Franco Fichtner
43f6ca4aba
Scripts: do not descend into Private directories
2025-10-13 12:47:12 +02:00
Franco Fichtner
8599a8d85f
plugins: sync
2025-10-13 12:12:25 +02:00
Franco Fichtner
b587cc21cb
security/q-feeds-connector: lint
2025-10-13 12:06:04 +02:00
Franco Fichtner
b25d279f81
dns/ddclient: lint
2025-10-13 12:00:47 +02:00
Monviech
e19e3c94f6
www/caddy: fix setup.sh script not setting correct ownership in www user mode ( #4976 )
...
* www/caddy: Streamline setup.sh, since chown is skipped automatically when ownership matches
* add changelog
2025-10-11 14:02:48 +02:00
Ad Schellevis
27bd359a36
security/q-feeds-connector - add initial version (ref: https://forum.opnsense.org/index.php?topic=49123.0 )
2025-10-11 09:07:04 +02:00
Monviech
a9c5f61850
www/caddy: Bump version to 2.0.4_1 ( #4975 )
2025-10-10 16:11:20 +02:00
Monviech
bcd2deb43e
www/caddy: Fix HTTP access log excluding the process logs accidentally ( #4974 )
...
When using "include" in the default global logger, all other logs get excluded, except those that get included.
Using a "log default" instead, sends the HTTP access logs to the default logger.
This allows process and HTTP access logs to coexist in the same logger.
2025-10-10 16:05:31 +02:00
Oliver Traber
6a6f5aedef
dns/ddclient: Add support for PowerDNS API ( #4772 )
2025-10-09 09:01:28 +02:00
Franco Fichtner
613df67b2f
www/nginx: why not
2025-10-08 09:13:33 +02:00
Franco Fichtner
25bfd97c8e
net-mgmt/zabbix-proxy: wrap up new version, style
2025-10-08 09:06:01 +02:00
us3241
12df16427b
net-mgmt/zabbix-proxy: Add VMware parameters ( #4740 )
2025-10-08 08:38:52 +02:00
Franco Fichtner
a75a87d0b5
security/etpro-telemetry: always show an available status
...
Bump version to clear the relatively hight revision count.
2025-10-06 15:11:42 +02:00
kulikov-a
3f9299b3aa
naxsi rules install fix ( #4968 )
...
regex adapted
removed redundant validation (validated on serialization)
skip validation on serialization
2025-10-06 09:20:49 +02:00
Franco Fichtner
faec4252cd
net/shadowsocks: reshuffle for clarity
2025-10-06 09:12:37 +02:00
eguun
73a32e2e44
Shadowsocks update web UI to set timeout and udp fragmentation ( #4967 )
2025-10-06 09:05:03 +02:00
Monviech
320de1124a
net/shadowsocks: bump plugin version to 1.3 ( #4966 )
...
* net/shadowsocks: Bump plugin version to 1.3
* Update changelog
2025-10-02 08:50:46 +02:00
eguun
59f3c772c5
net/shadowsocks: update web UI ciphers to match shadowsocks rust ( #4958 )
...
Updating cipher option set to match the one of the plugin, source:
https://github.com/shadowsocks/shadowsocks-rust?tab=readme-ov-file#supported-ciphers
Update to present options in optgroups
2025-10-02 08:42:06 +02:00
Monviech
97603fc29b
www/caddy: Bump plugin version to 2.0.4 ( #4954 )
2025-09-24 17:59:44 +02:00
sdsys-ch
b2401a695c
www/caddy: Add DNS-01 challenge delegation via CNAME ( #4950 )
...
* caddy: Add DNS-01 override domain feature
Adds support for DNS-01 CNAME delegation through the dns_challenge_override_domain directive. This enables least-privilege DNS setups where the certificate domain delegates ACME challenges to a target domain managed by the configured DNS provider.
* Review feedback: Remove default defs and align validation string with existing one
---------
Co-authored-by: Christophe Neuerburg <c.neuerburg@sdsys.ch>
2025-09-24 08:45:05 +02:00
Monviech
dfcb4cb138
net/frr: Remove faulty standard area type, adjust helptext to reflect reality ( #4951 )
...
* net/frr: Remove faulty standard area type, adjust helptext to reflect reality
* Change default too
2025-09-23 14:29:44 +02:00
Franco Fichtner
25b4d65957
security/netbird: fix selectpicker and unbreak migration
...
The auth key may be required but not giving a default for obvious
reasons just makes it end up without a required value anyway until
user contact.
This can probably be made more robust in the future, but requires
a bit of thought on what we validate/enforce here anyway like an
"enbable" checkbox being checked requires filling this value, but
it's also not on the same page or model even making constraints
tricky.
2025-09-19 13:52:44 +02:00
Bethuel Mmbaga
59762b0466
security/netbird: Fix service startup and add syslog support ( #4942 )
...
* add syslog configuration options and update service reconfiguration endpoint
* enable syslog by default and expand log level options
* add plugin revision
* update service configuration and logging options
* update syslog log level options and change config sync target
* revert default config file
* Fix log level settings
* refactor
* Update security/netbird/Makefile
Co-authored-by: Franco Fichtner <franco@lastsummer.de>
* Update security/netbird/src/opnsense/service/templates/OPNsense/Netbird/netbird
Co-authored-by: Franco Fichtner <franco@lastsummer.de>
* bump setting model version and use syslog always
* Update security/netbird/src/opnsense/service/templates/OPNsense/Netbird/netbird
Co-authored-by: Franco Fichtner <franco@lastsummer.de>
---------
Co-authored-by: Franco Fichtner <franco@lastsummer.de>
2025-09-19 13:09:58 +02:00
Franco Fichtner
466a2e18d1
LICENSE: sync
2025-09-16 14:59:51 +02:00
Franco Fichtner
45b48a6aeb
www/nginx: cleanup
2025-09-16 14:57:09 +02:00
kulikov-a
99dfc67984
www/nginx: 1.35_1 hotfix. change ban_ttl default ( #4937 )
2025-09-16 14:56:04 +02:00
Franco Fichtner
0ece71fab0
security/etpro-telemetry: bump revision to be sure
2025-09-16 12:39:14 +02:00
Franco Fichtner
d7738a1d75
misc/theme-advanved: tab size mismatch
2025-09-15 13:58:29 +02:00
Franco Fichtner
e67e16b133
misc/theme-advanced: sweep for whitespaces
2025-09-15 13:57:31 +02:00
Jaka Prašnikar
71ecb9a1d8
theme-advanced update to 1.1 ( #4939 )
2025-09-15 13:56:09 +02:00
Michael
d3d38c928c
net/zabbix-X: Add 7.4 variant to pluing ( #4935 )
2025-09-13 07:16:53 +02:00
Konstantinos Spartalis
c80d04f840
chrony: fixes entity rendering (small fix) ( #4904 )
2025-09-12 12:25:41 +02:00
Franco Fichtner
3f298fc57f
www/caddy: fix for #4930
...
Best practice vs. reality, flagged in code audit but reality had other plans.
2025-09-09 19:33:00 +02:00
Franco Fichtner
877ebf20ed
security/etpro-telemetry: netaddr going away from core
2025-09-09 13:21:35 +02:00
Franco Fichtner
439e6f9b26
www/nginx: style sweep
2025-09-09 08:02:22 +02:00
Franco Fichtner
c3e9db2911
security/acme-client: model style where reformat took place
...
(This model is really clean regarding indend, nice)
2025-09-06 19:03:46 +02:00
Franco Fichtner
8a43cb1c3f
net/freeradius: bump revision
2025-09-06 19:02:12 +02:00
Franco Fichtner
98ce5cbdce
net/haproxy: slight reformat using xmllint, removing spurious values where reformatted
2025-09-06 19:01:27 +02:00
Franco Fichtner
f83e65f09c
net-mgmt/zabbix-agent: bump revision
2025-09-06 18:58:46 +02:00
Franco Fichtner
e5f37015bd
dns/bind: bump revision
2025-09-06 18:58:12 +02:00
Franco Fichtner
62d1a653aa
security/netbird: release 1.0
2025-09-06 18:56:43 +02:00
Franco Fichtner
6c66db83c7
www/nginx: clean up model
...
Some elaborate defaults were not used. They look kind of useful, but
also suggest maintenance nightmares (default cipher list), so let's
get rid of them.
2025-09-06 18:52:31 +02:00
kulikov-a
d9e74df9eb
nginx_1.35 ( #4600 )
2025-09-06 18:32:23 +02:00
Franco Fichtner
3a3984f01f
net/shadowsocks: FreeBSD port points to wrong config
...
PR: https://github.com/opnsense/ports/pull/235
2025-09-03 15:42:36 +02:00
Monviech
2c4e372109
www/caddy: Fix subdomain http access log ( #4919 )
...
* www/caddy: Emit subdomain http access logs in the same log collector as their wildcard parent
* add changelog
2025-09-02 09:52:37 +02:00
Monviech
a691165cee
www/caddy: Fix setup.sh script interaction with files and directories in caddy storage ( #4911 )
...
* www/caddy: Fix setup.sh script interaction with files and directories in caddy storage
This fixes multiple things:
- When running as www:www user, the interaction with the admin socket could fail, now we do not touch /var/run/caddy and let it be handled by the permissions set in the rc.d script
- When restarting/reloading caddy, permissions and ownerships would be changed every time, possibly breaking the storage if caddy writes at the same time
- The custom certificates are now stored outside the scope of the caddy storage, ensuring caddy has atomic write guarantee on /var/db/caddy/data...
* Fix some review comments
* add changelog
2025-09-02 09:26:22 +02:00
Gauss23
c2f8aec72b
security/netbird: Fix typo in firewall settings label ( #4917 )
2025-08-31 15:50:19 +02:00
Monviech
ceace150e3
bootgrid: Sweep rowcount as default has been increased in baa1730b1a ( #4916 )
2025-08-29 14:40:53 +02:00
Franco Fichtner
8fc13983c9
security/softether: remove development plugin
...
PR: https://forum.opnsense.org/index.php?topic=34567.0
2025-08-29 12:28:57 +02:00
Franco Fichtner
8a48982e82
net/frr: yes
2025-08-29 09:49:20 +02:00