Software Update: OPNsense 22.1.9

Spread the love

The package OPNsense is a firewall with extensive possibilities. It is based on the FreeBSD operating system and is originally a fork of m0n0wall and pfSense. The package can be set up completely via a web interface and has support for 2fa, openvpn, ipsec, carp and captive portal, among others. In addition, it can apply packet filtering and has a traffic shaper. The developers have released OPNsense 22.1.9 with the following announcement:

OPNsense 22.1.9 released

Today we are addressing kernel memory leaks that occur when reading firewall rule information from the system. It seems that these leaks even slipped into the FreeBSD 13.1 release so we are happy to see them fixed now.

22.7 is very much on track. Our final target is getting ready for the PHP 8 upgrade but the timing is unclear as we wait for an official Phalcon 5 release version that supports it. Other than that please enjoy the summer and hydrate responsibly.

Here are the full patch notes:

  • system: improve gateway subnet validation to fix IPv6 edge cases
  • system: dpinger support for IPv6 aliases
  • system: support 1500000 baud rate selection for ARM
  • system: non-functional cleanups for upcoming move to PHP 8
  • interfaces: add unique constraint for tag+if on VLANs
  • firewall: bring back missing toggle button in aliases
  • firewall: exclude internal aliases on import
  • firewall: fix alias removal
  • captive portal: add missing validation message for empty interface selection
  • dhcp: revert back to not adding an IP to static lease creation from leases page
  • openvpn: add domain search option to servers and overrides
  • unbound: disabling the first DNS override entry invalidates config
  • unbound: make blocklist additions/removals dynamic to prevent a restart
  • unbound: zero_ttl is no longer a valid statistic (contributed by David Mora)
  • plugins: os-ddclient 1.7
  • plugins: os-debug 1.5 fixes deprecated xdebug syntax
  • plugins: os-frr 1.29
  • plugins: os-nginx 1.28
  • plugins: os-wireguard 1.11
  • src:pf:fix memory leaks in nvlist usage
  • src:pf:stop resolving hosts as dns that use “:” modifier
  • src: e1000: Increase rx_buffer_size to 32b
  • src: igc: Increase rx_buffer_size local variable to 32b
  • src: assorted non-functional cleanups and typo corrections
  • ports: krb5 1.20
  • ports: lighttpd 1.4.65
  • ports: nss 3.79
  • ports: openvpn 2.5.7
  • ports: php 7.4.30
  • ports: py-certifi 2022.5.18.1
  • ports: sqlite3 3.38.5
  • ports: sudo 1.9.11p2
  • ports: unbound 1.16.0

Version number 22.1.9
Release status Final
Operating systems Linux, BSD
Website OPNsense
Download
License type Conditions (GNU/BSD/etc.)
You might also like