Main repository for pfSense
Go to file
jim-p cffcf9bfaa GUI improvements for ECDSA certificate handling
* Make central functions to check and test ECDSA compatibility. Issue #9843
* Filter incompatible certificates from being offered for the GUI or Captive Portal. Implements #9897
* Do the same for IPsec, which implements #4991
* Add a check for key type when generating ipsec.secrets to allow ECDSA certs to work in IPsec for issue #4991

Note that as of this moment, the following curves are known to be compatible:
HTTPS (GUI, Captive Portal): prime256v1, secp384r1
IPsec: prime256v1, secp384r1, secp521r1

Results may vary in other areas which are not yet well-tested, and in packages.
2019-11-14 15:59:39 -05:00
.github Add new CONTRIBUTING file and Pull Request template 2017-12-12 10:12:25 -05:00
build Fix copyright message years to reflect BSDP -> ESF -> Netgate 2019-07-29 14:50:49 -03:00
src GUI improvements for ECDSA certificate handling 2019-11-14 15:59:39 -05:00
tools Zabbix 2.2 packages are gone 2019-11-13 10:30:33 -03:00
.editorconfig Add .inc files to editorconfig 2015-05-22 10:30:23 -03:00
.gitattributes include gettext locales in line encoding list 2014-01-13 22:05:10 -05:00
.gitignore Add .zanata-cache to .gitignore 2017-01-31 10:44:16 -02:00
BOOTSTRAP.md Fix random typos 2019-10-02 12:56:15 +05:45
build.conf.sample Fix copyright message years to reflect BSDP -> ESF -> Netgate 2019-07-29 14:50:49 -03:00
build.sh Fix copyright message years to reflect BSDP -> ESF -> Netgate 2019-07-29 14:50:49 -03:00
LICENSE Move to Apache License 2.0 2016-07-15 16:30:33 -03:00
README.md Bump Copyright to 2019 2019-05-27 11:00:10 -03:00
zanata.xml Use Netgate zanata server 2019-06-03 10:39:07 -03:00

pfSense

Overview

The pfSense project is a free network firewall distribution, based on the FreeBSD operating system with a custom kernel and including third party free software packages for additional functionality. pfSense software, with the help of the package system, is able to provide the same functionality or more of common commercial firewalls, without any of the artificial limitations. It has successfully replaced every big name commercial firewall you can imagine in numerous installations around the world, including Check Point, Cisco PIX, Cisco ASA, Juniper, Sonicwall, Netgear, Watchguard, Astaro, and more.

pfSense software includes a web interface for the configuration of all included components. There is no need for any UNIX knowledge, no need to use the command line for anything, and no need to ever manually edit any rule sets. Users familiar with commercial firewalls catch on to the web interface quickly, though there can be a learning curve for users not familiar with commercial-grade firewalls.

pfSense started in 2004 as a fork of the m0n0wall Project (which ended 2015/02/15), though has diverged significantly since.

pfSense is Copyright 2004-2019 Rubicon Communications, LLC (Netgate) and published under an open source license. Read more at https://pfsense.org/ and support the team by buying bundled hardware appliances or commercial support.

Contribute

For information on how to contribute to the pfSense project, see CONTRIBUTING.