Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Apply all system patches

    General pfSense Questions
    7
    17
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tedquade @shoulders
      last edited by

      @shoulders Have you read the following?

      https://docs.netgate.com/pfsense/en/latest/development/system-patches.html

      Ted Quade

      S 1 Reply Last reply Reply Quote 0
      • S
        shoulders @tedquade
        last edited by

        @tedquade yes I have thanks and does not answer my questions

        "The lower section contains Recommended System Patches for the specific running version of pfSense software. These patches are curated by Netgate and may include security fixes, bug fixes, and other beneficial changes which come up between releases. This list is only updated when the package is updated, so check the package manager for updates. The controls in this section are limited as there is no need to edit the entries or the list."

        Just tells you what they are and how to install a patch.

        1 Reply Last reply Reply Quote 0
        • S
          SteveITS Galactic Empire @shoulders
          last edited by

          @shoulders Normally the patches listed will be included in the next version.

          As to what to do, itโ€™s up to you. Netgate โ€œrecommendsโ€ the list. Generally any commit diff can be set as a patch as well so youโ€™ll see Netgate fix something and post the patch ID.

          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
          Upvote ๐Ÿ‘ helpful posts!

          S 1 Reply Last reply Reply Quote 0
          • S
            shoulders @SteveITS
            last edited by shoulders

            @steveits

            I am trying to get what Netgate recommends. They should then put that on the 'system patches' page

            S 1 Reply Last reply Reply Quote 0
            • S
              SteveITS Galactic Empire @shoulders
              last edited by

              @shoulders I'm not sure I follow...you should see a "Recommended System Patches for Netgate pfSense software version 2.6.0" section on yours. By way of comparison there are no recommended patches (yet) for 23.01.

              For a more specific example, patch https://redmine.pfsense.org/issues/7727 (UPnP) is targeted for 2.7 but was already included in 22.05.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote ๐Ÿ‘ helpful posts!

              1 Reply Last reply Reply Quote 0
              • S
                shoulders
                last edited by

                do i apply all patches or only ones to fix problems I am having. what is recommended.

                S T 2 Replies Last reply Reply Quote 0
                • S
                  SteveITS Galactic Empire @shoulders
                  last edited by

                  @shoulders I tend to apply them as needed.

                  Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                  When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                  Upvote ๐Ÿ‘ helpful posts!

                  1 Reply Last reply Reply Quote 0
                  • T
                    tedquade @shoulders
                    last edited by

                    @shoulders I tend to apply them all.

                    Ted Quade

                    1 Reply Last reply Reply Quote 0
                    • jimpJ
                      jimp Rebel Alliance Developer Netgate
                      last edited by

                      All of the patches are "Recommended" or they wouldn't be in the "Recommended" list :-)

                      But it's not lumped together or automatic because users like control over what they apply and some environments have rules/regulations about what they can apply and when.

                      tl;dr it's up to you, only you can decide which ones you want.

                      Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                      Need help fast? Netgate Global Support!

                      Do not Chat/PM for help!

                      S 1 Reply Last reply Reply Quote 1
                      • S
                        shoulders @jimp
                        last edited by

                        @jimp I be honest the answer above still doesn't answer my question :( . Let me put it another way. Would you install all of the patches?

                        thanks

                        1 Reply Last reply Reply Quote 0
                        • jimpJ
                          jimp Rebel Alliance Developer Netgate
                          last edited by

                          Nobody but you can tell you if you want all of them.

                          Most likely you would want all of them, but every environment is different.

                          Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                          Need help fast? Netgate Global Support!

                          Do not Chat/PM for help!

                          P 1 Reply Last reply Reply Quote 4
                          • stephenw10S
                            stephenw10 Netgate Administrator
                            last edited by

                            Personally I only apply the patches for things I know I might hit.

                            GertjanG 1 Reply Last reply Reply Quote 0
                            • GertjanG
                              Gertjan @stephenw10
                              last edited by

                              @stephenw10

                              Added to that : when applying a patch for code that I actually use, I'll contribute in testing that patch.
                              And if needed, I'll feedback into redmine.

                              No "help me" PM's please. Use the forum, the community will thank you.
                              Edit : and where are the logs ??

                              1 Reply Last reply Reply Quote 1
                              • P
                                Patch @jimp
                                last edited by

                                @jimp said in Apply all system patches:

                                Most likely you would want all of them, but every environment is different.

                                @stephenw10 said in Apply all system patches:

                                Personally I only apply the patches for things I know I might hit.

                                I suppose it really depends on if the patches are considered

                                • Samples of beta code
                                • A point release of near production code
                                S 1 Reply Last reply Reply Quote 0
                                • S
                                  SteveITS Galactic Empire @Patch
                                  last edited by

                                  @patch said in Apply all system patches:

                                  I suppose it really depends on if the patches are considered

                                  Samples of beta code
                                  A point release of near production code

                                  My personal view on that is, patches listed as Recommended are solid enough for Netgate to want to push them out. Fixes suggested in forum posts (often by @jimp!) are still pretty solid but haven't yet made the Recommended list. Of course one can just view the patch contents and (if familiar with PHP/coding) see what is being changed.

                                  Basically all of them are generated due to Redmine bug reports and once the issue is closed they will be in the next version of pfSense anyway. So maybe the answer is to track down the Redmine entry and see what it says.

                                  Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                  When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                  Upvote ๐Ÿ‘ helpful posts!

                                  1 Reply Last reply Reply Quote 0
                                  • jimpJ
                                    jimp Rebel Alliance Developer Netgate
                                    last edited by

                                    By the time a patch makes it into the "Recommended" list it's usually either already included in a newer release or it's been well tested internally and confirmed to solve the problem in question.

                                    Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                                    Need help fast? Netgate Global Support!

                                    Do not Chat/PM for help!

                                    1 Reply Last reply Reply Quote 1
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.