Page MenuHomeVyOS Platform
Feed All Stories

Dec 8 2019

c-po created T1865: IPSec (IKEv2) connections to AZURE are dying.
Dec 8 2019, 12:14 PM · Rejected
c-po moved T1864: Lower IPSec DPD timeout lower limit from 10s -> 2s from Needs Triage to Backlog on the VyOS 1.2 Crux (VyOS 1.2.4) board.
Dec 8 2019, 12:05 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po moved T1864: Lower IPSec DPD timeout lower limit from 10s -> 2s from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 8 2019, 12:05 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po closed T1864: Lower IPSec DPD timeout lower limit from 10s -> 2s as Unknown Status.
Dec 8 2019, 12:05 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po changed the status of T1864: Lower IPSec DPD timeout lower limit from 10s -> 2s from Open to In progress.
Dec 8 2019, 11:58 AM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po created T1864: Lower IPSec DPD timeout lower limit from 10s -> 2s.
Dec 8 2019, 11:58 AM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po added a comment to T1863: daemon config lost after commit changes.

DNS forwarding was last changed back in August by commit https://github.com/vyos/vyos-1x/commit/fdae741be5ffaa3719ce889d0342c3091ad3c92c

Dec 8 2019, 10:49 AM
c-po added a comment to T1863: daemon config lost after commit changes.

I can not reproduce this issue. I just upgraded to the specified version.

Dec 8 2019, 10:48 AM
c-po claimed T1863: daemon config lost after commit changes.
Dec 8 2019, 10:46 AM
qiuchengxuan added a comment to T1863: daemon config lost after commit changes.
vyos@vyos:~$ show version
Version:          VyOS 1.2-rolling-201912080217
Built by:         autobuild@vyos.net
Built on:         Sun 08 Dec 2019 02:17 UTC
Build UUID:       b998c0a6-ccf9-47ca-a8f8-7cc561bc5528
Build Commit ID:  7b47b452ce86a9
Dec 8 2019, 9:45 AM
c-po added a comment to T1863: daemon config lost after commit changes.

Please share commands to reproduce this. We do kot hve a 1.2.3 rolling version.

Dec 8 2019, 8:29 AM
qiuchengxuan changed Version from - to 1.2.3 rolling on T1863: daemon config lost after commit changes.
Dec 8 2019, 7:20 AM
qiuchengxuan updated the task description for T1863: daemon config lost after commit changes.
Dec 8 2019, 7:19 AM
qiuchengxuan updated the task description for T1863: daemon config lost after commit changes.
Dec 8 2019, 7:18 AM
qiuchengxuan updated the task description for T1863: daemon config lost after commit changes.
Dec 8 2019, 7:17 AM
qiuchengxuan created T1863: daemon config lost after commit changes.
Dec 8 2019, 7:17 AM

Dec 7 2019

trae32566 closed T1714: Disable DHCP Nameservers Not Working as Resolved.

@zsdc It looks like after boot the DHCP DNS and search does indeed disappear, it just appears to take a minute, so I guess this can be closed (though it seems odd it would get added at all, but I guess that's alright).

Dec 7 2019, 2:59 AM · VyOS 1.3 Equuleus (1.3.0)

Dec 6 2019

hagbard added a comment to T1845: syslog host no longer accepts a port.

fixed in http://dev.packages.vyos.net/repositories/current/vyos/pool/main/v/vyos-1x/vyos-1x_1.3.0-16_all.deb

Dec 6 2019, 11:39 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard committed rVYOSONEXe9bf6cc7f20d: Merge branch 'current' into equuleus.
Dec 6 2019, 11:37 PM
hagbard committed rVYOSONEX9080dda45505: syslog: T1845: syslog host no longer accepts a port.
Dec 6 2019, 11:35 PM
kroy added a comment to T1845: syslog host no longer accepts a port.

Trying to apply the fix manually:

Dec 6 2019, 11:12 PM · VyOS 1.3 Equuleus (1.3.0)
kroy added a comment to T1845: syslog host no longer accepts a port.

Built a fresh rolling. It failed with:

Dec 6 2019, 11:10 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro moved T1862: Use regex pattern \s+ to split strings on whitespace in Python 3.7 from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Dec 6 2019, 9:54 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro reopened T1862: Use regex pattern \s+ to split strings on whitespace in Python 3.7 as "In progress".
Dec 6 2019, 9:16 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T1862: Use regex pattern \s+ to split strings on whitespace in Python 3.7 as Resolved.
Dec 6 2019, 9:15 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro committed rVYOSONEX699beffdfc69: equuleus: T1862: Use regex pattern \s+ to split strings on whitespace.
Dec 6 2019, 9:12 PM
jestabro updated the task description for T1862: Use regex pattern \s+ to split strings on whitespace in Python 3.7.
Dec 6 2019, 9:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro triaged T1862: Use regex pattern \s+ to split strings on whitespace in Python 3.7 as Normal priority.
Dec 6 2019, 8:59 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXbebd084651b5: Merge branch 'current' of github.com:vyos/vyos-1x into equuleus.
Dec 6 2019, 8:08 PM
c-po committed rVYOSONEX1ac177febfdd: openvpn: bridge: T1556: remove obsolete bridge-group definition.
Dec 6 2019, 7:57 PM
syncer assigned T1861: hosts lost after modified static-host-mapping to Viacheslav.
Dec 6 2019, 7:53 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard moved T1833: radvd: update documentation from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:50 PM · VyOS 1.3 Equuleus (1.3.0), Restricted Project
hagbard closed T1833: radvd: update documentation , a subtask of T1832: radvd adding feature DNSSL branch.example.com example.com to existing package, as Wontfix.
Dec 6 2019, 7:50 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard closed T1833: radvd: update documentation as Wontfix.

FRR will serve RAs in the future.

Dec 6 2019, 7:50 PM · VyOS 1.3 Equuleus (1.3.0), Restricted Project
qiuchengxuan changed Version from - to VyOS 1.2.3 rolling release on T1861: hosts lost after modified static-host-mapping.
Dec 6 2019, 7:45 PM · VyOS 1.3 Equuleus (1.3.0)
qiuchengxuan created T1861: hosts lost after modified static-host-mapping.
Dec 6 2019, 7:45 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard added a comment to T1845: syslog host no longer accepts a port.

https://downloads.vyos.io/rolling/current/amd64/vyos-1.2-rolling-201912061907-amd64.iso and later include the fix

Dec 6 2019, 7:45 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1470: improve output of "show dhcpv6 server leases" from Backlog to Finished on the VyOS 1.2 Crux (VyOS 1.2.4) board.
Dec 6 2019, 7:43 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po moved T1485: Enable 'AdvIntervalOpt' option in for radvd.conf from In Progress to Finished on the VyOS 1.2 Crux (VyOS 1.2.4) board.
Dec 6 2019, 7:43 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po moved T1857: strip-private pipe option does not handle IPv6 addresses on interfaces from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.4) board.
Dec 6 2019, 7:43 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po edited projects for T1857: strip-private pipe option does not handle IPv6 addresses on interfaces, added: VyOS 1.2 Crux (VyOS 1.2.4); removed VyOS 1.2 Crux (VyOS 1.2.5).
Dec 6 2019, 7:43 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po moved T1860: Update WireGuard to Debian release 0.0.20191127-2 from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1859: Update Linux Kernel to v4.19.88 from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1847: set_level incorrectly handles path given as empty string from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1852: ifconfig.py - apply interface config takes long from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1849: DHCPv6 client does not start from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1854: Dynamic DNS configuration cannot be deleted from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1568: strip-private command improvement for additional masking of IPv6 and MAC address from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 6 2019, 7:42 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po renamed T1568: strip-private command improvement for additional masking of IPv6 and MAC address from strip-private command improvement for additional masking to strip-private command improvement for additional masking of IPv6 and MAC address.
Dec 6 2019, 7:40 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po added a comment to T1568: strip-private command improvement for additional masking of IPv6 and MAC address.

SNMP community should stay. If it should be removed it can be handled via dedicates task

Dec 6 2019, 7:40 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po moved T1568: strip-private command improvement for additional masking of IPv6 and MAC address from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.4) board.
Dec 6 2019, 7:39 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po assigned T1568: strip-private command improvement for additional masking of IPv6 and MAC address to Unknown Object (User).
Dec 6 2019, 7:39 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po merged task T1857: strip-private pipe option does not handle IPv6 addresses on interfaces into T1568: strip-private command improvement for additional masking of IPv6 and MAC address.
Dec 6 2019, 7:39 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po merged T1857: strip-private pipe option does not handle IPv6 addresses on interfaces into T1568: strip-private command improvement for additional masking of IPv6 and MAC address.
Dec 6 2019, 7:39 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po added a comment to T1568: strip-private command improvement for additional masking of IPv6 and MAC address.

backported 20822ca3 to crux

Dec 6 2019, 7:38 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po renamed T1849: DHCPv6 client does not start from A bug caused by DHCPv6 client to DHCPv6 client does not start.
Dec 6 2019, 6:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX6e2cf6e4515b: ifconfig: T1849: fix DHCPv6 startup.
Dec 6 2019, 6:33 PM
c-po committed rVYOSONEX3a16fb46a16f: Python/VyOS validate: T1849: handle is_ipv6()/is_ipv6() exceptions.
Dec 6 2019, 6:33 PM
c-po committed rVYOSONEX242251ea50f1: ifconfig: T1793: remove dhcpv6 client debug output.
Dec 6 2019, 6:33 PM
hagbard changed the status of T1845: syslog host no longer accepts a port from In progress to Needs testing.
Dec 6 2019, 6:24 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1854: Dynamic DNS configuration cannot be deleted as Resolved.
Dec 6 2019, 5:51 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXc4c0cc382ffa: ddclient: T1853: bugfix TypeError exception.
Dec 6 2019, 5:51 PM
c-po closed T1860: Update WireGuard to Debian release 0.0.20191127-2, a subtask of T1859: Update Linux Kernel to v4.19.88, as Resolved.
Dec 6 2019, 5:36 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1860: Update WireGuard to Debian release 0.0.20191127-2 as Resolved.
Dec 6 2019, 5:36 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T1860: Update WireGuard to Debian release 0.0.20191127-2.
Dec 6 2019, 5:35 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1859: Update Linux Kernel to v4.19.88 as Resolved.
Dec 6 2019, 5:33 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T1859: Update Linux Kernel to v4.19.88.
Dec 6 2019, 5:33 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T1169: LLDP potentially broken as Resolved.

Works as expected in VyOS 1.2-rolling and 1.3-rolling.

Dec 6 2019, 5:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard committed rVYOSONEX3559244db333: syslog: T1845: syslog host no longer accepts a port.
Dec 6 2019, 5:04 PM
Unknown Object (User) triaged T1858: l2tp: Delete deprecated outside-nexthop and add gateway-address as Normal priority.
Dec 6 2019, 5:04 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) added a comment to T1349: L2TP remote-access vpn terminated and not showing as connected.

Hello @primoz , seems you right. left|rightnexthop deprecated in strongswan.

This parameter is usually not needed any more because the NETKEY IPsec stack does not require
explicit routing entries for the traffic to be tunneled. If left|sourceip is used with IKEv1
then left|rightnexthop must still be set in order for the source routes to work properly.

And in CLI rolling l2tp implementation we need replace outside-nexthop to gw-ip-address.

Dec 6 2019, 4:49 PM · VyOS 1.3 Equuleus (1.3.0), test
c-po edited projects for T1857: strip-private pipe option does not handle IPv6 addresses on interfaces, added: VyOS 1.2 Crux (VyOS 1.2.5); removed VyOS 1.2 Crux.
Dec 6 2019, 4:40 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po created T1857: strip-private pipe option does not handle IPv6 addresses on interfaces.
Dec 6 2019, 4:39 PM · VyOS 1.2 Crux (VyOS 1.2.4)
c-po claimed T1849: DHCPv6 client does not start.
Dec 6 2019, 4:33 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T1854: Dynamic DNS configuration cannot be deleted.
Dec 6 2019, 4:33 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T1629: IP addresses configured on vif-s interfaces are not added to the system.
Dec 6 2019, 4:27 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1629: IP addresses configured on vif-s interfaces are not added to the system.

I pick this up as I did the rewrite of this whole stuff

Dec 6 2019, 4:26 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T586: Cannot add ethernet vif-s vif-c interface to bridge-group as Resolved.
Dec 6 2019, 4:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po added a comment to T586: Cannot add ethernet vif-s vif-c interface to bridge-group.

@Viacheslav thank you for testing!

Dec 6 2019, 4:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po added a comment to T1843: Add GCC preprocessor support for XML files.

https://github.com/vyos/vyos-1x/pull/178

Dec 6 2019, 4:13 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard committed rVYOSONEXd02b0d621850: syslog: code formatting.
Dec 6 2019, 4:08 PM
hagbard committed rVYOSONEX123e7f8c07f5: syslog: T1845: syslog host no longer accepts a port.
Dec 6 2019, 4:05 PM
zsdc added a comment to T1714: Disable DHCP Nameservers Not Working.

I have tried multiple times to reproduce this with 1.2-rolling-201912060217 with no luck. It would be great if together with logs you will provide a detailed description of the environment. Because, possible that even CPU cores count or memory size can lead to some condition, in which dhclient-script cannot get proper values from config and add unwanted servers to the resolv.conf.

Dec 6 2019, 1:57 PM · VyOS 1.3 Equuleus (1.3.0)
c-po edited projects for T1856: Support configuring IPSec SA bytes, added: VyOS 1.3 Equuleus; removed VyOS 1.2 Crux.
Dec 6 2019, 1:12 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1854: Dynamic DNS configuration cannot be deleted.

@zsdc Maybe Incorrect file location. "ddclient.pid"

Dec 6 2019, 8:29 AM · VyOS 1.3 Equuleus (1.3.0)
c-po edited a custom field on T1856: Support configuring IPSec SA bytes.
Dec 6 2019, 7:34 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po created T1856: Support configuring IPSec SA bytes.
Dec 6 2019, 7:34 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
kroy added a comment to T1851: wireguard - changing the pubkey on an existing peer seems to destroy the running config..

Okay, so this problem just got a LOT more bizarre.

Dec 6 2019, 1:31 AM · VyOS 1.2 Crux (VyOS 1.2.5)

Dec 5 2019

hagbard committed rVYOSONEXa45c23b57f09: syslog: renaming files and conf script to fit new scheme.
Dec 5 2019, 11:17 PM
dmbaturin added a comment to T1826: Misleading message on "reboot at" command.

The runtime errors are fixed by the above commit.

Dec 5 2019, 11:15 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin committed rVYOSONEX48a52b36a861: T1855, T1826: clean up the reboot/shutdown script..
Dec 5 2019, 11:11 PM
dmbaturin added a subtask for T1855: Clean up the reboot/poweroff CLI and script: T1826: Misleading message on "reboot at" command.
Dec 5 2019, 11:09 PM · VyOS Rolling, Restricted Project
dmbaturin added a parent task for T1826: Misleading message on "reboot at" command: T1855: Clean up the reboot/poweroff CLI and script.
Dec 5 2019, 11:09 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin triaged T1855: Clean up the reboot/poweroff CLI and script as Normal priority.
Dec 5 2019, 11:09 PM · VyOS Rolling, Restricted Project
dmbaturin renamed T1826: Misleading message on "reboot at" command from Missleading message on "reboot at" command to Misleading message on "reboot at" command.
Dec 5 2019, 10:43 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard added a comment to T1851: wireguard - changing the pubkey on an existing peer seems to destroy the running config..

@kroy I can't really reproduce it if I disable the peer first when multiple peers are defined on the same wg interface.
Can you please do a touch /tmp/vyos.ifconfig.debug and then run your commands and post it here?
It will show you the commands execute for each step like:

vyos@wg01# set  interfaces wireguard wg0 peer wg02 disable 
[edit]
vyos@wg01# commit
[ interfaces wireguard wg0 ]
DEBUG/wg0    write '1420' > '/sys/class/net/wg0/mtu'
DEBUG/wg0    write 'wg0' > '/sys/class/net/wg0/ifalias'
DEBUG/wg0    cmd 'wg set wg0 peer G1aA2KkyFyC8xsCUeENvuIW8HC5yDxwi902nR20592Y= remove'
DEBUG/wg0    cmd 'wg set wg0 listen-port 12345 fwmark 0 private-key /config/auth/wireguard/default/private.key peer hbwJSCu6SGUKIReNhWxlDIFRNCl5L7PaUSYOo2BF+Rg=  preshared-key /dev/null  allowed-ips 10.100.100.3/32 endpoint 10.1.1.203:12345 persistent-keepalive 0'
DEBUG/wg0    cmd 'ip link set dev wg0 up'
Dec 5 2019, 10:21 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard moved T1853: wireguard - disable peer doesn't work from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Dec 5 2019, 9:59 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard changed the status of T1853: wireguard - disable peer doesn't work , a subtask of T1851: wireguard - changing the pubkey on an existing peer seems to destroy the running config., from In progress to Needs testing.
Dec 5 2019, 9:59 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard changed the status of T1853: wireguard - disable peer doesn't work from In progress to Needs testing.

https://github.com/vyos/vyos-1x/commit/fde531d3791a3d71aa27f99244d7cbb3b3625bf0

Dec 5 2019, 9:59 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard committed rVYOSONEXfde531d3791a: wireguard: T1853: disable peer doesn't work.
Dec 5 2019, 9:58 PM