Commit graph

5386 commits

Author SHA1 Message Date
GutierrezJeremy
0ec3d04843
security/acme-client: Add support for Timeweb Cloud DNS API (#5149) 2026-01-20 12:08:44 +01:00
Frank Wall
e71e18d4a9
Merge pull request #5138 from dozing00/feature/acme-dns-he-ddns
security/acme-client: Add support for Hurricane Electric DDNS API
2026-01-20 12:06:21 +01:00
Franco Fichtner
fe403ccbd4 vendor/sunnyvalley: small style sweep 2026-01-20 12:05:44 +01:00
sourceforge807
e6ac625b0f
security/acme-client: add support for Technitium DNS API (#5111) 2026-01-20 12:05:38 +01:00
Frank Wall
d30a1bbd91
Merge pull request #5081 from coderjoe/feature/acmesh-zyxel-gs1900-deploy
security/acme-client: add support for zyxel_gs1900 deploy hook
2026-01-20 12:04:32 +01:00
Hasan UCAK
0ac435ec6a
update information of os-sunnyvalley pkg pkg-descr, Makefile (#5148) 2026-01-20 11:53:59 +01:00
Franco Fichtner
da46d00944 plugins: PLUGIN_TIER last so it's not confused with PLUGIN_REVISION 2026-01-19 05:33:35 +01:00
Franco Fichtner
ae2d51e036 sysutils/nextcloud-backup: new version, style and unmaintaned marker
While the plugin just received a partial rewrite it hasn't gotten
any TLC in years though.
2026-01-19 05:24:04 +01:00
Franco Fichtner
3bccb618b4 sysutils/node_exporter: model style 2026-01-19 05:14:40 +01:00
Franco Fichtner
1dcf1eace1 sysutils/munin-node: model style 2026-01-19 05:10:27 +01:00
Franco Fichtner
87a27341ce security/wazuh-agent: model style and wrap up next version
As a note the default value for "syslog_programs" was scrapped
because it was not used.  Consider flipping Required=Y and putting
it back to whom it may concern.
2026-01-19 05:01:11 +01:00
Franco Fichtner
33540053e7 security/openconnect: model style 2026-01-19 04:56:20 +01:00
Franco Fichtner
5e83a9f93c security/crowdsec: model style
Changed a validation message to not end with question.  Although
I do not oppose to this the current rule is "dot" for end of sentence
only and the question appears to be better suited for the help text
where it can be accessed beforehand by the user.
2026-01-19 04:53:57 +01:00
Franco Fichtner
7f7406535e security/clamav: basic model style 2026-01-19 04:49:41 +01:00
Franco Fichtner
e1d9f49c81 net/zerotier: model style 2026-01-19 04:48:50 +01:00
Franco Fichtner
2783ef18b7 net/wol: model style 2026-01-19 04:46:53 +01:00
Franco Fichtner
b9bb07a0c9 security/tor: basic model style 2026-01-19 04:45:18 +01:00
Franco Fichtner
4bb1b60ced net/udpbroadcastrelay: basic model style 2026-01-19 04:44:35 +01:00
Franco Fichtner
783ebec7ec net/siproxd: model style
Scrapped defaults for networks since they are not used.  The DO
look useful so I'm making this note if somebody misses them the
fields probably need a Required=Y flip but here I just enforce
what is actually happening in the model and the fact that nobody
complained about it.
2026-01-19 04:40:49 +01:00
Franco Fichtner
d2c5b7acc2 net/freeradius: basic model style 2026-01-19 04:34:04 +01:00
Franco Fichtner
923bd52a94 security/q-feeds-connector: plugin style 2026-01-19 04:32:54 +01:00
Franco Fichtner
cf6f017970 net-mgmt/telegraf: basic model style 2026-01-19 04:32:20 +01:00
Franco Fichtner
bf34600cfe net-mgmt/collectd: basic model style 2026-01-19 04:29:08 +01:00
Franco Fichtner
6f0735b1be net/ndp-proxy-go: whitespace 2026-01-19 04:26:06 +01:00
Franco Fichtner
5df21765b3 net/frr: style issue 2026-01-19 04:25:11 +01:00
Franco Fichtner
5a7b8b93cf mail/postfix: make a minor release and model style 2026-01-19 04:24:07 +01:00
Franco Fichtner
fe467364cb dns/ddclient: wrap up new version 2026-01-19 04:17:06 +01:00
Frank Wall
b18c2660e7
Merge pull request #5146 from peterv99/peterv99-patch-mijnhost
fix mijnhost/scaleway DNS API settings
2026-01-18 23:49:50 +01:00
Monviech
10e42b15e0
net/ndp-proxy-go: Fix carp_depend_on condition in template (#5141) 2026-01-16 21:21:23 +01:00
Thomas Moore
c3e099c5ae Added support for Hurricane Electic DDNS in acme client plugin. 2026-01-15 14:26:26 -05:00
Franco Fichtner
b7cf2c098a net-mgmt/telegraf: bump version (forgotten previously) 2026-01-15 16:23:10 +01:00
Franco Fichtner
eafb46d82b net/isc-dhcp: bump version for clarity 2026-01-14 16:32:11 +01:00
Franco Fichtner
04473b3384 dns/ddclient: copyrights are not for advertising
The email if given is for easy contact.  Don't mind a link drop but
not via LICENSE pollution.
2026-01-14 15:21:24 +01:00
Franco Fichtner
d7fe3b2be9 isc-dhcp: syslog definitions and shuffling 2026-01-14 15:10:21 +01:00
Franco Fichtner
3af383e1e0 net/isc-dhcp: ACL and Menus
PR: https://github.com/opnsense/core/issues/9155
2026-01-14 14:48:01 +01:00
Franco Fichtner
c8781d24b1 net/isc-dhcp: more files
PR: PR: https://github.com/opnsense/core/issues/9155
2026-01-14 14:25:12 +01:00
Franco Fichtner
50d93374ee net/isc-dhcp: start adding the files
PR: https://github.com/opnsense/core/issues/9155
2026-01-14 13:48:25 +01:00
Franco Fichtner
23997fecc1 net/isc-dhcp: add plugin for legacy code 2026-01-14 12:36:36 +01:00
Franco Fichtner
764f2d977b LICENSE: sync 2026-01-14 12:36:26 +01:00
Monviech
af86f322cd
net/frr: Changelog for v1.50 (#5133)
* net/frr: Changelog for v1.50

* Fix a helptext to be more generic and one string.

* Remove private AS should be advanced
2026-01-13 09:10:49 +01:00
Shelldog95
2ffb9c413a
net/frr: Add capability support for BGP neighbors (#5128)
* net/frr: Add capability support for BGP neighbors

I've recently tried to use OPNsense in an environment where the use of link-local addresses is required.
Since the link-local capability is not available, I was not able to use OPNsense then.

Obviously, there are some other with the same problem:

  * [os-frr] wrong interface for IPv6 link-local used to connect to neighbor #4962
  * https://forum.opnsense.org/index.php?topic=36088.0

So, I'd like to offer support for BGP capabilities.

* net/frr: Improve help string for BGP Capabilities as suggested by @Monviech

* net/frr: Fix typo as found by @Monviech

* net/frr: Remove not needed attribute as suggested by @Monviech

* Apply suggestion from @Monviech

---------

Co-authored-by: Monviech <79600909+Monviech@users.noreply.github.com>
2026-01-13 08:33:14 +01:00
Monviech
d31618ee9b
net/frr: Add CARP event handler to restart command (#5132) 2026-01-13 08:30:13 +01:00
rfrederick
ea48c1445b
net/frr: Add BGP remove-private-AS to neighbors (#5090)
* net/frr: Add BGP remove-private-AS to neighbors

* net/frr: Simplify implementation of BGP remove-private-AS for neighbors

* Apply suggestion from @Monviech

---------

Co-authored-by: Monviech <79600909+Monviech@users.noreply.github.com>
2026-01-13 08:29:33 +01:00
Joe Bauser
ea053db65a security/acme-client: add support for acme.sh deploy hook "zyxel_gs1900"
Fixes #5080
2026-01-08 10:09:33 -05:00
Franco Fichtner
6ef3face70 net/relayd: removed isEmptyAndRequired() 2026-01-08 14:35:04 +01:00
mbedworth
565bd02235
[wazuh-agent] Add repeated_offenders config, fix template issues (#5116)
- Add repeated_offenders field to active response settings
- Remove 'without context' from ossec.conf include loop to allow
  variable access in config fragments
- Fix opnsense-fw.conf template bug: wazuh_command -> active_response
- Bump model version to 1.0.3
2026-01-06 08:48:13 +01:00
Monviech
f34410b9a3
net/ndp-proxy-go: Add depend on CARP syshook (#5108)
* net/ndp-proxy-go: Add depend on CARP syshook

* net/ndp-proxy-go: When carp_depend_on is enabled, prevent service start on BACKUP

* Depend on CARP is advanced mode, sort other more advanced options under headers

* Use model instead of global config

* Use custom variable for carp check

* Change label and adjust help text
2026-01-05 17:19:31 +01:00
Monviech
8895dd9796
net/frr: Prevent errors in diagnostics view when a frr daemon is not started (#5119)
* net/frr: Prevent errors in diagnostics view when a frr daemon is not started

* Add revision
2026-01-05 12:55:17 +01:00
mbedworth
d3cbedaa8e
security/wazuh-agent: Fix active response duplicate key causing false aborts (#5104)
When multiple IPs trigger the same rule simultaneously, they were
sharing the same check_keys value (only rule ID), causing the manager
to abort all but the first execution.

Changed the key to include both rule_id and srcip to make it unique
per source IP, allowing multiple simultaneous blocks while still
preventing duplicate blocks of the same IP.

Fixes #4738
2025-12-28 10:23:52 +01:00
Monviech
809f2ae9d8
net/ndp-proxy-go: Add ratelimit for pfctl operations (#5096) 2025-12-19 13:43:52 +01:00