Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Move clog from /usr to /usr/local | Renato Botelho | 2014-04-28 | 1 | -1/+1 |
| | | | | | | | | Conflicts: etc/inc/filter_log.inc etc/inc/system.inc etc/rc usr/local/www/guiconfig.inc | ||||
* | Resolver has no option for remote syslog, remove wrong copy/paste that was ↵ | Renato Botelho | 2014-04-24 | 1 | -2/+0 |
| | | | | adding it when apinger was enabled | ||||
* | Cut paste bug fix in Remote Syslog DHCP events | Phil Davis | 2014-04-20 | 1 | -1/+1 |
| | | | | | | This version for 2.1 branch. apinger is repeated here from the code above, but it should be dhcp. Forum https://forum.pfsense.org/index.php?topic=73734.0 Selecting to remote syslog "Gateway Monitor events" would also switch on "DHCP service events" unintentionally. | ||||
* | Make extra sure that we do not start multiple instances of dhcpleases if, ↵ | jim-p | 2014-04-08 | 1 | -1/+6 |
| | | | | for example, the PID is stale/invalid and there is still a running instance. | ||||
* | Avoid placing an empty "interface listen" directive in ntpd.conf | jim-p | 2014-03-20 | 1 | -1/+2 |
| | |||||
* | Remove broken 'dynamic6' gateway, we already have ipprotocol to tell us the ↵ | Renato Botelho | 2014-03-03 | 1 | -2/+2 |
| | | | | IP version, leave it more simple using only 'dynamic'. It helps #3484 | ||||
* | Do not show errors on bootup and test before trying to make a directory if ↵ | Ermal | 2014-02-20 | 1 | -1/+2 |
| | | | | it exists | ||||
* | Really need the interface where v6 is running toa dd the gateway/route ↵ | Ermal | 2014-02-18 | 1 | -2/+2 |
| | | | | rather than the one used for the configuration. This Fixes #3357 | ||||
* | Add escapeshellarg() calls on exec parameters. While I'm here, replace some ↵ | Renato Botelho | 2014-02-04 | 1 | -4/+3 |
| | | | | | | | | | | exec() calls by php functions like symlink, copy, unlink, mkdir Conflicts: etc/inc/filter_log.inc etc/inc/interfaces.inc etc/inc/pfsense-utils.inc etc/inc/pkg-utils.inc | ||||
* | Using "limited" for ntp in this way denies client access. Issue #3384 | jim-p | 2014-02-03 | 1 | -2/+2 |
| | |||||
* | Fix typo on variable name, it fixes #3414 | Renato Botelho | 2014-01-28 | 1 | -2/+2 |
| | |||||
* | ports ntp moved to sbin, follow | jim-p | 2014-01-15 | 1 | -2/+2 |
| | |||||
* | Use "disable monitor" in NTP config to mitigate CVE-2013-5211. | jim-p | 2014-01-10 | 1 | -1/+1 |
| | |||||
* | Add 'limited' to ntpd restrict list to workaround CVE-2013-5211. It fixes #3384 | Renato Botelho | 2014-01-07 | 1 | -2/+2 |
| | |||||
* | Teach system_timezone_configure() to deal with symlinks to avoid having ↵ | Renato Botelho | 2013-11-01 | 1 | -1/+11 |
| | | | | timezone misconfigured. This fixes #3293 | ||||
* | Add source address selection to syslog settings, so it can work more ↵ | jim-p | 2013-10-24 | 1 | -1/+17 |
| | | | | effectively over a VPN. Fixes #355 | ||||
* | Use new names for get_memory parameters | Phil Davis | 2013-09-02 | 1 | -6/+6 |
| | |||||
* | use correct domain names when registering static DHCP entries in DNS | Daniel Becker | 2013-07-29 | 1 | -2/+10 |
| | | | | | | When registering static DHCP entries in DNS, we first try to use the domain name configured for the static entry (if any), then the domain name configured in the DHCP server settings for the corresponding interface (if any), and as a last resort the system domain name. This change was proposed by user TechSmurf on the pfSense boards; see <http://forum.pfsense.org/index.php/topic,64934.msg352331.html#msg352331>. | ||||
* | Disable the BEAST protection by default because the GUI *will* break if you ↵ | jim-p | 2013-07-18 | 1 | -2/+21 |
| | | | | use this and have a Hifn card installed. Others may break similarly. Change it into a checkbox option, off by default, and automatically disable it if a conflicting card has been detected. | ||||
* | Merge pull request #683 from dhatz/RELENG_2_1 | Jim P | 2013-07-14 | 1 | -1/+2 |
|\ | | | | | support mitigating BEAST attack, see http://forum.pfsense.org/index.php/topic,63001.0.html | ||||
| * | support mitigating BEAST attack | dhatz | 2013-07-01 | 1 | -1/+2 |
| | | | | | | | | | | | | | | | | | | According to http://redmine.lighttpd.net/projects/lighttpd/wiki/Release-1_4_30 "...by setting ssl.cipher-list = "ECDHE-RSA-AES256-SHA384:AES256-SHA256:RC4-SHA:RC4:HIGH:!MD5:!aNULL:!EDH:!AESGCM" you can mitigate BEAST attacks." | ||||
* | | Add independent logging choices to disable logging of bogon network rules ↵ | jim-p | 2013-07-09 | 1 | -2/+9 |
|/ | | | | and private network rules. Add upgrade code to obey the existing behavior for users (if default block logging was disabled, so is bogon/private rule blocking). Also add a checkbox to disable the lighttpd log for people who don't want their system log spammed by lighty. | ||||
* | Use family parameter for v6 to get correct interface | Ermal | 2013-06-17 | 1 | -2/+2 |
| | |||||
* | Provide full path to route binary | Ermal | 2013-06-17 | 1 | -2/+2 |
| | |||||
* | Actually try to get the real interface for v6 family to correctly get ↵ | Ermal | 2013-06-12 | 1 | -1/+1 |
| | | | | stf(virtual) interfaces | ||||
* | Replace all linklocal checks by is_linklocal() | Renato Botelho | 2013-05-09 | 1 | -1/+1 |
| | |||||
* | Shuffle some more logs around to more appropriate places. | jim-p | 2013-05-08 | 1 | -3/+3 |
| | |||||
* | Send filterdns logs to the resolver log. | jim-p | 2013-05-08 | 1 | -2/+2 |
| | |||||
* | Fix dnsmasq host overrides 'enabled' check. | PiBa-NL | 2013-05-05 | 1 | -1/+1 |
| | |||||
* | Fix dnsmasq host overrides and dhcp integration | Renato Botelho | 2013-05-01 | 1 | -37/+37 |
| | | | | | | | | | | | . Do not execute following actions when dnsmasq is disabled: . Add host overrides to /etc/hosts . Register DHCP leases in DNS Forwarder . Register DHCP static mappings in DNS forwarder It should fix issue reported at following forum post: http://forum.pfsense.org/index.php?topic=58871 | ||||
* | Show IPv6 link-local IPs as specific sources for ping, traceroute, and port ↵ | jim-p | 2013-04-26 | 1 | -3/+11 |
| | | | | testing. | ||||
* | Make fe80: addresses check case insensitive | Renato Botelho | 2013-04-14 | 1 | -1/+1 |
| | |||||
* | Move some code to a function to avoid future duplication. Allow autocomplete ↵ | jim-p | 2013-04-02 | 1 | -0/+17 |
| | | | | on ping page. Add more escaping to command. | ||||
* | Remove *_defaultgwv6 also | Renato Botelho | 2013-03-01 | 1 | -1/+1 |
| | |||||
* | Make sure captiveportal section of config is an array, reported on ticket #2838 | Renato Botelho | 2013-02-25 | 1 | -1/+1 |
| | |||||
* | Avoid Warning: Invalid argument supplied for foreach() in /etc/inc/system.inc | Jean Cyr | 2013-02-17 | 1 | -3/+5 |
| | | | | | | Warning: Invalid argument supplied for foreach() in /etc/inc/system.inc Don't use captiveportal configuration option variable if it isn't set | ||||
* | add support for RADIUS NAS accounting, fixes redmine feature request 2143 | Michael Newton | 2013-02-14 | 1 | -1/+6 |
| | |||||
* | Keep Unbound here for syslog messages | Warren Baker | 2013-02-14 | 1 | -2/+2 |
| | |||||
* | Backout Unbound for now bring back in 2.2. Fixes #2817 | Warren Baker | 2013-02-14 | 1 | -2/+2 |
| | |||||
* | Set $interfacegw properly and avoid losing default route in some circumstances | Renato Botelho | 2013-02-14 | 1 | -0/+2 |
| | |||||
* | Resolves #1284. Merge patch submitted a bit differentely | Ermal | 2013-02-12 | 1 | -14/+14 |
| | |||||
* | Whoops remove copypasta | jim-p | 2013-02-10 | 1 | -2/+2 |
| | |||||
* | The actual variable isn't an array, so this test will never succeed. Remove ↵ | jim-p | 2013-02-10 | 1 | -4/+2 |
| | | | | it. Unbreaks ntp. | ||||
* | Sprinkle some unsets | Ermal | 2013-02-10 | 1 | -0/+2 |
| | |||||
* | Correct setting default gateways | Ermal | 2013-02-10 | 1 | -0/+2 |
| | |||||
* | Correct function name | Ermal | 2013-02-10 | 1 | -1/+1 |
| | |||||
* | Use mwexec() with signal clearing. Use pid file for killining/tracking ntpd | Ermal | 2013-02-09 | 1 | -14/+9 |
| | |||||
* | Optimize and cleanup routing function | Ermal | 2013-02-09 | 1 | -32/+23 |
| | |||||
* | Correct system_routing_configure to do the right thing and guess the address ↵ | Ermal | 2013-02-09 | 1 | -14/+23 |
| | | | | family for the routing table correctly. While here cleanup some other code and leave a comment that disabled routing entries probably should not be dealt in here! | ||||
* | System: Advanced: Miscellaneous: PowerD | N0YB | 2013-02-08 | 1 | -4/+10 |
| | | | | Add the on battery mode option settings. |