Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Merge pull request #2082 from phil-davis/patch-9 | Renato Botelho | 2015-11-19 | 1 | -1/+1 |
|\ | |||||
| * | Backport fix #5467 to RELENG_2_2 | Phil Davis | 2015-11-18 | 1 | -1/+1 |
| | | |||||
* | | Backport Redmine #5440 to RELENG_2_2 | Phil Davis | 2015-11-15 | 1 | -0/+8 |
|/ | | | | The code in RELENG_2_2 for system_usermanager_settings.php seems to work OK in RELENG_2_2 so I did not touch anything there. But diag_authentication.php had nothing about $pconfig on initial page load. This extra code makes it select a reasonable default auth server when the page first loads. After that, each time the user does "Test", the page comes back with the previously selected auth server, user name and password (like it did already) - so that seems good. | ||||
* | diag_ipsec.php - show button for child SAs only when some are established. ↵ | Matt Smith | 2015-11-10 | 1 | -2/+2 |
| | | | | Fix ID used by child SA disconnect button. | ||||
* | Fix syntax | Renato Botelho | 2015-11-09 | 1 | -2/+2 |
| | |||||
* | Let the code ready for strongswan 5.3.4, where key used to track nat were ↵ | Renato Botelho | 2015-11-09 | 1 | -2/+14 |
| | | | | committed with a different name | ||||
* | Only call pfSense_ipsec_list_sa() when IPsec is enabled | Renato Botelho | 2015-11-03 | 2 | -2/+2 |
| | |||||
* | Remove a redundant if and fix indentation accordingly. Fix is_array that ↵ | Matt Smith | 2015-10-30 | 1 | -51/+49 |
| | | | | should be an isset on the remote SPI field. | ||||
* | Update license on diag_ipsec.php. Keep required attributions and reference | Matt Smith | 2015-10-30 | 1 | -29/+54 |
| | | | | the original m0n0wall BSD 2 clause. | ||||
* | Remove port information from diag_ipsec.php since it's not available on ↵ | Renato Botelho | 2015-10-30 | 1 | -6/+4 |
| | | | | VICI, also use local-nat-t and remote-nat-t to detect when NAT-T is being used | ||||
* | Rework ipsec widget to use VICI | Renato Botelho | 2015-10-30 | 1 | -17/+7 |
| | |||||
* | Remove diag_ipsec_xml.php, not being used | Renato Botelho | 2015-10-30 | 1 | -82/+0 |
| | |||||
* | Make IPsec status page retrieve status with VICI instead of SMP | Matt Smith | 2015-10-30 | 1 | -107/+117 |
| | |||||
* | Fix up descriptive text for logging levels. Ticket #5340 | Chris Buechler | 2015-10-26 | 1 | -4/+3 |
| | |||||
* | Default log level where none is selected should be 3 here. Ticket #5340 | Chris Buechler | 2015-10-26 | 1 | -1/+1 |
| | |||||
* | Correct available log levels. Ticket #5340 | Chris Buechler | 2015-10-26 | 1 | -16/+16 |
| | |||||
* | Logging fixes. Ticket #5340 | Chris Buechler | 2015-10-26 | 1 | -1/+3 |
| | |||||
* | Merge pull request #1980 from doktornotor/patch-2 | Renato Botelho | 2015-10-26 | 1 | -10/+27 |
|\ | |||||
| * | Fix external interface variable in input error message | doktornotor | 2015-10-24 | 1 | -1/+1 |
| | | |||||
| * | Properly validate IPv4 for UPnP - RELENG_2_2 | doktornotor | 2015-10-24 | 1 | -10/+27 |
| | | | | | | | | | | Since https://redmine.pfsense.org/issues/1835 got exactly nowhere for the past 4 years, the input should be properly validated, instead of allowing people to configure nonfunctional/broken nonsense. P.S. If you don't plan on fixing the above-linked feature for 2.3, let me know and I'll do the same for 2.3 | ||||
* | | Merge pull request #1986 from phil-davis/patch-6 | Renato Botelho | 2015-10-26 | 1 | -2/+2 |
|\ \ | |||||
| * | | Fix Command Prompt Download and Upload when not in English - Redmine #5343 ↵ | Phil Davis | 2015-10-25 | 1 | -2/+2 |
| |/ | | | | | | | for RELENG_2_2 | ||||
* | | Merge pull request #1984 from phil-davis/patch-4 | Renato Botelho | 2015-10-26 | 1 | -1/+1 |
|\ \ | |||||
| * | | Fix multi-lingual save of NAT mode Redmine # for RELENG_2_2 | Phil Davis | 2015-10-25 | 1 | -1/+1 |
| |/ | | | | | and forum https://forum.pfsense.org/index.php?topic=101276.0 | ||||
* | | Use 1-6 rather than 0-5 for IPsec logging levels, to stay away from ↵ | Chris Buechler | 2015-10-26 | 1 | -2/+8 |
|/ | | | | complications of 0 due to PHP stupidity. Upgrade config to add 1 to any configured log levels. Default to 1 as log level where none is configured by the user. Ticket #5340 | ||||
* | interfaces_assign tab_array numbering | Phil Davis | 2015-10-23 | 1 | -4/+4 |
| | | | | | This was fixed in master for 2.3 by https://github.com/pfsense/pfsense/commit/50e6c063e6ec148917ff0bcb0bce8b0a08df5792 - in master all of these $tab_array entries, in each file that they appear in, had been modified to just use the $tab_array[] = form. But in RELENG_2_2 that has not happened. So it seems nicer to just fix the numbering here to match what is already in the other interfaces_*.php files in RELENG_2_2. Note that the code works OK without this "fix" - display_top_tabs() just loops through the existing array keys anyhow and so did not notice the missing number. | ||||
* | Merge pull request #1971 from doktornotor/patch-5 | Chris Buechler | 2015-10-20 | 2 | -0/+9 |
|\ | |||||
| * | Point people to 'Clear Package Lock' if the reinstall of packages got stuck ↵ | doktornotor | 2015-10-20 | 1 | -0/+8 |
| | | | | | | | | (RELENG_2_2) | ||||
| * | Point people to 'Clear Package Lock' if the reinstall of packages got stuck ↵ | doktornotor | 2015-10-20 | 1 | -0/+1 |
| | | | | | | | | (RELENG_2_2) | ||||
* | | Limit the auth methods where "My Certificate Authority" is displayed/saved for | Matt Smith | 2015-10-20 | 1 | -12/+7 |
|/ | | | | mobile clients. Fixes #5323. | ||||
* | Validate that the Mobile Client settings have a valid RADIUS server selected | Matt Smith | 2015-10-19 | 1 | -0/+11 |
| | | | | | as the source for user authentication when EAP-RADIUS is selected as the phase 1 authentication method for mobile IPsec. Fixes #5219. | ||||
* | Auto-add firewall rules for DHCP Relay, same as is done for DHCP Server. Add ↵ | Chris Buechler | 2015-10-14 | 1 | -0/+2 |
| | | | | filter reload to DHCP Relay config so rules are immediately added/removed. Ticket #4558 | ||||
* | set enabled/disabled status accordingly on initial page load. Ticket #5284 | Chris Buechler | 2015-10-13 | 1 | -0/+1 |
| | |||||
* | clean up empty lines | Chris Buechler | 2015-10-13 | 1 | -2/+0 |
| | |||||
* | Add all remaining log types to status.php. Ticket #5304 | Chris Buechler | 2015-10-13 | 1 | -6/+30 |
| | |||||
* | Update zoneinfo to 2015f, it fixes #5254 | Renato Botelho | 2015-10-13 | 1 | -0/+0 |
| | |||||
* | Merge pull request #1962 from davidjwood/RELENG_2_2-ppp-ipv6 | Chris Buechler | 2015-10-12 | 3 | -34/+170 |
|\ | |||||
| * | Use named variables for ppp-linkup command line parameters | David Wood | 2015-10-11 | 1 | -32/+40 |
| | | |||||
| * | Make route deletions quiet - it may well be the routes have already disappeared | David Wood | 2015-10-11 | 1 | -2/+2 |
| | | |||||
| * | Make code dealing with the IPv4 default gateway conditional on the IPv4 link ↵ | David Wood | 2015-10-11 | 1 | -1/+1 |
| | | | | | | | | going down | ||||
| * | Connect ppp-ipv6 helper script to ppp-linkdown and ppp-linkup | David Wood | 2015-10-11 | 2 | -0/+5 |
| | | |||||
| * | Add /usr/local/sbin/ppp-ipv6 helper script | David Wood | 2015-10-11 | 1 | -0/+123 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | /usr/local/sbin/ppp-ipv6 <real interface> up|down Interface using SLAAC or DHCP6 going down: * bring down dhcp6c if it is running * disable router advertisements (and therefore SLAAC) * remove any autoconfigured IPv6 addresses Interface using SLAAC or DHCP6 coming up: * call interface_dhcpv6_configure() if dhcp6c not running and router advertisements off interface_dhcpv6_configure() will enable router advertisements, configure rtsold and dhcp6c, then set rtsold to prime dhcp6c as required. | ||||
* | | Merge pull request #1958 from phil-davis/patch-11 | Renato Botelho | 2015-10-12 | 1 | -8/+18 |
|\ \ | |||||
| * | | Redmine #5294 Do not delete a system group | Phil Davis | 2015-10-11 | 1 | -8/+18 |
| | | | | | | | | | | | | This code checks if the user has somehow posted a group deletion for a group that has "system" scope. If so, then the delete is not done and an input error is displayed. Note that in normal use the group manager page does not display a delete button for "system" groups, so normally this does not happen - only if the user manually messes with the $POST variables. | ||||
* | | | Redmine #5294 Do not delete a system user | Phil Davis | 2015-10-11 | 1 | -8/+18 |
|/ / | | | | | | | This code checks if the user has somehow posted a user deletion for a user that has "system" scope. If so, then the delete iscnot done and an input error is displayed. Note that in normal use the user manager page does not display a delete button for "system" users, so normally this does not happen - only if the user manually messes with the $POST variables. | ||||
* | | Merge pull request #1953 from phil-davis/patch-10 | Chris Buechler | 2015-10-07 | 1 | -1/+1 |
|\ \ | |||||
| * | | Wording of alias_info_popup tip | Phil Davis | 2015-10-08 | 1 | -1/+1 |
| | | | | | | | | | | | | | | | | | | I noticed this while comparing alias popup behavior between 2.2.5-DEVELOPMENT and 2.3 Might as well fix the grammar here for 2.2.5 This tip does not exist in 2.3 because the popup works more nicely there and so this text is not needed. Therefore this change does not need to be ported forward to master. | ||||
* | | | correct htmlentities unintentionally removed by earlier commit | Chris Buechler | 2015-10-07 | 1 | -1/+1 |
|/ / | |||||
* | | Add support for an IPv6 pool for mobile clients. | Matt Smith | 2015-10-07 | 1 | -1/+59 |
| | | |||||
* | | Don't enforce the use of only IPv4 or IPv6 when using IKEv2 since it works ↵ | jim-p | 2015-10-07 | 1 | -1/+1 |
| | | | | | | | | fine with IKEv2 |