| Commit message (Expand) | Author | Age | Files | Lines |
* | add a check to avoid foreach on non-arrayRELENG_2_2_4 | Chris Buechler | 2015-07-27 | 1 | -0/+4 |
* | Upgrade config to 11.9. Changes IPsec peer ID for EAP types to "any", to reta... | Chris Buechler | 2015-07-25 | 2 | -1/+14 |
* | Change the log for CRLs with no data (exists but no certs revoked) to a warni... | Chris Buechler | 2015-07-25 | 1 | -1/+1 |
* | Add 'any' option for peer ID, for mobile IPsec scenarios where you can't or d... | Chris Buechler | 2015-07-25 | 2 | -1/+4 |
* | Only omit rightid for PSK mobile types. Flip the logic here as the 2_1 ! | Chris Buechler | 2015-07-23 | 1 | -2/+3 |
* | change iketype auto to ikev2 on upgrade. Ticket #4873 | Chris Buechler | 2015-07-23 | 1 | -0/+5 |
* | Remove "auto", it's just a synonym for IKEv2. Ticket #4873 | Chris Buechler | 2015-07-23 | 1 | -3/+1 |
* | include vpn.inc so IPsec CRL reload works. require_once filter.inc in | Chris Buechler | 2015-07-23 | 1 | -0/+1 |
* | make the IPsec bypass LAN from LAN subnet to LAN subnet rather than from | Chris Buechler | 2015-07-22 | 1 | -1/+1 |
* | Add IPsec advanced option for strict CRL checking | Chris Buechler | 2015-07-22 | 1 | -0/+4 |
* | write out built-in CRLs for strongswan | Chris Buechler | 2015-07-22 | 1 | -2/+18 |
* | Unset old CA and Cert in left system config | Phil Davis | 2015-07-21 | 1 | -0/+8 |
* | Allocate dnpipe and dnqueue numbers even if no filter rules | Phil Davis | 2015-07-21 | 1 | -2/+3 |
* | Captive Portal zoneid upgrade fix var name typo | Phil Davis | 2015-07-21 | 1 | -1/+1 |
* | Merge pull request #1762 from doktornotor/patch-3 | Renato Botelho | 2015-07-18 | 1 | -4/+4 |
|\ |
|
| * | Add labels to some default firewall rules | doktornotor | 2015-07-18 | 1 | -4/+4 |
* | | Really avoid error loading rules for numeric host name in alias | Phil Davis | 2015-07-18 | 1 | -1/+2 |
|/ |
|
* | Fixes for IPSec ASN1.DN, ticket #4792 | Renato Botelho | 2015-07-17 | 1 | -7/+17 |
* | Only add outgoing-interface if IP. Ticket #4852 | Chris Buechler | 2015-07-17 | 1 | -2/+2 |
* | Fix #4794: | Renato Botelho | 2015-07-17 | 2 | -1/+22 |
* | Add leftid and rightid value between double quotes on ipsec config when type ... | Renato Botelho | 2015-07-16 | 2 | -3/+8 |
* | Revert "Avoid error loading rules for numeric host name in alias" | Renato Botelho | 2015-07-15 | 1 | -1/+1 |
* | Fix issue_ip_type var name spelling | Phil Davis | 2015-07-15 | 1 | -6/+6 |
* | Avoid error loading rules for numeric host name in alias | Phil Davis | 2015-07-15 | 1 | -1/+1 |
* | Fix GratisDNS support, manual merge of commit 3e31a7f82589d3350f111bd7d81cc83... | Chris Buechler | 2015-07-14 | 1 | -2/+2 |
* | fix fsync, thanks Phil Davis for noticing | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | fix fsync | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | fsync after fclose here, clean up some white space while here. | Chris Buechler | 2015-07-10 | 1 | -21/+27 |
* | fsync conf_path here too | Chris Buechler | 2015-07-10 | 1 | -0/+1 |
* | fix typo | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | Make sure config.xml is safe on disk when restoring a backup, ticket #4803 | Renato Botelho | 2015-07-06 | 1 | -0/+1 |
* | Make sure temporary config file is safe on disk before rename, ticket #4803 | Renato Botelho | 2015-07-06 | 1 | -1/+1 |
* | Remove reference to vfs.forcesync | Renato Botelho | 2015-07-06 | 1 | -1/+0 |
* | Use right function pfSense_fsync to make sure config file is safe on disk, ti... | Renato Botelho | 2015-07-06 | 1 | -4/+2 |
* | remove debug.pfftpproxy, it no longer exists. | Chris Buechler | 2015-07-04 | 1 | -1/+0 |
* | Fix keyid identifers, and go back to using %any in ipsec.secrets as in previo... | Chris Buechler | 2015-07-03 | 1 | -2/+4 |
* | sync up vpn.inc with master. Mostly white space and style changes | Chris Buechler | 2015-07-02 | 1 | -280/+426 |
* | sync up ipsec.inc with master. Mostly whitespace and style changes. | Chris Buechler | 2015-07-02 | 1 | -174/+219 |
* | fix part of keyid problem. Ticket #4811 | Chris Buechler | 2015-07-01 | 1 | -1/+1 |
* | Improve handling of port ranges in relayd, fixes #4810 | jim-p | 2015-07-01 | 1 | -1/+5 |
* | Use interface-automatic for Unbound when the interfaces list is empty (same a... | jim-p | 2015-06-26 | 1 | -0/+2 |
* | Add D1540-XG. | Matt Smith | 2015-06-23 | 1 | -0/+3 |
* | Introduce Netgate RCC-DFF to the list of known platforms | Renato Botelho | 2015-06-23 | 2 | -2/+8 |
* | rereadall is not enough here, restore reload call to make sure everything wor... | Renato Botelho | 2015-06-23 | 1 | -0/+1 |
* | Replace ipsec rereadsecrets + reload by single rereadall, that will re-read a... | Renato Botelho | 2015-06-23 | 1 | -2/+1 |
* | Instead of sending USR1, just call ipsec reload. And before it, call ipsec re... | Renato Botelho | 2015-06-23 | 1 | -1/+2 |
* | Partially revert 019ee2bc8c, this workaround is not necessary. Real fix will ... | Renato Botelho | 2015-06-23 | 1 | -8/+0 |
* | Add a workaround for ticket #4785: | Renato Botelho | 2015-06-23 | 1 | -4/+18 |
* | Fix var name typo in shaper.inc | Chris Buechler | 2015-06-23 | 1 | -1/+1 |
* | Use $myid in ipsec.secrets. Ticket #4785 | Chris Buechler | 2015-06-22 | 1 | -2/+2 |