Page MenuHomeVyOS Platform
Feed All Stories

Jun 11 2020

dmbaturin created T2588: Add support for default values to the interface-definition format.
Jun 11 2020, 8:46 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) renamed T2587: Cannot enable the interface when the MTU is set to less than 1280 from Cannot enable the interface when the MTU is set to Cannot enable the interface when the MTU is set to less than 1280.
Jun 11 2020, 7:20 PM · VyOS 1.3 Equuleus (1.3.0)
daniil added a comment to T2321: VRF support for SSH, NTP, SNMP service.

Hmm, sshd listens on port 2 by default.

Jun 11 2020, 7:02 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) claimed T2587: Cannot enable the interface when the MTU is set to less than 1280.
Jun 11 2020, 7:02 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T2587: Cannot enable the interface when the MTU is set to less than 1280.
Jun 11 2020, 7:01 PM · VyOS 1.3 Equuleus (1.3.0)
daniil added a comment to T2321: VRF support for SSH, NTP, SNMP service.

SNMPD must listen to the socket on the loop in vrf default. This is necessary for the protocol agentx to work.

Jun 11 2020, 5:28 PM · VyOS 1.3 Equuleus (1.3.0)
zsdc added a comment to T1564: BGP IPv6 only peer-group not supported.

The set protocols bgp XXX neighbor XXX address-family ipv6-unicast peer-group XXX command generate the router bgp XXX; address-family ipv6; neighbor XXX peer-group XXX', for vtysh, which does not supported (anymore? I cannot find any commits in FRR about syntax change, maybe this was migrated from old quagga).

Jun 11 2020, 4:28 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2571: NAT destination port with ! results in error.

This fixed now introduced a bug with comma separated ports

Jun 11 2020, 4:18 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2586: WWAN default route is not installed into VRF from Open to In progress.
Jun 11 2020, 4:01 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2586: WWAN default route is not installed into VRF.
Jun 11 2020, 4:01 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 created T2585: Unable to access the Internet after opening PPPoE on-demand dialing.
Jun 11 2020, 3:59 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2321: VRF support for SSH, NTP, SNMP service.

Please feedback as this is what you expect. Also it would be nice if could write something about that in our documentation: https://docs.vyos.io/en/latest/

Jun 11 2020, 3:52 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2571: NAT destination port with ! results in error.

Latest rolling release has all the fixes

Jun 11 2020, 3:24 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2578: ipaddrcheck unaware of /31 host addresses - can no longer assign /31 mask to interface addresses as Resolved.
Jun 11 2020, 2:57 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2578: ipaddrcheck unaware of /31 host addresses - can no longer assign /31 mask to interface addresses.

Works as expected

Jun 11 2020, 2:57 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX927c054d9236: nat: T2571: fix negated port definitions.
Jun 11 2020, 2:54 PM
c-po added a comment to T2571: NAT destination port with ! results in error.

The != port issue is yet to be fixed ...

Jun 11 2020, 2:45 PM · VyOS 1.3 Equuleus (1.3.0)
c-po edited a custom field on T2571: NAT destination port with ! results in error.
Jun 11 2020, 2:35 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX4d40d5f85c15: nat: T2571: fix failing negated CLI configurations.
Jun 11 2020, 2:35 PM
c-po changed the status of T2571: NAT destination port with ! results in error from In progress to Needs testing.
Jun 11 2020, 2:35 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2571: NAT destination port with ! results in error from Open to In progress.
Jun 11 2020, 2:07 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2321: VRF support for SSH, NTP, SNMP service.

Tomorrows rolling ISO will support VRF sourced SSH.

Jun 11 2020, 1:59 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX5deb12c509be: ssh: T2321: add VRF support.
Jun 11 2020, 1:58 PM
c-po committed rVYOSONEXc2c91c4a7c74: ssh: T2321: use list over string when working with Config().
Jun 11 2020, 1:58 PM
c-po committed rVYOSONEX50d1811aa37b: wwan: T2241: bugfix VRF assignment.
Jun 11 2020, 1:53 PM
jestabro added a comment to T2582: Script daemon to offload processing during commit.
  1. commit restrictions/permissions have not changed; all handled in the backend.
  2. The daemon can not load the configs, as it does not have/need access to the config session; that's the point.
  3. ?
  4. the conf_mode script needs to reference the global config; re-setting level is basic hygiene --- the script should ask itself 'what if I am called again?'
  5. we want to eat the args in the node.def; so you already have it.
Jun 11 2020, 1:51 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2570: Drop support for "system console device <device> modem" as Resolved.
Jun 11 2020, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2570: Drop support for "system console device <device> modem", a subtask of T2569: Migrate "set system console" to XML and Python representation, as Resolved.
Jun 11 2020, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2561: Drop support for "system console netconsole", a subtask of T2569: Migrate "set system console" to XML and Python representation, as Resolved.
Jun 11 2020, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2561: Drop support for "system console netconsole" as Resolved.
Jun 11 2020, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2578: ipaddrcheck unaware of /31 host addresses - can no longer assign /31 mask to interface addresses from Open to Needs testing.
Jun 11 2020, 12:57 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2569: Migrate "set system console" to XML and Python representation as Resolved.
Jun 11 2020, 12:57 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX5c94168a7fa6: Merge branch 'serial-console' of github.com:c-po/vyos-1x into current.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXef6f5d8054bb: console: T2569: run VGA console powersave on tty1.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXe45f8c9ccb7d: Debian: fix warning about undefined substitution variables.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXd135e1b7b02b: console: T2569: replicate console settings to grub.cfg.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXbafa91b945ac: console: T2529: migrate from ttyUSB device to new device in /dev/serial/by-bus.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXce7bf15a508b: console: T2569: only start serial console if device exists.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEX7b565f0bcc0d: console: T2570: remove support for Hayes Modems.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEX0ce5f5e7c217: netconsole: T2561: use migrator to delete config nodes.
Jun 11 2020, 12:49 PM
c-po committed rVYOSONEXa75bc85df3da: console: T2569: initial implementation with XML and Python.
Jun 11 2020, 12:49 PM
thomas-mangin added a comment to T2582: Script daemon to offload processing during commit.

Thank you very much for the POC. Very useful to understand the proposed design.

Jun 11 2020, 12:45 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T2584: pppoe-server NAS-Filter-Rule attribute.
Jun 11 2020, 11:07 AM · VyOS Rolling
githonk added a comment to T1732: Removing vyatta-webproxy module.

While I agree, that caching is a feature of the past, we rely heavily on vyatta-webproxy for authentication and also url-filtering (different source networks allowing access to different destination domains and/or IP ranges).

Jun 11 2020, 9:41 AM · VyOS 1.3 Equuleus (1.3.0)
githonk added a watcher for VyOS 2.0.x: githonk.
Jun 11 2020, 8:44 AM
jjakob changed the status of T2534: pdns-recursor override.conf error from Confirmed to In progress.
Jun 11 2020, 8:19 AM · VyOS 1.3 Equuleus (1.3.0)
jjakob changed the status of T2534: pdns-recursor override.conf error, a subtask of T2464: DNS bugs (parent task), from Confirmed to In progress.
Jun 11 2020, 8:19 AM · VyOS Rolling
jjakob added a subtask for T2464: DNS bugs (parent task): T2534: pdns-recursor override.conf error.
Jun 11 2020, 8:19 AM · VyOS Rolling
jjakob added a parent task for T2534: pdns-recursor override.conf error: T2464: DNS bugs (parent task).
Jun 11 2020, 8:19 AM · VyOS 1.3 Equuleus (1.3.0)
jjakob changed the status of T2521: Need to restart pdns-recursor to check new entries in /etc/hosts from Open to In progress.
Jun 11 2020, 8:18 AM · VyOS 1.2 Crux (VyOS 1.2.7)
jjakob changed the status of T2521: Need to restart pdns-recursor to check new entries in /etc/hosts, a subtask of T2464: DNS bugs (parent task), from Open to In progress.
Jun 11 2020, 8:18 AM · VyOS Rolling
jjakob added a subtask for T2464: DNS bugs (parent task): T2521: Need to restart pdns-recursor to check new entries in /etc/hosts.
Jun 11 2020, 8:17 AM · VyOS Rolling
jjakob added a parent task for T2521: Need to restart pdns-recursor to check new entries in /etc/hosts: T2464: DNS bugs (parent task).
Jun 11 2020, 8:17 AM · VyOS 1.2 Crux (VyOS 1.2.7)
Viacheslav added a comment to T2513: BGP peer-group commit error and reboot conifg not found . .

https://phabricator.vyos.net/T1564

Jun 11 2020, 7:16 AM
jjakob updated the task description for T2583: vyos-hostsd improvements (partial rewrite).
Jun 11 2020, 5:12 AM · VyOS Rolling
jjakob changed the status of T2583: vyos-hostsd improvements (partial rewrite) from Open to In progress.
Jun 11 2020, 5:11 AM · VyOS Rolling
jestabro changed the status of T2582: Script daemon to offload processing during commit from Open to In progress.
Jun 11 2020, 3:00 AM · VyOS 1.3 Equuleus (1.3.0)
blackhole added a comment to T2571: NAT destination port with ! results in error.

Here is my config commands that are having the "!" issue on the adddress, 3 separate NAT rules where I am using NAT to catch sneaky DNS bypass and redirect through my infrastructure

Jun 11 2020, 1:14 AM · VyOS 1.3 Equuleus (1.3.0)
blackhole added a comment to T2571: NAT destination port with ! results in error.

Just adding in here that it is also affecting ip addresses too, not just ports
I am on 1.3-rolling-202006101523

Jun 11 2020, 12:04 AM · VyOS 1.3 Equuleus (1.3.0)

Jun 10 2020

jjakob added a comment to T2216: Containerized third-party applications for VyOS.

+1 for this, it would be very useful for a lot of use cases, we wouldn't need to add everything to vyos-1x and the config syntax, but users could add "missing" services on their own. For example T2195

Jun 10 2020, 8:34 PM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T2580: Support for ip pools for ippoe.

ipoe daemon allows us to use this possibility. We need to add CLI commands.
Proposed commands:

set service ipoe-server client-ip-pool name POOL1 subnet 100.64.0.0/24

Radius attribute Framed-Pool.

Jun 10 2020, 8:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
jjakob changed the status of T2054: Changing "system name-server" doesn't update dns forwarding config, neither does "restart dns forwarding", a subtask of T2464: DNS bugs (parent task), from Needs testing to In progress.
Jun 10 2020, 8:08 PM · VyOS Rolling
jjakob changed the status of T2054: Changing "system name-server" doesn't update dns forwarding config, neither does "restart dns forwarding" from Needs testing to In progress.
Jun 10 2020, 8:08 PM · VyOS 1.3 Equuleus (1.3.0)
jjakob changed the status of T1751: DNS server addresses from DHCPv6 are not added to resolv.conf, a subtask of T2464: DNS bugs (parent task), from Needs testing to In progress.
Jun 10 2020, 8:07 PM · VyOS Rolling
jjakob changed the status of T1751: DNS server addresses from DHCPv6 are not added to resolv.conf from Needs testing to In progress.
Jun 10 2020, 8:07 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Unknown Object (User) closed T2565: Cannot connect to l2tp server with radius auth as Resolved.
Jun 10 2020, 8:06 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T2575: pppoe-server: does not possibly assign IP address as Resolved.

Tested on VyOS 1.3-rolling-202006101523
SSTP, L2TP and PPPoE work as expected.
As for pptp, needs to create an additional bug report

Jun 10 2020, 8:05 PM · VyOS 1.3 Equuleus (1.3.0)
GitHub <noreply@github.com> committed rVYOSONEXf812c5d1ce01: Merge pull request #451 from zdc/T2573 (authored by c-po).
Jun 10 2020, 7:51 PM
githonk moved T2581: webproxy: implement proxy chaining from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Jun 10 2020, 7:00 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
githonk added a comment to T2581: webproxy: implement proxy chaining.

https://github.com/vyos/vyatta-webproxy/pull/16

Jun 10 2020, 6:36 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
githonk added a project to T2581: webproxy: implement proxy chaining: VyOS 1.3 Equuleus.
Jun 10 2020, 6:35 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
githonk reopened T2581: webproxy: implement proxy chaining as "In progress".
Jun 10 2020, 6:32 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
githonk closed T2581: webproxy: implement proxy chaining as Resolved.
Jun 10 2020, 6:30 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
jjakob closed T2553: set interface ethN vif-s nnnn does not commit as Resolved.
Jun 10 2020, 6:29 PM · VyOS 1.3 Equuleus (1.3.0)
githonk triaged T2581: webproxy: implement proxy chaining as Normal priority.
Jun 10 2020, 6:06 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
dmbaturin added a comment to T2578: ipaddrcheck unaware of /31 host addresses - can no longer assign /31 mask to interface addresses.

Fixed: https://github.com/vyos/ipaddrcheck/commit/27dd86068b1ab3204517b8950746aec7c1c294d0

Jun 10 2020, 5:06 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

@alexandrestein Note that vyos 1.2 (crux) does not implement DHCPv6 PD.

Jun 10 2020, 5:04 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
alexandrestein added a comment to T2518: Add support for IPv6 NAT (NPTv6).

Thanks a lot for your time and knowledge on VyOS.
I will try with 1.2.

Jun 10 2020, 4:57 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
sean.watkins created T2580: Support for ip pools for ippoe.
Jun 10 2020, 4:40 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

@alexandrestein Or, a disguised solution is to directly use iptables instruction rules to manually implement temporary nptv6 conversion. But I don't know when it will work. You can try it.
PS: because vyos uses nftables to implement NAT in 1.3, but because of the function limitation of nftables version, this function cannot be realized at present.

Jun 10 2020, 4:35 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
zsdc changed the subtype of T2257: BGP does not work with VRF from "Bug" to "Feature Request".
Jun 10 2020, 4:33 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

If you want NPT, you may have to wait for the time to come when conditions are right, and the community may implement NPT at that time.

Jun 10 2020, 4:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
alexandrestein added a comment to T2518: Add support for IPv6 NAT (NPTv6).

@jack9603301, you look to have way more knowledge on IPv6 routing and the VyOS capabilities than I.

Jun 10 2020, 4:15 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T2573: BFD op-mode commands are broken.

Also in 1.2.5

vyos@vyos:~$ show protocols bfd peer 10.203.42.1 
% Unknown command: show bfd     peer 10.203.42.1 local-address 10.203.42.254 vrf default
vyos@vyos:~$ 
vyos@vyos:~$ show protocols bfd peer 10.203.42.1 counters 
% Unknown command: show bfd     peer 10.203.42.1 local-address 10.203.42.254 vrf default counters
vyos@vyos:~$ 
vyos@vyos:~$ 
vyos@vyos:~$ show version 
Version:          VyOS 1.2.5
Jun 10 2020, 2:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
Viacheslav added a project to T2573: BFD op-mode commands are broken: VyOS 1.2 Crux.
Jun 10 2020, 2:51 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
fabio.prina added a comment to T2576: "show interfaces" does not return VTI.

hello Thomas
What exactly do you need ?

Jun 10 2020, 1:14 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav renamed T2322: CLI [op-mode] bugs. Root task from CLI [op-mode] bugs to CLI [op-mode] bugs. Root task.
Jun 10 2020, 1:00 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2573: BFD op-mode commands are broken: T2322: CLI [op-mode] bugs. Root task.
Jun 10 2020, 12:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
Viacheslav added a subtask for T2322: CLI [op-mode] bugs. Root task: T2573: BFD op-mode commands are broken.
Jun 10 2020, 12:57 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2173: Add the ability to use VRF on VTI interfaces: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T2251: VRF communication breaks when utilizing zone-based firewalling: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS Rolling, Bugs
Viacheslav added a parent task for T2257: BGP does not work with VRF: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2258: VRF route leaking from BGP: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a parent task for T2259: Support for bind vif-c interfaces into VRFs: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2271: OSPF: add per VRF instance support: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2277: dhclient-script-vyos does not support VRFs: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a parent task for T2321: VRF support for SSH, NTP, SNMP service: T2579: The root task for VRF features.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added subtasks for T2579: The root task for VRF features: T2321: VRF support for SSH, NTP, SNMP service, T2258: VRF route leaking from BGP, T2173: Add the ability to use VRF on VTI interfaces, T2271: OSPF: add per VRF instance support, T2257: BGP does not work with VRF, T2251: VRF communication breaks when utilizing zone-based firewalling, T2277: dhclient-script-vyos does not support VRFs, T2259: Support for bind vif-c interfaces into VRFs.
Jun 10 2020, 12:55 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav created T2579: The root task for VRF features.
Jun 10 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.6)
thomas-mangin added a comment to T2576: "show interfaces" does not return VTI.

hello Fabio, could you please show me how the vti interfaces are presented under Linux so I can fix the code. I thought I had properly ported the code from Perl to Python must I must have misunderstood something.

Jun 10 2020, 12:50 PM · VyOS 1.3 Equuleus (1.3.0)