Page MenuHomeVyOS Platform
Feed Search

Jan 7 2019

hagbard closed T1131: open-vm-tools causing 100% CPU load as Resolved.

https://phabricator.vyos.net/R3:15a9a405e03165b798776b9f779426bdfa779d03

Jan 7 2019, 9:44 PM · VyOS 1.2 Crux (VyOS 1.2.2)
hagbard changed the status of T1166: Flow-accounting not working with PPPoE interfaces from Open to Confirmed.
Jan 7 2019, 9:40 PM · Bugs, VyOS 1.3 Equuleus (1.3.8), test
hagbard added a project to T1166: Flow-accounting not working with PPPoE interfaces: VyOS 1.2 Crux (VyOS 1.2.0-EPA3).
Jan 7 2019, 9:38 PM · Bugs, VyOS 1.3 Equuleus (1.3.8), test
hagbard closed T1168: Upgrade from 1.1.8 to 1.2-EPA2 fails for "vpn ipsec logging log-modes all" as Resolved.

https://github.com/vyos/vyatta-cfg-vpn/commit/8365c04cccb6e0216b048ca30e289081f0c0ae44
https://github.com/vyos/vyos-1x/commit/ac7c868dcba4dd6738eb0087c4f414b92bf10c9d

Jan 7 2019, 9:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard committed rVYOSONEXac7c868dcba4: Fix: T1168 - Upgrade: 1,1,7 -> 1.2.0-epa2 (command conversion).
Jan 7 2019, 9:07 PM
hagbard changed the status of T1168: Upgrade from 1.1.8 to 1.2-EPA2 fails for "vpn ipsec logging log-modes all" from Open to In progress.
Jan 7 2019, 7:27 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard claimed T1166: Flow-accounting not working with PPPoE interfaces.
Jan 7 2019, 4:32 PM · Bugs, VyOS 1.3 Equuleus (1.3.8), test
hagbard added a comment to T1131: open-vm-tools causing 100% CPU load.

@syncer I was thinking to add a cli menu for vmwaretoolsd mitgation like these things. It seems that not many were affected by that but if there is anything in the cli available, it can configure the toolsd to prevent things like that plus the toolsd has tons of options. So, I'm not really sure how I should go forward with this one.

Jan 7 2019, 12:10 AM · VyOS 1.2 Crux (VyOS 1.2.2)
hagbard closed T1162: WireGuard: Unable to modify tunnels - KeyError: 'state' as Resolved.
Jan 7 2019, 12:07 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1162: WireGuard: Unable to modify tunnels - KeyError: 'state'.

Next rolling will have the fix applied:
https://github.com/vyos/vyos-1x/commit/76fe726e3530158ee175d34b9cb74209ccca2345

Jan 7 2019, 12:07 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard committed rVYOSONEX76fe726e3530: Fix: T1162 - WireGuard: Unable to modify tunnels - KeyError: 'state'.
Jan 7 2019, 12:06 AM

Jan 6 2019

hagbard changed the status of T1162: WireGuard: Unable to modify tunnels - KeyError: 'state' from Open to In progress.
Jan 6 2019, 11:43 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard claimed T1162: WireGuard: Unable to modify tunnels - KeyError: 'state'.
Jan 6 2019, 9:58 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1161: Does Vyos take advantage of linux's improved security features?.

@c-po I have access to it, let me know if you need a pdf out of it.

Jan 6 2019, 5:49 PM

Jan 5 2019

hagbard closed T1152: VyOS inside virtualbox for testing as Invalid.
Jan 5 2019, 12:19 AM · Rejected

Jan 3 2019

hagbard added a comment to T1144: Wiki is too hard to contribute to due to aggressive anti-spam measures.

I stumbled over the same issue and since then I contribute to @UnicronNL and @c-po documentation. I think the old wiki will go away at one point, have a look at the github link @c-po posted above, it's also way easier to maintain the new documentation.

Jan 3 2019, 5:56 PM · Restricted Project
hagbard claimed T1152: VyOS inside virtualbox for testing .

Hi @rherold , these messages are verbose debug messages, change to virtio-net or to a different emulated driver to have them disappear. In general I recommend to use the virtio one which has a better performance too compared to emulated ones, plus less complex code. (https://github.com/MorteNoir1/virtualbox_e1000_0day)

Jan 3 2019, 5:52 PM · Rejected

Dec 31 2018

hagbard created T1145: shutdown event being ignored by latest rolling.
Dec 31 2018, 7:40 PM · VyOS 1.3 Equuleus (1.3.0-epa1)

Dec 29 2018

hagbard changed the status of T1131: open-vm-tools causing 100% CPU load from Open to In progress.
Dec 29 2018, 7:09 PM · VyOS 1.2 Crux (VyOS 1.2.2)
hagbard added a comment to T1131: open-vm-tools causing 100% CPU load.

Thanks for testing that guys.

Dec 29 2018, 6:25 PM · VyOS 1.2 Crux (VyOS 1.2.2)

Dec 28 2018

hagbard added a comment to T1131: open-vm-tools causing 100% CPU load.

@MrXermon , yes that sounds reasonable. I found in the code that they limit it to 100 routes, can you please try the following:
(https://github.com/vmware/open-vm-tools/blob/master/open-vm-tools/lib/include/conf.h#L138)

Dec 28 2018, 7:00 PM · VyOS 1.2 Crux (VyOS 1.2.2)
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

Hi @Barrysdca did you have a chance to test again?

Dec 28 2018, 6:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1131: open-vm-tools causing 100% CPU load.

Hi @danhusan, did you ever try another poll value, like 3 secs or 5 or anything like that? If set to 0, the host system won't show you any updated meta data, like if you change the ip address etc.
(https://github.com/vmware/open-vm-tools/blob/master/open-vm-tools/services/plugins/guestInfo/guestInfoServer.c#L1662)
I'm therefore not entirely sure if that should be treated as a special case scenario (we could publish a kb if you run into that condition), or if it is a general issue since you 2 were the only ones experience that issue as far as I know.
I'm also not sure it only is triggered by your situation (full bgp table) or if it can happen on other occasions as well, if you came across more issues regarding that value, please let me know.

Dec 28 2018, 6:07 PM · VyOS 1.2 Crux (VyOS 1.2.2)

Dec 27 2018

hagbard added a comment to T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.

I have a look into it but I doubt that this will be an issue. Charon is usually taking care of the routes if an IPSec tunnel has been established and you have a valid SA. The redirects from the settings above shouldn't interferer with it at all. If a mode tunnel is being used with public IPs, the packets will leave the system unencrypted anyway as long as no valid SA exists, so they will go the default route. I'll check if the perl script is actually changing these settings, that would be not so nice since you will face a race condition which would explain why I can't reproduce your issue, since I never tested with a working IPSec tunnel :). I'm having the flu right now, so please give me a few days to have a look.

Dec 27 2018, 6:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)

Dec 26 2018

hagbard added a comment to T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.

Can you check ig you have any postscripts running or any manual sysctl variable set? Or do you experience that on new insatllations?

Dec 26 2018, 10:37 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard closed T1136: Typo in BGP CLI as Resolved.
Dec 26 2018, 10:36 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA2)
hagbard claimed T1131: open-vm-tools causing 100% CPU load.
Dec 26 2018, 10:35 PM · VyOS 1.2 Crux (VyOS 1.2.2)

Dec 25 2018

hagbard added a comment to T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.

Yes, that's correct. When I enable redirects, it automatically disables receive redirects, which I didn't know but makes sense.
I have only set the redirect and dhcp on eth0, commit && save and rebooted, all looks good.

Dec 25 2018, 5:36 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.

I still have no luck reproducing it, I loaded your config on a vm, runni9ng the smae version as you do but if I enable and disable redirects it switches between 1 and 0, as expected.

Dec 25 2018, 1:52 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)

Dec 24 2018

hagbard closed T1134: vyatta-cfg is unable to build on jessie as Resolved.
Dec 24 2018, 6:15 PM
hagbard added a comment to T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.

@zsdc I can't reproduce it, can you please share your config? I have only enable send redirects set, nothing else in the config and everything works like expected. I suspect that something is overwriting your variables. We'll find out.

Dec 24 2018, 6:15 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard claimed T1135: "firewall send-redirects enable" works only after switching from disabled state on running system.
Dec 24 2018, 6:00 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)

Dec 18 2018

hagbard changed the status of T989: Add support for IPoE server from On hold to In progress.
Dec 18 2018, 7:17 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed the status of T989: Add support for IPoE server, a subtask of T742: Replace poptop and xl2tpd with accel-ppp, from On hold to In progress.
Dec 18 2018, 7:17 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard closed T1102: Disabling rp_filter don't work as Resolved.

Next rolling release tonight will have the bugfix in place. Thanks for reporting.

Dec 18 2018, 7:16 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard changed the status of T1102: Disabling rp_filter don't work from On hold to In progress.
Dec 18 2018, 6:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard changed the status of T1026: Removing tunnel deletes all tunnels? from In progress to On hold.
Dec 18 2018, 6:06 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

@Barrysdca Can you please test with the latest rolling release, please?

Dec 18 2018, 6:05 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard reassigned T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses from hagbard to Unknown Object (User).

@Unicron Can you please integrate the package below into ci?
https://github.com/vyos/vyos-vmwaretools-scripts

Dec 18 2018, 6:05 PM

Dec 17 2018

hagbard added a comment to T1052: ISO compilation error.

@hexes Should be fixed now. (https://downloads.vyos.io/rolling/current/amd64/vyos-1.2.0-rolling%2B201812171828-amd64.iso)

Dec 17 2018, 5:55 PM · build-iso
hagbard closed T1103: adding 'set interfaces wireguard wg01 ip and ipv6' options as Resolved.

https://phabricator.vyos.net/R11:9e03aa762bac9919db2dae774062b179f9478b70

Dec 17 2018, 5:16 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard closed T1103: adding 'set interfaces wireguard wg01 ip and ipv6' options, a subtask of T1063: Routing protocol and QoS templates are missing in the wireguard CLI, as Resolved.
Dec 17 2018, 5:16 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)

Dec 14 2018

hagbard added a comment to T1102: Disabling rp_filter don't work.

Uh, yeah, that sucks. I'm implementing the kernel variables for wireguard at the moment and have a look into the other interfaces after that.

Dec 14 2018, 5:56 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)

Dec 13 2018

hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

@runar I should have something ready tomorrow or at the weekend at the latest you could test for IPv4. I basically started implementing the 'set interfaces <intf> ip' options including the kernel vars which you can set on other interfaces since wireguard is using that interface and looks like a normal network interface to the kernel.

Dec 13 2018, 11:31 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard changed the status of T1103: adding 'set interfaces wireguard wg01 ip and ipv6' options from Open to In progress.
Dec 13 2018, 9:23 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1102: Disabling rp_filter don't work.

Ahh, I think I found it. Usually sysctl sets it to 1, or at least it must have that done in 1.1. I think the command should be called then enable-arp-filter to correct it.

Dec 13 2018, 7:22 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard changed the status of T1063: Routing protocol and QoS templates are missing in the wireguard CLI from Open to In progress.
Dec 13 2018, 6:26 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard changed the status of T1102: Disabling rp_filter don't work from Open to On hold.

Unless I misunderstood you, int(0) does disable (no source validation) rp_filter.

Dec 13 2018, 6:26 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)

Dec 12 2018

hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

After playing around with it, I think I create an extra script just for that task, it'll be easier to maintain until that parts are moved out to 'set protocol'.

Dec 12 2018, 11:28 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

Oh I see, so it would be then in /opt/vyatta/share/vyatta-cfg/templates/interfaces/wireguard/node.tag/ip/ospf/cost/node.def.
What do you mean with moving it into the protocol subtree?
I also would then handle it within the wireguard code, like I did for the firewall stuff.
(https://github.com/vyos/vyos-1x/commit/51f61991092a163f680e4ec8f122e73f4074ddf9)
Let me know what you think, would be just an extra node and leavenode to handle.

Dec 12 2018, 9:09 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

Hi @Barrysdca , can you please test if the issue persists with https://downloads.vyos.io/rolling/current/amd64/vyos-1.2.0-rolling%2B201812120337-amd64.iso
I tested it on the image and it appears that I can't reproduce it anymore.

Dec 12 2018, 8:13 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard changed the status of T1026: Removing tunnel deletes all tunnels? from Open to In progress.
Dec 12 2018, 7:59 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

@runar How do you set it on other interfaces?

Dec 12 2018, 6:58 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard closed T1048: [IPSec] Protocol all does not work in IPSec Tunnel as Resolved.

the new syntax is being applied to the config file.

Dec 12 2018, 6:57 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard closed T1065: PPPoE MTU on boot up as Resolved.

I've tested it successfully multiple times and pushed the fix upstream, the configured MTU is now being requested with the first PADI.

Dec 12 2018, 6:56 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard closed T1087: Firewall commands are missing in wireguard interface CLI as Resolved.

Thanks for testing and confirming. @trystan

Dec 12 2018, 6:21 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

All right, thanks bunch. I think I found the issue but before I expose it into the image, I'd like to test with you the functionality.

Dec 12 2018, 12:05 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)

Dec 11 2018

hagbard closed T1075: Unable to build the ISO for VyOS 1.2.0 as Resolved.
Dec 11 2018, 11:01 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard changed the status of T1087: Firewall commands are missing in wireguard interface CLI from In progress to Needs testing.
Dec 11 2018, 10:16 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1087: Firewall commands are missing in wireguard interface CLI.

@trystan next rolling image will have the functionality, if you'd like to manual install it, you can do so by installing http://dev.packages.vyos.net/repositories/current/vyos/pool/main/v/vyos-1x/vyos-1x_1.2.0-8_all.deb.
Thanks for your request and please let me know your results.

Dec 11 2018, 10:16 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard committed rVYOSONEX51f61991092a: T1087: Firewall on Wireguard Interface implementation.
Dec 11 2018, 10:14 PM
hagbard added a comment to T1048: [IPSec] Protocol all does not work in IPSec Tunnel.

can you please test with the latest rolling if it fixes your issue?
https://downloads.vyos.io/rolling/current/amd64/vyos-1.2.0-rolling%2B201812110337-amd64.iso

Dec 11 2018, 7:48 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard changed the status of T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses from Needs testing to Blocked.

pending ci integration

Dec 11 2018, 6:22 PM

Dec 10 2018

hagbard added a comment to T1087: Firewall commands are missing in wireguard interface CLI.

I've tested that I can utilize the existing firewall functions/scripts which work, so I need to write a wrapper for it, but that will solve the issue. Shouldn't take too long.

Dec 10 2018, 11:45 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard changed the status of T1087: Firewall commands are missing in wireguard interface CLI from Open to In progress.
Dec 10 2018, 11:18 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard triaged T1087: Firewall commands are missing in wireguard interface CLI as Normal priority.
Dec 10 2018, 10:39 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

can you please do the following and post the result:

Dec 10 2018, 9:45 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

All right. First of all MTU != MRU. (MTU - 8 byte IP header = MRU). I used your config example and I see a difference. The conf request has to come from your side, that happens durig the discovery pahase (PADI). I see that it is not being sent before you reconnect.

Dec 10 2018, 6:20 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)

Dec 7 2018

hagbard updated subscribers of T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses.

I don't think That I use netplugd for now. I have just a check in the script how an address had been setup on the system, if it's been dhcp then I send a release (suspend doesn't do that) and a new dhcp request. I have to chat with @c-po about T894 first.
If netplugd is being introduced to the OS, I can simply remove an else clause.

Dec 7 2018, 7:20 PM
hagbard added a comment to T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses.

I will add the dhcp functionality too. The problem is that the network config is very different from the approach within the OS and additional software is written the way to work with whatever has the OS, it doesn't know about vyos and it's cli etc.
Thanks for testing, I will integrate the dhcp functionality asap and see that I can quickly get it into the rolling branch.

Dec 7 2018, 6:14 PM
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

Bug confirmed, I can reproduce it. I can't tell you how long it takes to fix it, it's all old code base.

Dec 7 2018, 12:18 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard changed the status of T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses from Open to Needs testing.
Dec 7 2018, 12:08 AM
hagbard added a comment to T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses.

Hey @yun, could you test it under vmware, I just used the scripts to trigger resume and suspend.

Dec 7 2018, 12:05 AM

Dec 6 2018

hagbard claimed T1087: Firewall commands are missing in wireguard interface CLI.
Dec 6 2018, 10:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

Could you please do it via: 'show config command'. thx.

Dec 6 2018, 9:19 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard added a comment to T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses.

Ok, so I think I know how to attack that. either we use the tools then from debian directly and add an extra package with the user scripts, ot we do it directly in the tools package which is forked anyway. I would personally lean torwards option 2, since debian would take care of patching.

Dec 6 2018, 9:17 PM
hagbard added a comment to T1026: Removing tunnel deletes all tunnels?.

@Barrysdca Can you please share your config? At least the tunnel parts.

Dec 6 2018, 8:56 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-EPA3)
hagbard changed the status of T834: New L2TP server implementation based on accel-ppp, a subtask of T833: New PPTP server implementation based on accel-ppp, from In progress to On hold.
Dec 6 2018, 7:17 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed the status of T834: New L2TP server implementation based on accel-ppp from In progress to On hold.
Dec 6 2018, 7:17 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed the status of T989: Add support for IPoE server from In progress to On hold.
Dec 6 2018, 7:16 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed the status of T989: Add support for IPoE server, a subtask of T742: Replace poptop and xl2tpd with accel-ppp, from In progress to On hold.
Dec 6 2018, 7:16 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed the status of T1048: [IPSec] Protocol all does not work in IPSec Tunnel from In progress to Needs testing.
Dec 6 2018, 7:14 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1048: [IPSec] Protocol all does not work in IPSec Tunnel.

you can test it in the rolling release of Dec 7th. or manually install http://dev.packages.vyos.net/repositories/current/vyos/pool/main/v/vyatta-cfg-vpn/vyatta-cfg-vpn_0.12.105+vyos2+current4_all.deb. Please let me know if it works like expected.

Dec 6 2018, 7:14 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)

Dec 5 2018

hagbard added a comment to T1075: Unable to build the ISO for VyOS 1.2.0.

So, I can reproduce the missing initrd issue now as well, but I have no idea why it happens. It doesn't happen in ci, so I assume some local pacakge or command is missing. I did chroot into the chroot before squashfs is being packed and did a live-update-initramfs, which worked with no issues. So a missing driver can be ruled out here.
but I get then an issued that the arch isn't supported :D.

Dec 5 2018, 10:39 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard added a comment to T1075: Unable to build the ISO for VyOS 1.2.0.

That looks liek a similar f'up. The correct ddclient version is 3.8.2+vyos2+current1, no idea where lithium6 comes from. The correct pkg is within the repo: http://dev.packages.vyos.net/repositories/current/vyos/pool/main/d/ddclient/ddclient_3.8.2+vyos2+current1_all.deb and the current vyatta-cfg-system has no dependency to vyatta-dhcp3-client (https://github.com/vyos/vyatta-cfg-system/blob/current/debian/control).

Dec 5 2018, 6:18 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard added a comment to T1075: Unable to build the ISO for VyOS 1.2.0.

I see, I have a look.

Dec 5 2018, 5:50 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard added a comment to T1065: PPPoE MTU on boot up.

Can you record the PADI requests when the router reboots? It's plain text anyway, important question is if it sends "PPP-Max-Payload 1500", which it does in all my tests. I was only able to reproduce your issue when the sends a max mtu 1492 or even lower, then the client (depending on mru) negotiates the highest possible mtu and sets it on the pppoe interface. But it's also possible that my tests are different from what you see. I used accel-ppp to use as pppoe server.

Dec 5 2018, 5:49 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1075: Unable to build the ISO for VyOS 1.2.0.

@kroy please make sure that you do it from a clean build tree. I run it now locally from home and everything is working well. You can also do a ./configure --debug && make iso, which is more verbose.

Dec 5 2018, 2:49 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard updated subscribers of T1075: Unable to build the ISO for VyOS 1.2.0.

@kroy or @runar
Can please one of you test if the build outside ci is working again too? Shouldn't make any difference, but before I close this bug I'd like to have confirmation (and happy faces) from one of you as well.

Dec 5 2018, 12:01 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)

Dec 4 2018

hagbard changed the status of T1075: Unable to build the ISO for VyOS 1.2.0 from Open to In progress.
Dec 4 2018, 11:54 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard claimed T1075: Unable to build the ISO for VyOS 1.2.0.

I rebuilt the package (vyatta-cfg-quagga) which removed the old one from the repo and re-published the correct version. I tested with apt that the correct packages is being queried/installed. Looks all good now from my point of view.

Dec 4 2018, 11:35 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard added a comment to T1075: Unable to build the ISO for VyOS 1.2.0.

http://dev.packages.vyos.net/repositories/current/vyos/dists/unstable/main/binary-amd64/Packages contains the wrong package.
faulty one: http://dev.packages.vyos.net/repositories/current/vyos/pool/main/v/vyatta-cfg-quagga/vyatta-cfg-quagga_0.18.172_amd64.deb

Dec 4 2018, 9:10 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-GA)
hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

@runar How do you set it on other interfaces?

Dec 4 2018, 7:06 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

@SteveP Can you please test if the pppoe server supports a mtu of 1500? In my tests an mtu of 1500 is requested by the client, I just send from the server back 1492 which is then used on the interface.

Dec 4 2018, 6:43 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)

Dec 3 2018

hagbard added a comment to T1065: PPPoE MTU on boot up.

<<<<<<< HEAD

#define RCSID "$Id: tty.c,v 1.25 2006/06/04 07:04:57 paulus Exp $"

#define RCSID "$Id: tty.c,v 1.27 2008/07/01 12:27:56 paulus Exp $"

ppp-2.4.7

Dec 3 2018, 9:06 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

It's actually a ppp bug, it simply ignores mtu when setup in the peers config. I'm about to update pppd, since a new version from backports is working however it creates instead of pppoe interfaces a ppp interface, which may break something else.
Maybe its now the time to rewrite the pppoe client from scratch.

Dec 3 2018, 9:04 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1065: PPPoE MTU on boot up.

Bug confirmed, but not easy to fix.

Dec 3 2018, 6:49 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard changed the status of T1065: PPPoE MTU on boot up from Open to In progress.
Dec 3 2018, 5:03 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)
hagbard added a comment to T1028: Suspending and resuming VyOS in VMware will result in loss of static ip addresses.

The vmware tools scripts work as expected, they are stopping and starting the network config as they are supposed to do, but are using debian defaults. So they are not executing the config. I'm going to check of we can extend it a little somewhere to execute the config again when 'resume' happens. In general that won't be an easy fix.

Dec 3 2018, 5:00 PM

Dec 1 2018

hagbard added a comment to T1063: Routing protocol and QoS templates are missing in the wireguard CLI.

Implementation doesn't take long, testing it will take a little.

Dec 1 2018, 6:13 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux ( VyOS 1.2.0-rc11)