| Commit message (Expand) | Author | Age | Files | Lines |
* | add a check to avoid foreach on non-arrayRELENG_2_2_4 | Chris Buechler | 2015-07-27 | 1 | -0/+4 |
* | Upgrade config to 11.9. Changes IPsec peer ID for EAP types to "any", to reta... | Chris Buechler | 2015-07-25 | 2 | -1/+14 |
* | Change the log for CRLs with no data (exists but no certs revoked) to a warni... | Chris Buechler | 2015-07-25 | 1 | -1/+1 |
* | Add 'any' option for peer ID, for mobile IPsec scenarios where you can't or d... | Chris Buechler | 2015-07-25 | 2 | -1/+4 |
* | Lower LoginGraceTime to 30s, should be plenty long for users, and mitigates t... | Chris Buechler | 2015-07-23 | 1 | -0/+1 |
* | Bump to 2.2.4-RELEASE | Chris Buechler | 2015-07-23 | 1 | -1/+1 |
* | Only omit rightid for PSK mobile types. Flip the logic here as the 2_1 ! | Chris Buechler | 2015-07-23 | 1 | -2/+3 |
* | change iketype auto to ikev2 on upgrade. Ticket #4873 | Chris Buechler | 2015-07-23 | 1 | -0/+5 |
* | Remove "auto", it's just a synonym for IKEv2. Ticket #4873 | Chris Buechler | 2015-07-23 | 1 | -3/+1 |
* | include vpn.inc so IPsec CRL reload works. require_once filter.inc in | Chris Buechler | 2015-07-23 | 1 | -0/+1 |
* | make the IPsec bypass LAN from LAN subnet to LAN subnet rather than from | Chris Buechler | 2015-07-22 | 1 | -1/+1 |
* | Add IPsec advanced option for strict CRL checking | Chris Buechler | 2015-07-22 | 1 | -0/+4 |
* | write out built-in CRLs for strongswan | Chris Buechler | 2015-07-22 | 1 | -2/+18 |
* | Unset old CA and Cert in left system config | Phil Davis | 2015-07-21 | 1 | -0/+8 |
* | Allocate dnpipe and dnqueue numbers even if no filter rules | Phil Davis | 2015-07-21 | 1 | -2/+3 |
* | Captive Portal zoneid upgrade fix var name typo | Phil Davis | 2015-07-21 | 1 | -1/+1 |
* | fix indent my editor broke in my earlier commit | Chris Buechler | 2015-07-21 | 1 | -26/+26 |
* | Add IPsec IKE Intermediate EKU to server certificates. The serverAuth EKU alr... | Chris Buechler | 2015-07-20 | 1 | -2/+2 |
* | Specify keyUsage and extendedKeyUsage in openssl.cnf, use crl_ext. | Chris Buechler | 2015-07-20 | 1 | -6/+6 |
* | Merge pull request #1762 from doktornotor/patch-3 | Renato Botelho | 2015-07-18 | 1 | -4/+4 |
|\ |
|
| * | Add labels to some default firewall rules | doktornotor | 2015-07-18 | 1 | -4/+4 |
* | | Really avoid error loading rules for numeric host name in alias | Phil Davis | 2015-07-18 | 1 | -1/+2 |
|/ |
|
* | Handle OpenVPN bound to gateway groups using CARP IPs in rc.carpmaster/backup... | Chris Buechler | 2015-07-18 | 2 | -2/+31 |
* | Fixes for IPSec ASN1.DN, ticket #4792 | Renato Botelho | 2015-07-17 | 1 | -7/+17 |
* | Only add outgoing-interface if IP. Ticket #4852 | Chris Buechler | 2015-07-17 | 1 | -2/+2 |
* | Fix #4794: | Renato Botelho | 2015-07-17 | 2 | -1/+22 |
* | Add leftid and rightid value between double quotes on ipsec config when type ... | Renato Botelho | 2015-07-16 | 2 | -3/+8 |
* | Remove old, unused NetUtils.js | Chris Buechler | 2015-07-16 | 1 | -0/+1 |
* | Revert "Avoid error loading rules for numeric host name in alias" | Renato Botelho | 2015-07-15 | 1 | -1/+1 |
* | Fix issue_ip_type var name spelling | Phil Davis | 2015-07-15 | 1 | -6/+6 |
* | Avoid error loading rules for numeric host name in alias | Phil Davis | 2015-07-15 | 1 | -1/+1 |
* | Fix GratisDNS support, manual merge of commit 3e31a7f82589d3350f111bd7d81cc83... | Chris Buechler | 2015-07-14 | 1 | -2/+2 |
* | fix fsync, thanks Phil Davis for noticing | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | fix fsync | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | fsync after fclose here, clean up some white space while here. | Chris Buechler | 2015-07-10 | 1 | -21/+27 |
* | fsync conf_path here too | Chris Buechler | 2015-07-10 | 1 | -0/+1 |
* | fix typo | Chris Buechler | 2015-07-10 | 1 | -1/+1 |
* | Make sure config.xml is safe on disk when restoring a backup, ticket #4803 | Renato Botelho | 2015-07-06 | 1 | -0/+1 |
* | Make sure temporary config file is safe on disk before rename, ticket #4803 | Renato Botelho | 2015-07-06 | 1 | -1/+1 |
* | Remove reference to vfs.forcesync | Renato Botelho | 2015-07-06 | 1 | -1/+0 |
* | Use right function pfSense_fsync to make sure config file is safe on disk, ti... | Renato Botelho | 2015-07-06 | 1 | -4/+2 |
* | fix includes so shellsession restartipsec works. | Chris Buechler | 2015-07-05 | 1 | -0/+2 |
* | remove debug.pfftpproxy, it no longer exists. | Chris Buechler | 2015-07-04 | 1 | -1/+0 |
* | Fix keyid identifers, and go back to using %any in ipsec.secrets as in previo... | Chris Buechler | 2015-07-03 | 1 | -2/+4 |
* | sync up vpn.inc with master. Mostly white space and style changes | Chris Buechler | 2015-07-02 | 1 | -280/+426 |
* | sync up ipsec.inc with master. Mostly whitespace and style changes. | Chris Buechler | 2015-07-02 | 1 | -174/+219 |
* | fix part of keyid problem. Ticket #4811 | Chris Buechler | 2015-07-01 | 1 | -1/+1 |
* | Remove unnecessary deletion of rc.conf. Add an empty rc.conf with a note | Chris Buechler | 2015-07-01 | 3 | -6/+1 |
* | Improve handling of port ranges in relayd, fixes #4810 | jim-p | 2015-07-01 | 1 | -1/+5 |
* | Use interface-automatic for Unbound when the interfaces list is empty (same a... | jim-p | 2015-06-26 | 1 | -0/+2 |