Commit graph

244 commits

Author SHA1 Message Date
Ad Schellevis
76ed7724a9 *wrong branch** Revert "prepare for 19.1, add etpro_telemetry"
This reverts commit e0de6940f4.
2019-01-25 19:28:25 +01:00
Ad Schellevis
e0de6940f4 prepare for 19.1, add etpro_telemetry 2019-01-25 19:24:51 +01:00
Franco Fichtner
bbc47ceca8 security/clamav: fix symlink permission mismatch, cleanups; closes #569
FreeBSD sets 0755 as permission so let's just follow to avoid potential
mismatches in the future.

(cherry picked from commit 1f96ba04e3)
2019-01-06 12:49:54 +01:00
Franco Fichtner
9cbde75ef3 security/openconnect: release 1.3.2 2019-01-02 11:40:09 +01:00
Franco Fichtner
82a8b5e1bd plugins: fix lint-exec fallout, more than expected...
(cherry picked from commit ef79eb0b87)
2019-01-02 11:27:41 +01:00
Franco Fichtner
2845096784 security/tinc: fix iterator 2018-12-11 10:03:28 +01:00
Franco Fichtner
138e3e277f security/tor: fix iterator 2018-12-11 10:02:39 +01:00
Franco Fichtner
f63a0d5daf security/acme-client: version 1.18 2018-12-11 07:29:21 +01:00
Michael
efc41cf2f0 security/softether: new plugin (#956)
(cherry picked from commit 023fd97be1)
(cherry picked from commit 8c934b93e7)
2018-11-11 11:34:27 +01:00
QDaniel
15fc77e28b security/tinc: set all defined subnets to config
PR: https://github.com/opnsense/plugins/pull/756

(cherry picked from commit f27d323a86)
(cherry picked from commit a72e918229)
(cherry picked from commit 8cfa8e749a)
2018-11-06 08:36:38 +01:00
Michael
c1dfa4782d security/openconnect: allow upper-case characters for username (#900)
(cherry picked from commit 87cc28f826)
2018-10-10 09:04:30 +02:00
Franco Fichtner
cd14effd40 security/acme-client: /var MFS awareness; closes #884
(cherry picked from commit 31e8ba845b)
2018-10-10 08:56:32 +02:00
Franco Fichtner
14a8b35621 security/acme-client: style update
(cherry picked from commit 878c2084a9)
2018-09-25 08:04:54 +02:00
Fabian Franz BSc
fef856a20e security/tor: allow to enable directory page (#858)
(cherry picked from commit eef4adc554)
2018-09-22 08:33:20 +02:00
Michael
20d887b88e security/openconnect: allow @ in username (#848)
(cherry picked from commit 8b4d773224)
2018-09-22 08:33:19 +02:00
Franco Fichtner
a1ccdc2332 */*: retrofit @mimugmail's e-mail as requested
(cherry picked from commit 6fbe82b1f4)
2018-09-17 08:07:27 +02:00
Franco Fichtner
6a7fd14e78 *: no more trailing dots, Shrew Soft complete copyright
(cherry picked from commit 94f4b165b1)
2018-09-16 11:53:00 +02:00
Ad Schellevis
b32cb8bfb6 Tinc/missing log facility, closes https://github.com/opnsense/plugins/issues/720
(cherry picked from commit f30eef2859)
(cherry picked from commit 8bcfa9b974)
2018-09-07 17:06:47 +02:00
Franco Fichtner
131a20edcf security/acme-client: merge version 1.17 from master 2018-08-16 11:37:51 +02:00
Franco Fichtner
003afd5855 security/acme-client: merge version 1.16 from master 2018-08-01 09:59:26 +02:00
Franco Fichtner
6e3c224b4d */*: bind 9.13 is development so go back to 9.12
(cherry picked from commit 861af8c44e)
2018-07-30 23:12:05 +02:00
Michael
684a9a44ac security/openconnect: add field to add certificate hash (#723)
(cherry picked from commit 7d40d1a670)
2018-07-10 07:31:16 +02:00
Franco Fichtner
9908efd9c7 */*: no more trailing slashes in navigation
(cherry picked from commit ccd89d956f)
2018-07-03 10:15:02 +02:00
Franco Fichtner
d813fbcb03 security/acme-client: no, we do not ;)
PR: https://github.com/opnsense/core/issues/1257
2018-07-02 18:41:26 +02:00
Franco Fichtner
6cbc100db7 security/acme-client: password fields, bind update; closes #707 2018-06-11 06:52:33 +00:00
Franco Fichtner
58e0c60220 security/acme-client: Required=Y should bump model version 2018-05-20 09:41:15 +02:00
Franco Fichtner
0cf7362502 security/acme-client: style and whitespace sweep 2018-05-20 09:16:00 +02:00
Frank Wall
205f3ac4e9 security/acme-client: bump version 2018-05-20 00:07:17 +02:00
Frank Wall
541cfdbe22 security/acme-client: fix node no longer exists error, closes #333 2018-05-20 00:02:42 +02:00
Omar Khalil
e41ecc66a8 security/acme-client: delete --keylength parameter passed to acme.client on revoke, the script will auto detect the key path 2018-05-13 23:56:56 +02:00
Omar Khalil
784badb552 security/acme-client: Add support for specifying domain key length for certificates 2018-05-13 23:52:50 +02:00
Frank Wall
62446ff337 security/acme-client: bump version 2018-04-16 23:25:21 +02:00
Frank Wall
bd87fdf7b6 security/acme-client: add support for ClouDNS, closes #574 2018-04-16 23:22:04 +02:00
Franco Fichtner
7b7ed2ae85 security/acme-client: remove unused ssl.engine directive
PR: https://github.com/opnsense/plugins/issues/649
2018-04-15 12:54:16 +02:00
Franco Fichtner
ee7c312a17 security/tinc: bump revision to ship fix 2018-03-13 17:01:23 +01:00
Кайгородцев Дмитрий
83db3c15b3 fix host port 2018-03-13 18:21:49 +03:00
Fabian Franz BSc
1c33f599d8
Update Makefile 2018-03-09 16:04:07 +01:00
Gijs Peskens
80a8487563 os-tor new exit settings (#567)
* Quick fixes to allow IPv6 and Outboundbinding

-allow specification of secondary ORPort (intended for IPv6)
-allow specification of 2 source addresses via source IP fields,
especially usefull for exits.
-default directory port to 9030 and set to mandatory (needed for relay)

All of the IPv6 fields use the same input verification as the HOST
field, should perhaps be changed?

* ...

* forgot torrc....

* Include manual config in torrc file

include optional /usr/local/etc/torrc.exitpolicy after after exit
policies set via interface before default reject to allow easy config of
custom exit policy.

* Cleanup for merge

* Scheduler KIST is Linux 2.6.39+ only, should not be enabled on BSD
https://www.torproject.org/docs/tor-manual.html.en

* Cleaning up torrc whitespaces, fixed regex

* fixing up things

* Do actual IPv4 validation (reject any invalid IPv4)

* Provide dropdown menu on general settings tab to allow choice in scheduler order and schedulers with following options:
-KISTLite,Vanilla (default)
-Vanilla,KISTLite
-KISTLite
-Vanilla

* fixed missing options

* whitespace

* removed comma from default option for scheduler

* Delete opnsense.tgz

* Adding settings for Exits to new Exit Settings tab.

* Fixed ExitACL to allow wildcards.

Removed usage of accept6/reject6 in favor of accept *4 and *6

Using 'any' for wildcard networks, which coincidentally won't break validation

* Moved all exit options back to under relay pane.

added some more options for exits

* whitespaces

* whitespace

* remove leftover unused exit.xml

exit.xml was leftover from approach with separate page for exit settings. 
Removing, is unused
2018-03-09 16:02:11 +01:00
Gijs Peskens
6488afa2dc os-tor Extra settings for source IP and IPv6 (#536)
* Quick fixes to allow IPv6 and Outboundbinding

-allow specification of secondary ORPort (intended for IPv6)
-allow specification of 2 source addresses via source IP fields,
especially usefull for exits.
-default directory port to 9030 and set to mandatory (needed for relay)

All of the IPv6 fields use the same input verification as the HOST
field, should perhaps be changed?

* ...

* forgot torrc....

* Include manual config in torrc file

include optional /usr/local/etc/torrc.exitpolicy after after exit
policies set via interface before default reject to allow easy config of
custom exit policy.

* Cleanup for merge

* Scheduler KIST is Linux 2.6.39+ only, should not be enabled on BSD
https://www.torproject.org/docs/tor-manual.html.en

* Cleaning up torrc whitespaces, fixed regex

* fixing up things

* Do actual IPv4 validation (reject any invalid IPv4)

* Provide dropdown menu on general settings tab to allow choice in scheduler order and schedulers with following options:
-KISTLite,Vanilla (default)
-Vanilla,KISTLite
-KISTLite
-Vanilla

* fixed missing options

* whitespace

* removed comma from default option for scheduler

* Delete opnsense.tgz
2018-02-13 17:12:20 +01:00
Franco Fichtner
3d852798e8 security/clamav: fix more bugs with log viewer
Now we have enough to call it 1.5.
2018-02-12 06:43:23 +00:00
Franco Fichtner
83464cf82b security/clamav: split log differently for freshclam; closes #559 2018-02-12 07:31:41 +01:00
Franco Fichtner
8d6debcf5d security/clamav: fix typos
PR: https://forum.opnsense.org/index.php?topic=7210.0
2018-02-08 08:38:00 +01:00
Fabian Franz BSc
fd15f0d7c5
net/frr and security/tor: remove sessionClose from search action (#548) 2018-02-06 21:09:37 +01:00
Fabian Franz
8487c4f32e
security/tor: Version bump to 1.5 2018-02-04 10:09:08 +01:00
Fabian Franz
4663727b47
add sessionClose to search and get actions in the Tor controllers 2018-02-04 10:05:20 +01:00
Fabian Franz
9ec4f5baa5
security/tor: DRY controller code and fix copyright statements
the new code does not contain any foreign code except the function left
in general as well as the servicecontroller.
2018-02-03 20:31:15 +01:00
Franco Fichtner
12fa5a6540 security/openconnect: oops 2018-01-31 08:51:34 +01:00
Franco Fichtner
567c2745a6 security/openconnect: release 1.0 as requested by @mimugmail 2018-01-30 16:45:06 +01:00
Franco Fichtner
8ebb3bd465 */*: remove _opnsense_bootup_run
PR: https://github.com/opnsense/core/issues/1835
2018-01-30 10:22:18 +01:00
NOYB
5533702035 HTML Compliance - Attribute "type" on Element <script>
Warning: The type attribute is unnecessary for JavaScript resources.

HTML5: Edition for Web Authors
http://www.w3.org/TR/2014/REC-html5-20141028/scripting-1.html
The default, which is used if the attribute is absent, is "text/javascript".

The Script element
https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script
HTML5 specification urges authors to omit the attribute rather than provide a redundant MIME type.
2018-01-21 13:35:06 +01:00