Page MenuHomeVyOS Platform
Feed Search

Oct 18 2020

c-po updated the task description for T2992: Automatically verify sha256 checksum on ISO download.
Oct 18 2020, 3:43 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2985: Add glue code to create bridge interface on demand, a subtask of T2653: "set interfaces" Python handler code improvements - next iteration, as Resolved.
Oct 18 2020, 1:30 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2985: Add glue code to create bridge interface on demand as Resolved.
Oct 18 2020, 1:30 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2992: Automatically verify sha256 checksum on ISO download from Open to In progress.
Oct 18 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2992: Automatically verify sha256 checksum on ISO download.
Oct 18 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX6bd976a0ac33: smoketest: openvpn: add initial client test.
Oct 18 2020, 12:36 PM
c-po committed rVYOSONEX0224fd7b8f59: smoketest: sstp: remove unused variable.
Oct 18 2020, 12:36 PM
c-po added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

The root cause of this problem is that OpenVPN when the deamon is started and in tries to connect to the server, yet did not create the vtun11 interface on the system. Thus all calls to the ifconfig python library will fail big time.

Oct 18 2020, 10:16 AM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2907: OpenVPN: Option to disable encryption as Resolved.
Oct 18 2020, 10:03 AM · VyOS 1.3 Equuleus (1.3.0), openvpn
c-po committed rVYOSONEXd2cc59cfc7c7: ifconfig: T2985: remove no longer available vyos.ifconfig.stp include.
Oct 18 2020, 8:24 AM

Oct 17 2020

c-po committed rVYOSONEXb90041af38c1: smoketest: add IPv6 option tests to BasicInterfaceTest.
Oct 17 2020, 8:55 PM
c-po committed rVYOSONEXb5ef10cfeb83: ifconfig: T2985: support on demand bridge creation.
Oct 17 2020, 8:55 PM
c-po committed rVYOSONEX183130bcfa3c: Merge branch 'bridge' of github.com:c-po/vyos-1x into current.
Oct 17 2020, 8:55 PM
c-po changed the status of T2985: Add glue code to create bridge interface on demand, a subtask of T2653: "set interfaces" Python handler code improvements - next iteration, from In progress to Needs testing.
Oct 17 2020, 8:55 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2985: Add glue code to create bridge interface on demand from In progress to Needs testing.
Oct 17 2020, 8:55 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX1353c0064697: geneve: T1799: add IPv6 CLI options.
Oct 17 2020, 8:55 PM
c-po committed rVYOSONEX84ce69a46882: op-mode: add "show arp" command.
Oct 17 2020, 8:55 PM
c-po closed T2980: FRR bfdd crash due to invalid length as Resolved.
Oct 17 2020, 8:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2990: Update Linux Kernel to v4.19.152 as Resolved.
Oct 17 2020, 8:38 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2990: Update Linux Kernel to v4.19.152 from Open to In progress.
Oct 17 2020, 8:35 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2991: Update WireGuard to 1.0.20200908, a subtask of T2990: Update Linux Kernel to v4.19.152, as Resolved.
Oct 17 2020, 8:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2991: Update WireGuard to 1.0.20200908 as Resolved.
Oct 17 2020, 8:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2991: Update WireGuard to 1.0.20200908.
Oct 17 2020, 8:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2990: Update Linux Kernel to v4.19.152.
Oct 17 2020, 8:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po edited projects for T2792: Failed to run `sudo make qemu` with vyos-build container due to the change of packer, added: VyOS 1.3 Equuleus; removed vyos-build.
Oct 17 2020, 11:45 AM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2792: Failed to run `sudo make qemu` with vyos-build container due to the change of packer as Resolved.
Oct 17 2020, 11:44 AM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2986: Unable to build qemu image due to misconfigured Packer as Invalid.
Oct 17 2020, 11:37 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2986: Unable to build qemu image due to misconfigured Packer.

This will break builds in out Docker environment where we ship a packer version. See T2792 and https://github.com/vyos/vyos-build/commit/e2dd9db8a2539b6d13c98d89e18872336cf8f974

Oct 17 2020, 11:37 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed Version from - to 1.3-rolling-202010081758 on T2985: Add glue code to create bridge interface on demand.
Oct 17 2020, 10:01 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2985: Add glue code to create bridge interface on demand from Open to In progress.
Oct 17 2020, 10:00 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2985: Add glue code to create bridge interface on demand, a subtask of T2653: "set interfaces" Python handler code improvements - next iteration, from Open to In progress.
Oct 17 2020, 10:00 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2985: Add glue code to create bridge interface on demand.
Oct 17 2020, 9:59 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 16 2020

c-po added a comment to T752: Add an option to disable IPv4 forwarding on specific interface only.

That would be a workaround only - see IPv6 syntax above. Using the refactored interface handling (T2653) makes this a low-hanging fruit.

Oct 16 2020, 8:43 PM · VyOS 1.3 Equuleus (1.3.0-epa1)

Oct 15 2020

c-po renamed T2980: FRR bfdd crash due to invalid length from FRR bfdd crash due to invlid length to FRR bfdd crash due to invalid length.
Oct 15 2020, 8:16 PM · VyOS 1.3 Equuleus (1.3.0)
trae32566 awarded T2980: FRR bfdd crash due to invalid length a Like token.
Oct 15 2020, 4:51 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2980: FRR bfdd crash due to invalid length.

Also submitted PR for FRR 7.3 series https://github.com/FRRouting/frr/pull/7318

Oct 15 2020, 3:23 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 14 2020

c-po changed the status of T2980: FRR bfdd crash due to invalid length from Open to Needs testing.
Oct 14 2020, 7:41 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2980: FRR bfdd crash due to invalid length.
Oct 14 2020, 7:40 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2978: IPoE service does not work on shared mode.

Could you share also Client1 and Client2 configuration? Would be nice adding this lab setup to the docs

Oct 14 2020, 2:31 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

Please share your OpenVPN config

Oct 14 2020, 4:58 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2972: PPPoE server rate limiter allows max 65535 kbps to be set from In progress to Needs testing.
Oct 14 2020, 4:56 AM · VyOS 1.2 Crux (VyOS 1.2.7)

Oct 13 2020

c-po committed rVYOSONEX6c2a2cb8ce98: pppoe-server: T2976: fix local-users default value retrieval from XML.
Oct 13 2020, 4:56 PM
c-po edited a custom field on T2976: Client IP pool does not work for PPPoE local users.
Oct 13 2020, 4:49 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2976: Client IP pool does not work for PPPoE local users as Resolved.
Oct 13 2020, 4:49 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 12 2020

c-po committed rVYOSONEXf0f7d0658a7b: smoketest: tftp-server: listen on dummy interface address rather then loopback.
Oct 12 2020, 9:12 AM

Oct 11 2020

c-po committed rVYOSONEX190b6612f653: broadcast-relay: T2712: enable render trim_blocks.
Oct 11 2020, 7:09 PM
c-po committed rVYOSONEX8fab454559a8: tftp-server: T2974: migrate to get_config_dict().
Oct 11 2020, 7:09 PM
c-po closed T2974: Migrate tftp-server to get_config_dict(), a subtask of T692: TFTP server functionality, as Resolved.
Oct 11 2020, 7:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po closed T2974: Migrate tftp-server to get_config_dict() as Resolved.
Oct 11 2020, 7:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po created T2974: Migrate tftp-server to get_config_dict().
Oct 11 2020, 7:08 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po moved T2891: Support to change ring-buffers from CLI from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.7) board.
Oct 11 2020, 5:36 PM · Restricted Project, VyOS 1.2 Crux (VyOS 1.2.7)
c-po moved T2878: LACP / bonding: new op-mode command: show interfaces bonding bond0 detail from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.7) board.
Oct 11 2020, 5:36 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po moved T2959: PPPoE server has migrations scripts but the config version is not incrememnted from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.7) board.
Oct 11 2020, 5:36 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po moved T2973: tftp-server cannot listen on IPv6 address from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.7) board.
Oct 11 2020, 5:36 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po closed T2973: tftp-server cannot listen on IPv6 address as Resolved.
Oct 11 2020, 5:36 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po committed rVYOSONEX0cbb195d197e: tftp-server: T2973: bugfix IPv6 listen address/port combination.
Oct 11 2020, 5:35 PM
c-po committed rVYOSONEX0142810c0666: smoketest: tftp-server: add initial testcases.
Oct 11 2020, 5:35 PM
c-po committed rVYOSONEXc30849469492: tftp-server: T2973: bugfix IPv6 listen address/port combination.
Oct 11 2020, 5:35 PM
c-po created T2973: tftp-server cannot listen on IPv6 address.
Oct 11 2020, 5:33 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po committed rVYOSONEX1acc499f5e50: nat: T2198: use proper validators for dnat translation address.
Oct 11 2020, 5:00 PM
c-po committed rVYOSONEX281533f59e9a: smoketest: nat: extend snat and add dnat test cases.
Oct 11 2020, 5:00 PM
c-po committed rVYOSONEX5dac49f576b5: smoketest: nat: concentrate validation logic checks.
Oct 11 2020, 5:00 PM
c-po added a comment to T2972: PPPoE server rate limiter allows max 65535 kbps to be set.

@Dmitry is this a limitation of Accel-PPP or can we increase the limits on the CLI?

Oct 11 2020, 4:30 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po renamed T2972: PPPoE server rate limiter allows max 65535 kbps to be set from Rate limiter of PPPoE session allows max 65535 kbps to be set to PPPoE server rate limiter allows max 65535 kbps to be set.
Oct 11 2020, 4:29 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

I can feel that pain! When looking at the source from VyOS 1.2 (crux) it looks like it always behaved in this way.

Oct 11 2020, 4:27 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 10 2020

c-po added a comment to T2951: Cannot enable logging for monitor nat.

@christophedc0 Have you enabled NAT rule logging?

Oct 10 2020, 6:30 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 9 2020

c-po committed rVYOSONEXef76184ae3b2: QAT: T2968: add support for Intel Atom C2000 processor.
Oct 9 2020, 5:15 PM
c-po committed rVYOSONEXdab9ff51238d: login: T2492: remove empty plaintext-password node.
Oct 9 2020, 5:15 PM
c-po added a comment to T2968: Add support for Intel Atom C2000 series QAT.
vyos@vyos# lsmod | grep qat
qat_200xx              20480  0
intel_qat             299008  2 usdm_drv,qat_200xx
dh_generic             16384  1 intel_qat
uio                    20480  1 intel_qat
authenc                16384  1 intel_qat
Oct 9 2020, 5:10 PM · VyOS 1.3 Equuleus (1.3.0)
c-po renamed T2968: Add support for Intel Atom C2000 series QAT from Ssupport qat_200xx to Add support for Intel Atom C2000 series QAT.
Oct 9 2020, 5:08 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 6 2020

c-po committed rVYOSONEXa86c4347c214: openconnect: T2036: reuse accel-name-server.xml.i.
Oct 6 2020, 3:54 PM
c-po committed rVYOSONEXcff1cefe7746: xml: tftp-server: include/reuse port-number.xml.i.
Oct 6 2020, 6:06 AM
c-po committed rVYOSONEX0ca6d38c846a: xml: include: add common helper file for listen-address.
Oct 6 2020, 6:00 AM

Oct 5 2020

c-po committed rVYOSONEX5accf7227858: wireless: T2963: remove default wpa mode key if passphares or RADIUS is unset.
Oct 5 2020, 6:56 PM
c-po committed rVYOSONEX2a0428bf11cb: wireless: T2963: set default "both" on "security wpa mode".
Oct 5 2020, 6:24 PM
c-po closed T2963: Wireless: WIFI is not password protected when security wpa mode is not defined but passphrase is as Resolved.
Oct 5 2020, 6:24 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T2963: Wireless: WIFI is not password protected when security wpa mode is not defined but passphrase is.
Oct 5 2020, 6:20 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T2963: Wireless: WIFI is not password protected when security wpa mode is not defined but passphrase is.
Oct 5 2020, 6:17 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2963: Wireless: WIFI is not password protected when security wpa mode is not defined but passphrase is from Open to Confirmed.
Oct 5 2020, 6:14 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2963: Wireless: WIFI is not password protected when security wpa mode is not defined but passphrase is.
Oct 5 2020, 6:13 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXb66b886e840f: validate: ipv6: mtu: T2427: wireless interface MTU is not configurable.
Oct 5 2020, 5:35 PM
c-po closed T2962: Drop DHCPv6 NIS/NIS+ support as Invalid.
Oct 5 2020, 5:22 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2962: Drop DHCPv6 NIS/NIS+ support.

Okay 2017 is like yesterday in NIS history so we then should keep it!

Oct 5 2020, 5:22 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2961: Support "stateless" DHCP-v6 (information-request) clients.

Any rolling newer then vyos-1.3-rolling-202010050117-amd64.iso will have this included.

Oct 5 2020, 5:21 PM
c-po committed rVYOSONEXbda4784c4831: dhcp(v6)-server: T2961: use fqdn validator wnd move to include snipped.
Oct 5 2020, 5:19 PM
c-po added a comment to T2961: Support "stateless" DHCP-v6 (information-request) clients.

I did a minor improvement and reused the fqdn validator in our system. In addition I refactored the domain-search into an includable snippet - so changing grammar, validators can be done in one single file.

Oct 5 2020, 5:19 PM
c-po created T2962: Drop DHCPv6 NIS/NIS+ support.
Oct 5 2020, 5:14 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2951: Cannot enable logging for monitor nat.

@christophedc0 please check out any rolling release which is newer then vyos-1.3-rolling-202010050117-amd64.iso as I have found two bugs in the implementation (one for source nat logging) and the other for the warning you have posted.

Oct 5 2020, 4:45 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX65acae486836: nat: T2951: use proper comments for source/destination logging.
Oct 5 2020, 4:43 PM
c-po changed the status of T2951: Cannot enable logging for monitor nat from Open to Needs testing.
Oct 5 2020, 4:43 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 4 2020

c-po added a comment to T2951: Cannot enable logging for monitor nat.

This was infact only a warning - but for whatever reason nftables is not logging to kernel log :/

Oct 4 2020, 6:32 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T2951: Cannot enable logging for monitor nat.
Oct 4 2020, 6:32 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX5fca68d821c5: smoketest: ntp: T2944: fix "allowed-networks statement" test.
Oct 4 2020, 5:53 PM
c-po committed rVYOSONEXe8a3153f09de: sstp: T2960: migrate to get_config_dict() and reusable templates.
Oct 4 2020, 5:47 PM
c-po committed rVYOSONEX136d81c13c79: pppoe-server: T2953: prepare common chap-secrets file.
Oct 4 2020, 5:47 PM
c-po closed T2960: sstp: migrate to get_config_dict(), a subtask of T2953: Accel-PPP services CLI config cleanup (SSTP, L2TP, PPPoE, IPoE), as Resolved.
Oct 4 2020, 5:47 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2960: sstp: migrate to get_config_dict() as Resolved.
Oct 4 2020, 5:47 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T2960: sstp: migrate to get_config_dict().
Oct 4 2020, 5:36 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2960: sstp: migrate to get_config_dict().
Oct 4 2020, 5:35 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX3691fa4aa76b: pppoe-server: T2829: shift config migrators by one.
Oct 4 2020, 4:49 PM