manage prepare-whitelists

cc265e2e 17 septembre 2014 15:34 Renato Botelho

Deduplicate <form>, fixes #3864

729b9f01 17 septembre 2014 15:32 Renato Botelho

Deduplicate <form>, fixes #3864

41fac9b9 17 septembre 2014 14:32 Thomas Noël

captiveportal: dont redirect 443/tcp

75cf353b 17 septembre 2014 12:27 Renato Botelho

It's time to move to 2.2-BETA

022fe5b0 16 septembre 2014 19:12 Renato Botelho

Merge pull request #1284 from phil-davis/patch-17

e5d2c660 16 septembre 2014 19:12 Renato Botelho

Merge pull request #1283 from phil-davis/patch-16

0b857543 16 septembre 2014 18:13 Phil Davis

Fix #3866 Firewall Log Filtering

on master

9036e766 16 septembre 2014 18:11 Phil Davis

Fix #3866 Firewall Log Filtering

on 2.1 branch

76266acd 16 septembre 2014 15:33 Ermal

Correct speeling as reported by: Phil Davis via github

8f097bdd 16 septembre 2014 14:41 Renato Botelho

Merge pull request #1282 from ExolonDX/branch_master_06

cc98be5a 16 septembre 2014 14:40 Renato Botelho

Merge pull request #1281 from ExolonDX/branch_master_05

05bf20a3 16 septembre 2014 14:40 Renato Botelho

Merge pull request #1280 from ExolonDX/branch_master_04

17b86608 16 septembre 2014 14:40 Renato Botelho

Merge pull request #1279 from ExolonDX/branch_master_03

9ab5042e 16 septembre 2014 14:39 Renato Botelho

Merge pull request #1278 from ExolonDX/branch_master_02

a77b360c 16 septembre 2014 14:39 Renato Botelho

Merge pull request #1277 from ExolonDX/branch_master_01

384aa755 16 septembre 2014 11:33 Thomas Noël

pfconfigxml: add get_whitelists()

82baf4a8 16 septembre 2014 10:44 Thomas Noël

captiveportal.inc: add table 42 for whitelist

32513b90 15 septembre 2014 19:33 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

326238ce 15 septembre 2014 19:32 Thomas Noël

use rc.sh with mwexec_bg()

236c9163 15 septembre 2014 19:25 Thomas Noël

config.xml: stop lan by default (ooops)

95f1795a 15 septembre 2014 14:42 Thomas Noël

rc.sh: start/stop crons

a4c835ea 15 septembre 2014 14:22 Thomas Noël

add clearsessions-pf.sh

55ab408c 15 septembre 2014 12:41 Thomas Noël

update settings

8f669cfb 15 septembre 2014 12:39 Thomas Noël

clearsessions-pf manage command

b1a27b8a 15 septembre 2014 11:10 Thomas Noël

add cp_get_sessions script (php)

d02491e6 14 septembre 2014 14:17 Colin Fleming

Tidy up "status_rrd_graph.php" XHTML

"id" attributes cannot start with a numeric character, so change "8hour"
to "eighthour" and "4year" to "fouryear".

8de8ff0f 14 septembre 2014 14:06 Colin Fleming

Tidy up "diag_dns.php" XHTML

Tidy up the "=" sign properly!
Remove "=" sign from INPUT tag
Change alignment to the "middle" of the TD tag
Add missing closing FONT tag

24e183cd 14 septembre 2014 13:57 Colin Fleming

Tidy up "gateways.widget.php" XHTML

Remove invalid "summary" attribute from TD tag

607e15db 14 septembre 2014 13:54 Colin Fleming

Tidy up "interfaces.widget.php" XHTML

Remove duplicate closing TR tag
DIV tag cannot be enclosed in a B (bold) tag
Change class and style

e3e1f748 14 septembre 2014 13:49 Colin Fleming

Tidy up "pkg_mgr_install.php" XHTML

While using the widescreen theme, when you update the firmware or add a
new package the TEXTAREAs are side-by-side which doesn't look neat.
Add BR tag between TEXTAREA

c5709378 14 septembre 2014 13:43 Colin Fleming

Tidy up "fbegin.inc" XHTML

"id" must be a unique attribute.

62424bdb 12 septembre 2014 21:37 Renato Botelho

Remove almost all calls to history.back() and make Cancel button back to HTTP_REFERER, there are a couple of places I didn't touch on this commit because it requires more work

7e7f07ae 12 septembre 2014 21:17 Ermal

This really does not need the =

e9a9e1a7 12 septembre 2014 21:17 Ermal

Remove wrongly used type

3d77ec5d 12 septembre 2014 19:49 Ermal

Ooops restore this

3b9ef0ef 12 septembre 2014 19:40 Ermal

Inverse the sense of the toggles to avoid configuration upgrades

16c02722 12 septembre 2014 19:34 Ermal

Actually use the new toggles

0e7aad67 12 septembre 2014 19:31 Ermal

Provide Advanced Options for controlling rekey and reauth, might be usable with iOS devices

ac19d32a 12 septembre 2014 19:23 Ermal

Only for movile users

fa4e059e 12 septembre 2014 19:22 Ermal

Provide a first implementation of EAP-TLS authentication with IKEv2. It is a start and might not work on all cases

e373e4cd 12 septembre 2014 17:13 Ermal

Make this work properly and not throw out errors.

1a6769a6 11 septembre 2014 23:22 Renato Botelho

Replace GET by POST on system_usermanager.php and make necessary adjustments on necessary pages. It fixes #3856

7c2d0050 11 septembre 2014 23:22 Renato Botelho

Back to referer instead of hard coded system_usermanager.php since this page is called from other places

111bea0d 11 septembre 2014 23:22 Renato Botelho

Add a function to redirect to a page passing parameters through POST

d83a4264 11 septembre 2014 23:22 Renato Botelho

Add a cancel button for user and group edit page

415b71f1 11 septembre 2014 21:57 Ermal

Fixes #3666. Set the sysctl net.inet.icmp.reply_from_interface to 1 to use the incoming interface to send the icmp reply from. It uses another part of patch to pf to undo NAT if it was already performed before

77bf9d5e 11 septembre 2014 20:31 Ermal

Add security priviledge for new page

6ca4d471 11 septembre 2014 20:28 Ermal

Get rid of the /

ca4e3e4c 11 septembre 2014 20:27 Ermal

Actually do not refer with Name but just pool

bb55330a 11 septembre 2014 20:25 Ermal

Do not let the user mess with SAs from this page. The daemon and primary status page handles tat

eb183863 11 septembre 2014 20:24 Ermal

Provide a page on IPSec:status t check the leases to mobile clients

6c2abb0f 11 septembre 2014 20:01 Ermal

Show friendly names

048dd7b9 11 septembre 2014 19:57 Ermal

Remove extra char

5e09285e 11 septembre 2014 19:55 Ermal

Correct widget displaying of status for tunnels

6f276cba 11 septembre 2014 19:47 Ermal

Properly display number of mobile users

7a668bd8 11 septembre 2014 19:28 Ermal

Fix path to xml and make sure the parser will see the custom tags

929dfb4c 11 septembre 2014 19:23 jim-p

Add pages missing from the Status > Traffic Graph privilege that are required for the full page to load

8a2f80b2 11 septembre 2014 19:23 jim-p

Add pages missing from the Status > Traffic Graph privilege that are required for the full page to load

6da9a160 11 septembre 2014 18:33 Ermal

Display all new information on ipsec:status and also fix displaying of some previous statistics

4889b4c0 11 septembre 2014 13:38 Renato Botelho

Merge pull request #1260 from DasTestament/master

ee4da773 11 septembre 2014 13:26 Renato Botelho

Merge pull request #1274 from phil-davis/patch-13

b7063ed3 11 septembre 2014 13:25 Renato Botelho

Merge pull request #1275 from phil-davis/patch-14

63673f3c 11 septembre 2014 04:17 Phil Davis

Standardise size of Duplicate Slice button

The Duplicate Slice button currently is displayed in smaller text and in a row of its own, separate from the row above that has the rest of the "Duplicate bootup slice" text and slice selection.
This change puts the button in the same row as the slice selection and text, and makes the button text be the same size as the text in other buttons on this page....

ffda0775 11 septembre 2014 04:10 Phil Davis

Standardise size of Duplicate Slice button

The Duplicate Slice button currently is displayed in smaller text and in a row of its own, separate from the row above that has the rest of the "Duplicate bootup slice" text and slice selection.
This change puts the button in the same row as the slice selection and text, and makes the button text be the same size as the text in other buttons on this page....

45dbc75f 10 septembre 2014 22:39 Ermal

Try to make the ipsec widget usable again

7ab6ad70 10 septembre 2014 22:39 Ermal

Make use of the xml output from stroke leases command

9060f420 10 septembre 2014 22:02 Renato Botelho

Change is_port() to only validate a single port, we have is_portrange() for specific cases. Make necessary adjustments after check all is_port() calls. It fixes #3857

be32a003 10 septembre 2014 20:39 Renato Botelho

Delete IP Alias on CARP VIP interface on secondary node when it's deleted on primary. It fixes #3855

7397f643 10 septembre 2014 20:39 Renato Botelho

Fix operator

846dc21c 10 septembre 2014 20:39 Renato Botelho

Fix operator

ed5fc757 10 septembre 2014 19:34 Ermal

Return something meaningful until the widget is made to work correctly

4881e5a9 10 septembre 2014 19:33 Ermal

Remove racoon references

537940c8 10 septembre 2014 19:33 Ermal

Remove all remnants of racoon from log page

5f875147 10 septembre 2014 19:32 Ermal

Correct status.php for new ipsec

e952906e 10 septembre 2014 19:23 Ermal

Remove traces of older implementation still present

3b977eff 10 septembre 2014 18:38 Ermal

Put some tuning on number of half open connection possible in one time.

816672f1 10 septembre 2014 18:36 Ermal

Provide some parallellizm on the IKESA lookups for heavy loaded boxes.

f86f928d 10 septembre 2014 16:49 Thomas Noël

add cp_allow script

30d33074 10 septembre 2014 16:49 Thomas Noël

auth.py: send cpzone to cp_allow

505cddae 10 septembre 2014 16:42 Thomas Noël

system.inc/lighttpd: add X-pfsense-cpzone header

a0ab6dae 10 septembre 2014 10:49 Thomas Noël

saml/post_form.html: force Send button

f692f5ed 10 septembre 2014 10:49 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

a695c2aa 10 septembre 2014 10:48 Thomas Noël

settings.py: TEMPLATE_DIRS disabled by mistake

c966c7ec 10 septembre 2014 00:43 Ermal

Actually roll this back since it was a testing glitch

eadda967 10 septembre 2014 00:08 Ermal

Also here be more strict on checking to return proper result. (some missed from previous commit)

fe06990e 10 septembre 2014 00:04 Ermal

Also here be more strict on checking to return proper result

fe0430f7 09 septembre 2014 23:56 Ermal

Put some more statistics and the user that gets connected now that we can

76e656ba 09 septembre 2014 22:55 Renato Botelho

Merge pull request #1273 from fsSnowboard/master

60ef0911 09 septembre 2014 22:53 Renato Botelho

Make sure dhclient is not running before start it, it fixes console interface setup when interface is using dhcpv4. It should also help #3482

d9d1bd20 09 septembre 2014 22:52 Renato Botelho

Implement a function to kill dhclient process, sometimes it takes a little time to die, so use a sleep(1) there

397e40d5 09 septembre 2014 22:50 Renato Botelho

find_dhclient_process() returns an int, not string

9e74f980 09 septembre 2014 22:30 Ermal

Be more explicit

9eb4257f 09 septembre 2014 22:26 Ermal

Correct log prepending value

f049d544 09 septembre 2014 22:12 Renato Botelho

Some device names are bigger now (eg vtnet, ixgbe, cxgbe)

38f5ac9b 09 septembre 2014 21:38 Ermal

Correct generating loglevels for startup through ipsec.conf

aa352bb3 09 septembre 2014 21:34 Tyler Turner

Fix minor typo to name and port range

Typo on the name of the FaceTime shape rule, and missing 1 from Google
Talk port range.

572f6ccc 09 septembre 2014 19:07 jim-p

Fix guess_interface_from_ip() to account for differences in netstat output. Fixes #3853

76fa9adb 09 septembre 2014 17:28 Ermal

Blah unconditionally set rightsourceip per https://forum.pfsense.org/index.php?topic=80300.0 Until pools can be supported properly.

64a0aa33 09 septembre 2014 17:11 Thomas Noël

handle user_login_callback (attributes, call cp_allow..)

6c62895c 09 septembre 2014 17:11 Thomas Noël

add messages in base.html template

3b0bc8c3 09 septembre 2014 16:54 Renato Botelho

Import fix for http://bugs.jquery.com/ticket/9521

ccefd603 09 septembre 2014 16:53 Renato Botelho

Import fix for http://bugs.jquery.com/ticket/9521

b22ef160 09 septembre 2014 14:14 Renato Botelho

As pointed out by Ermal, VIPs should go first in the list since NAT is first match. Ticket #983

d629f1ca 08 septembre 2014 23:35 Renato Botelho

igmpproxy param -d doesn't like the space before optarg. Fixes #3852

354a1d3f 08 septembre 2014 23:35 Renato Botelho

igmpproxy param -d doesn't like the space before optarg. Fixes #3852

fd875a8d 08 septembre 2014 23:31 Ermal

Ticket #3826 correct point number 2) by showing not connected tunnels in the end of the status page

a1b5f07b 08 septembre 2014 22:44 Ermal

Fixes #3664, actually make sense of this function to work properly

7c611a3e 08 septembre 2014 22:36 Renato Botelho

Improvements on interfaces_assign.php:

- Let user select network port to add instead of pick the first
available, it fixes #3846
- While I'm here, drop GET and use only POST

fa9667d2 08 septembre 2014 22:28 Ermal

Fixes #3823 Properly parse auth tags as variables

1c4b1636 08 septembre 2014 22:24 Renato Botelho

Convert this block into a function for later use

e4034dcb 08 septembre 2014 22:24 Renato Botelho

Fix indent

eb2ab5eb 08 septembre 2014 22:24 Renato Botelho

Remove unecessary var initialization

19498fbf 08 septembre 2014 22:24 Renato Botelho

Replace mwexec() by unlink_if_exists() and respect global tmp_path

1b0e073e 08 septembre 2014 22:24 Renato Botelho

Fix indent and whitespaces

ea0efb36 08 septembre 2014 22:19 Ermal

Show properly a setting of any for Identifiers to use in the status page

c245a846 05 septembre 2014 20:59 jim-p

Adjust states summary for new pfctl -ss output. Fixes #2121

5ef7f751 05 septembre 2014 17:07 Renato Botelho

Merge pull request #1271 from fsSnowboard/master

b5bef5dc 05 septembre 2014 01:27 Tyler Turner

Add more services and reorder

Add following shaping rules:
ARMA 3
WII
EA Origin
Games For Windows Live
Crysis 3
DeadSpace 2
DeadSpace 3
DragonAge2
MassEffect3
Facetime
Google Hangouts
TeamSpeak 3
Ventrilo
iTunes Rado
IMAP/S
POP3/S
SMTP/S
Apple Mobile Sync...

232d404d 04 septembre 2014 18:00 Renato Botelho

Make sure button 'move to the end' highlight last line

91ebc808 04 septembre 2014 17:45 Renato Botelho

Do not collapse phase2 items every time an action occours

495c7f0c 04 septembre 2014 17:12 Renato Botelho

Replace all GET use by POST

61387767 04 septembre 2014 16:41 Thomas Noël

univnautes.js: remove console.log

4e3a8694 04 septembre 2014 16:40 Thomas Noël

add simple homepage.html

e7e0713d 04 septembre 2014 16:39 Thomas Noël

univnautes.css: always use Roboto font

and header is 100% opacity

320eecd5 04 septembre 2014 16:14 Thomas Noël

settings.py: force PickleSerializer for session

398cf3a4 04 septembre 2014 15:54 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

2e5c9f05 04 septembre 2014 15:33 Thomas Noël

urls.py: fix typo

761882a1 04 septembre 2014 14:09 Renato Botelho

More improvements on IPsec GUI (Ticket #3328):

  • Allow to reorder P2 entries
  • Allow to remove multiple P2 entries
  • Add an icon to quickly toggle enable/disable status of p1 items
d1d3428a 04 septembre 2014 12:47 Renato Botelho

Mark host as up or down before execute script, then script can use this information.

Submitted by: Jean Debogue <>

43083402 04 septembre 2014 12:47 Renato Botelho

Remove wrong code left from copy/paste

a6057836 04 septembre 2014 12:47 Renato Botelho

Use array id to delete phase2, it will simplify changes I'm working on and will commit soon

63c058e7 04 septembre 2014 12:47 Renato Botelho

Change functions from row_toggle.js to work with different field names, keeping the old behaviour as default. This is necessary to have more than one group of fields in the same page

1b5675a7 04 septembre 2014 12:47 Renato Botelho

Mark host as up or down before execute script, then script can use this information.

Submitted by: Jean Debogue <>

2300ee35 04 septembre 2014 01:11 Jared Dillard

fix menu wrap on non-default themes

1fb323b3 03 septembre 2014 23:58 Thomas Noël

pfconfigxml: accept #comments in textarea params

6817c18a 03 septembre 2014 23:56 Jared Dillard

fix menu wrap on pfense_ng and pfsense_ng_fs

d6641d12 03 septembre 2014 23:46 Thomas Noël

config.xml: fix initial geo config

3e79844f 03 septembre 2014 18:25 Thomas Noël

map markers, at least !

fb23112b 03 septembre 2014 18:24 Thomas Noël

update-geoinfos: add idp.name in output

cbfd5449 03 septembre 2014 17:10 Thomas Noël

mod_evasive: 64 connections per IP by default

display a map require a lot of connections... :/

aa01889d 03 septembre 2014 15:57 Thomas Noël

rc.sh: launch syncdata (metadata+geo) juste after start

b46a2daf 03 septembre 2014 15:15 Thomas Noël

s/id/ID/ for xmlsec1 verification

ce10bca3 03 septembre 2014 15:15 Thomas Noël

remove useless file

eca6f787 03 septembre 2014 15:09 Renato Botelho

Improvements on IPsec GUI (Ticket #3328):

  • Allow to reorder phase1 items
  • Allow to remove multiple phase1 items
  • Add an icon to quickly toggle enable/disable status of p1 items
  • Print P1 header only once and remove space between items
  • Fix table border when P2 items are expanded
7ec7e24f 03 septembre 2014 12:45 Renato Botelho

Remove uneeded variables

94528348 03 septembre 2014 12:39 Renato Botelho

Remove unused variables

e0fb12c1 03 septembre 2014 12:38 Renato Botelho

Fix indent and whitespace

060c3ac0 02 septembre 2014 19:58 Renato Botelho

Fix subnet display for IPsec status. Ticket #3826

55d6f48b 02 septembre 2014 19:57 Renato Botelho

id changes every time ipsec tunnel disconnects and reconnect, need to use peerconfig to get correct description. Ticket #3826

086701d1 02 septembre 2014 17:35 Thomas Noël

www: syncdata when federations are modified

d60ee00b 02 septembre 2014 17:34 Thomas Noël

rc.sh: better logging

07b53fb3 02 septembre 2014 16:45 Thomas Noël

add get_federations in pfconfigxml.py

5af7a362 02 septembre 2014 16:43 Thomas Noël

add update-metadatas command and script

1e13c325 02 septembre 2014 16:41 Thomas Noël

Revert "config.xml: use edugain metadata provided by renater"

This reverts commit 8bbd18549b2faf8960aff648956566b35053c660.

8bbd1854 02 septembre 2014 15:08 Thomas Noël

config.xml: use edugain metadata provided by renater

55a579da 01 septembre 2014 16:52 Thomas Noël

update-geoinfos.sh = manage geoinfos + lock

41211c39 01 septembre 2014 15:52 Thomas Noël

update-geoinfos.py: dont print when randomize geos

dfae7a8b 01 septembre 2014 15:38 Renato Botelho

Merge pull request #1270 from phil-davis/patch-12

2c3289d9 01 septembre 2014 15:27 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

1b53d5f2 01 septembre 2014 15:13 Phil Davis

Fix traffic graph widget default autoscale

so the radio buttons selection allows only 1 to be selected and the setting is then saved.
Forum: https://forum.pfsense.org/index.php?topic=81166.msg

990162e3 30 août 2014 18:38 Renato Botelho

Remove some redundancy and simplify changes made on last commit

a03fb095 30 août 2014 18:38 Renato Botelho

Remove some redundancy and simplify changes made on last commit

ce3ef2e7 29 août 2014 23:01 Renato Botelho

Replace GET by POST, it fixes #3833

7c9710fc 29 août 2014 23:00 Renato Botelho

Replace GET by POST, it fixes #3833

2412990a 29 août 2014 22:52 Renato Botelho

Fix comment in css

2b56c7da 29 août 2014 22:26 Renato Botelho

Hide FreeBSD version from sshd banner. It fixes #3840

729ca302 29 août 2014 22:13 Renato Botelho

Hide FreeBSD version from sshd banner. It fixes #3840

7486c1f6 29 août 2014 19:41 Renato Botelho

Do not reconfigure dhcpd twice on secondary after config sync. Fixes #3797

85b3c597 29 août 2014 19:30 Renato Botelho

Do not reconfigure dhcpd twice on secondary after config sync. Fixes #3797

985ed11c 29 août 2014 15:09 Renato Botelho

Merge pull request #1258 from yarick123/master

b0473447 28 août 2014 13:48 Renato Botelho

Merge pull request #1261 from CharlieMarshall/improveInter

dd574822 28 août 2014 13:38 CharlieMarshall

Remove blank line if only an ipv6 address is in use

56d23722 28 août 2014 13:32 Renato Botelho

Fix match for help pages privileges, it fixes #3777

552e8f5c 28 août 2014 12:40 Renato Botelho

Merge pull request #1268 from CharlieMarshall/gatewayWidget

bd9c9cb1 28 août 2014 11:41 CharlieMarshall

improve/tidy up interfaces widget

2b7fb769 28 août 2014 00:42 Renato Botelho

Do not use regex to check filetype to avoid being wrong since . is a regex metachar. It fixes #3817

d47fac4a 27 août 2014 01:41 Chris Buechler

fix typo

ae14317d 26 août 2014 22:42 Renato Botelho

Merge pull request #1255 from leleobhz/master

81ca5f88 26 août 2014 12:34 Renato Botelho

Fix indent whitespaces

6f3f4683 25 août 2014 23:51 Renato Botelho

Fix phase2 removal, p2index points to unique ide and not to array index

ab6558b6 25 août 2014 19:33 Renato Botelho

Alias name cannot have more than 31 chars, add maxlength here just as an extra check. Ticket #3827

eab05c00 25 août 2014 19:33 Renato Botelho

Alias name cannot have more than 31 chars, add maxlength here just as an extra check. Ticket #3827

3877b513 25 août 2014 19:21 CharlieMarshall

improve look of gateways widget

d5971693 25 août 2014 17:31 Renato Botelho

Fix #3807:

  • When changing a pre existing VIP, use previous configured interface
    for checking, this fixes the issue that happens when you try to change
    a VIP to a new interface.
  • Use the right interface name, only carp uses _vipN suffix
cbeeb6d4 25 août 2014 16:08 Renato Botelho

Merge pull request #1267 from CharlieMarshall/fixTrafficGraph

35774aec 25 août 2014 15:27 CharlieMarshall

fix display of traffic graph

96a53ec7 25 août 2014 14:36 Renato Botelho

Remove 'reject' action from filter logs since reject and block are the same on logs, it should fix #3825

4219c7b2 25 août 2014 12:22 Renato Botelho

Merge pull request #1265 from CharlieMarshall/switch

6d631b8e 25 août 2014 12:14 CharlieMarshall

move if/else to switch for readability

9a2274b0 23 août 2014 19:16 Thomas Noël

useless import os

80f5b222 23 août 2014 19:15 Thomas Noël

get CONFIG_XML path from settings or os.environ

285202e4 23 août 2014 19:12 Thomas Noël

remove obsolete update_geoinfos.py script

06507017 23 août 2014 19:11 Thomas Noël

update-geoinfos command

ba4c8313 23 août 2014 18:31 Thomas Noël

reorganize the project (again), all in "sp" app

75c7cf74 23 août 2014 18:02 Thomas Noël

map: add static tiles

de3fea9d 23 août 2014 17:56 Thomas Noël

map: proxy in django, lighttpd is crap

8430c546 23 août 2014 01:53 Chris Buechler

fix typo

0badbf8b 22 août 2014 18:51 Thomas Noël

add 'base' in INSTALLED_APPS

2d191d5d 22 août 2014 18:47 Thomas Noël

templates are now in base

79944bcc 22 août 2014 18:45 Thomas Noël

use collectstatic

d2108130 22 août 2014 18:42 Thomas Noël

store static and templates in an 'base' application

c7b523dd 22 août 2014 17:24 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

2cff71c4 22 août 2014 17:12 Renato Botelho

Take virtual IPs into consideration for automatic outbound NAT rules, it should now fix #983

a94b9bef 22 août 2014 15:53 Renato Botelho

pgrep parameters are out of order and it also needs -a to find sshd. While I'm here, simplify sh syntax and prevent noise to be printed if pid file doesn't exist

8c366060 22 août 2014 15:53 Renato Botelho

pgrep parameters are out of order and it also needs -a to find sshd. While I'm here, simplify sh syntax and prevent noise to be printed if pid file doesn't exist

b075c1e2 22 août 2014 14:28 Chris Buechler

delete the dhcpd.pid file before starting dhcpd. Fixes bug where on rare occasions a stale PID file could prevent dhcpd from starting until it's manually deleted.

a762649b 22 août 2014 14:26 Chris Buechler

delete the dhcpd.pid file before starting dhcpd. Fixes bug where on rare occasions a stale PID file could prevent dhcpd from starting until it's manually deleted.

61b2ed1c 22 août 2014 13:28 Chris Buechler

use pgrep here instead, previous way could wrongly show SSH as enabled where it isn't.

b6a7a5a9 22 août 2014 13:27 Chris Buechler

use pgrep here instead, previous way could wrongly show SSH as enabled where it isn't.

ff5e5aec 21 août 2014 19:51 Thomas Noël

caref is useless in federation metadata

a6215861 21 août 2014 18:00 Thomas Noël

add update_federations.py script (draft)

020b75d6 21 août 2014 17:59 Thomas Noël

add update_geoinfos.py script

b1e68a2c 21 août 2014 17:57 Thomas Noël

sp/settings.py: AUTH params in settings.py

d19583f5 21 août 2014 17:52 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

7f00d47e 21 août 2014 12:32 Renato Botelho

Fix text description for interface mismatch, fixes #3820

0b252f7a 21 août 2014 12:31 Renato Botelho

Fix text description for interface mismatch, fixes #3820

2a07df85 21 août 2014 01:41 Jared Dillard

Merge branch 'RELENG_2_1' of git.pfmechanics.com:pfsense/pfsense into RELENG_2_1

41312f7f 21 août 2014 01:39 Jared Dillard

fix top nav to fit gold in non-default themes

fab1cd2f 20 août 2014 20:40 Renato Botelho

Revert "improve/tidy up interfaces widget"

I pushed it accidentally, will wait a fixed version of the patch

This reverts commit b75192e3bc851e80d6bfd33c12849dbc269039fb.

821c82c4 20 août 2014 20:26 Renato Botelho

Merge pull request #1259 from CharlieMarshall/improveInter

b75192e3 20 août 2014 20:18 CharlieMarshall

improve/tidy up interfaces widget

f950a062 20 août 2014 19:18 Ermal

Add missing s to solve the issue reported on https://forum.pfsense.org/index.php?topic=80722.new#new

2ed75516 20 août 2014 17:57 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

c38764dc 20 août 2014 14:50 Dmitriy K.

fix #3515

847fe304 20 août 2014 13:40 Renato Botelho

Remove extra noise from rc.shutdown

db63c043 20 août 2014 13:14 Renato Botelho

Simplify a bit ppp-linkup syntax

fe85513f 20 août 2014 13:00 Renato Botelho

Fix awk syntax, it fixes #3813

fa8be5de 19 août 2014 20:33 Matt Smith

non-css parts of gold menu

bfe9c9e7 19 août 2014 20:32 jim-p

Move the fetching of a package's config file and additional files to separate functions, and then have the "xml" package button perform these so that it is not only a redundant copy of the "pkg" reinstall button. This can help ensure a package files are in a known-good state before other actions are performed, in case the deinstall would fail or behave erratically due to other files being missing.

bdde98fc 19 août 2014 19:59 Jared Dillard

fix spacing in pfsense_ng topnav

e0f10116 19 août 2014 19:35 Jared Dillard

fix gold alignment and redirect

1cca6b6a 19 août 2014 18:12 Jared Dillard

Revert "make gold link more visable"

This reverts commit a03943d203441a87ea9c01f383d451dfc921bdd2.

a03943d2 19 août 2014 02:13 Jared Dillard

make gold link more visable

9694d32c 18 août 2014 23:15 Ermal

Do this check now that hash algos can be empty

17402c63 18 août 2014 22:33 Ermal

Correct the ipsec status pages to show proper information as needed.

5bce82b4 18 août 2014 22:13 Ermal

Correct processing and assignment on ikeid variable so it does the right thing

30c591d6 18 août 2014 21:53 Ermal

Use proper path to setkey now that ipsec-tools are not used anymore

fe12d7ea 18 août 2014 21:51 Ermal

Correct the functions for returning tunnel status to use strongswan status reports

c650b2f7 18 août 2014 21:18 Ermal

Allow HASH algorithms to be empty for phase2 in case the encryption one is AES-GCM

c28da0a7 18 août 2014 16:34 Matt Smith

Add filter.so to list of extensions loaded for 2.2

ae170e96 18 août 2014 12:25 Ermal

Do not allow duplicate subnet entries on left|rightsubnet specification since it will blackhole all traffic to that subnet when connection is setup as route

5d37d515 18 août 2014 12:18 Ermal

Do not accept proposal out of that configured even for IKEv2 even though there is no possibility in the GUI to set more than one proposal for Phase1 so far.

3b68ec45 18 août 2014 08:52 Ermal

Restore behaviour as with racoon to trigger tunnel startup from traffic that needs to go into the tunnel. Even related to Ticket #3806.

8bb47a46 15 août 2014 15:41 Ermal

Do not show errors from trying to delete a socket or similar

bc0a452f 15 août 2014 14:41 jim-p

Ensure this is always an array to avoid a PHP error from foreach.

086e76dc 15 août 2014 14:40 jim-p

Ensure this is always an array to avoid a PHP error from foreach.

6d170e2e 14 août 2014 22:05 Renato Botelho

Bump version to 2.1.5

154298f1 14 août 2014 07:14 Chris Buechler

rightsourceip must be used with PSK+Xauth.

7f1b720f 14 août 2014 06:59 Chris Buechler

This is required for PSK+Xauth. I'll commit that clarification in a bit.
Revert "Revert "Fix assignment of tunnel IPs to mobile clients.""

This reverts commit 23ba08fc940b711f3b44551199890dc8e28a63b6.

3cb773da 14 août 2014 02:18 yarick123

cherry pic from 'hotfix/3347-Certificate_Authority_SAN_names_not_working':

bugfix #3347: Certificate Authority SAN names not working in 2.1

subjectAltName can be set only via configuration file - created three extra sections in openssl.cnf to use in case of existing subjectAltName....

b107e187 13 août 2014 19:50 Matt Smith

Added filter.so to list of extensions loaded for filter_var() support.

23ba08fc 13 août 2014 11:52 Ermal

Revert "Fix assignment of tunnel IPs to mobile clients."
This normally is not needed since the attr plugin deals with all this.

This reverts commit 00311d6a841c0f6fc162ea11da06569f10220f5e.

1c70bdff 12 août 2014 23:11 Ermal

Actually disable this plugin for now. It was not really needed for solving the issues with IKEv1

b8137fc2 12 août 2014 20:03 Leonardo Amaral
  • Fix a typo mismatch in /etc/inc/dyndns.class for CloudFlare URL entry.
e35ec763 11 août 2014 21:04 Renato Botelho

Do not reset source and destination port range values when it's an associated rule created by nat port forward. It fixes #3778

4a3495b3 11 août 2014 21:01 Renato Botelho

Move dhcp6c log to dhcpd.log, it fixes #3799

0e2eaa1b 11 août 2014 19:22 Renato Botelho

Do not reset source and destination port range values when it's an associated rule created by nat port forward. It fixes #3778

b462fc5e 11 août 2014 16:47 Renato Botelho

Move dhcp6c log to dhcpd.log, it fixes #3799

687d11a6 11 août 2014 14:44 Renato Botelho

Remove double defined 'localhost' on the list of networks to create outbound NAT rules. It should fix #3800

565908d2 11 août 2014 14:40 Renato Botelho

Do not create automatic outbound NAT rule for disabled openvpn servers and clients

00311d6a 11 août 2014 12:19 Chris Buechler

Fix assignment of tunnel IPs to mobile clients.

a3331d72 09 août 2014 00:20 Matt Smith

Fix #3798 - 'IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address'

dc63467f 09 août 2014 00:09 Matt Smith

Fix #3798 - 'IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address'

ffb8e02f 08 août 2014 18:36 jim-p

Avoid generating an invalid racoon config if the user specified a mobile pool that is too small.

762e8cf9 08 août 2014 18:24 jim-p

Avoid a "Cannot use string offset as an array" error if the packages section of the config is missing.

b21ad5d5 08 août 2014 18:22 jim-p

Avoid a "Cannot use string offset as an array" error if the packages section of the config is missing.

b6513591 08 août 2014 17:33 jim-p

Require click-through POST confirmation when restoring or deleting a configuation from the backup history page.

889c83d7 08 août 2014 17:22 jim-p

Require click-through POST confirmation when restoring or deleting a configuation from the backup history page.

ed2a6e89 08 août 2014 16:36 jim-p

Do not execute DNS resolution on GET, only pre-fill Host box so the user can press the button to execute. Turn alias creation links into submit buttons for POST. While here, remove some backticks and simplify a little.

8108b423 08 août 2014 16:26 jim-p

Remove javascript alert DNS resolution action from the firewall log view. It was already removed from 2.2, and it's better not to allow a GET action to perform that action.

a9d6ac9a 08 août 2014 16:21 jim-p

Do not execute on GET, only pre-fill Host box so the user can press the button to execute. Turn alias creation links into submit buttons for POST. While here, remove some backticks and simplify a little.

bf8aab82 08 août 2014 15:40 Ermal

Correct this so the dpdaction is created properly as restart

6f4a300b 08 août 2014 07:04 Chris Buechler

Shorten the wait at "reload" in startup wizard to 5 seconds from 60. That's more than adequate for current systems, no need to make people sit there for 1 minute. Many likely click out via the logo and miss the last screen entirely.

67067ea3 08 août 2014 07:02 Chris Buechler

Shorten the wait at "reload" in startup wizard to 5 seconds from 60. That's more than adequate for current systems, no need to make people sit there for 1 minute. Many likely click out via the logo and miss the last screen entirely.

9f6a5b50 07 août 2014 22:53 Ermal

Do a reload on the cofniguration which is better than update. Also let the keyingtries to 3 rather than forever to avoid problems on recovery.

0b5fc1d1 07 août 2014 20:53 Ermal

Change the logic of the vpn config generation to make connectivity more stable especially ipsec. Also for IKEv1 just generate the policies and only on traffic start them.

b31a2c76 07 août 2014 17:52 Ermal

Move the rekey to yes always to avoid issues.

959dc96b 07 août 2014 04:38 Chris Buechler

Per the dhcpd.conf man page and other documentation from ISC, mclt must not be defined on the secondary.

8b8085ce 07 août 2014 04:37 Chris Buechler

Per the dhcpd.conf man page and other documentation from ISC, mclt must not be defined on the secondary.

88c24958 06 août 2014 21:57 jim-p

Encode interface/VIP descriptions before displaying them on the NTP daemon settings.

c3e77841 06 août 2014 21:55 jim-p

Encode interface/VIP descriptions before displaying them on the GRE and GIF pages also;
While here, the GRE page was missing IP aliases from its list of bind IPs, add it in.

978c71d2 06 août 2014 21:53 jim-p

Encode interface/VIP descriptions before displaying them on the GRE and GIF pages also;
While here, the GRE page was missing IP aliases from its list of bind IPs, add it in.

bf2fb3db 06 août 2014 21:52 jim-p

Encode interface/VIP descriptions before displaying them on the NTP daemon settings.

92ca4bc3 06 août 2014 21:36 jim-p

Encode the detail field of an alias entry before displaying its contents back to the user.

2276d743 06 août 2014 21:34 jim-p

Encode the detail field of an alias entry before displaying its contents back to the user.

071f6059 06 août 2014 21:27 jim-p

Escape the individual dnsmasq advanced/custom options

52c67bc2 06 août 2014 21:26 jim-p

Escape the individual dnsmasq advanced/custom options

12c88700 05 août 2014 17:43 Renato Botelho

Allow to add ipalias vip to lo0, it should fix #3773

8e2a4091 05 août 2014 15:01 Renato Botelho

Use GPS type presets only to pre-set values then user can change it. After user changes, save type always as Custom to avoid overwriting values when user attempt to edit. It fixes #3782

f9f3e44c 05 août 2014 14:19 Renato Botelho

More non-functional changes to make code more readable

42b5c637 05 août 2014 14:01 Renato Botelho

Fix indent and spaces

46f5ced5 05 août 2014 13:59 Renato Botelho

This if is unecessary since input_errors is unset in the line above

4c291f4c 05 août 2014 13:35 Renato Botelho

Fix indent and whitespaces

4c4c59b9 05 août 2014 12:48 Renato Botelho

Make sure there are not empty options on dst select to avoid creating empty user or group. This issue was introduced by b4e9a4da

46f6eb78 05 août 2014 12:44 Renato Botelho

Fix select name

1de3a5dd 04 août 2014 21:25 jim-p

Fix input validation logic on diag_testport.php, escape more shell arguments for good measure

46d3f6a6 04 août 2014 21:23 jim-p

Fix input validation logic on diag_testport.php, escape more shell arguments for good measure

aeb44799 04 août 2014 17:34 Renato Botelho

Fix #3790. Fix IPv6 Prefix ID check using interface user choose before save

f088b8cd 01 août 2014 22:52 Ermal

Do not try to rekey for IKEv1.

9b915686 01 août 2014 22:39 Ermal

Use a uniqid() to track phase2 entries to avoid confustion and various mistakes when modifying and editing them.

fa0a1411 30 juillet 2014 17:57 Matt Smith

Fix for #3785 - 'strongswan config being generated with ike SA lifetime set to value of ipsec SA lifetime'

63dd9f08 30 juillet 2014 00:28 Ermal

Remove even the config.cache from /tmp to avoid issues while here

9280a998 29 juillet 2014 17:59 Matt Smith

Fix #3781 - 'strongswan dpdtimeout value not generated correctly'

7ce6c34d 25 juillet 2014 23:59 Thomas Noël

config.xml: timezone default is Europe/Paris

9c32c26c 25 juillet 2014 23:57 Thomas Noël

config.xml: fix SP configuration (certificate)

f84b7bff 25 juillet 2014 21:42 Matt Smith

Add message about Gold to setup wizard and menu/link to Gold signup.

f3d88511 25 juillet 2014 17:48 Renato Botelho

Fix #3575, do not allow user to set IPs for GRE interfaces on interface edit page.

75de6b29 25 juillet 2014 15:32 jim-p

Fix redirect after editing permissions

69b952bc 25 juillet 2014 14:51 Thomas Noël

pfconfigxml.py: add fault tolerant

6141a91b 25 juillet 2014 14:15 Renato Botelho

Disable bandwidth checks for PRIQ, it should fix #3537

c8f89a40 25 juillet 2014 13:58 Renato Botelho

Fix field name that cannot contain spaces, and use displayname

cdcbc988 25 juillet 2014 13:57 Renato Botelho

Fix scheduler field name

6f1d690c 25 juillet 2014 13:35 Renato Botelho

Fix field name that cannot contain spaces, and use displayname

52cacff8 25 juillet 2014 13:34 Renato Botelho

Fix field name

365f20ed 25 juillet 2014 01:54 Thomas Noël

config federation: add a codename field

9d15ba4a 25 juillet 2014 01:31 Thomas Noël

config whitelist: hint

19866866 25 juillet 2014 01:23 Thomas Noël

config whitelist: add a codename field

260a6901 24 juillet 2014 23:28 Renato Botelho

Strict checks for number of WANs and LANs on wizard

e75a787f 24 juillet 2014 23:28 Renato Botelho

Fix number of WAN / LAN interfaces detection for dedicated wizard

46cbc96e 24 juillet 2014 23:28 Renato Botelho

Try to guess number of WANs

3ab6aff7 24 juillet 2014 23:28 Renato Botelho

Try to guess number of WANs and LANs

dad05dac 24 juillet 2014 23:28 Renato Botelho

Fix number of WAN and LAN connections check

070aeff3 24 juillet 2014 23:28 Renato Botelho

Just show right type of interfaces (LAN/WAN) on traffic shapper wizards, it fixes #3535

c1d09bfe 24 juillet 2014 23:28 Renato Botelho

Remove 'multi lan/single wan' and 'multi wan/single lan' traffic shaper wizards, multi lan/wan can be used to replace any of them

71802285 24 juillet 2014 23:28 Renato Botelho

Replace exec() and system() calls by internal functions

ba782be2 24 juillet 2014 23:28 Renato Botelho

Fix indent and whitespaces

4844813b 24 juillet 2014 23:28 Renato Botelho

Fix indent and whitespaces

d6933213 24 juillet 2014 23:28 Renato Botelho

Fix indent and whitespaces

535982b2 24 juillet 2014 20:14 Thomas Noël

config.xml: add default whitelist

29d5899d 24 juillet 2014 17:25 Thomas Noël

saml_federation: a federation can be enabled/disabled

5c217bac 24 juillet 2014 16:43 Thomas Noël

config.xml: add default federations, cert, ca

c72131ac 24 juillet 2014 14:40 Thomas Noël

univnautes/sp: views: homepage is just a templateview

26035803 24 juillet 2014 14:26 Thomas Noël

univnautes/sp: update settings.py

4e9619af 24 juillet 2014 14:24 Thomas Noël

univnautes/sp: context processor sets "idps" list

d3d92c1f 24 juillet 2014 14:23 Thomas Noël

univnautes/sp: update templates & static

2362289e 24 juillet 2014 14:15 Thomas Noël

saml_sp config: add 'defaultidps' param

1f2acda1 23 juillet 2014 18:19 Matt Smith

Fix for bug 3769

bc53fec6 22 juillet 2014 21:39 Renato Botelho

Use SERVER_NAME instead of HTTP_HOST env var, it doesn't have port, then it avoids wizard end point to wrong IPv6 address. It should fix #3550

1b37ae46 22 juillet 2014 18:13 Renato Botelho

Fix #983 - Add IP aliases subnets to interface subnet macro on GUI, since I'm here also fix not rules for PPTP clients macro.

ef74c9e4 21 juillet 2014 23:57 Renato Botelho

Concat var before call escapeshellarg

604623a1 21 juillet 2014 23:56 Renato Botelho

Make dhcpleases use unbound pid when it's configured

9d83d01f 21 juillet 2014 23:54 Renato Botelho

Fix shell script syntax, it should fix #3361

6e41e40c 21 juillet 2014 17:22 Thomas Noël

sp: first UI parameters in pfsense config

cb297b92 21 juillet 2014 16:28 Thomas Noël

sp/settings.py: some values from config.xml

3b1ec0b5 21 juillet 2014 12:45 Thomas Noël

add whitelists configuration

acbb6f32 21 juillet 2014 12:44 Thomas Noël

disable IdP configuration pages

769d906c 21 juillet 2014 11:55 Thomas Noël

captiveportal/saml: redirect to a SP univnautes

7d83741d 21 juillet 2014 10:21 Thomas Noël

config.xml: auth_method = saml

9775c69d 19 juillet 2014 13:56 Renato Botelho

Merge pull request #1252 from N0YB/XHTML_Compliance_System_Menu

de467f00 19 juillet 2014 06:01 N0YB

System: Firmware: Settings

Updater Settings Tab
system_firmware_settings.php

Line 488, Column 43: value of attribute "type" cannot be "input"; must be one of "text", "password", "checkbox", "radio", "submit", "reset", "file", "hidden", "image", "button"...

dd030de9 18 juillet 2014 19:18 Renato Botelho

Detect when protocol changes and invalidate session to get a new cookie with secure flag set according. It fixes #3714

639567b8 18 juillet 2014 18:21 Renato Botelho

Merge pull request #1247 from DasTestament/master

098aadbc 18 juillet 2014 17:09 Thomas Noël

sp: loaddata after syncdb

ff3f36e0 18 juillet 2014 16:59 Thomas Noël

secret.key created in /usr/local/univnautes/sp/

71381d45 18 juillet 2014 16:57 Thomas Noël

rm secret.key, added to .gitignore

11210ae3 18 juillet 2014 16:55 Thomas Noël

rm lighty-univnautes-CaptivePortal-SSL.conf (useless)

b49dae82 18 juillet 2014 16:29 Thomas Noël

sp/rc.sh fixes

0709b184 18 juillet 2014 15:40 Thomas Noël

add /usr/local/univnautes sp (first draft)

8f97223c 18 juillet 2014 15:38 Thomas Noël

create lighty config for univnautes

a79e592e 18 juillet 2014 15:36 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

d806061c 18 juillet 2014 15:33 Renato Botelho

Merge pull request #1232 from N0YB/Widget_Gateways

f4b75912 18 juillet 2014 15:32 Renato Botelho

Merge pull request #1235 from N0YB/Mixed_Case_Hostname

5847917c 18 juillet 2014 15:31 Renato Botelho

Merge pull request #1236 from N0YB/Widget_Services_Status

34bb3ffc 18 juillet 2014 15:29 Renato Botelho

Merge pull request #1237 from N0YB/XHTML_Compliance_System_Menu

bee27ca1 17 juillet 2014 13:35 Renato Botelho

Merge pull request #1234 from agibson2/master

615ae81f 16 juillet 2014 16:13 Renato Botelho

Review all parameters on unbound main GUI, fix boolean params and add missing ones. Also make it work properly with 'apply'

f7e6c49a 16 juillet 2014 16:12 Renato Botelho

Use the apply trigger for unbound acls to avoid restart unbound every time

a88ec513 16 juillet 2014 14:58 Renato Botelho

Fix indent and whitespaces

c538f864 16 juillet 2014 14:56 Renato Botelho

Some GUI tweaks on unbound main screen

dbf81496 16 juillet 2014 14:42 Renato Botelho

Improve unbound ACL edit page to use correct classes and jquery.ipv4v6ify.js

cb79dc0d 16 juillet 2014 14:17 Renato Botelho

Fix acl item removal

026f3639 16 juillet 2014 13:48 Renato Botelho

Few GUI tweaks on unbound ACL page

18eb5d0e 15 juillet 2014 23:48 Renato Botelho

Fix multiple issues on unbound advanced options GUI:

- Drop many wrong key assignments to pconfig
- Add missing keys to pconfig
- Deal fine with boolean parameters
- Mark subsystem dirty to require apply button
- Drop calls to enable_change()
- Remove unecessary js function enable_change()...

dca795b7 15 juillet 2014 16:34 Renato Botelho

Use cron.pid to get pid number and avoid kill minicron processes. It fixes #3757

861b9b7a 14 juillet 2014 17:07 jim-p

Allow hostnames in bulk import since they are valid entries in a network type alias.

5a1450dc 14 juillet 2014 16:56 jim-p

Allow hostnames in bulk import since they are valid entries in a network type alias.

5a582d33 11 juillet 2014 23:35 Renato Botelho

Merge pull request #1242 from ExolonDX/branch_master_01

dcafc712 11 juillet 2014 23:22 Adam Gibson

Don't use pfsense name in comment

76fce373 11 juillet 2014 23:22 Adam Gibson

Use $product instead of pfSense when logging the version to syslog

4982e61e 11 juillet 2014 23:22 Adam Gibson

Log pfsense version to syslog after bootup

e860ec1d 11 juillet 2014 21:27 jim-p

Fix PHP script closing tag placement.

720c529f 11 juillet 2014 13:23 Renato Botelho

Fix #3749:

When a full upgrade from 2.1.x to 2.2 is being done, after decompress
tarball with 2.2 files, /bin/sh is not able to run a script using syntax
'sh scriptname'. Because of that, /tmp/post_upgrade_command and
/etc/rc.reboot are not executed ending on an incomplete and broken...

5fbdacc1 11 juillet 2014 13:23 Renato Botelho

Make sure scripts have necessary attributes and use its shebang line instead of force sh to call it. This will help to prevent or workaround issues similar to #3749 in the future

00aa34f1 11 juillet 2014 13:23 Renato Botelho

In some cases, new /bin/sh binary doesn't work properly before reboot during a upgrade, and because of that /etc/rc.reboot is not executed and system doesn't reboot. Source /etc/rc.reboot instead of open a new sh session to avoid it happening again in future versions (ticket #3749)

b1fb76fd 10 juillet 2014 14:49 Thomas Noël

global_override: federation can be a list in config.xml

927670f2 10 juillet 2014 13:31 Thomas Noël

idp: none choice for certref

375fce94 10 juillet 2014 04:56 Chris Buechler

use HTTPS for files.pfsense.org for update_bogons and priv_url in pkg-utils

9edcc5fa 09 juillet 2014 07:08 Chris Buechler

no () around qlength here

a061ddb9 09 juillet 2014 07:07 Chris Buechler

no () around qlength here

1ee3a295 08 juillet 2014 17:44 Renato Botelho

Change Cancel button to call history.back() as done in Firewall Rules, the current method has issues with IE 11, it should fix #3728

c9a88bbd 08 juillet 2014 13:47 Chris Buechler

qlimit must be included here

ca16c66a 08 juillet 2014 13:46 Chris Buechler

qlimit must be included here

7b15d229 08 juillet 2014 01:13 Renato Botelho

Avoid reseting firewall hostname by WAN DHCP. It should fix #3746

2d34e81a 08 juillet 2014 01:12 Renato Botelho

Avoid reseting firewall hostname by WAN DHCP. It should fix #3746

971de1f9 08 juillet 2014 01:06 Renato Botelho

Convert almost all /sbin/sysctl calls to php functions

79cd8239 07 juillet 2014 17:52 Renato Botelho

Fix sysctl name

185ec650 07 juillet 2014 16:46 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

11c818e3 07 juillet 2014 16:45 Thomas Noël

saml => force CP listening on port 443

82f75815 07 juillet 2014 16:05 Renato Botelho

Add set_single_sysctl(), a wrapper to set_sysctl() to make it simple to set value of a single sysctl

ff23363d 07 juillet 2014 15:57 Renato Botelho

Add get_single_sysctl(), a wrapper to get_sysctl() to make it simple to get value of a single sysctl

aae16684 07 juillet 2014 15:52 Renato Botelho

Fix indent

ac94af37 07 juillet 2014 14:06 Thomas Noël

CP: add "saml" choice in authentication methods

42bb1bee 07 juillet 2014 13:42 Renato Botelho

Remove extra spaces and tabs

e7f65689 06 juillet 2014 21:25 Renato Botelho

Remove extra quote and fix syntax

64746cf6 05 juillet 2014 23:00 Chris Buechler

use HTTPS for dyndns providers that support it

9b8c7295 05 juillet 2014 23:00 Chris Buechler

use HTTPS for dyndns providers that support it

3fe260c2 04 juillet 2014 21:53 Ermal

Use a php function rather tan using exec. Suggested-by: garga

9f266daa 04 juillet 2014 18:49 Thomas Noël

use certref/caref instead of refca/refcert

93788516 04 juillet 2014 18:49 Thomas Noël

add univnautes section in config.xml

57776aef 04 juillet 2014 18:36 Thomas Noël

add univnautes in certs.inc

9bfa4ffb 04 juillet 2014 18:25 Thomas Noël

add services_captiveportal_saml pages

95cdee87 04 juillet 2014 16:51 Ermal

Remove all .xml file generated from upgrade since it makes /var full

2e906a1a 04 juillet 2014 14:44 Renato Botelho

Add one more seatbelt to prevent tar to attempt to overwrite /dev items

be0af33e 03 juillet 2014 23:07 Renato Botelho

Add missing $g to global, as noted on pull request 1249

d461583b 03 juillet 2014 14:26 Renato Botelho

Change Cancel button to call history.back() as done in Firewall Rules, the current method has issues with IE 11, it should fix #3728

d4b1e549 02 juillet 2014 22:24 Renato Botelho

Back to cons25 for now since we found some issues with xterm on serial console

23c01a69 02 juillet 2014 22:24 Renato Botelho

un-obsolete gettytab.bak

6916360e 02 juillet 2014 21:20 jim-p

Also check and verify the package server's SSL certificate if using HTTPS. Issue 484
Our current XMLRPC client version doesn't have support on its own to validate this in a way we can use to test in a usable for printing an error message. For now, a cURL query to the XMLRPC URL is used in its place.

7c8f3711 02 juillet 2014 18:07 jim-p

More refinements to the unofficial package repository warning ( Issue #484 ) -- Now also shows on Dashboard and installed package list. Cleaned up some code and shuffled things around to avoid unnecessary repetition.

38c7d42e 01 juillet 2014 22:28 Renato Botelho

Set proper serial parameters on boot.config and loader.conf for nanobsd without vga

c55dfc4a 01 juillet 2014 21:22 jim-p

Detect if an unofficial package repository is in use and warn the user. Part of issue #484 (more to go)

c5f9fb72 01 juillet 2014 19:11 Renato Botelho

Make proper checks to check if we should or not enable serial console

e6e3e0ee 01 juillet 2014 19:11 Renato Botelho

Fix typo on var name

1053983c 01 juillet 2014 18:43 Renato Botelho

Obsolete ttys_wrap and gettytab.bak

edb4b657 01 juillet 2014 18:37 Renato Botelho

Fix #3647 and other improvements:

- Remove auto_login(), now gettytab is a constant file
- Add reload_ttys(), that will send a SIGHUP to init and make it reload
/etc/ttys
- Change serial speed on /etc/ttys when necessary
- Change console and serial auto_login on /etc/ttys when necessary...

6f9a191d 01 juillet 2014 18:37 Renato Botelho

Change default console from cons25 to xterm, while I'm here, simplify the check

7f394d3e 01 juillet 2014 18:35 Renato Botelho

Stop calling auto_login() here since it's already called inside setup_serial_port()

3c72e984 01 juillet 2014 18:35 Renato Botelho

Stop restoring gettytab.bak since it doesn't exist anymore

d8f123b8 01 juillet 2014 18:34 Renato Botelho

Sync etc/ttys with FreeBSD 10-STABLE, change default console for al.Pc and default serial for al.115200

025ad9ef 01 juillet 2014 18:33 Renato Botelho

Sync gettytab with FreeBSD 10-STABLE, also reduce customizations, the only difference is al.Pc entry, for Pc with auto login

a9e595cc 01 juillet 2014 18:32 Renato Botelho

Remove unused function color()

e6974dfe 01 juillet 2014 18:31 Renato Botelho

Delete gettytab.bak and ttys_wrap, they are not needed anymore

51aeee08 01 juillet 2014 11:46 Thomas Noël

globals_override.inc: don't rename pfSense

ebb5eb36 01 juillet 2014 11:18 Thomas Noël

Merge branch 'RELENG_2_1' into UNIVNAUTES_2_1

8ff231b4 30 juin 2014 22:18 Dmitriy K.

fixes #3713

c69e813c 30 juin 2014 15:57 Renato Botelho

Fix #3725:

- Fix match_filter_field() and also simplify logic
- Fix $filterfieldsarray initialization
- Avoid to have double spaces on filterfieldsarray['act']
- Fix filter on Firewall Logs

bb1ea3ba 30 juin 2014 15:52 Thomas Noël

Merge branch 'UNIVNAUTES_2_1' of ssh://repos.entrouvert.org/univnautes into UNIVNAUTES_2_1

5b35f512 30 juin 2014 15:51 Thomas Noël

config.xml: default filter rules

39bd6f4d 30 juin 2014 15:51 Thomas Noël

config.xml: default cpzone univnautes

8d79ffba 30 juin 2014 15:51 Thomas Noël

config.xml: add default ca and cert

90cb7fa8 30 juin 2014 15:51 Thomas Noël

config.xml: dhcpd config

8f86fd43 30 juin 2014 15:51 Thomas Noël

config.xml: hostname is univnautes.entrouvert.lan

45283df2 30 juin 2014 15:51 Thomas Noël

config.xml: add aliases

8378ec6b 30 juin 2014 15:51 Thomas Noël

webgui on port 8443 (https)

6d45aa59 30 juin 2014 15:51 Thomas Noël

config.xml: activate snmpd

46bda90a 30 juin 2014 15:51 Thomas Noël

bsnmp-ucd configuration

5332c641 30 juin 2014 15:51 Thomas Noël

/etc/motd: univnautes flavor

ac6b3f53 30 juin 2014 15:51 Thomas Noël

new logon.png with univnautes logo

d13743c3 30 juin 2014 15:51 Thomas Noël

globals_override: product_name=pfSense-UnivNautes

444a6f4b 30 juin 2014 15:51 Thomas Noël

config.xml: lan = 10.42.0.1/16 + dhcpd

4ab0c0f8 30 juin 2014 15:51 Thomas Noël

add etc/inc/globals_override.inc

421044f6 30 juin 2014 15:51 Thomas Noël

add "univnautes" in ascii-art logo

939f4e39 30 juin 2014 15:47 Renato Botelho

Fix #3725:

- Fix match_filter_field() and also simplify logic
- Fix $filterfieldsarray initialization
- Avoid to have double spaces on filterfieldsarray['act']
- Fix filter on Firewall Logs

6d74e3e9 27 juin 2014 21:21 Renato Botelho

Merge pull request #1244 from phil-davis/patch-11

0ffc4a7b 27 juin 2014 16:56 Renato Botelho

Add a BETA key for PBI signature check, this will be replaced by the final one before RELEASE. Ticket #3365

485cc436 27 juin 2014 16:44 Renato Botelho

Fix dir name

4887afa1 26 juin 2014 21:44 Renato Botelho

Set default serial speed to 115200 for 2.2, fixes #3715

2bf2a1c4 26 juin 2014 17:24 Renato Botelho

Fix a regression introduced on 8d6c5f6621 that broke CARP+IP alias

0ee60267 26 juin 2014 11:32 Phil Davis

Handle no dhcpd settings when upgrading

This minor fix was in master but not 2.1 branch. I noticed the warning message when doing a fresh install/test of 2.1.4-release. It prevents the warning message:
Warning: Invalid argument supplied for foreach() in /etc/inc/upgrade_config.inc on line 3153...

4b167dcd 25 juin 2014 17:18 Renato Botelho

Merge pull request #1238 from DasTestament/master

b0cbebeb 24 juin 2014 23:06 Ermal

Add the AESGCM and XCBC on the list of algos availble

b176474b 24 juin 2014 21:18 Dmitriy K.

Update vpn_openvpn_server.php

4be2bfed 24 juin 2014 21:15 Dmitriy K.

Update vpn_openvpn_client.php

649b6b85 24 juin 2014 20:09 Ermal

Actually use ph1ent ikeid here otherwise will duplicate ids here.

0d26e77c 24 juin 2014 17:06 Renato Botelho

Merge pull request #1241 from Gertjanpfsense/master

c15b5ed8 24 juin 2014 17:00 Renato Botelho

Fix dscp values and provide a config upgrade to fix values stored in config.xml. This is a proper fix for #3688

5a145a54 24 juin 2014 14:42 Gertjan

Delete README.md

b1e8e675 24 juin 2014 14:27 Dmitriy K.

Update openvpn.inc

fbe0c5ff 24 juin 2014 00:26 Colin Fleming

Tidy up misc. XHTML

"diag_dns.php"
Tidy up "equals sign"

"services_captiveportal.php"
Add space to OPTION tag
Update HTML Boolean operator
Close INPUT and BR tags

"services_captiveportal_hostname.php"
Update ALIGN to MIDDLE

"services_captiveportal_vouchers.php"...

5d792074 23 juin 2014 19:41 Gertjan

Update status_captiveportal.php

Don't ask to select a zone if there is only ONE.

fc227e34 23 juin 2014 18:58 Gertjan

Create README.md

6c87714d 23 juin 2014 14:32 Renato Botelho

Add local/www to the list of directories that needs to be symlink'd to reduce PBI differences between 2.1 and 2.2

1657cfd2 21 juin 2014 23:23 N0YB

oops, that wasn't supposed to be removed.

60a5f9de 21 juin 2014 23:16 N0YB

Use count($array) where applicable, instead of a $rowIndex increment.

1a7ed9d0 20 juin 2014 21:14 Adam Gibson

Don't use pfsense name in comment

05b69065 20 juin 2014 20:53 Adam Gibson

Use $product instead of pfSense when logging the version to syslog

3675b8b1 20 juin 2014 20:20 Thomas Noël

config.xml: default filter rules

25622b6e 20 juin 2014 20:16 Thomas Noël

config.xml: default cpzone univnautes

ef552e98 20 juin 2014 20:13 Thomas Noël

config.xml: add default ca and cert

ea9775d4 20 juin 2014 18:31 Thomas Noël

config.xml: dhcpd config

49427ba4 20 juin 2014 18:30 Thomas Noël

config.xml: hostname is univnautes.entrouvert.lan

3e12ab5d 20 juin 2014 18:26 Thomas Noël

config.xml: add aliases

1ae5f761 20 juin 2014 18:15 Thomas Noël

webgui on port 8443 (https)

0792cbd8 20 juin 2014 18:12 Thomas Noël

config.xml: activate snmpd

48cc7c9d 20 juin 2014 18:10 Phil Davis

Only include a scheduled rule if it is strictly before the end time

The exact moment of the end time is the end of the schedule. We do not want to include a rule when filter_configure_sync wakes up at 00:15:00 etc and is on a not-slow system that processes this code during the interval 00:15:00 to 00:15:01. This should help intermittent issues with schedules not finishing at the appropriate 15-minute boundary. Might help or fix #3558

fcd18d81 20 juin 2014 18:10 Renato Botelho

Remove extra data after space and fix pf rule syntax. It should fix #3688

bc0f669e 20 juin 2014 18:10 Daniel Becker

bring protocols on NAT edit page more in line with rule edit page

5b3c0116 20 juin 2014 18:06 Dmitriy K.

Update openvpn.inc

Added verbosity check in case when verbosity_level is absent in config.xml

bfa22b15 20 juin 2014 17:59 Dmitriy K.

Update vpn_openvpn_server.php

removed comments

34c0adfc 20 juin 2014 17:56 Dmitriy K.

Update vpn_openvpn_client.php

removed comments

0e678da7 20 juin 2014 16:57 Dmitriy K.

Update openvpn.inc

Removed unnecessary "else {";

efac3a13 20 juin 2014 16:25 Phil Davis

Only include a scheduled rule if it is strictly before the end time

The exact moment of the end time is the end of the schedule. We do not want to include a rule when filter_configure_sync wakes up at 00:15:00 etc and is on a not-slow system that processes this code during the interval 00:15:00 to 00:15:01. This should help intermittent issues with schedules not finishing at the appropriate 15-minute boundary. Might help or fix #3558

9f5de694 20 juin 2014 16:25 jim-p

Merge pull request #1239 from phil-davis/patch-9

ce30ee0e 20 juin 2014 15:46 Thomas Noël

bsnmp-ucd configuration

052dfa93 20 juin 2014 15:36 Renato Botelho

Remove extra data after space and fix pf rule syntax. It should fix #3688

e792ac36 20 juin 2014 15:35 Renato Botelho

Remove extra data after space and fix pf rule syntax. It should fix #3688

1c9a521b 20 juin 2014 14:36 Renato Botelho

Merge pull request #1208 from razzfazz/nat_add_missing_protocols

df203cb8 20 juin 2014 14:35 Renato Botelho

Merge pull request #1218 from razzfazz/nat_add_missing_protocols_master

dbd564a7 20 juin 2014 10:00 Thomas Noël

/etc/motd: univnautes flavor

57e5bfa6 20 juin 2014 10:00 Thomas Noël

new logon.png with univnautes logo

85a40280 20 juin 2014 10:00 Renato Botelho

Remove also . and / from graph

6b71ebb7 20 juin 2014 10:00 Renato Botelho

Fix status_rrd_graph_img.php and also improve it:

- Remove escapeshellarg that broke command line
- Only remove dangerous chars to avoid command injection
- Replace all `hostname` calls by php_uname('n')
- Replace all `date` calls by strftime()
- Add $_gb to collect possibly garbage from exec return

b7cc4699 20 juin 2014 10:00 Renato Botelho

Make sure single quotes are encoded and avoid javascript injection

1c179075 20 juin 2014 10:00 Renato Botelho

Use CDATA for javascript

e372d61b 20 juin 2014 10:00 Renato Botelho

Fix indent and whitespaces

2d35ba02 20 juin 2014 10:00 Renato Botelho

Simplify logic, add some protection to user input parameters

69716358 20 juin 2014 10:00 Renato Botelho

Fix whitespaces and indent

c2865098 20 juin 2014 10:00 Renato Botelho

We need to allow subdirectories under /usr/local/pkg, here is the proper fix

96fcabaa 19 juin 2014 21:29 Renato Botelho

Replace some backticks by exec ans simplify commands

692c21fd 19 juin 2014 21:20 Renato Botelho

Remove more backtick abuse

3f0c20c3 19 juin 2014 20:58 Renato Botelho

Add -n for 2 remaining sysctl calls, also replace backtick by exec

c69d32f6 19 juin 2014 20:57 Renato Botelho

Add full path for dmesg and replace backtick by exec

4f380b62 19 juin 2014 18:05 Renato Botelho

Remove also . and / from graph

902da388 19 juin 2014 18:04 Renato Botelho

Remove also . and / from graph

bc27c6d1 19 juin 2014 17:29 Renato Botelho

Remove more backticks

57627d9f 19 juin 2014 17:26 Renato Botelho

Fix status_rrd_graph_img.php and also improve it:

- Remove escapeshellarg that broke command line
- Only remove dangerous chars to avoid command injection
- Replace all `hostname` calls by php_uname('n')
- Replace all `date` calls by strftime()
- Add $_gb to collect possibly garbage from exec return

2d1e985d 19 juin 2014 17:23 Renato Botelho

Fix status_rrd_graph_img.php and also improve it:

- Remove escapeshellarg that broke command line
- Only remove dangerous chars to avoid command injection
- Replace all `hostname` calls by php_uname('n')
- Replace all `date` calls by strftime()
- Add $_gb to collect possibly garbage from exec return

bef10560 19 juin 2014 16:30 Renato Botelho

Make sure single quotes are encoded and avoid javascript injection

daeab6c4 19 juin 2014 16:29 Renato Botelho

Fix indent and whitespaces

8aca755a 19 juin 2014 16:29 Renato Botelho

Make sure single quotes are encoded and avoid javascript injection

cedd0705 19 juin 2014 15:37 Renato Botelho

Use CDATA for javascript

559929c2 19 juin 2014 15:37 Renato Botelho

Fix indent and whitespaces

a43c5bde 19 juin 2014 06:47 Phil Davis

Only include a scheduled rule if it is strictly before the end time

The exact moment of the end time is the end of the schedule. We do not want to include a rule when filter_configure_sync wakes up at 00:15:00 etc and is on a not-slow system that processes this code during the interval 00:15:00 to 00:15:01. This should help intermittent issues with schedules not finishing at the appropriate 15-minute boundary. Might help or fix #3558

aba02f65 18 juin 2014 21:54 Renato Botelho

Simplify logic, add some protection to user input parameters

d1dda498 18 juin 2014 21:39 Renato Botelho

Simplify logic, add some protection to user input parameters

f1a13a7f 18 juin 2014 20:41 Renato Botelho

Fix whitespaces and indent

f334f8bf 18 juin 2014 20:38 Renato Botelho

Fix whitespaces and indent

bef9f697 18 juin 2014 18:46 Renato Botelho

We need to allow subdirectories under /usr/local/pkg, here is the proper fix

811baa9b 18 juin 2014 18:46 Renato Botelho

We need to allow subdirectories under /usr/local/pkg, here is the proper fix

d31289a7 18 juin 2014 15:02 Thomas Noël

globals_override: product_name=pfSense-UnivNautes

a1a160e8 18 juin 2014 14:59 Thomas Noël

config.xml: lan = 10.42.0.1/16 + dhcpd

7a4bdfb5 18 juin 2014 14:32 Renato Botelho

Set 'Disable webConfigurator login autocomplete' as on by default

30ea09c7 18 juin 2014 14:32 Renato Botelho

Always set httponly attribute on cookies

08f30320 18 juin 2014 13:21 Renato Botelho

Change the option for webconfig login autocomplete from opt-in to opt-out, also bump config version and write a function to keep the current status on upgrades

e8abc4a7 18 juin 2014 12:52 Renato Botelho

Set 'Disable webConfigurator login autocomplete' as on by default

16789caa 18 juin 2014 12:38 Renato Botelho

Always set httponly attribute on cookies

fa73c7cd 18 juin 2014 12:38 Renato Botelho

Always set httponly attribute on cookies

7843fe61 18 juin 2014 12:06 Thomas Noël

add etc/inc/globals_override.inc

5a523400 18 juin 2014 11:16 Thomas Noël

add "univnautes" in ascii-art logo

56bd2035 18 juin 2014 03:37 jim-p

Fix syntax error

2b641a08 17 juin 2014 20:13 Renato Botelho

Protect servicestatusfilter parameter with htmlspecialchars()

ce9d5d72 17 juin 2014 20:13 Renato Botelho

Protect servicestatusfilter parameter with htmlspecialchars()

e4921058 17 juin 2014 19:53 Renato Botelho

Protect rssfeed parameters with htmlspecialchars()

860b102a 17 juin 2014 19:53 Renato Botelho

Protect rssfeed parameters with htmlspecialchars()

526f5b11 17 juin 2014 19:28 Renato Botelho

Add comment I forgot on last commit

3034b371 17 juin 2014 19:27 Renato Botelho

Add comment I forgot on last commit

8588095f 17 juin 2014 19:27 Renato Botelho

Re-generate session ID on a successful login to avoid session fixation

ff9b30ec 17 juin 2014 19:26 Renato Botelho

Re-generate session ID on a successful login to avoid session fixation

62480a44 17 juin 2014 18:47 Renato Botelho

Avoid directory traversal on restorefullbackup

5de32d52 17 juin 2014 18:47 Renato Botelho

Avoid directory traversal on restorefullbackup

b67cdd05 17 juin 2014 18:37 Matt Smith

Fix core dump on viewing invalid package log

7be297a2 17 juin 2014 18:30 Matt Smith

Fix core dump on viewing invalid package log

7145cd87 17 juin 2014 16:17 Renato Botelho

Remove . and / from pkg name to avoid directory traversal

1cfe5490 17 juin 2014 16:17 Renato Botelho

Remove . and / from pkg name to avoid directory traversal

c3936caf 17 juin 2014 15:48 Renato Botelho

Remove id=0 from miniupnpd menu and shortcut

73944f68 17 juin 2014 15:48 Renato Botelho

Remove id=0 from miniupnpd menu and shortcut

69eb2e29 17 juin 2014 15:33 Renato Botelho

Avoid directory traversal when reading package xml files, also check if file exists before try to read it

9ddd3418 17 juin 2014 15:33 Renato Botelho

Avoid directory traversal when reading package xml files, also check if file exists before try to read it

d09ff9ef 17 juin 2014 15:19 Renato Botelho

Make sure variables are escaped, also replace exec calls to run rm by unlink_if_exists()

65eb0f61 17 juin 2014 15:19 Renato Botelho

Remove useless code, variable is set again on next line

aa27de6e 17 juin 2014 15:19 Renato Botelho

Make sure variables are escaped, also replace exec calls to run rm by unlink_if_exists()

592abfa4 17 juin 2014 15:18 Renato Botelho

Remove useless code, variable is set again on next line

45438fd3 17 juin 2014 14:40 Renato Botelho

Escape parameters passed to shell_exec()

e41ab9aa 17 juin 2014 14:40 Renato Botelho

Escape parameters passed to shell_exec()

76c4ff0e 17 juin 2014 14:31 Renato Botelho

Be more careful with host parameter and make sure it's escaped when call shell functions

ee4ba9fb 17 juin 2014 14:28 Renato Botelho

Be more careful with host parameter and make sure it's escaped when call shell functions

54a9da9f 17 juin 2014 12:34 Renato Botelho

Validate starttime and stoptime format

65f815dd 17 juin 2014 12:33 Renato Botelho

Validate starttime and stoptime format

c7264382 17 juin 2014 09:38 Dmitriy K.

Default values for verb if it is not set when edit

caf58ced 17 juin 2014 09:09 Dmitriy K.

a bit of refactoring

forgot to sync _server.php with _client.php naming style

b9e9903d 17 juin 2014 09:01 Dmitriy K.

patchpack1

-Fix #3401 (Added tun option "Disable IPv6"
-Added new options: route-nopull, route-noexec, verb;

2464e353 17 juin 2014 00:14 N0YB

XHTML Compliance - System Menu

Enforce select option

7860191a 16 juin 2014 20:10 Renato Botelho

Create some symlinks inside pbi dir to reduce differences between 2.1 and 2.2 and avoid the need to change a lot of PBI scripts

ef462f25 16 juin 2014 20:00 jim-p

Make the byte counts on OpenVPN status human readable rather than huge unformatted numbers.

b4e9a4da 16 juin 2014 09:14 N0YB

XHTML Compliance - System Menu

Advanced - Admin Access Tab
Advanced - Firewall / NAT Tab
Cert Manager - Certificate Revocation Tab
User Manager - Users Tab
User Manager - Groups Tab

959c12cf 15 juin 2014 11:50 N0YB

Remove Status Verbiage. Consumes too much realestate in widget. Status icon without the verbiage is sufficient in widget view.

f1a34790 15 juin 2014 02:36 N0YB

Hostnames are not case restrictive.

01deca6a 14 juin 2014 08:52 Adam Gibson

Log pfsense version to syslog after bootup

bc388533 13 juin 2014 22:46 Renato Botelho

Avoid keeping old files from previous sessions on /tmp/configbak

828da370 13 juin 2014 21:13 Renato Botelho

cf/ dir is removed below, do not need to remove the file here

dc86f24d 13 juin 2014 21:08 Renato Botelho

Fix path for trigger_initial_wizard

061ac3f3 13 juin 2014 20:11 N0YB

Better string check

c352b9d1 13 juin 2014 14:25 Renato Botelho

Merge pull request #1034 from vsquared56/master

6f3d2063 13 juin 2014 13:59 Renato Botelho

Replace Header() calls by lowercase

44b79ffb 13 juin 2014 13:37 Renato Botelho

Merge pull request #1222 from phil-davis/patch-8

bcfd894e 13 juin 2014 13:36 Renato Botelho

Merge pull request #1229 from ExolonDX/branch-master_06

718af29d 13 juin 2014 13:36 Renato Botelho

Merge pull request #1228 from ExolonDX/branch_master_05

f5b26faa 13 juin 2014 10:17 N0YB

Remove htmlspecialchars() call for a fixed string.

cbe38717 12 juin 2014 23:06 Ermal

Bring the code of captiveportal up to speed with its module counterpart requirments

1d8b3cdd 12 juin 2014 14:53 Renato Botelho

Fix i386 default URL for snapshots

e7eeb5ce 12 juin 2014 14:31 Renato Botelho

Do not expire already disabled users, it fixes #3644

11eaf7bf 12 juin 2014 14:31 Renato Botelho

Do not expire already disabled users, it fixes #3644

859a5304 12 juin 2014 13:59 Renato Botelho

Fix #3665, show IPSec tunnel description on status page

bd757043 12 juin 2014 13:33 Renato Botelho

Fix a typo on variable name

6186c00a 12 juin 2014 13:16 Renato Botelho

Fix td class

f01c3b59 11 juin 2014 19:56 Renato Botelho

Fix #3702, make sure tunnel inside IP is set when interface changes

daa169f7 11 juin 2014 07:23 Chris Buechler

remove extra .

f5629ea6 10 juin 2014 19:21 Renato Botelho

Be more precise to match members of a bridge interface, it should fix #3637

f2c86031 10 juin 2014 19:20 Renato Botelho

Be more precise to match members of a bridge interface, it should fix #3637

b2821f7d 10 juin 2014 16:28 Renato Botelho

Revert "Revert "Fix #3700 and other syntax issues:""

This reverts commit 4cc2ae78d3027c349969437f08a88b1fb88c9de8.

ab3c1e24 10 juin 2014 16:28 Renato Botelho

Revert "Fix sh syntax"

This reverts commit cd49f9cd5d21a6592ba690cd315f19266092bee5.

cd49f9cd 10 juin 2014 15:54 Renato Botelho

Fix sh syntax

4cc2ae78 10 juin 2014 15:54 Renato Botelho

Revert "Fix #3700 and other syntax issues:"

This reverts commit e912bfae186b6b657daf52607f9d027f46be0478.

ff3da5db 10 juin 2014 15:42 Renato Botelho

Fix #3700 and other syntax issues:

- Remove G parameter from pfctl since it doesn't exist anymore
Initialize $old_router
- Fix sh syntax on variable assign, it couldn't have space before =
- Simplify logic
- Avoid flush states twice, if it was done on IP change, don't do it...

e912bfae 10 juin 2014 15:40 Renato Botelho

Fix #3700 and other syntax issues:

- Remove G parameter from pfctl since it doesn't exist anymore
Initialize $old_router
- Fix sh syntax on variable assign, it couldn't have space before =
- Simplify logic
- Avoid flush states twice, if it was done on IP change, don't do it...

6da518fc 09 juin 2014 20:32 Renato Botelho

Do not allow interface group name to be bigger than 15 chars, helps ticket #3208

6a0f34b8 09 juin 2014 20:32 Renato Botelho

Do not allow interface group name to be bigger than 15 chars, helps ticket #3208

529ba86a 08 juin 2014 23:50 N0YB

Populate gateway address field with tilde if there is no address or friendly interface.

This is to match the update data.

1f47798a 08 juin 2014 23:47 N0YB

Fix gateway widget size change on first update.

Inner table size changes on the first update because the table in update data does not have the same attributes as the widget. i.e. border, cellpadding, cellspacing, style & summary.

Also remove an errant td end tag.

ad03afb6 06 juin 2014 16:54 Renato Botelho

Escape argument on call to is_process_running too, also remove some unecessary mwexec() calls

4cc34245 06 juin 2014 16:53 Renato Botelho

Add some protection to parameters that come through _GET

2f9951fe 06 juin 2014 16:48 Renato Botelho

Add some protection to parameters that come through _GET

cbf16c30 06 juin 2014 14:26 jim-p

Escape this before running.

56898132 05 juin 2014 23:44 Colin Fleming

Tidy up misc. widgets XHTML

captive_portal_status.widget.php
Remove NAME from TABLE tag, not valid in XHTML

carp_status.widget.php
Add missing closing TD tag

dyn_dns_status.widget.php and
installed_packages.widgete.php
Update TD class to single line

load_balancer_status.widget.php...

2690afba 05 juin 2014 20:41 Colin Fleming

Update "pkg_edit.,php"

"custom_php_after_head_command", if the PHP code also contains
JavaScript ("squid_auth.xml" for example) then this will cause HTML
errors, as you are not supposed to have anything between the closing
HEAD tag and the opening BODY tag....

(1-1000/25468) Par page : 25, 50, 100, 500, 1000

Formats disponibles : Atom