Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Merge pull request #239 from phil-davis/master | Ermal Luçi | 2012-10-15 | 1 | -2/+2 | |
|\ | | | | | Limiter addBwRowTo plus icon syntax | |||||
| * | Limiter addBwRowTo plus icon syntax | Phil Davis | 2012-10-12 | 1 | -2/+2 | |
| | | | | | | | | Fix the syntax so that the GUI Limiter, Creat new limiter, Bandwidth "+" icon as the correct title text, and the Mask field gets displayed. Note that clicking the "+" icon still does not make an empty first row when creating a new limiter. | |||||
* | | Ooops fix removed line by accident | Ermal | 2012-10-15 | 1 | -0/+1 | |
| | | ||||||
* | | Merge changes required for using the ISC dhclient in pfSense with prefix ↵ | smos | 2012-10-12 | 4 | -111/+316 | |
|/ | | | | | | | delegation. This should hopefully be a bit more reliable in the long run. The dhclient6-script could be merged with dhclient-script in the future. Still need to cleanup old adresses and prefixes, as well as LAN prefixes when a old prefix dissapears. This needs some thought and clue to strap together. | |||||
* | Fix typo | Erik Fonnesbeck | 2012-10-11 | 1 | -1/+1 | |
| | ||||||
* | Use only binat so both side can communicate properly. With nat only the side ↵ | Ermal | 2012-10-11 | 1 | -5/+1 | |
| | | | | behind nat works | |||||
* | Merge pull request #238 from phil-davis/master | Jim P | 2012-10-11 | 1 | -6/+12 | |
|\ | | | | | Handle case with no server or no client OpenVPN | |||||
| * | Handle case with no server or no client OpenVPN | Phil Davis | 2012-10-11 | 1 | -6/+12 | |
|/ | | | | | If there are OpenVPN servers but not clients, this warning is emitted: Warning: Invalid argument supplied for foreach() in /etc/rc.openvpn on line 55 This fixes handles that case, and the case of OpenVPN clients but no servers. | |||||
* | Tune check so nat rules for single host ips get added | Ermal | 2012-10-10 | 1 | -1/+1 | |
| | ||||||
* | Refine saving/applying on more pages - don't show apply or take an action ↵ | jim-p | 2012-10-09 | 20 | -115/+118 | |
| | | | | unless the user is allowed to do that. | |||||
* | Make limiters have a schedule specified which applie bandwidth limits during ↵ | Ermal | 2012-10-09 | 4 | -41/+210 | |
| | | | | that period | |||||
* | Make sure admin can always write the config | jim-p | 2012-10-09 | 1 | -1/+1 | |
| | ||||||
* | Don't offer to apply changes if no changes actually happened. | jim-p | 2012-10-09 | 2 | -10/+15 | |
| | ||||||
* | Add initial support for a privilege that denies write access to the config. | jim-p | 2012-10-09 | 2 | -0/+9 | |
| | | | | NOTE: This only prevents writing to config.xml - it does NOT prevent other changes/execution that do not involve writing to config.xml (e.g. applying settings, exec, killing states, etc) | |||||
* | Allow editing an imported CRL, and refresh OpenVPN CRLs when saving. ↵ | jim-p | 2012-10-06 | 1 | -6/+43 | |
| | | | | Implements #2652 | |||||
* | Fix reference to gateway in pool config | jim-p | 2012-10-05 | 1 | -1/+1 | |
| | ||||||
* | This should fix ipsec status for natted tunnel(s). | Ermal | 2012-10-05 | 1 | -3/+8 | |
| | ||||||
* | Correct the config generation | Ermal | 2012-10-05 | 1 | -3/+2 | |
| | ||||||
* | config.xml might have some elusive data so do not fail sainfo section for ↵ | Ermal | 2012-10-05 | 1 | -8/+6 | |
| | | | | localside if there is an empty nat address. Just do not put the nat side in there | |||||
* | Check against _address since that is the field inputed _type is always there. | Ermal | 2012-10-05 | 1 | -2/+2 | |
| | ||||||
* | Properly set address type selection | Ermal | 2012-10-05 | 1 | -2/+2 | |
| | ||||||
* | Correct check since it might be an ip as well | Ermal | 2012-10-05 | 1 | -1/+5 | |
| | ||||||
* | Correctly build the sainfo to avoid errors | Ermal | 2012-10-05 | 1 | -5/+5 | |
| | ||||||
* | Be more strict on validation during filter reload | Ermal | 2012-10-05 | 1 | -2/+2 | |
| | ||||||
* | Do not make natlocalid required | Ermal | 2012-10-05 | 1 | -16/+19 | |
| | ||||||
* | Fixup easyrule block for IPv6 | jim-p | 2012-10-05 | 1 | -9/+10 | |
| | ||||||
* | Use .= for strings rather than += | jim-p | 2012-10-05 | 1 | -4/+4 | |
| | ||||||
* | Don't write a rule out of the natlocal_subnet is blank. | jim-p | 2012-10-05 | 1 | -1/+1 | |
| | ||||||
* | This field isn't required, so only check it if there is a value | jim-p | 2012-10-05 | 1 | -1/+1 | |
| | ||||||
* | Safety belt | jim-p | 2012-10-05 | 1 | -1/+2 | |
| | ||||||
* | show true/false in logged message instead of 1/<nothing> | Bill Marquette | 2012-10-05 | 1 | -2/+1 | |
| | ||||||
* | Rather use the system constants as defined | Ermal | 2012-10-04 | 1 | -4/+4 | |
| | ||||||
* | Use integer rather than hex to put these values. AMD64 builds do rather ↵ | Ermal | 2012-10-04 | 1 | -4/+4 | |
| | | | | awkward problems | |||||
* | Add a NAT entry for configuring NAT on ipsec phase2. It will add nat rules ↵ | Ermal | 2012-10-04 | 3 | -3/+149 | |
| | | | | on enc interface | |||||
* | Eliminate system calls here, use PHP instead. | jim-p | 2012-10-04 | 1 | -2/+2 | |
| | ||||||
* | Sanitize some variables | jim-p | 2012-10-04 | 1 | -8/+9 | |
| | | | | Discovered-By: Yann CAM | |||||
* | Verify posted kernel type against a defined list of good values. | jim-p | 2012-10-04 | 1 | -5/+11 | |
| | | | | Discovered-By: Yann CAM | |||||
* | Add restrict lines to limit what local clients are allowed to do to the ntp ↵ | jim-p | 2012-10-03 | 1 | -0/+2 | |
| | | | | server. | |||||
* | Only attempt to unset this if it has been set. | jim-p | 2012-10-03 | 1 | -1/+1 | |
| | ||||||
* | Merge pull request #235 from PiBa-NL/master | Jim P | 2012-10-02 | 1 | -6/+6 | |
|\ | | | | | openvpn-widget layout drawing fix | |||||
| * | another openvpn-widget layout drawing fix, sorry. | PiBa-NL | 2012-10-02 | 1 | -6/+6 | |
| | | ||||||
* | | Merge pull request #233 from bcyrill/rfc3168_flags | Jim P | 2012-10-01 | 3 | -6/+16 | |
|\ \ | | | | | | | Add ECE and CWR TCP flags as defined in RFC 3168 | |||||
| * | | Fix typo | bcyrill | 2012-10-01 | 1 | -1/+1 | |
| | | | ||||||
| * | | Add ECE and CWR TCP flags as defined in RFC 3168 | bcyrill | 2012-10-01 | 3 | -6/+16 | |
| | | | ||||||
* | | | Fixup processing of IPv6 IPs for EasyRule. Fixes #2649 | jim-p | 2012-10-01 | 1 | -0/+7 | |
| | | | ||||||
* | | | Merge pull request #234 from PiBa-NL/master | Jim P | 2012-10-01 | 8 | -41/+87 | |
|\ \ \ | |/ / |/| / | |/ | OpenVPN allow changing TUN/TAP, firewall-log filter on interface. carp show vip desciption in notification | |||||
| * | firewall log, show cell border when using 'column descriptions' | PiBa-NL | 2012-10-01 | 1 | -1/+1 | |
| | | ||||||
| * | Allow for changing OpenVPN TUN to TAP device mode without reboot. | PiBa-NL | 2012-10-01 | 2 | -1/+9 | |
| | | ||||||
| * | Merge branch 'master' of git://github.com/bsdperimeter/pfsense | PiBa-NL | 2012-10-01 | 29 | -324/+468 | |
| |\ | |/ |/| | ||||||
* | | Add UA support for BB PlayBook - patch by Pho Bia. Fixes #2648 | Warren Baker | 2012-10-01 | 1 | -1/+1 | |
| | |