Page MenuHomeVyOS Platform

PPPoE-server delete or change authentication radius options do not work
Closed, ResolvedPublicBUG

Description

I’ve noticed in several commands that the “delete” action in reality doesn’t delete the commands, only a new “set” or a fresh reboot let things work as expected, I can give you a couple of examples

I had the following commands configured:

set service pppoe-server authentication radius server <redacted-ip1> priority 1
set service pppoe-server authentication radius server <redacted-ip2> priority 2

Had to delete both and set

set service pppoe-server authentication radius server <redacted-ip2> backup

The pppoe requests keep went on both servers, but the Accounting requests (port 1813) keep went on the “priority 1” radius, while the Auth&Auth (port 1812) went on the “priority 2” one, despite several up & down of different pppoe

Then I rebooted and now all is working correctly.

Another example is the following command:

set service pppoe-server authentication radius source-address <redacted_ip3>

when i deleted it, the requests kept started with redacted_ip3 as forged source ip address, but the packet followed the routing table source ip address path as expected

Let me know if I can help with more tests or examples

Extended version:
Version: VyOS 2026.03
Release train: circinus
Release flavor: generic

Built by: autobuild@vyos.net
Built on: Wed 18 Mar 2026 20:03 UTC
Build UUID: 3969e1c7-a4bb-459a-ac7f-54749c153d21
Build commit ID: 1cac4fd63750b0

Details

Version
VyOS 2026.03
Is it a breaking change?
Unspecified (possibly destroys the router)
Issue type
Bug (incorrect behavior)
Forum thread
https://forum.vyos.io/t/unexpected-behaviour-on-radius-server-priority/17423/4

Event Timeline

Most likely, it doesn't support the reload-or-restart systemctl option and must be restarted for any authentication change.
https://github.com/vyos/vyos-1x/blob/964a01697f3c2361ce4324fb8333f5fe4d2b0434/src/conf_mode/service_pppoe-server.py#L127-L135
@noc.tlc Can you test it?

sudo nano -c +129 /usr/libexec/vyos/conf_mode/service_pppoe-server.py

And replace the 2 above lines with:

# is_node_changed(conf, base + ['authentication', 'radius', 'dynamic-author']),
# is_node_changed(conf, base + ['authentication', 'mode']),
is_node_changed(conf, base + ['authentication']),

save, reboot the server and try to check again.

Hi,

I confirm that in this way the issue is solved. Do you suggest me to leave it like this or to wait for next builds?
It's not a big issue in both ways

Viacheslav renamed this task from delete "command" doesn't delete the parameter to PPPoE-server delete or change authentication radius options do not work.May 18 2026, 2:26 PM
Viacheslav changed the task status from Open to In progress.
Viacheslav claimed this task.
Viacheslav updated the task description. (Show Details)
Viacheslav moved this task from Need Triage to Completed on the VyOS Rolling board.