Franco Fichtner
39eed8a108
firewall: npt alignment
...
NPT is a kind of abandoned feature that had a custom kernel patch.
I tried to trace the origin through OpenBSD, but their pf(4) since
switched away from separate binat rules in the last known form like
it is still in FreeBSD.
Furthermore, the original GUI commit looks odd in that it tries to
push the same traffic downwards that would match in the former line,
which acutally points upwards. It's either that or completely zapping
the line. For now, repair the rules reload by trying to retain the
spirit of what it tries to achieve and wait for further feedback.
This late bug report also suggests that virtually nobody uses NPT
today since we've had no upstream reports since at least 15.7 was
out.
PR: https://forum.opnsense.org/index.php?topic=3076.0
2016-05-22 20:17:38 +02:00
Ad Schellevis
b3049270f0
(configd) send received output on script_output type when there is any, closes https://github.com/opnsense/core/issues/951
2016-05-22 16:09:36 +02:00
Franco Fichtner
c8b9eefbcf
wireless: remove ancient ath(4) long distance helpers
...
The original script is from 2005 and most newer ath(4) drivers do not
even support it. One can still set the sysctls individually anyway,
it's highly likely you know the hardware when you're trying to set
this up in the first place...
See also: https://wiki.freebsd.org/dev/ath(4)
2016-05-22 15:09:27 +02:00
Franco Fichtner
f05b35d9c2
firmware: oddly enough, this reversed order is the correct one
2016-05-22 14:44:44 +02:00
Franco Fichtner
3b63072285
firmware: add wrapper to catch stderr for #951
2016-05-22 14:37:07 +02:00
Ad Schellevis
1bf8b3aa75
(configd) report traceback, closes https://github.com/opnsense/core/issues/956
2016-05-22 13:19:55 +02:00
Franco Fichtner
2915323095
system: adjust static far gw routes too; mea culpa
...
Looks like this is working as intended now, shall be shipped with
16.1.16 after an extra round of testing.
2016-05-22 11:17:21 +02:00
Franco Fichtner
0ce997d03c
system: fix typo in default far gw default setup
...
Kindly pointed out by a generous tester. Thank you.
2016-05-22 11:00:33 +02:00
Ad Schellevis
6ae6e594d1
(ids) remove rbn-malvertisers.rules, closes https://github.com/opnsense/core/issues/954
2016-05-21 08:47:51 +02:00
Ad Schellevis
845cb7aff1
add opnsense_standard_table_form class to forms (2)
2016-05-20 18:13:49 +02:00
Ad Schellevis
bdcdd8b117
(ui) hook_stacked_form_tables preserve <tr> properties
2016-05-20 17:43:29 +02:00
Ad Schellevis
89ea14d243
(ui) change (+) alignment in system_usermanager.php
2016-05-20 17:35:21 +02:00
Ad Schellevis
feaf21fc8e
(ui) hook_stacked_form_tables, don't dig to deep
2016-05-20 17:31:11 +02:00
Ad Schellevis
0b31dc522f
add opnsense_standard_table_form class to forms
2016-05-20 17:09:58 +02:00
Ad Schellevis
52c7a87c08
(uit) set class on input form system_advanced_admin.php
2016-05-20 15:09:44 +02:00
Ad Schellevis
e053ebc2d4
(ui) hook in mobile form improvement, mark table with "opnsense_standard_table_form" class to use it.
2016-05-20 15:07:05 +02:00
Ad Schellevis
e0bbb0c638
(ui) add "Stacked-to-horizontal" like feature for input forms
2016-05-20 14:58:53 +02:00
Ad Schellevis
53e87f7a95
(boot) ditch boot.config when serial not enabled
2016-05-20 09:55:20 +02:00
Franco Fichtner
d8f5a12d1f
system: shuffle more features and bring back ETC zones
...
PR: https://forum.opnsense.org/index.php?topic=3004
2016-05-20 07:55:01 +02:00
Franco Fichtner
4497a24274
system: split lb and pf sticky connection setting; closes #691
2016-05-20 07:20:00 +02:00
Franco Fichtner
003f6f93f8
Merge pull request #953 from gitdevmod/patch-1
...
clone button clone client not rule
2016-05-20 07:15:19 +02:00
gitdevmod
4a91515db4
Update vpn_openvpn_client.php
2016-05-19 22:56:16 +02:00
gitdevmod
dde019de62
clone button clone client not rule
2016-05-19 22:11:44 +02:00
Franco Fichtner
5d7d465c05
backend: add hotfix command
2016-05-19 20:51:07 +02:00
Franco Fichtner
71bef74664
system: no more firewall stuff here #832
2016-05-19 20:47:46 +02:00
Franco Fichtner
8f5bb5e940
firewall: firewall settings ;) #832
2016-05-19 20:47:46 +02:00
Ad Schellevis
52e5e3a3a3
(snmp) validate location, contact for ascii set. closes https://github.com/opnsense/core/issues/939
2016-05-19 20:36:04 +02:00
Franco Fichtner
31fe2500f1
firewall: another firewall-related setting #832
2016-05-19 20:31:10 +02:00
Franco Fichtner
0c79cbe4b0
firewall: migrate feature setting, depends on filter #832
2016-05-19 20:26:33 +02:00
Franco Fichtner
1650342466
firewall: can't change mode, cluster menu features; closes #921
...
Not really satisfied with the HA split but let's just say it's a
work in progress...
2016-05-19 20:19:42 +02:00
Ad Schellevis
b9095a5517
(configd, template) proceed with template generation when doing a wildcard search
2016-05-19 18:52:49 +02:00
Ad Schellevis
e74f0c2a42
(auth) refactor user/group privilege management
2016-05-19 18:41:22 +02:00
Franco Fichtner
48b9b3ff13
mvc: fix api remote crash report notice
2016-05-19 08:06:54 +02:00
Frédéric LIETART (TheLinuxFr)
f34957ec24
Minor typo fix; closes #938
2016-05-18 22:16:00 +02:00
Ad Schellevis
803fd5f5f7
(xmlrpc) proper acl handling
2016-05-18 21:00:23 +02:00
Franco Fichtner
cc9cede6d8
firewall: move any to front of the list
2016-05-18 19:45:38 +02:00
Franco Fichtner
7aa0cd11ab
trust: fix cert count in ca overview
2016-05-18 19:14:21 +02:00
Ad Schellevis
84152de679
(status_habackup.php) check authentication
2016-05-18 17:59:14 +02:00
Ad Schellevis
92f791e1e9
(xmlrpc) missing dependency in service.inc
2016-05-18 15:29:52 +02:00
Ad Schellevis
22d838e4d8
Merge pull request #950 from fabianfrz/fix_949
...
this pull request will fix the comment as suggested in #949
2016-05-18 15:03:29 +02:00
Ad Schellevis
2578e7637e
(auth/gui) make gui auth fallback explicit (instead of silently accepting local)
2016-05-18 14:53:11 +02:00
Fabian Franz
cbcfc49684
fix comment in ServiceController.php; closes #949
2016-05-18 14:29:24 +02:00
Franco Fichtner
bb9daf3aee
ha: small wording tweaks on previous
2016-05-18 12:59:25 +02:00
Ad Schellevis
8b4b5bbb86
(IDS) template, check for existence before using value
2016-05-18 12:18:52 +02:00
Ad Schellevis
eebc4bec0b
add legacy style high availability backup status page for easy service restart/configure
2016-05-18 12:10:11 +02:00
Franco Fichtner
2c5768dce5
firmware: consistency in wording #948
2016-05-18 10:31:28 +02:00
Franco Fichtner
38efa570cc
firmware: API glue for reboot / powerdown; closes #948
2016-05-18 10:14:48 +02:00
Franco Fichtner
a96b0da4c0
firmware: add configd commands for reboot and powerdown #948
...
While there, improve the consistency of the cron descriptions
and service messages.
2016-05-18 09:53:52 +02:00
Franco Fichtner
5ad1fa69ad
services: bump values in preparation for RFC 7772; see #945
...
We'll go the long way here, bumping the values first before making
them configurable in the next iteration.
2016-05-18 07:15:49 +02:00
Franco Fichtner
da90e81369
config: deprecate cron export / import
2016-05-17 21:07:44 +02:00