Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | * Start inetd regardless if nat entries exist due to tftp proxy needing it. | Scott Ullrich | 2008-07-14 | 1 | -15/+16 |
| | |||||
* | * Add tftp proxy | Scott Ullrich | 2008-07-14 | 2 | -0/+2 |
| | | | | * Add inetd file (will need to update reflection code as well) | ||||
* | * Add more debugging | Scott Ullrich | 2008-07-14 | 1 | -13/+29 |
| | | | | | * Add more logging information * Add ignore return text field | ||||
* | Include cmd_chain | Scott Ullrich | 2008-07-14 | 1 | -1/+2 |
| | |||||
* | Adding CmdCHAIN class which is similar to the BSDInstaller Lua CmdCHAIN() | Scott Ullrich | 2008-07-14 | 1 | -0/+102 |
| | | | | | | | | | object. Example usage: $cmdchain = new CmdCHAIN(); $cmdchain->add("grab freebsd version", "uname -a"); $cmdchain->setdebug(); $cmdchain->execute(); | ||||
* | fix IE login | Chris Buechler | 2008-07-13 | 1 | -1/+1 |
| | | | | Ticket #1707 | ||||
* | Introduce a new and improved version of IPsec mobile client support. The | Matthew Grooms | 2008-07-13 | 3 | -80/+265 |
| | | | | | | | mobile client tab is now used to configure user authentication (Xauth) and client configuration (mode-cfg) options. User authentication is currently limited to system password file entries. This will be extended to support external RADIUS and LDAP account DBs in a follow up comiit. | ||||
* | Remote last_term_seen variable. It's not in use and was debugging only. | Scott Ullrich | 2008-07-13 | 1 | -34/+27 |
| | | | | While here, cleanup the identing mess. | ||||
* | Allow new terminals to update last_term_seen even if they are not root. | Scott Ullrich | 2008-07-13 | 1 | -0/+1 |
| | |||||
* | Correct a few more issues with the IPsec automatic configuration upgrade | Matthew Grooms | 2008-07-13 | 1 | -62/+94 |
| | | | | | | | | process. We now consolidate multuple enabled phase1 entries for the same remote gateway. This is to prevent multiple remote sections from being created in the racoon.conf file withe the same peer IP address. Also, make sure we don't add multiple AES definitions to a phase2 config. Add a single definition with an auto key length. | ||||
* | Correct a problem with the IPsec upgrade code. This was related to the | Matthew Grooms | 2008-07-13 | 1 | -2/+2 |
| | | | | | key lengths being set to auto in phase1 which is not currently supported. Instead, set the key lengths to the default value. | ||||
* | Do not build unparsable rulesets to avoid rule errors. | Ermal Luçi | 2008-07-12 | 1 | -3/+7 |
| | |||||
* | Overhaul IPsec related code. Shared functions have been consolidated into | Matthew Grooms | 2008-07-11 | 7 | -519/+1119 |
| | | | | | | | | | | | | | | a new file named /etc/ipsec.inc. Tunnel definitions have been split into phase1 and phase2. This allows any number of phase2 definitions to be created for a single phase1 definition. Several facets of configuration have also been improved. The key size for variable length algorithms can now be selected and the phase1 ID options have been extended to allow for more flexible configuration. Several NAT-T related issues have also been resolved. Please note, IPsec remote access functionality has been temporarily disabled. An improved implementation will be included in a follow up commit. | ||||
* | Use the full path to the vlan parameters seems that the foreach block ↵ | Ermal Luçi | 2008-07-10 | 1 | -1/+1 |
| | | | | | | | creates a copy of the original. This should fix vlan upgrade issues reported. | ||||
* | Update NOIP URL | Scott Ullrich | 2008-07-10 | 1 | -1/+1 |
| | | | | Ticket #1766 | ||||
* | Reactivate the rdr so the pptp server works normally now that pptp ↵ | Ermal Luçi | 2008-07-09 | 1 | -1/+1 |
| | | | | workaround is disabled. | ||||
* | Commit missed pftpx -> ftp-proxy entries | Scott Ullrich | 2008-07-09 | 1 | -2/+2 |
| | |||||
* | Cleanup unused/forgotten assignment. | Ermal Luçi | 2008-07-09 | 1 | -1/+1 |
| | |||||
* | Correct typo and better handle recreation of vlan with specific name. | Ermal Luçi | 2008-07-09 | 1 | -3/+4 |
| | |||||
* | Fixup for now utterly complex/braindead interface finding for user rules ↵ | Ermal Luçi | 2008-07-09 | 1 | -2/+3 |
| | | | | | | till the merge of the RELENG_1_MULTI_ANYTHING happens. | ||||
* | Merge VLAN fixes from RELENG_1_MULTI_ANYTHING branch. | Ermal Luçi | 2008-07-09 | 1 | -10/+11 |
| | |||||
* | add comment with an XXX to remind me to fix | Bill Marquette | 2008-07-08 | 1 | -1/+1 |
| | |||||
* | Move gateway status and monitoring over to gwlb.inc. | Seth Mos | 2008-07-08 | 2 | -262/+180 |
| | | | | Still needs a return_gateway_status_by_name(); | ||||
* | Add relayd logging file | Seth Mos | 2008-07-08 | 1 | -1/+1 |
| | |||||
* | Remove slbd anchor from pf rules | Seth Mos | 2008-07-08 | 1 | -2/+1 |
| | |||||
* | Remove configure_slbd() from rc.newwanip. | Seth Mos | 2008-07-08 | 1 | -4/+0 |
| | | | | Does relayd need this hook no rc.newwanip? | ||||
* | Remove configure_slbd() from rc scripts | Seth Mos | 2008-07-08 | 2 | -5/+3 |
| | |||||
* | Raise the timeout value to 1 second on checks, setting a global timeout does | Bill Marquette | 2008-07-08 | 1 | -2/+2 |
| | | | | | no good. See http://readlist.com/lists/openbsd.org/misc/15/78304.html many thanks to Alex Volkov who pointed me to this thread | ||||
* | Correctly set interface to dhcp in wan case. | Ermal Luçi | 2008-07-08 | 1 | -1/+1 |
| | |||||
* | Remove escape slashes so our quality stats gathering works again. | Seth Mos | 2008-07-08 | 1 | -3/+5 |
| | |||||
* | clean up text a bit, still some issues remaining (like "http://DHCP", my ↵ | Chris Buechler | 2008-07-07 | 1 | -7/+17 |
| | | | | logic is apparently flawed) | ||||
* | Remove unneeded code. | Ermal Luçi | 2008-07-07 | 1 | -2/+0 |
| | |||||
* | Fix interface ip assignment. Originally commited by Ermal | Scott Ullrich | 2008-07-07 | 1 | -1/+10 |
| | |||||
* | allow relayd to actually restart | Bill Marquette | 2008-07-07 | 1 | -3/+3 |
| | | | | | sitedown isn't required, but may still be set to nothing, don't write out a bogus config line in this situation | ||||
* | Add pre_upgrade_command hook support | Scott Ullrich | 2008-07-07 | 1 | -0/+7 |
| | |||||
* | It appears that malloc options have changed for RELENG_7. | Scott Ullrich | 2008-07-07 | 1 | -3/+6 |
| | | | | Eliminate old aj options. | ||||
* | Eliminate interfaces_carp_bring_up_final() | Scott Ullrich | 2008-07-07 | 1 | -2/+1 |
| | |||||
* | * Cleanup carp code | Scott Ullrich | 2008-07-07 | 3 | -33/+52 |
| | | | | * Eliminate interfaces_carp_bringup_final() | ||||
* | We do not need the simplexml php exentsion | Scott Ullrich | 2008-07-06 | 1 | -2/+2 |
| | |||||
* | Simplify (and really) sleep correctly to avoid hammering files.pfsense.org | Scott Ullrich | 2008-07-06 | 1 | -2/+2 |
| | |||||
* | Only push 1 char version, such as 7 instead of 7.0 | Scott Ullrich | 2008-07-06 | 1 | -1/+1 |
| | |||||
* | Add freebsd version as parm. | Scott Ullrich | 2008-07-06 | 1 | -1/+6 |
| | |||||
* | Chmod/Chgrp only if item exists and is a directory. | Scott Ullrich | 2008-07-06 | 1 | -3/+5 |
| | |||||
* | Make sure our /tmp is always read write for everyone on boot. | Seth Mos | 2008-07-05 | 1 | -0/+3 |
| | | | | Now set to 1777. | ||||
* | Switch back touch file in tmp. This is permitted as user nobody under | Seth Mos | 2008-07-05 | 1 | -2/+2 |
| | | | | which apinger runs. FIXME: Make sure that /tmp is always 777. | ||||
* | Use filter configure instead | Seth Mos | 2008-07-05 | 1 | -2/+2 |
| | |||||
* | Do not generate empty queue fields when the rule queue fields are empty but set. | Seth Mos | 2008-07-05 | 1 | -2/+2 |
| | |||||
* | Correct setkey path to correct usr local sbin location. | Seth Mos | 2008-07-04 | 1 | -10/+10 |
| | |||||
* | Make sure the owner and group is set correctly so apinger can write it's | Seth Mos | 2008-07-04 | 1 | -0/+2 |
| | | | | configuration. | ||||
* | Always run openntpd as a client | Bill Marquette | 2008-07-04 | 1 | -12/+13 |
| | | | | Setup listeners if the service is requested |