Commit graph

7385 commits

Author SHA1 Message Date
Ad Schellevis
fb7c4e360b accidentally removed .editorconfig 2017-07-30 15:14:59 +02:00
Franco Fichtner
27f26f0dab ipsec: mock authcfg for backwards compat, "none" is not an auth server #1748 2017-07-30 14:11:29 +02:00
Franco Fichtner
6bb6110562 ipsec: local group enforcement, some comments follow #1748
o group_source was removed as it was unused
o stop passing global authcfg through the ipsec config--wtf?
o if the mobile client section is disable, refuse authentication
o make xauth privilege optional, it will go away in 18.1
2017-07-30 13:49:35 +02:00
Ad Schellevis
76839db73a ipsec, cleanup spd entries after removal, for https://github.com/opnsense/core/issues/440 2017-07-30 12:58:17 +02:00
Franco Fichtner
ee0c1705a1 openvpn: allow local group enforcement #1748
While there, strip a bit of legacy cruft.
2017-07-30 12:34:28 +02:00
Franco Fichtner
1fe8341a19 ipsec: keep the namespace prefix ipsec_, inline a compare function 2017-07-30 10:39:02 +02:00
Ad Schellevis
814d18ac37 ipsec, support manually defined spd entries, for https://github.com/opnsense/core/issues/440 2017-07-29 14:58:10 +02:00
Ad Schellevis
9351e45d59 restructure ipsec_find_id, remove dependency of ipsec_configure_do(), work for https://github.com/opnsense/core/issues/440 2017-07-29 14:21:52 +02:00
Franco Fichtner
8cfabc94d4 firmware: allow to view details about plugins; closes #1464 2017-07-29 11:46:31 +02:00
Franco Fichtner
01e14cc077 configd: rewrite the escaping during parameter replacement
Use a safer single-quote approach.  In single-quotes, we only
have to escape single quotes itself with an unquote, double-
quote trick.

Also split the argument format from the actual command so that
we can use %x notation in the command, which should not be
replaced.
2017-07-29 11:35:54 +02:00
Franco Fichtner
eaff826af5 firewall: support outbound NAT source invert; closes #1747 2017-07-29 10:46:47 +02:00
Franco Fichtner
ecbd90e2ef system: set local + no fallback as default auth mode
softcoding local + local fallback seems weird.
2017-07-28 21:34:53 +02:00
Ad Schellevis
4eded4f07e improve input validations in firewall_aliases_edit.php, closes https://github.com/opnsense/core/issues/1738 2017-07-28 13:52:51 +02:00
Ad Schellevis
2e5ac42ff4 make sure we can load our yaml file when there no rules installed yet 2017-07-28 11:32:22 +02:00
Alexander Lauster
55e52fea3a Change Mirror URL
Change auf-feindgebiet.de to dns-root.de
2017-07-27 21:36:01 +02:00
Stefan Husch
374457b8d2 Fix Tunnelblick link 2017-07-27 18:23:44 +02:00
Ad Schellevis
c294bc5f84 firewall_aliases, small style fix (use fa fa-pencil) 2017-07-26 19:23:46 +02:00
Franco Fichtner
32c36fe2d2 boot: update copyright like done on stable branch 2017-07-26 16:39:54 +02:00
Franco Fichtner
9e2380302b firmware: update EoL message to reflect reality 2017-07-25 08:31:13 +02:00
Franco Fichtner
9aac917f16 firmware: point to 17.7 2017-07-24 08:37:19 +02:00
Franco Fichtner
262f466f2b firmware: better print for changelog fetch if failed 2017-07-24 08:36:37 +02:00
Franco Fichtner
f0c8e2f9e3 firmware: fix typo in previous 2017-07-24 08:32:29 +02:00
Franco Fichtner
36c4a67e9d firmware: fetch changelogs on console update, too 2017-07-24 07:05:00 +02:00
Franco Fichtner
a54b359f49 system: add email and comment field to users; closes #1731
While there, improve navigation and signaling a bit.
2017-07-23 19:33:34 +02:00
Franco Fichtner
baa7ec8889 ntp: adjust string accordingly; closes #1574 2017-07-23 18:20:12 +02:00
Franco Fichtner
0d9e0ba616 interfaces: strtolower() according to manual 2017-07-23 16:53:24 +02:00
Paolo Velati
c909149e51 host-uniq settings in mpd.conf corrected
fixed command in pppoe configuration, connected to pull request #1730 https://github.com/opnsense/core/pull/1730
2017-07-23 16:28:25 +02:00
Franco Fichtner
6da1836636 rc: root file system print, closes #1408 2017-07-23 16:03:26 +02:00
Franco Fichtner
566fe52edc etc: last batch for #1733 2017-07-22 18:10:00 +02:00
Franco Fichtner
b0aa1be38d www: more cleanups possible for #1733 2017-07-22 16:52:50 +02:00
Franco Fichtner
8ad27fbe88 system: all user group no longer exists #1733 2017-07-22 15:47:11 +02:00
Ad Schellevis
69510a5fad legacy ui pages cleanup for https://github.com/opnsense/core/issues/1733 2017-07-22 15:01:26 +02:00
Ad Schellevis
b7f61727cd php7.1 filter.inc https://github.com/opnsense/core/issues/1733 2017-07-22 14:55:20 +02:00
Ad Schellevis
cd4b958840 fix some more config handling for php 7.1, https://github.com/opnsense/core/issues/1733 2017-07-21 17:43:32 +02:00
Ad Schellevis
678aa412b5 some more config handling fixes in inc directory, for https://github.com/opnsense/core/issues/1733 2017-07-21 17:38:19 +02:00
Franco Fichtner
f0e2126f27 pkg: fix plist 2017-07-21 17:20:41 +02:00
Ad Schellevis
57c478f9af remove legacy migrations (upgrade_config.inc), as discussed with @fichtner 2017-07-21 17:18:29 +02:00
Ad Schellevis
39fe8d838c fix config handling for auth.inc, https://github.com/opnsense/core/issues/1733 2017-07-21 16:12:48 +02:00
Franco Fichtner
e5b0401626 rc: allow to stop launch of configd
https://forum.opnsense.org/index.php?topic=5531.0
2017-07-21 10:38:51 +02:00
Franco Fichtner
ea6b5bda52 interfaces: protect call of new WAN IPv6 #1668 2017-07-20 12:53:04 +02:00
Franco Fichtner
ac40e5218a interfaces: annotate binary data #1730 2017-07-20 11:21:58 +02:00
Franco Fichtner
4c179c235d openvpn: fix config handling on PHP 7.1 #1733
The day has come that this "bootstrap" logic broke horribly,
preventing us from upgrading to PHP 7.1 with the initial 17.7.

Add a config_read_array() function that emulates *all* potentially
required steps and grabs the array reference so that the code can
be migrated easily.

Hopefully this also works on PHP 7.0.  ;)
2017-07-20 08:41:35 +02:00
velati
7681a2915d interfaces: Host-Uniq field in PPPoE connection; closes #1730
PR: https://forum.opnsense.org/index.php?topic=5307.0
2017-07-19 17:29:43 +02:00
Franco Fichtner
36f0ff51dc openvpn: normalise line endings like webgui does
PR: https://github.com/opnsense/core/issues/1727
2017-07-19 13:28:17 +02:00
Ad Schellevis
1dd5150bbf Merge pull request #1724 from evbevz/patch-1
Update base_form.volt
2017-07-18 12:22:27 +02:00
evbevz
af7d099f49 Update base_form.volt
If style of header is not set in form xml, then PHP Notice appeared in log:
PHP Notice: Undefined index: style in ......
2017-07-18 14:17:51 +04:00
Franco Fichtner
81eeab656d regenerate dh parameters 2017-07-16 12:13:52 +02:00
Ad Schellevis
218b37df45 login, cookies. set secure; HttpOnly on test_cookie as well to avoid false positives on pci scan 2017-07-16 11:55:47 +02:00
Ad Schellevis
d2ab500ac6 webgui, remove cipher TLS_RSA_WITH_3DES_EDE_CBC_SHA (SWEET32) 2017-07-16 11:32:18 +02:00
Ad Schellevis
46c460bb3f cleanup, move link_interface_to_vlans to interfaces_assign.php and remove unused code 2017-07-14 22:10:48 +02:00