Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Correctly mark found configuration. | Ermal Luçi | 2012-11-09 | 1 | -0/+2 |
| | | | Fixes http://forum.pfsense.org/index.php/topic,54595.0.html | ||||
* | More fixes to the schedules rules | Ermal | 2012-11-08 | 1 | -1/+3 |
| | |||||
* | Remove carp nat rule auto generated since those are only applied on ↵ | Ermal | 2012-11-08 | 1 | -38/+0 |
| | | | | LAN(interfaces without a gateway) and its not probably a good thing to do. | ||||
* | Do not generate carp NAT rules when in BACKUP/INIT mode | Ermal | 2012-11-08 | 1 | -1/+1 |
| | |||||
* | Always create a pipe for any user on CP and if no limit present set it to ↵ | Ermal | 2012-11-07 | 1 | -105/+44 |
| | | | | 0(unlimited). If any limit comes from the sources of reauthentication this limit will be applied without any other consequences | ||||
* | break the loop for none schedule limiters | Ermal | 2012-11-07 | 1 | -2/+5 |
| | |||||
* | revert change to if-bound states since this seems to have broken all kinds ↵ | Chris Buechler | 2012-11-05 | 1 | -1/+1 |
| | | | | of things | ||||
* | Check update snapshot contents against .sha256 instead of .md5 | PiBa-NL | 2012-11-05 | 1 | -15/+15 |
| | |||||
* | Make a function to get the current theme and use it everywhere rather than ↵ | jim-p | 2012-11-02 | 2 | -2/+25 |
| | | | | duplicating code or missing functions. (Fixes forced themes using the wrong theme for login screen) | ||||
* | Don't resync openvpn if rc.newwanip is being run on an openvpn interface, to ↵ | jim-p | 2012-11-02 | 1 | -1/+2 |
| | | | | avoid a loop. | ||||
* | Resolves #2670. Mark vtnet interfaces as altq capable. | Ermal | 2012-10-31 | 1 | -1/+1 |
| | |||||
* | Add missing line ending to fix pf syntax error. | Erik Fonnesbeck | 2012-10-31 | 1 | -1/+1 |
| | |||||
* | Use if-bound states for better features | Ermal | 2012-10-31 | 1 | -1/+1 |
| | |||||
* | Revert "Revert "Do not put the prefix len on the src ip"" | Ermal | 2012-10-31 | 1 | -1/+1 |
| | | | | | | This reverts commit 16c95ab93bcfb8d59260aa7564a402a6cec3050d. This is how it should be for now. See #2665 | ||||
* | Revert "Do not put the prefix len on the src ip" | Ermal | 2012-10-31 | 1 | -1/+1 |
| | | | | | | It actually makes sense in IPv6 world This reverts commit 3b1385a3febf783f48881b7baf61844f8e91209d. | ||||
* | Do not put the prefix len on the src ip | Ermal | 2012-10-31 | 1 | -1/+1 |
| | |||||
* | Fixes #2394. If an entry of 0.0.0.0/0 is configured than use the first ↵ | Ermal | 2012-10-30 | 1 | -2/+4 |
| | | | | interface ip matching. Also do a microptimization to not retrieve the interface list every ping host entry | ||||
* | Fixes #2300. Take into consideration ip aliases on carp | Ermal | 2012-10-30 | 1 | -5/+8 |
| | |||||
* | Fixes #2300. Add static route even for ip aliases selected to avoid issues. | Ermal | 2012-10-30 | 1 | -1/+4 |
| | |||||
* | use the proper array here for VIPs and use some suggestions from the ticket ↵ | jim-p | 2012-10-30 | 1 | -6/+15 |
| | | | | to fix #2645 | ||||
* | Mark the pipe/queue with zero(unlimited) bandwidth to allow traffic on the ↵ | Ermal | 2012-10-29 | 1 | -1/+5 |
| | | | | state to flow still or new traffic matching the rule to flow. Dummynet blocks traffic not matchign apipe/flow by default. Reported-by: http://forum.pfsense.org/index.php/topic,54595.msg294734.html#msg294734 | ||||
* | To avoid issues with missing removed schedules just do not create the pipe ↵ | Ermal | 2012-10-24 | 1 | -1/+2 |
| | | | | at all | ||||
* | Correct issues with limiters. 1. correct spelling of config option 2. avoid ↵ | Ermal | 2012-10-23 | 1 | -2/+2 |
| | | | | duplicating javascript | ||||
* | Use a proposal check value of obey for all mobile, not just pure-PSK. (The ↵ | jim-p | 2012-10-22 | 1 | -1/+1 |
| | | | | docs recommend setting this, may as well make it the default) | ||||
* | Switch to background launching | smos | 2012-10-18 | 1 | -1/+1 |
| | |||||
* | Check if there is any configuration present before going through it. | Ermal | 2012-10-18 | 1 | -1/+1 |
| | |||||
* | Check if there is any configuration present before going through it. | Ermal | 2012-10-18 | 1 | -5/+7 |
| | |||||
* | Add a few required things here to allow the script to work | jim-p | 2012-10-16 | 1 | -0/+3 |
| | |||||
* | Merge pull request #239 from phil-davis/master | Ermal Luçi | 2012-10-15 | 1 | -2/+2 |
|\ | | | | | Limiter addBwRowTo plus icon syntax | ||||
| * | Limiter addBwRowTo plus icon syntax | Phil Davis | 2012-10-12 | 1 | -2/+2 |
| | | | | | | | | Fix the syntax so that the GUI Limiter, Creat new limiter, Bandwidth "+" icon as the correct title text, and the Mask field gets displayed. Note that clicking the "+" icon still does not make an empty first row when creating a new limiter. | ||||
* | | Ooops fix removed line by accident | Ermal | 2012-10-15 | 1 | -0/+1 |
| | | |||||
* | | Merge changes required for using the ISC dhclient in pfSense with prefix ↵ | smos | 2012-10-12 | 3 | -111/+72 |
|/ | | | | | | | delegation. This should hopefully be a bit more reliable in the long run. The dhclient6-script could be merged with dhclient-script in the future. Still need to cleanup old adresses and prefixes, as well as LAN prefixes when a old prefix dissapears. This needs some thought and clue to strap together. | ||||
* | Fix typo | Erik Fonnesbeck | 2012-10-11 | 1 | -1/+1 |
| | |||||
* | Use only binat so both side can communicate properly. With nat only the side ↵ | Ermal | 2012-10-11 | 1 | -5/+1 |
| | | | | behind nat works | ||||
* | Handle case with no server or no client OpenVPN | Phil Davis | 2012-10-11 | 1 | -6/+12 |
| | | | | | If there are OpenVPN servers but not clients, this warning is emitted: Warning: Invalid argument supplied for foreach() in /etc/rc.openvpn on line 55 This fixes handles that case, and the case of OpenVPN clients but no servers. | ||||
* | Tune check so nat rules for single host ips get added | Ermal | 2012-10-10 | 1 | -1/+1 |
| | |||||
* | Make limiters have a schedule specified which applie bandwidth limits during ↵ | Ermal | 2012-10-09 | 3 | -39/+197 |
| | | | | that period | ||||
* | Make sure admin can always write the config | jim-p | 2012-10-09 | 1 | -1/+1 |
| | |||||
* | Add initial support for a privilege that denies write access to the config. | jim-p | 2012-10-09 | 2 | -0/+9 |
| | | | | NOTE: This only prevents writing to config.xml - it does NOT prevent other changes/execution that do not involve writing to config.xml (e.g. applying settings, exec, killing states, etc) | ||||
* | Fix reference to gateway in pool config | jim-p | 2012-10-05 | 1 | -1/+1 |
| | |||||
* | This should fix ipsec status for natted tunnel(s). | Ermal | 2012-10-05 | 1 | -3/+8 |
| | |||||
* | Correct the config generation | Ermal | 2012-10-05 | 1 | -3/+2 |
| | |||||
* | config.xml might have some elusive data so do not fail sainfo section for ↵ | Ermal | 2012-10-05 | 1 | -8/+6 |
| | | | | localside if there is an empty nat address. Just do not put the nat side in there | ||||
* | Correct check since it might be an ip as well | Ermal | 2012-10-05 | 1 | -1/+5 |
| | |||||
* | Correctly build the sainfo to avoid errors | Ermal | 2012-10-05 | 1 | -5/+5 |
| | |||||
* | Be more strict on validation during filter reload | Ermal | 2012-10-05 | 1 | -2/+2 |
| | |||||
* | Fixup easyrule block for IPv6 | jim-p | 2012-10-05 | 1 | -9/+10 |
| | |||||
* | Use .= for strings rather than += | jim-p | 2012-10-05 | 1 | -4/+4 |
| | |||||
* | Don't write a rule out of the natlocal_subnet is blank. | jim-p | 2012-10-05 | 1 | -1/+1 |
| | |||||
* | Safety belt | jim-p | 2012-10-05 | 1 | -1/+2 |
| |