summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* Merge pull request #239 from phil-davis/masterErmal Luçi2012-10-151-2/+2
|\ | | | | Limiter addBwRowTo plus icon syntax
| * Limiter addBwRowTo plus icon syntaxPhil Davis2012-10-121-2/+2
| | | | | | | | Fix the syntax so that the GUI Limiter, Creat new limiter, Bandwidth "+" icon as the correct title text, and the Mask field gets displayed. Note that clicking the "+" icon still does not make an empty first row when creating a new limiter.
* | Ooops fix removed line by accidentErmal2012-10-151-0/+1
| |
* | Merge changes required for using the ISC dhclient in pfSense with prefix ↵smos2012-10-124-111/+316
|/ | | | | | | delegation. This should hopefully be a bit more reliable in the long run. The dhclient6-script could be merged with dhclient-script in the future. Still need to cleanup old adresses and prefixes, as well as LAN prefixes when a old prefix dissapears. This needs some thought and clue to strap together.
* Fix typoErik Fonnesbeck2012-10-111-1/+1
|
* Use only binat so both side can communicate properly. With nat only the side ↵Ermal2012-10-111-5/+1
| | | | behind nat works
* Merge pull request #238 from phil-davis/masterJim P2012-10-111-6/+12
|\ | | | | Handle case with no server or no client OpenVPN
| * Handle case with no server or no client OpenVPNPhil Davis2012-10-111-6/+12
|/ | | | | If there are OpenVPN servers but not clients, this warning is emitted: Warning: Invalid argument supplied for foreach() in /etc/rc.openvpn on line 55 This fixes handles that case, and the case of OpenVPN clients but no servers.
* Tune check so nat rules for single host ips get addedErmal2012-10-101-1/+1
|
* Refine saving/applying on more pages - don't show apply or take an action ↵jim-p2012-10-0920-115/+118
| | | | unless the user is allowed to do that.
* Make limiters have a schedule specified which applie bandwidth limits during ↵Ermal2012-10-094-41/+210
| | | | that period
* Make sure admin can always write the configjim-p2012-10-091-1/+1
|
* Don't offer to apply changes if no changes actually happened.jim-p2012-10-092-10/+15
|
* Add initial support for a privilege that denies write access to the config.jim-p2012-10-092-0/+9
| | | | NOTE: This only prevents writing to config.xml - it does NOT prevent other changes/execution that do not involve writing to config.xml (e.g. applying settings, exec, killing states, etc)
* Allow editing an imported CRL, and refresh OpenVPN CRLs when saving. ↵jim-p2012-10-061-6/+43
| | | | Implements #2652
* Fix reference to gateway in pool configjim-p2012-10-051-1/+1
|
* This should fix ipsec status for natted tunnel(s).Ermal2012-10-051-3/+8
|
* Correct the config generationErmal2012-10-051-3/+2
|
* config.xml might have some elusive data so do not fail sainfo section for ↵Ermal2012-10-051-8/+6
| | | | localside if there is an empty nat address. Just do not put the nat side in there
* Check against _address since that is the field inputed _type is always there.Ermal2012-10-051-2/+2
|
* Properly set address type selectionErmal2012-10-051-2/+2
|
* Correct check since it might be an ip as wellErmal2012-10-051-1/+5
|
* Correctly build the sainfo to avoid errorsErmal2012-10-051-5/+5
|
* Be more strict on validation during filter reloadErmal2012-10-051-2/+2
|
* Do not make natlocalid requiredErmal2012-10-051-16/+19
|
* Fixup easyrule block for IPv6jim-p2012-10-051-9/+10
|
* Use .= for strings rather than +=jim-p2012-10-051-4/+4
|
* Don't write a rule out of the natlocal_subnet is blank.jim-p2012-10-051-1/+1
|
* This field isn't required, so only check it if there is a valuejim-p2012-10-051-1/+1
|
* Safety beltjim-p2012-10-051-1/+2
|
* show true/false in logged message instead of 1/<nothing>Bill Marquette2012-10-051-2/+1
|
* Rather use the system constants as definedErmal2012-10-041-4/+4
|
* Use integer rather than hex to put these values. AMD64 builds do rather ↵Ermal2012-10-041-4/+4
| | | | awkward problems
* Add a NAT entry for configuring NAT on ipsec phase2. It will add nat rules ↵Ermal2012-10-043-3/+149
| | | | on enc interface
* Eliminate system calls here, use PHP instead.jim-p2012-10-041-2/+2
|
* Sanitize some variablesjim-p2012-10-041-8/+9
| | | | Discovered-By: Yann CAM
* Verify posted kernel type against a defined list of good values.jim-p2012-10-041-5/+11
| | | | Discovered-By: Yann CAM
* Add restrict lines to limit what local clients are allowed to do to the ntp ↵jim-p2012-10-031-0/+2
| | | | server.
* Only attempt to unset this if it has been set.jim-p2012-10-031-1/+1
|
* Merge pull request #235 from PiBa-NL/masterJim P2012-10-021-6/+6
|\ | | | | openvpn-widget layout drawing fix
| * another openvpn-widget layout drawing fix, sorry.PiBa-NL2012-10-021-6/+6
| |
* | Merge pull request #233 from bcyrill/rfc3168_flagsJim P2012-10-013-6/+16
|\ \ | | | | | | Add ECE and CWR TCP flags as defined in RFC 3168
| * | Fix typobcyrill2012-10-011-1/+1
| | |
| * | Add ECE and CWR TCP flags as defined in RFC 3168bcyrill2012-10-013-6/+16
| | |
* | | Fixup processing of IPv6 IPs for EasyRule. Fixes #2649jim-p2012-10-011-0/+7
| | |
* | | Merge pull request #234 from PiBa-NL/masterJim P2012-10-018-41/+87
|\ \ \ | |/ / |/| / | |/ OpenVPN allow changing TUN/TAP, firewall-log filter on interface. carp show vip desciption in notification
| * firewall log, show cell border when using 'column descriptions'PiBa-NL2012-10-011-1/+1
| |
| * Allow for changing OpenVPN TUN to TAP device mode without reboot.PiBa-NL2012-10-012-1/+9
| |
| * Merge branch 'master' of git://github.com/bsdperimeter/pfsensePiBa-NL2012-10-0129-324/+468
| |\ | |/ |/|
* | Add UA support for BB PlayBook - patch by Pho Bia. Fixes #2648Warren Baker2012-10-011-1/+1
| |
OpenPOWER on IntegriCloud