summaryrefslogtreecommitdiffstats
path: root/src/etc
Commit message (Collapse)AuthorAgeFilesLines
* Merge pull request #3770 from hamnur/masterRenato Botelho2017-07-311-3/+14
|\
| * Use attribute rekey_enable as usual but optionally allow to set margintime ↵hamnur2017-07-171-4/+6
| | | | | | | | if rekeying is not disabled
| * Merge branch 'master' of https://github.com/hamnur/pfsense into HEADhamnur2017-07-142-8/+24
| |\
| | * Merge remote-tracking branch 'upstream/master'hamnur2017-06-302-8/+24
| | |\
| * | | Hide margintime if rekeying is disabledhamnur2017-07-141-9/+6
| |/ /
| * | Activate RADIUS accounting for mobile ipsec if it was selected on the auth ↵hamnur2017-06-301-0/+7
| | | | | | | | | | | | server view
| * | Add strongswan rekeymargin attribute to vpn ipsec phase1 viewhamnur2017-06-291-0/+5
| | |
* | | dhcp6c Advanced Config prefix interfacemarjohn562017-07-281-2/+3
| | | | | | | | | | | | | | | | | | Currently, when using dhcp6c advanced configuration the prefix interface is WAN, this is not very useful! The changes here allow the user to select the interface that the PD will be applied on..
* | | Make rules that deal with IP+MAC pairs to be layer2 onlyRenato Botelho2017-07-261-5/+3
| | |
* | | Restore calls to pfSense_ipfw_table_zerocnt(), it's fixed nowRenato Botelho2017-07-251-4/+2
| | |
* | | Remove unused parametersRenato Botelho2017-07-251-3/+3
| | |
* | | Do not associate IP and MAC on down tableRenato Botelho2017-07-251-1/+3
| | |
* | | Fix syntaxRenato Botelho2017-07-251-1/+1
| | |
* | | Remove leftover debugRenato Botelho2017-07-251-1/+0
| | |
* | | Ressurrect nomacfilter option on CP now IPFW supports combined tables with ↵Renato Botelho2017-07-251-7/+14
| | | | | | | | | | | | IP and MAC address
* | | Re-introduce Captive Portal statisticsRenato Botelho2017-07-251-24/+33
| | |
* | | Prevent iOS auto-capitalization on username fieldSteve Beaver2017-07-171-1/+1
| | |
* | | Change login page links to absolute pathsSteve Beaver2017-07-171-3/+3
| | |
* | | Use an alternate method to stop unbound and fix #7326jim-p2017-07-141-6/+19
| | |
* | | If a client address is in the webConfiguratorlockout table, do not allow ↵jim-p2017-07-141-0/+25
| | | | | | | | | | | | | | | | | | them to access the GUI. Print an error and kill their states. Ticket #7693 Extra check to be sure that an existing open state cannot bypass lockout controls.
* | | Fix typojim-p2017-07-131-2/+2
| | |
* | | Merge pull request #3771 from PiBa-NL/20170701-cron-fixRenato Botelho2017-07-131-1/+1
|\ \ \
| * | | cron, fix job removal by index splice and write valid schedules for ramdrive ↵PiBa-NL2017-07-011-1/+1
| | | | | | | | | | | | | | | | backups
* | | | Merge pull request #3772 from PiBa-NL/20170703-boot-config-check-messageRenato Botelho2017-07-131-1/+1
|\ \ \ \
| * | | | bootup, change message to "Checking config backups consistency..." to tell ↵PiBa-NL2017-07-031-1/+1
| |/ / / | | | | | | | | | | | | whats taking time, as there is usually little to cleanup involved
* | | | Merge pull request #3782 from PiBa-NL/20170712-nat-configure-skip-no-destRenato Botelho2017-07-131-4/+0
|\ \ \ \
| * | | | nat, portforwards should not make up a new destination information when a ↵PiBa-NL2017-07-121-4/+0
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | configured dhcp interface does not currently have an address. fixes: https://forum.pfsense.org/index.php?topic=127585.msg733528#msg733528
* | | | | Restructure how unbound zone data is written to fix processing of "redirect" ↵jim-p2017-07-132-38/+102
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | zone entries. Fixes #7690 Also corrects some other misc issues for formatting of zone data. While here, add an option, not exposed in the GUI, for users to get the previous behavior of defining short names for hosts.
* | | | | Fix OpenVPN Auth Digest Algorithm selection so it does not use ↵jim-p2017-07-103-3/+57
|/ / / / | | | | | | | | | | | | duplicate/alias names in the list, and fix existing entries on upgrade so they use the actual digest name and not an alias.
* | | | Fix CA reference so serial increases properly. Remove variable for feature ↵jim-p2017-07-071-1/+1
| | | | | | | | | | | | | | | | that didn't work out. Ticket #7527
* | | | Stop using pecl-ssh2Renato Botelho2017-07-061-2/+0
| | | |
* | | | Restructure how certificate types and SANs are handled in the cert manager ↵jim-p2017-07-061-24/+53
| | | | | | | | | | | | | | | | | | | | | | | | when making a Cert/CSR/Signing, so each section can properly use the controls without duplicating. It is now possible to add SANs and EKUs to certificates when signing using the certificate manager. Fixes #7527 and also Fixes #7677 NOTE: Attributes such as SANs and KU/EKU cannot be copied from a CSR when signing due to a deficiency in OpenSSL's x509 functions (they do not support "copy_extensions" at this time). They must be specified manually.
* | | | Removed MSS clamping exclusionsRobbert Rijkse2017-07-061-4/+1
| | | |
* | | | Several complaints of unbound problems after commiting, so back this out. ↵jim-p2017-07-061-22/+6
| | | | | | | | | | | | | | | | | | | | | | | | Revert "Change the way unbound is stopped when the process is being restarted, to give the old process enough time to exit cleanly. Fixes #7326" This reverts commit 38d110824c87ff60c6289c0432d55009586ceee4.
* | | | Add the ability to set certificate type and SAN attributes in a CSR. Ticket ↵jim-p2017-07-051-2/+24
| | | | | | | | | | | | | | | | | | | | | | | | #7527 TODO: They are not carried over after signing in the GUI
* | | | Fix some additional cases for CN->SAN handling, and move some code to a ↵jim-p2017-07-051-0/+27
| | | | | | | | | | | | | | | | function to avoid duplication for other pending uses. Ticket #7666
* | | | Include User Agent information when update bogons listRenato Botelho2017-07-051-0/+8
| | | |
* | | | Remove extra spaces from User AgentRenato Botelho2017-07-052-3/+3
| | | |
* | | | Send uniqueid instead of UUID on user-agentRenato Botelho2017-07-052-6/+6
| | | |
* | | | Declare user_agent variable in the function it's usedRenato Botelho2017-07-051-10/+5
| | | |
* | | | Move uniqueid read to a function system_get_uniqueid()Renato Botelho2017-07-051-0/+18
| |_|/ |/| |
* | | Change the way unbound is stopped when the process is being restarted, to ↵jim-p2017-06-291-6/+22
| | | | | | | | | | | | give the old process enough time to exit cleanly. Fixes #7326
* | | unbound-control needs to know the config path or else it can't work ↵jim-p2017-06-291-2/+2
| |/ |/| | | | | properly. Fixes #7667
* | Set a value for this variable in each case, so a previous value isn't ↵jim-p2017-06-291-0/+1
| | | | | | | | re-used in a loop.
* | Fix missing '>' on /span tagSteve Beaver2017-06-271-1/+1
| |
* | Issue #7659 foreach warning on adding gatewayPhil Davis2017-06-251-6/+8
| | | | | | | | Signed-off-by: Phil Davis <phil@jankaritech.com>
* | Respect GUI Login autocomplete preference settingSteve Beaver2017-06-231-1/+1
| |
* | Fix some other outdated linksjim-p2017-06-231-1/+1
| |
* | Correct intentingSteve Beaver2017-06-231-84/+84
| |
* | Code style cleanupSteve Beaver2017-06-231-8/+6
| |
OpenPOWER on IntegriCloud