View Issue Details
718 [IPFire 2.x] Addon minor N/A 2010-09-08 21:17 2010-09-08 21:17
romulus1689 i386  
Linux  
normal 2.7  
new  
open  
none    
none  
   
Possibility to Filter the Log's
Hi Dear, It would be a pleasure to have a filter in the Log's. Especially in the Firewall Log it would be good if I could filter for IP-Addresses and Ports. It would also be good, if you could make a page selection for a direct access to the page in the Firewall Log. And it would be a pleasure if you could sort from the Last logged thing to the first. Thank you, Best Regards Thomas
Final
There are no notes attached to this issue.





View Issue Details
694 [IPFire 2.7] Stable/Final-Version feature always 2010-07-23 22:04 2010-09-06 16:45
romulus1689 i386  
Linux  
high 2.5  
feedback Core38  
open  
none    
none  
   
Setting the Encryption in IKE and ESP and the Wildcard %any
It would be a pleasure if I could set in the Remote Host or IP field in the VPN Connection configuration in "Net-to-Net" the wildcard "%any" it is very important if you will build a connection with a dynamic and a static ip-address. Also it would be very great if I could set the Encryptionstrings for the IKE and ESP parameters for the VPN Connections, because many of the default algorithms which are in the Config-File are insecure. Best Regards Thomas Bruckmann
Final
Notes
(0002185)
Anonymous   
2010-07-23 23:05   
Not quite sure strongswan supporting %any, static and dynamic adresses are working well You can change these parameter by using the advanced options of the connection.
(0002296)
Arne_F   
2010-09-06 16:45   
%any is not working because strongswan doesn't have a matching secret for the connection anymore. It may works with certs but i have not tested this. Use a dyndns fqdn for the dynamic IP. We have added a script that check and restart the connection if the address has changed.





View Issue Details
686 [IPFire 2.7] Stable/Final-Version minor always 2010-07-09 21:52 2010-09-05 17:32
ipmaxfire i386  
Arne_F Linux  
normal 2.5  
assigned Core38  
open  
none    
none  
   
pluto / strongswan producing cpu load
have 3 ipsec vpn connections to ipcop (current version) configured and well running with certificates. updating to current core 38 was no problem. vpn connections do work and reconnect, but pluto gives a 100% cpu load and the log file of ipsec is about 40.000 lines for 12 hours. Main errors / entries in the log file of ipsec are: malformed packet in payload duplicate packet next payload type of ISAKMP Identification Payload has an unknown value: 113 next payload type of ISAKMP Identification Payload has an unknown value: 227 next payload type of ISAKMP Identification Payload has an unknown value: 42 platform: Atom n270, USB pen as boot drive
Final
pluto.txt (780) 2010-07-09 21:52
http://mantis.ipfire.org/file_download.php?file_id=68&type=bug
load_diagramm.png (22,965) 2010-07-09 21:53
http://mantis.ipfire.org/file_download.php?file_id=69&type=bug
png

cpu_diagramm.png (42,493) 2010-07-09 21:53
http://mantis.ipfire.org/file_download.php?file_id=70&type=bug
png

prozesse_diagramm.png (24,366) 2010-07-09 21:53
http://mantis.ipfire.org/file_download.php?file_id=71&type=bug
png
Notes
(0002174)
ipmaxfire   
2010-07-09 21:55   
(edited on: 2010-07-09 21:56)
the effect of all is: squid (configured as transparent proxy) responds very slow, status page of ipfire responds slow on vpnmain.cgi update to core38 was on friday morning (see graphs)
(0002175)
Maniacikarus   
2010-07-09 23:06   
Did you selected multiple protocols for IKE and ESP
(0002176)
ipmaxfire   
2010-07-10 10:08   
(edited on: 2010-07-10 10:47)
I have the following settings set to on: IKE: AES 256, 3DES IKE integrity: SHA, MD5 IKE group: MODP-6144 "down to" MODP-1024 lifetime 1 hour ESP: AES 256, 3DES ESP integrity: SHA, MD5 ESP group: Phase 1 lifetime 8 hours PFS turned on compression turned on The above settings are true for both of my vpn connections. ===================== Reducing settings to AES256 does not change anything.
(0002184)
ipmaxfire   
2010-07-23 21:02   
Did a fresh reinstall from current .38 iso image and imported old settings from ipf-file (further did bios upate of my D945GSEJT board to current version). without any change. http-surfing via squid transparent proxy is as slow as a modem connection
(0002295)
Arne_F   
2010-09-05 17:32   
First try to disable the compression on both sides. Maybee the compression is not compatibe between the very old openswan 1.x and strongswan.





View Issue Details
692 [IPFire 2.7] Addon minor always 2010-07-23 14:58 2010-09-05 17:25
festivi i386  
Arne_F Linux  
normal 2.7  
feedback Core38  
open  
none    
none  
   
Could not hear voice from outside voip sip
Need Help, My VoIP couldn't hear voice from outside SIP call.., when i try to call outside, the ring is hear but voice isn't hear when pick the SIP Phone.... Any other suggest...? P.S : My firewall, Port Forwarding was set to VoIP Server correctly. Cheers, Ika
Final
Notes
(0002294)
Arne_F   
2010-09-05 17:25   
This is a problem of sip natting. This should be already fixed in core39 Has you tested this version already?





View Issue Details
701 [IPFire 2.7] Stable/Final-Version feature always 2010-08-13 11:49 2010-09-05 17:23
nic i386  
Arne_F Linux  
low 2.7  
resolved Core39  
fixed  
none    
none  
   
Intel IGB driver is not up-to-date
The intel igb-network-driver is not up-to-date. Some network-cards (e. quad-port cards) aren't working!
The attachment contains the latest igb-sources! Can somebody compile it and upload the igb.ko.gz?
Final
igb-2.2.9.tar.gz (216,070) 2010-08-13 11:49
http://mantis.ipfire.org/file_download.php?file_id=73&type=bug
Notes
(0002293)
Arne_F   
2010-09-05 17:23   
Core40 will contain igb driver version 2.3.4





View Issue Details
697 [IPFire 2.7] Stable/Final-Version feature always 2010-07-28 22:31 2010-09-05 17:22
traxxus i386  
earl Linux  
low 2.5  
assigned Core38  
open  
none    
none  
  Core41  
Hilfetext bei URL Blacklist und Whitelist
Im URL Filter sollte zum besseren Verständnis bei den Feldern von Black- und Whitelist ein Fallbeispiel direkt oben vom Textfeld stehen. Aber Bilder sagen mehr als 1000 Worte.
Final
urlfilter.jpg (24,901) 2010-07-28 22:31
http://mantis.ipfire.org/file_download.php?file_id=72&type=bug
jpg
Notes
(0002189)
Maniacikarus   
2010-07-31 08:41   
(edited on: 2010-07-31 08:41)
Have thought about it and i think its better to be consequent and not to implement this, even it would be usefull, we do our documentation at the wiki http://wiki.ipfire.org/en/configuration/network/url-filter and if we implement this here well need to have a lot more inline examples, just to be consequent. @the other devs leave feedback here, implementation would be easy
(0002242)
Maniacikarus   
2010-08-18 11:49   
Arne whats your oppionion?
(0002292)
Arne_F   
2010-09-05 17:21   
The idea is good. Earl can you add this texts?





View Issue Details
700 [IPFire 2.7] Addon feature N/A 2010-08-12 17:43 2010-09-04 16:30
gregor i386  
earl Linux  
normal 2.7  
feedback Core39  
open  
none    
none  
  Core41  
GnuDIP Client ins Webinterface
Ich bitte um den Versuch den GnuDIP Client im IPFire bzw. Webif zu integrieren.
Final
There are no notes attached to this issue.





View Issue Details
716 [IPFire 2.7] Stable/Final-Version feature N/A 2010-09-02 06:57 2010-09-04 16:30
Maniacikarus i386  
Maniacikarus Linux  
normal 2.7  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Update snort to current stable
Snort 2.8.6.1 is available for public use, rules can be downloaded
Final
There are no notes attached to this issue.





View Issue Details
705 [IPFire 2.7] Stable/Final-Version feature N/A 2010-08-18 02:26 2010-09-02 21:53
Wired_Life  
Maniacikarus  
normal  
resolved Core38  
fixed  
none    
none Core40  
  Core40  
firewall groups with mac adresses
tried to use mac adresses instead of ip adresses but dont work it would be really useful
Notes
(0002240)
Maniacikarus   
2010-08-18 10:32   
Like the descriptions says IP Adress Groups, MAC Groups are not that easy to implement because the mac filter of iptables is only valid for input and forward chain and doesn´t make sense for the output chain, thats why it would not work atm to have mac filter in the outgoing firewall.
(0002247)
Wired_Life   
2010-08-18 16:31   
ok no prob what i need is a filter to only allow mac adresses they stands in dhcp fix leases ip adress filter is no solution because everyone can change the ip adress to pass the filter
(0002249)
Wired_Life   
2010-08-19 05:20   
(edited on: 2010-08-19 05:23)
i've written this script but it don't work http://pastebin.com/jmnj8bds can you help me?
(0002250)
Maniacikarus   
2010-08-19 13:52   
Why don´t you use blue for this?
(0002251)
Wired_Life   
2010-08-20 09:55   
ok now i use blue for lan ;)
(0002252)
Maniacikarus   
2010-08-26 10:05   
Add a new Chain for OutgoingFW and add it to Forward Chain, there the MAC Filter can be stored, GUI needs to be reimplemented and Groups need to be made. Quite a lot of work, may take 2-3 Core´s





View Issue Details
717 [IPFire 2.7] Stable/Final-Version minor have not tried 2010-09-02 10:32 2010-09-02 11:10
hoppel IPFire v2.5  
Maniacikarus  
normal  
resolved  
no change required  
none    
none  
   
pakfire should have option to force updates when system is offline
The pakfire command should be extended with an option to force it to function even when the system thinks it is offline. This would be use full when maintaining a system outside its normal environment when the internet connection is setup manually via ifconfig / route commands.
Notes
(0002291)
Maniacikarus   
2010-09-02 11:10   
If you set it up that way then simply ensure that /var/ipfire/red/active exists and disable the pakfire ping check, thats all that might prevent you from this





View Issue Details
715 [IPFire 2.7] Stable/Final-Version minor always 2010-08-29 08:40 2010-08-29 08:43
Maniacikarus i386  
Maniacikarus Linux  
normal 2.7  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
After changing red device from ppp0 to red0 or pppoe to static qos no longer works
Changing the red type does not affect qos
Final
Notes
(0002290)
Maniacikarus   
2010-08-29 08:43   
just changing the position from $qossettings{'RED_DEV'} = `cat /var/ipfire/red/iface`; after &General::readhash("${General::swroot}/qos/settings", \%qossettings); so the device will be update everytime you act on cgi http://git.ipfire.org/gitweb.cgi?p=ipfire-2.x.git;a=commit;h=4d17a269dbd948f6c48f561552c328ab52b085ec





View Issue Details
710 [IPFire 2.7] Addon feature N/A 2010-08-27 14:13 2010-08-29 08:28
Maniacikarus i386  
Maniacikarus Linux  
low 2.7  
resolved Core39  
fixed  
none    
none  
   
Add htcaps and wmm to hostap config when 802.11n is used
need to add wmm_enabled=1 to the config when 802.11n is enabled and add an input fied for filling the ht_cap flags like ht_capab=[HT40+][SHORT-GI-20][SHORT-GI-40][TX-STBC][RX-STBC12][DELAYED-BA] ht_caps are hardware and channel dependend so we can not autofill this
Final
Notes
(0002289)
Maniacikarus   
2010-08-29 08:28   
http://git.ipfire.org/gitweb.cgi?p=ipfire-2.x.git;a=commit;h=6e346fe0651118e27d01c895e0b82dea8cf9aa3c





View Issue Details
691 [IPFire 2.7] Stable/Final-Version minor always 2010-07-23 13:23 2010-08-29 08:07
glotzi Alix 2c3  
Arne_F Linux  
normal 2.7  
acknowledged  
open  
none    
none  
   
VPN via IPSEC using VirtualIP does not work (Iphone)
Details see here http://forum.ipfire.org/index.php?topic=2658.0 [^]
There are no notes attached to this issue.





View Issue Details
713 [IPFire 2.7] Addon feature N/A 2010-08-27 19:57 2010-08-29 08:07
Maniacikarus i386  
earl Linux  
low 2.7  
assigned  
open  
none    
none  
   
Add imspector as addon
first of all a default integration without a great gui, will be done later.
Final
Notes
(0002288)
Maniacikarus   
2010-08-29 08:07   
Main integration is done, now you can check on for a nice gui aso





View Issue Details
707 [IPFire 2.7] Addon tweak N/A 2010-08-26 10:06 2010-08-27 20:06
Maniacikarus i386  
Maniacikarus Linux  
low 2.5  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Add a new Firewall Chain for Guardian Drops
ATM Guardian drop rule are store in the input chain that should be changed
Add a new Chain for Guardian and input, so we quickly may flush or see what blocks are active by Guardian
Final
Notes
(0002277)
Maniacikarus   
2010-08-27 20:06   
http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=e050adc8c1ef7082c0d26fab4b999f83d35db303 http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=bef4096f65580b95f585194c0341a08e6efcb77c New Addon can be released after Core40!





View Issue Details
711 [IPFire 2.7] Stable/Final-Version minor always 2010-08-27 18:44 2010-08-27 20:05
traxxus Linux  
Maniacikarus IPFire 2.7 stable Core 39  
normal IPFire 2.7  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Add-On Backups
Löschen der Sicherung eines addons nicht möglich (auf 2 IPFire Umgebungen getestet). Nach einem Klick auf das Löschen Symbol passiert nichts.
Final
Notes
(0002275)
Maniacikarus   
2010-08-27 19:45   
http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=41708968ace02277dee77be86de768477813017f
(0002276)
Maniacikarus   
2010-08-27 20:05   
http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=363a19ee8c387706bc6a6a7c1a9f822e68d6f7dc





View Issue Details
712 [IPFire 2.7] Stable/Final-Version feature always 2010-08-27 19:42 2010-08-27 19:42
Maniacikarus Linux  
IPFire 2.7 stable Core 39  
none IPFire 2.7  
new Core39  
open  
none    
none  
   
Add-On Backups
Versionierung bei Addon Backups erwünscht
There are no notes attached to this issue.





View Issue Details
709 [IPFire 2.7] Stable/Final-Version tweak always 2010-08-27 11:16 2010-08-27 11:16
Maniacikarus i386  
Arne_F Linux  
low 2.7  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Update hardcoded ping.ipfire.org IP
Update hardcoded ping.ipfire.org IP related to our hoster change
Final
There are no notes attached to this issue.





View Issue Details
708 [IPFire 2.7] Stable/Final-Version feature N/A 2010-08-27 11:14 2010-08-27 11:15
Maniacikarus i386  
Maniacikarus Linux  
normal 2.5  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Update openvpn to current stable version 2.1.2
Update openvpn to current stable version 2.1.2
Final
There are no notes attached to this issue.





View Issue Details
706 [IPFire 2.7] Stable/Final-Version minor always 2010-08-18 04:43 2010-08-18 16:39
Wired_Life  
 
normal  
new Core39  
no change required  
none    
none  
   
snort disable logging for outgoing red traffic
please disable logging of outgoing red traffic because it causes to log everything twice coming from green going to red
Notes
(0002241)
Maniacikarus   
2010-08-18 10:34   
Please disable logging under firewall options
(0002243)
Wired_Life   
2010-08-18 15:00   
no no i mean the twice logging when you enable snort @ green & red please talk with earl or arne they know what i mean
(0002244)
Maniacikarus   
2010-08-18 15:22   
Well thats totaly normal, because snort threads them independent.
(0002248)
Wired_Life   
2010-08-18 16:39   
i know but its better when you change snort red to log only incoming attacks and not outgoing because snort green do that it spams the entire log with double entrys like that http://www.cabanossi.de/snort.jpg 192.168.178.2 is client ip @ green 192.168.181.2 is ipfire ip @ red i hope you know now what i mean





View Issue Details
702 [IPFire 2.7] Stable/Final-Version minor sometimes 2010-08-15 12:10 2010-08-18 15:24
bschluff  
Maniacikarus  
low  
resolved Core39  
fixed  
none    
none Core40  
  Core40  
Samba /var/lock Filesystem zu klein
Beim kopieren vieler Files auf Samba Shares wird nach einigen Minuten die Netzwerkfreigabe beendet, weil der Speicherplatz auf /var/lock nicht ausreicht. Der Fehler lässt sich beheben, wenn in der /etc/fstab der Speicherplatz des Filesystems vergrößert wird. Ich habe es von 1M auf 64M vergrößert -> Fehler behoben
Notes
(0002224)
Maniacikarus   
2010-08-15 12:37   
This one is documented in the forum, we will rechange the var lock to 8MB since this does not cause any problems in pre 2.7
(0002225)
bschluff   
2010-08-15 13:14   
I did not found a solution for this issue in the Wiki. sorry
(0002246)
Maniacikarus   
2010-08-18 15:24   
http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=8190e95105d0398862f0be73b6b4e4fbd8b27214





View Issue Details
695 [IPFire 2.7] Stable/Final-Version feature always 2010-07-26 09:33 2010-08-18 15:23
traxxus i386  
Maniacikarus Linux  
normal 2.7  
resolved Core38  
fixed  
none    
none Core40  
  Core40  
Port Range bei QoS ermöglichen
Beim QoS ist es beim erstellen einer neuen Port Regel nicht möglich, Port Ranges anzugeben. Das Textfeld ist auf 5 Ziffern begrenzt. Ob es jedoch reicht einfach die maxlenght="5 auf" maxlenght="11" zu ändern, weiss ich nicht. Darum soll sich jemand mit Hintergrundwissen kümmern.
Final
Notes
(0002188)
Maniacikarus   
2010-07-30 16:53   
iptables -t mangle -A QOS-OUT -p tcp --dport 80:81 -j MARK --set-mark 104 iptables -t mangle -A QOS-OUT -p tcp --dport 80:81 -j RETURN hat zumindest funktioniert, also erweiter das Feld mal und probiere es aus
(0002217)
Maniacikarus   
2010-08-06 10:31   
Hast Du das mal ausprobiert?
(0002218)
traxxus   
2010-08-06 12:15   
(edited on: 2010-08-06 12:19)
Eben jetzt. "Fressen" tut er die Angaben, es kommen keine Fehler. Aber ob die Regel auch wirklich greift sehe ich nicht. Das Diagramm ist zu undeutlich. Grafik: http://niceone.game-host.org/picup/images/0608.jpg
(0002219)
Maniacikarus   
2010-08-12 07:16   
Sorry dass ich erst jetzt wieder reagiere, aber ob er das genommen hat siehst Du in der iptables CGI für QOS-INC oder OUT dort müssten marks für die 102 entsprechend da sein
(0002221)
traxxus   
2010-08-12 22:18   
Also. Ich sehe keinen einzigen Eintrag, in welchem einer der Ports der festgelegten Range zu sehen ist.
(0002222)
Maniacikarus   
2010-08-14 10:45   
Für tcp funktionert es scheinbar, andere Protokolle scheinbar nicht 0 0 MARK tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp spt:10 dpts:12:13 MARK set 101 0 0 MARK tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp spts:10:11 dpts:12:13 MARK set 101 0 0 MARK tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:80:81 MARK set 104 0 0 RETURN tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpts:80:81
(0002239)
Maniacikarus   
2010-08-17 07:53   
Ich werd die Feldlänge mal erhöhen allerdings das Ganze nicht offiziell anpreisen, das funktioniert nicht in allen Fällen und wenn man das so machen möchte sollte man sich ein wenig auskennen und wissen wo man suchen muss falls es nicht funktioniert
(0002245)
Maniacikarus   
2010-08-18 15:23   
http://git.ipfire.org/?p=ipfire-2.x.git;a=commit;h=ec3573fc83603317b0e9dd195426d8947a1c25f2





View Issue Details
699 [IPFire 2.7] Addon tweak always 2010-08-09 20:30 2010-08-16 12:17
traxxus i386  
Linux  
none 2.7  
feedback  
won't fix  
none    
none  
   
Neues Icon für "löschen" einer Dateisicherung
Überall sieht das "Löschen" Icon anders aus. Ich plädiere für Einheitliches Design. Ein eindeutiges Icon macht hier Sinn (und nicht einmal ein Papierkorb und einmal irgendwas anderes. Icon Vorschlag: http://niceone.game-host.org/picup/images/delete.png [^] Und so sieht das dann aus: http://niceone.game-host.org/picup/images/0908.jpg [^]
Icondownload: http://niceone.game-host.org/picup/images/delete.gif [^] http://niceone.game-host.org/picup/images/usertrash.png [^]
Final
Notes
(0002220)
Maniacikarus   
2010-08-12 22:04   
Das liegt daran, dass wir erst später das neue GPL kompatible Iconset übernommen haben und dadurch vielleicht noch irgendwo die älteren Buttons sind, allerdings wirds aus meiner Sicht beim Papierkorb bleiben.





View Issue Details
676 [IPFire 2.7] Addon minor always 2010-06-27 09:37 2010-07-12 20:37
rowie75  
Maniacikarus  
normal  
assigned  
open  
none    
none  
   
nfs-server fehler beim beenden
Warum macht der nfs server eigentlich immer n fehler beim beenden?
[root@firewall ~]# /etc/init.d/nfs-server stop Stopping NFS statd... [ OK ] Stopping NFS nfsd... [ FAIL ] Stopping NFS mountd... [ OK ] Refreshing NFS Exported Filesystems... [ OK ] Unmounting NFS Virtual Filesystem... [ OK ] Removing the rpc.statd pid file if it exists [root@firewall ~]# /etc/init.d/portmap stop Stopping Portmap [ OK ]
Händischer upgrade von 2.5 auf 2.7RC4
Notes
(0002142)
rowie75   
2010-06-27 09:39   
(edited on: 2010-06-27 09:40)
Das kommt beim starten des nfs-servers (dmesg): NFSD: Using /var/lib/nfs/v4recovery as the NFSv4 state recovery directory NFSD: unable to find recovery directory /var/lib/nfs/v4recovery NFSD: starting 90-second grace period nfsd: last server has exited, flushing export cache [root@firewall ~]#





View Issue Details
677 [IPFire 2.7] RC-4 minor always 2010-06-27 13:42 2010-07-12 20:28
rankov  
ms  
low  
assigned  
open  
none    
none  
   
qos subclass delete rule - only manual
add subclass add subclass rule rule not visible in qos, iptables show rule
subclass.JPG (38,579) 2010-06-27 13:42
http://mantis.ipfire.org/file_download.php?file_id=66&type=bug
jpg
There are no notes attached to this issue.





View Issue Details
666 [IPFire 2.7] RC-2 tweak always 2010-06-21 12:48 2010-06-21 19:43
rankov  
 
low  
acknowledged Core38  
suspended  
none    
none  
   
Hardware Graphs spamming httpd/error_log
1 click add 53 line [Mon Jun 21 12:41:50 2010] [error] [client xxx.xxy.xxz.xxq] *** attempt to put segment in horiz list twice, referer: https://xxx.xxy.xxz.xxn:444/cgi-bin/hardwaregraphs.cgi [^]
Notes
(0002110)
Maniacikarus   
2010-06-21 19:43   
(edited on: 2010-06-21 19:48)
http://oss.oetiker.ch/rrdtool/forum.en.html#nabble-td1741464 Can be reproduced by doing perl -e "require '/var/ipfire/graphs.pl'; &Graphs::updatehwtempgraph('day')" > temp The PNG is stored to the temp file, the errors get to stdout





View Issue Details
659 [IPFire 2.7] RC-2 trivial always 2010-06-19 12:08 2010-06-20 22:46
rankov  
earl  
low  
assigned  
reopened  
none    
none  
   
IE8 - bandwidth usage (external): incoming: 0 kb/s outgoing: 0 kb/s
IE8 - bandwidth usage (external): incoming: 0 kb/soutgoing: 0 kb/s Firefox - bandwidth usage (external): incoming: 0.2 kb/s outgoing: 0.2 kb/s IE8-Compatibility view bandwidth usage (external): incoming: 0 kb/soutgoing: 0 kb/s RC2 + RC3
Notes
(0002082)
rankov   
2010-06-19 12:35   
(edited on: 2010-06-19 13:01)
After 0000652 bug fix IE8 - bandwidth usage (external): incoming: 0 kb/s outgoing: 0 kb/s bug fix only add space
(0002084)
Wired_Life   
2010-06-19 15:29   
this bug is since ipfire 2.5 firefox shows speed, internet explorer not please fix it
(0002094)
earl   
2010-06-20 14:46   
Wired_Life since 2.5 or since IE8 ?
(0002102)
rankov   
2010-06-20 22:46   
earl Do you see 3 rd. line from Wired_Life?





View Issue Details
646 [IPFire 2.7] RC-1 feature have not tried 2010-06-14 04:09 2010-06-14 19:13
Wired_Life  
ms  
low  
assigned Core38  
open  
none    
none  
   
dhcp server option to allow only clients in fixleases file
can you add a option to allow only clients listed in fixleases file like in endian firewall? would be very useful
Notes
(0002021)
Maniacikarus   
2010-06-14 07:36   
You just want to disable dhcp for not listet clients?
(0002022)
Wired_Life   
2010-06-14 15:23   
yes
(0002035)
Maniacikarus   
2010-06-14 18:28   
maybee done with #0000330
(0002038)
Wired_Life   
2010-06-14 18:52   
i saw this in endian firewall docu Start address / End address If you intend to use fixed leases only (see below), leave these fields empty. but i can't leave this fields empty because there is no red * behind or?
(0002039)
Maniacikarus   
2010-06-14 19:13   
Its the same old ipcop/smoothwall code, worked here, becaue if you leave it blank there´s no dynamic range definition, never tried out what going on then, but i think this might work the way you expect.





View Issue Details
428 [IPFire 2.7] Addon tweak always 2009-07-29 09:45 2010-06-10 13:44
gerdh  
Arne_F  
normal  
assigned Core28  
open  
minor fix    
< 1 day  
   
2 nagios services are marked as red in default setup
the services ssh and http are marked as red on localhost in default setup because ipfire does not use standart port either SSL as default http service
to solve it add to /etc/nagios/objects/commands.cfg ======================================================= # 'check_ssh_222' command definition for ssh to port 222 define command{ command_name check_ssh_222 command_line $USER1$/check_ssh $ARG1$ -p 222 $HOSTADDRESS$ } # 'check_http_444' command definition for ipfire define command{ command_name check_http_444 command_line $USER1$/check_http -S -p 444 -I $HOSTADDRESS$ $ARG1$ } ================================================ and change /etc/nagios/objects/localhost.cfg to ================================================ define service{ use local-service ; Name of service template to use host_name localhost service_description SSH check_command check_ssh_222 notifications_enabled 1 } define service{ use local-service ; Name of service template to use host_name localhost service_description HTTP check_command check_http_444 notifications_enabled 1 } ======================================================== then state of both services change to green :-)
Notes
(0001695)
Maniacikarus   
2010-01-05 09:53   
Reminder sent to:: gerdh, Peterman
What´s the status?
(0001696)
gerdh   
2010-01-05 10:47   
(edited on: 2010-01-05 16:21)
still exists in actual core.... if someone can add my notes above it's fixed :-)
(0001721)
Maniacikarus   
2010-01-30 20:16   
Arne can you check this or get the boys have a look at theire nagios config.





View Issue Details
330 [IPFire 2.7] Stable/Final-Version minor always 2009-02-08 00:07 2010-06-10 13:44
tekknix  
ms  
normal  
assigned  
open  
none    
none  
   
DHCPD ignores static-Entries if static-Entries and dynamic-pool overlaps
Configure a range of 192.168.1.1 to 192.168.1.254 (complete Subnet). Make multiple static-Entries like host fix0 # PC1 { hardware ethernet 00:00:00:00:00:01; fixed-address 192.168.2.2; } host fix1 # PC2 { hardware ethernet 00:00:00:00:00:02; fixed-address 192.168.2.3; } If now a client tries to connect and grab an IP from IpFire then IpFire will send 1) DHCPOFFER 2) DHCPREQUEST 3) DHCPACK 4) DHCPDECLINE The configured PC's with static-Entries will lost their IP for a short moment.
It seems that the IP-CHECK-Flag isn't configured / compiled which DHCPD uses normally to proof if someone answers before sendind any offer to the Client.
Notes
(0001594)
rowie75   
2009-11-13 08:53   
any news? is this problem resolved?
(0001595)
ms   
2009-11-13 10:19   
Dunno, why is this assigned to me?