Page MenuHomeVyOS Platform

"reset vpn ipsec-peer" doesn't work with named peers
Closed, ResolvedPublicBUG


Tl;dr: if you do "set vpn ipsec site-to-site peer @mypeer", you cannot do "run reset vpn ipsec-peer @mypeer".

That's because the "@" symbol is just a mark for VyOS that peer name is not its address, and doesn't actually appear in StrongSWAN configs, but the reset script wrongly assumes otherwise.


Difficulty level
Easy (less than an hour)
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Perfectly compatible

Event Timeline

syncer claimed this task.
syncer triaged this task as Normal priority.
syncer moved this task from Need Triage to Finished on the VyOS 1.3 Equuleus board.
syncer moved this task from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.