Commit graph

5386 commits

Author SHA1 Message Date
Franco Fichtner
d0374346e2 sysutils/gdrive-backup: switch class name for linter 2026-02-03 16:11:01 +01:00
Franco Fichtner
0fe62ae500 net/freeradius: wrap up version 2026-02-03 15:30:08 +01:00
Franco Fichtner
93c1989036 dns/ddclient: wrap up version 2026-02-03 15:26:38 +01:00
Franco Fichtner
f216f3d458 LICENSE: sync 2026-02-03 15:24:14 +01:00
Maurice Walker
1278de17db
net/tayga: enable forwarding of UDP packets with zero checksum (#5183) 2026-02-03 07:36:37 +01:00
Kota Shiratsuka
c2c49fb1a1
FreeRADIUS: add TLS maximum version setting for EAP (#5175) 2026-01-30 19:54:11 +01:00
Franco Fichtner
4773ff712e security/wazuh-agent: bump revision 2026-01-30 15:55:28 +01:00
mbedworth
590bd9211c
security/wazuh-agent: fix syntax error in opnsense-fw active response (#5174)
Fix critical syntax error in opnsense-fw active response script that prevents IPs from being added to the __wazuh_agent_drop alias.

## Problem
The script contains invalid Python syntax - a variable assignment inside a dictionary literal:
```python
"parameters":{
   unique_key = "%s-%s" % (...)  # Invalid Python syntax
   "keys": [unique_key]
}
```

This causes the script to fail with a SyntaxError on all 'add' commands, meaning attacking IPs are never blocked.

## Changes
- Move unique_key assignment outside dictionary literal (fixes SyntaxError)
- Fix typo: 'even' -> 'event' in error message
- Add debug logging for easier troubleshooting

## Testing
- Verified syntax with `python3 -m py_compile`
- Tested active response add/delete operations on OPNsense 26.1
2026-01-30 07:44:12 +01:00
Frank Wall
cb73d5e65a
Merge pull request #5173 from fraenki/acme_413
security/acme-client: release 4.13
2026-01-29 23:27:26 +01:00
Frank Wall
e011819532 security/acme-client: update changelog 2026-01-29 22:32:57 +01:00
Frank Wall
db0b943465 security/acme-client: remove duplicate slashes, refs #5166 2026-01-29 22:31:31 +01:00
Frank Wall
d18e09c78d security/acme-client: release 4.13 2026-01-29 22:31:31 +01:00
Frank Wall
728b97c87e
Merge pull request #5168 from gigamonster256/push-rwxoyqsoyqlp
security/acme-client: allow always renew
2026-01-29 22:30:03 +01:00
Jeroen Kool
be5be59d60
security/acme-client: make it possible to obtain a global access token from TransIP (#5166)
* security/acme-client: Add option for global token to TransIP

The TransIP dns api and the acme.sh api for TransIP support the possibility to create a global access token.
With a global access token, the api call to TransIP can be amde from every ip adress.
There is a new button in the client configuration for TransIP, and this will be added to the account configuration file, which is used by acme.sh
2026-01-29 22:24:03 +01:00
Frank Wall
f3d86bb2d0
Merge pull request #5158 from Benno089/ISSUE-4959
security/acme-client: add support for DNS challenge Spaceship.com
2026-01-29 21:47:07 +01:00
Frank Wall
67977c43a8
Merge pull request #5157 from GutierrezJeremy/deploy-hook-ruckus
security/acme-client: add support for acme.sh deploy hook "Ruckus"
2026-01-29 21:46:32 +01:00
Frank Wall
268d504349
Merge pull request #5154 from apritcha1/master
security/acme-client: add support for ACME profiles
2026-01-29 21:46:03 +01:00
Franco Fichtner
4212ffea8c sysutils/git-backup: fix missing target dir
PR: https://forum.opnsense.org/index.php?topic=50542.0
2026-01-28 14:06:56 +01:00
Franco Fichtner
4020561368 isc-dhcp: check if device we try to configure exists in the system
PR: https://github.com/opnsense/plugins/issues/5169
2026-01-26 17:00:16 +01:00
Franco Fichtner
7c4f3c7e4a dns/ddclient: style sweep 2026-01-26 10:47:47 +01:00
Franco Fichtner
9810e4b1d7 syssutils/apuled: drop obsolete plugin 2026-01-26 10:40:36 +01:00
Franco Fichtner
276b8ecdc5 net/isc-dhcp: support idassoc6 mode correctly
Slightly simplify the previous code conditions since the new
GUI code does auto-track6 separately now and both modes have
'track6-interface' set.

PR: https://forum.opnsense.org/index.php?topic=50474.msg257718#msg257718
2026-01-26 08:21:58 +01:00
Caleb Norton
b23594e102 security/acme-client: allow always renew 2026-01-24 15:22:01 -06:00
Benno Kutschenreuter
93f434dc43 security/acme-client:add support for DNS challenge Spaceship.com 2026-01-23 14:54:05 +01:00
Jeremy Gutierrez
e9eb048a7c security/acme-client: add support for acme.sh deploy hook "Ruckus" 2026-01-23 14:17:16 +01:00
Franco Fichtner
2b44156267 dns/ddclient: small bump for now 2026-01-23 12:46:56 +01:00
Franco Fichtner
4800383a52 LICENSE: sync 2026-01-23 12:46:35 +01:00
Franco Fichtner
b879d7b6dd net/frr: annotate fix 2026-01-23 12:43:41 +01:00
Franco Fichtner
48b4168bdf net/frr: fix hang in carp start hook 2026-01-23 12:42:15 +01:00
Franco Fichtner
7de2634b88 net/isc-dhcp: small change for #5164 2026-01-23 12:40:38 +01:00
Stephan de Wit
14a1301888
isc-dhcpdv6: add static mapping export (#5164) 2026-01-23 12:05:19 +01:00
Leandro Scardua
f6576fb536
ddclient: add Hostinger DNS provider (#5161)
* hostinger integration
2026-01-22 18:42:00 +01:00
Monviech
2cc2215bbe
net/frr: Fix stall on carp hook by redirecting stdout (#5160) 2026-01-22 17:31:38 +01:00
Franco Fichtner
e3bae8e72f security/tinc: update version 2026-01-21 07:51:20 +01:00
Alexander Pritchard
f2a122bdc8 security/acme-client: fallback display name for certs with no CN 2026-01-20 10:50:27 -06:00
Alexander Pritchard
20ff8e5af4 Add ACME profile support to acme-client 2026-01-20 10:22:47 -06:00
Thojo0
735eaa545e
add disablesubnetroutes option (#5136)
closes https://github.com/opnsense/plugins/issues/5135
2026-01-20 14:45:40 +01:00
Frank Wall
3e0c77f252
Merge pull request #5153 from fraenki/acme_412
security/acme-client: release 4.12
2026-01-20 13:52:58 +01:00
Franco Fichtner
5a94cd82a8 LICENSE|README: sync 2026-01-20 13:28:27 +01:00
Franco Fichtner
728902ca2f plugins: this is 26.1 2026-01-20 13:01:50 +01:00
Franco Fichtner
38e6614831 www/nginx: new version 2026-01-20 12:59:16 +01:00
Franco Fichtner
b4ae3dc4da security/q-feeds-connector: style 2026-01-20 12:55:38 +01:00
Franco Fichtner
9603879e5f net/haproxy: change revision due to pending changes coming to 26.1
Since there wasn't a relese here in a while my minor modifications piled
up.  That's not a bad thing, but to make it traceable bump the revision
now in order to have better means to distinguish the problem on the stable
plugin since this will be stable/26.1 in a few minutes.
2026-01-20 12:53:07 +01:00
Franco Fichtner
6d2c6ce60d net/isc-dhcp: ready for prime time 2026-01-20 12:50:56 +01:00
Franco Fichtner
cb7b2aafe6 net/freeradius: new version 2026-01-20 12:47:13 +01:00
Joerg Werner
9c6fe3082a net/freeradius: EAP: Allow user to select minimum TLS Version of 1.3; closes #5140 2026-01-20 12:35:49 +01:00
Franco Fichtner
7b646b8309 net-mgmt/net-snmp: bump after change 2026-01-20 12:33:50 +01:00
Franco Fichtner
54e7c681d0 dns/dnscrypt-proxy: bump after last change 2026-01-20 12:31:57 +01:00
Franco Fichtner
a30717fa42 security/acme-client: style sweep 2026-01-20 12:21:50 +01:00
Frank Wall
d4cd3e3524 security/acme-client: release 4.12 2026-01-20 12:21:26 +01:00