Commit Graph

17345 Commits

Author SHA1 Message Date
Seth Mos
8a3b09efcc Comment out static mappings, this needs more research 2011-03-17 11:59:38 +01:00
Scott Ullrich
6f97976326 Fix merge conflict 2011-03-16 17:05:59 -04:00
Ermal
af4c040e43 Ticket #1356 use locking here rather than ps to serialize execution. 2011-03-16 19:34:01 +00:00
Seth Mos
aff70640bf Swap if statement, add fields into ipsecpinghosts file 2011-03-16 13:28:39 +01:00
Seth Mos
e3e85044d1 Add field 8 for address family 2011-03-16 13:26:46 +01:00
Seth Mos
840d845fda Add more helpful logging 2011-03-16 13:19:19 +01:00
Seth Mos
80c1e99fb1 Correct ping hosts functionality for > 1 tunnel. Add v6 functionality 2011-03-16 13:18:06 +01:00
smos
ab299d4c52 Fix ticket #1126 2011-03-16 12:54:45 +01:00
smos
7916acc3fb Change wording 2011-03-16 12:36:35 +01:00
smos
fe3801bf67 Hopefully improve the useless ipsec logs with highlighting 2011-03-16 12:29:00 +01:00
smos
505483ce74 Fix ticket #1354 2011-03-16 12:27:01 +01:00
smos
ac463c006f Fix the IPsec ping hosts file generation. This only worked for the last
tunnel
2011-03-16 12:16:03 +01:00
Seth Mos
413a327e1e Add v6 entries to the logs 2011-03-16 11:38:44 +01:00
Seth Mos
bfc0cb5b6a Merge remote branch 'upstream/master' 2011-03-16 10:03:29 +01:00
smos
323f3f9c17 Keep a table of gateways we added for static routes to prevent us from making multiple entries to the same IP address 2011-03-16 08:46:42 +01:00
Ermal
e58da189b4 Add code to allow custom upgrade code to run after the pfSense upgrade code for the same version switching(Just the custom upgrade functions should have _custom at the end of their name. 2011-03-15 21:31:03 +00:00
Seth Mos
85071ea22b Add more colors to themes 2011-03-15 21:43:51 +01:00
Seth Mos
e2faab6d55 Unbreak firewall logs 2011-03-15 18:10:24 +01:00
Seth Mos
1f116988a9 Enable the IPv6 allow toggle, otherwise the other IPv6 rules do not work. 2011-03-15 16:41:48 +01:00
Seth Mos
8336846a33 More html fine tuning 2011-03-15 16:30:01 +01:00
Seth Mos
8525bd86e1 Add the IPv6 addresses to the interfaces status widget 2011-03-15 16:30:00 +01:00
Seth Mos
98790f61dc Try to make IPv6 feature complete for IPv6 support. Looks like ipsec-tools was built without v6 support, make sure you have a newer build 2011-03-15 16:29:59 +01:00
Seth Mos
b47ceaea3a Merge remote branch 'upstream/master' 2011-03-15 16:28:37 +01:00
Ermal
401fb0ad8f ipfw is not referenced here. 2011-03-15 12:53:36 +00:00
Ermal
32c392aa4b Make sure we have an ip to kill sessions from. 2011-03-15 12:52:11 +00:00
Ermal
01c201e3d1 Do more strict checking if an ppp type interface is assigned before starting the mpd process behind it. Trigered-by: http://forum.pfsense.org/index.php/topic,34377.0.html 2011-03-15 12:17:12 +00:00
Seth Mos
1ae43bfa85 Merge remote branch 'upstream/master' 2011-03-15 09:59:39 +01:00
Seth Mos
d52a66f970 Fix the link for the easy rule block so that it always fills in the ip protocol 2011-03-15 09:12:42 +01:00
Seth Mos
1778480dbe Show the proper Phase entry for the IPv6 tunnels 2011-03-14 22:09:47 +01:00
Seth Mos
fb17f629ee Commit the backend function that writes out the racoon.conf 2011-03-14 22:03:54 +01:00
Seth Mos
e79b24ab35 Extend the IPsec configuration with a protocol family for the phase 1 2011-03-14 22:02:50 +01:00
Seth Mos
6c4f3b54a0 Make sure to note the limitations to gethostbyname, it does not work for Quad A records. Fix resolve_retry in the process, use that. 2011-03-14 21:40:12 +01:00
Seth Mos
fbcbfa44ee Add the dhcp v6 page to the menu, eventhough it is broken. Tabs for later integration 2011-03-14 21:30:45 +01:00
Seth Mos
c16402670d Add the initial broken dhcp v6 leases page. I have no file to code it. Will wait for later. 2011-03-14 21:29:00 +01:00
Ermal
96f1a57a16 Remove comment since the service is not started anymore after installation in 2.0 2011-03-14 19:53:58 +00:00
Seth Mos
a3f1fa81b3 Allow port 547 to the filter rules for DHCP to work 2011-03-14 19:24:39 +01:00
Seth Mos
a41c5253e3 Properly configure lighty with the configured port when attached to the v6 socket. It was previously hardcoded to https 2011-03-14 18:49:50 +01:00
Seth Mos
209620ea03 Add IPv6 support to the DNS rebinding attack function 2011-03-14 18:44:28 +01:00
Ermal
2bf16ba278 Prevent the command wol for being called without propper ip information. Reported-by: http://forum.pfsense.org/index.php/topic,34314.0.html 2011-03-12 00:36:06 +00:00
Ermal
e92916d689 Make sure we do not write stale data during prunning periods. 2011-03-12 00:26:28 +00:00
Seth Mos
3795d067c9 Add the ability to differentiate between v4 and v6 tunnels. Bill says he can test 2011-03-11 22:34:53 +01:00
jim-p
d0404e467a Fix typo 2011-03-10 20:37:34 -05:00
jim-p
64d42525af Clarify text on outbound NAT page. 2011-03-10 11:25:18 -05:00
Ermal
2f23caf2ec Correctly generate the interface. 2011-03-10 13:06:09 +00:00
Ermal
298ca201d8 Define only one loginterface since that is what pf(4) allows. This prevents a memory leak from pfctl(1) which may lead to memory depletion if the utility is run frequently with the pfSense generated ruleset. 2011-03-10 13:05:01 +00:00
Erik Fonnesbeck
366538692b Remove extra unmatched conf_mount_ro for a potential race condition preventing writes when generating ssh keys in the background. Ticket #673 2011-03-10 01:55:45 -07:00
smos
48ab12a9ce Remove quick from the filter rule by request of Erik. 2011-03-10 08:32:28 +01:00
smos
05c8d0b1eb Correct the config path to the upnp array, this prevented the filter rule from being generated 2011-03-10 08:31:37 +01:00
Seth Mos
1529458011 Add the IPv6 tag to the version so that BSD perimeter can seen these installs from a mile away 2011-03-09 22:21:14 +01:00
Ermal
47cc98de05 Correctly use the WAN macro definition for the interface on 2.0. Though i still insist that people should do this themselves rather than relying on some obscure gui option. 2011-03-09 21:14:25 +00:00