Page MenuHomeVyOS Platform
Feed All Stories

Oct 21 2020

jestabro committed rVYOSONEXc6c8c453076a: http-api: T3007: use ConfigSession config load script, not backend load.
Oct 21 2020, 10:45 PM
jestabro committed rVYOSONEX8bf1ba34d2fd: configsession: T3004: add call to config load script.
Oct 21 2020, 10:45 PM
jestabro committed rVYOSONEX3394ab8d2941: configd: T2582: exclude http-api.py to investigate regression.
Oct 21 2020, 10:43 PM
Gunni updated the task description for T3008: Migrate from ntpd to chronyd.
Oct 21 2020, 9:13 PM · VyOS 1.4 Sagitta
Gunni created T3008: Migrate from ntpd to chronyd.
Oct 21 2020, 9:12 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T3004: ConfigSession should (optionally) use config load script: T3007: HTTP-API should use config load script, not backend config load.
Oct 21 2020, 7:12 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a parent task for T3007: HTTP-API should use config load script, not backend config load: T3004: ConfigSession should (optionally) use config load script.
Oct 21 2020, 7:12 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro created T3007: HTTP-API should use config load script, not backend config load.
Oct 21 2020, 7:12 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro changed the status of T3004: ConfigSession should (optionally) use config load script from Open to Needs testing.
Oct 21 2020, 7:08 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro changed the status of T3004: ConfigSession should (optionally) use config load script, a subtask of T3003: Extend smoketest framework to allow loading an arbitrary config file, from Open to Needs testing.
Oct 21 2020, 7:08 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro edited a custom field on T3004: ConfigSession should (optionally) use config load script.
Oct 21 2020, 7:07 PM · VyOS 1.3 Equuleus (1.3.0)
Gunni added a comment to T2321: VRF support for SSH, NTP, SNMP service.

I have ntp listening in vrf mgmt, note that i have not set vrf bind-to-all.

Oct 21 2020, 6:25 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T2138: Can't load archived configs as they are gzipped as Resolved.
Oct 21 2020, 6:22 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro committed rVYOSONEXb8059a11f07a: load-config: T2138: support loading gzipped (local) config files.
Oct 21 2020, 6:21 PM
Unknown Object (User) added a comment to T2631: l2tp, sstp, pptp add option to disable radius accounting.

@Viacheslav if we set acct-port=0 it should to disable accounting.

[radius]
server=x.x.x.x,secret,auth-port=1812,acct-port=0
Oct 21 2020, 5:00 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2631: l2tp, sstp, pptp add option to disable radius accounting.

@Dmitry Your suggestions? Is it possible?
What parameter do we need to change?

Oct 21 2020, 4:47 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1963: Can't copy or rename a node.

We need to check what's going on here https://github.com/vyos/vyatta-cfg/blob/current/etc/bash_completion.d/vyatta-cfg#L930-L962

Oct 21 2020, 4:40 PM · VyOS Rolling, Bugs, VyOS 1.5 Circinus
Viacheslav added a comment to T2977: Permissions Denied doing "show conntrack-sync status" on backup router.

Will be fixed in the new LTS release.

Oct 21 2020, 4:08 PM
Viacheslav added a comment to T2977: Permissions Denied doing "show conntrack-sync status" on backup router.

PR for crux https://github.com/vyos/vyatta-conntrack-sync/pull/4

Oct 21 2020, 3:48 PM
GallySoft created T3006: Accel-PPP & vlan-mon config get invalid VLAN.
Oct 21 2020, 3:22 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
artooro added a comment to T160: Support NAT64.

@jack9603301 I tried building jool into the VyOS image but because their deb packages uses DKMS which is not compatible with VyOS so somebody has to create a VyOS specific deb package.

Oct 21 2020, 2:56 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Magnum added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

Also, while setting up test for T2906:

Oct 21 2020, 2:02 PM · VyOS 1.3 Equuleus (1.3.0)
Magnum claimed T2906: OpenVPN: tls-auth missing key direction.

No problem

Oct 21 2020, 1:52 PM · VyOS 1.3 Equuleus (1.3.0), openvpn
Magnum added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

I can see why the smoketests pass. They only check if the interface has been removed from the config - not the system.

Oct 21 2020, 1:41 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2731: "show interfaces" returns invalid state when link is down.

Possible bug with "admin_state"

Oct 21 2020, 1:21 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2977: Permissions Denied doing "show conntrack-sync status" on backup router.

@tjh can you edit one file?

Oct 21 2020, 10:43 AM
lookhoper updated lookhoper.
Oct 21 2020, 10:38 AM
pasik added a comment to T2977: Permissions Denied doing "show conntrack-sync status" on backup router.

Did this work earlier in previous releases? is this a regression in 1.2.6-S1 ?

Oct 21 2020, 9:32 AM
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 21 2020, 8:56 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2749: Setting ethx configuration takes a long time as Resolved.
Oct 21 2020, 8:46 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2781: Create op-mode top-level wrapper for ssh command.

@c-po What do you propose?

Oct 21 2020, 8:21 AM · Bugs, VyOS Rolling
jack9603301 added a comment to T766: Implement support for the Tinc VPN daemon.

It has passed the GNS test, and the test cases are as follows:

Oct 21 2020, 8:20 AM
Viacheslav closed T2828: BGP conf_mode error enforce-first-as, a subtask of T2174: Rewrite protocol BGP to new XML/Python style, as Resolved.
Oct 21 2020, 8:12 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2828: BGP conf_mode error enforce-first-as as Resolved.
Oct 21 2020, 8:12 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2881: Bug in weight calculation for failover mode.

@banditos13 can you send a link to the file, which you suggest to fix, or create PR?

Oct 21 2020, 8:07 AM
Viacheslav changed the status of T2944: NTP by default listen on any address/interface from Open to Needs testing.
Oct 21 2020, 8:03 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 21 2020, 7:59 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2895: VPN IPsec "leftsubnet" declared 2 times.

Do we need it for "crux"?
This does not affect the work of VPN service.

Oct 21 2020, 7:56 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T2906: OpenVPN: tls-auth missing key direction.

@Magnum Can you test it?

Oct 21 2020, 7:53 AM · VyOS 1.3 Equuleus (1.3.0), openvpn
Viacheslav added a comment to T915: MPLS Support.

@Cheeze_It thank you for testing.

Oct 21 2020, 7:36 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta

Oct 20 2020

Cheeze_It added a comment to T915: MPLS Support.

Here is the test for the LDP session time change.

Oct 20 2020, 9:48 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Cheeze_It added a comment to T915: MPLS Support.

Here is the test for Explicit Null.

Oct 20 2020, 9:41 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
drac created T3005: Intel: update out-of-tree drivers, i40e driver warning.
Oct 20 2020, 9:19 PM · VyOS 1.3 Equuleus (1.3.0)
Cheeze_It closed T2989: MPLS documentation expansion as Resolved.
Oct 20 2020, 4:27 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a parent task for T3004: ConfigSession should (optionally) use config load script: T3003: Extend smoketest framework to allow loading an arbitrary config file.
Oct 20 2020, 4:22 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a subtask for T3003: Extend smoketest framework to allow loading an arbitrary config file: T3004: ConfigSession should (optionally) use config load script.
Oct 20 2020, 4:22 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro triaged T3004: ConfigSession should (optionally) use config load script as Normal priority.
Oct 20 2020, 4:22 PM · VyOS 1.3 Equuleus (1.3.0)
Cheeze_It added a comment to T2989: MPLS documentation expansion.

Everything seems to be good. Closing case.

Oct 20 2020, 4:20 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro triaged T3003: Extend smoketest framework to allow loading an arbitrary config file as Normal priority.
Oct 20 2020, 3:51 PM · VyOS 1.3 Equuleus (1.3.0)
lbv2rus added a comment to T1721: Recursive Next Hop not updated for static routes.

Simple R1&R2
R2 will have low priority in HA and other ip-adresses in the same subnet

Oct 20 2020, 3:04 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a comment to T2138: Can't load archived configs as they are gzipped.

Thanks @Viacheslav; I'm running other tests with vyos-load-config at the moment, and will check and add.

Oct 20 2020, 2:58 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1721: Recursive Next Hop not updated for static routes.

Can you provide a simple config of R1 R3 and R4?
I want to reproduce it in the test lab.

Oct 20 2020, 2:34 PM · VyOS 1.3 Equuleus (1.3.0)
Chalmrah created T3002: VRRP change on IPSec interface causes packet routing issues.
Oct 20 2020, 12:20 PM · VyOS 1.4 Sagitta
lbv2rus added a comment to T1721: Recursive Next Hop not updated for static routes.

I cannot check rolling release, but on latest 1.2.6 problem is solved.

Oct 20 2020, 11:49 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T766: Implement support for the Tinc VPN daemon.

What content of "conf-path" ?

Oct 20 2020, 10:59 AM
Viacheslav added a comment to T766: Implement support for the Tinc VPN daemon.

Which files in /config/tinc0/hosts ?

Oct 20 2020, 10:47 AM
jack9603301 added a comment to T766: Implement support for the Tinc VPN daemon.

Hello everyone, I am integrating tinc. At present, I have passed the basic test in a simple virtual machine. The command line is simplified. Examples are as follows:

Oct 20 2020, 10:31 AM
Viacheslav closed T2982: show protocols bfd command parse failure as Unknown Status.
Oct 20 2020, 9:54 AM · Ready for Crux (1.2.x), VyOS 1.2 Crux
Unknown Object (User) closed T2984: (igb, ixgbe) HW queues applied only for the first 2 interfaces as Unknown Status.
Oct 20 2020, 9:52 AM · VyOS 1.2 Crux (VyOS 1.2.7)
phillipmcmahon created T3001: Disable spectre mitigation patches from CLI.
Oct 20 2020, 9:35 AM · Restricted Project, VyOS 1.4 Sagitta
Viacheslav closed T2987: VxLAN not working properly after upgrading to latest October build and with a new installation as Resolved.

Thank you.
Reopen the task or create a new one if you find some problems.

Oct 20 2020, 7:33 AM · VyOS 1.3 Equuleus (1.3.0)
tom.siewert added a comment to T2987: VxLAN not working properly after upgrading to latest October build and with a new installation.

I have investigated it now a bit deeper and found out that this router got migrated to VRF automatically (Our deployment stack automatically migrates upgraded/new deployed routers to VRF usage for OOB/VxLAN communication).

Oct 20 2020, 7:14 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav claimed T2103: Abnormal interface names if VIF present.
Oct 20 2020, 6:46 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2103: Abnormal interface names if VIF present.

PR https://github.com/vyos/vyos-1x/pull/579

Oct 20 2020, 6:45 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2138: Can't load archived configs as they are gzipped.

I think it some code like

Oct 20 2020, 6:25 AM · VyOS 1.3 Equuleus (1.3.0)
Cheeze_It added a comment to T2989: MPLS documentation expansion.

Submitted second PR

Oct 20 2020, 1:46 AM · VyOS 1.3 Equuleus (1.3.0)
Gunni added a comment to T1385: Allow bonding interfaces to have pseudo-ethernet interfaces.

Many thanks!

Oct 20 2020, 1:21 AM · VyOS 1.3 Equuleus (1.3.0)
Asteroza added a comment to T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.

I can see a case where people deliberately do NOT want to use ISP provided DNS servers (to avoid DNS NX hijacking) (and/or lock to a major internet DNS server like google 8.8.8.8 or Quad9 9.9.9.9 or Cloudflare 1.1.1.1 for example)

Oct 20 2020, 12:25 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 19 2020

Alfa80 added a comment to T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.

This is an example scenario in which this comes handy:
You have three ethernet interfaces
Two are connected to different LANs
The third is connected to WAN (another router)
All networks offer DHCP and def gw
The LANs offer it for internet access
The WAN offers it for branch access
We want to keep def gw received for WAN and ignore internet access offered by those LANs

Oct 19 2020, 8:12 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T2995: Enhancements/bugfixes for vyos_dict_search().
Oct 19 2020, 7:43 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1930: Issue with iperf 2.0.12.

@Merijn Can you check the latest rolling?
Or write please which commands do you use?

Oct 19 2020, 7:35 PM
c-po closed T2992: Automatically verify sha256 checksum on ISO download as Resolved.
Oct 19 2020, 7:34 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1721: Recursive Next Hop not updated for static routes.

@lbv2rus Can you try the latest rolling release?

Oct 19 2020, 7:25 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX75b07725dcb4: dhcpv6-server: T3000: fix prefix-degeation prefix-length help strings.
Oct 19 2020, 6:58 PM
c-po closed T3000: Mismatch between "prefix-length" and "preference" in dhcp6-server syntax as Resolved.
Oct 19 2020, 6:56 PM · VyOS 1.3 Equuleus (1.3.0)
c-po renamed T2994: Migrate OpenVPN interfaces to get_config_dict() syntax from Migrate OpenVPN interfaces got get_config_dict() syntax to Migrate OpenVPN interfaces to get_config_dict() syntax.
Oct 19 2020, 6:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

Unfortunately I can not reproduce this issue on my test system and also our smoketests (https://github.com/vyos/vyos-1x/blob/current/smoketest/scripts/cli/test_interfaces_openvpn.py) do not trigger the bug when run locally on the VyOS device by calling:

Oct 19 2020, 6:52 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX9069f447e64c: smoketest: openvpn: ensure interfaces do not persist after deletion.
Oct 19 2020, 6:50 PM
c-po committed rVYOSONEX03d7e1262ba2: smoketest: openvpn: test VRF assignment.
Oct 19 2020, 6:50 PM
Viacheslav closed T1385: Allow bonding interfaces to have pseudo-ethernet interfaces as Resolved.

@Gunni can you check the latest rolling?

Oct 19 2020, 6:47 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1594: l2tpv3 error on IPv6 local-ip.

@Dmitry

set interfaces ethernet eth1 address 2001:db8::2/64
set interfaces l2tpv3 l2tpeth1010 address '192.168.37.2/27'
set interfaces l2tpv3 l2tpeth1010 encapsulation 'ip'
set interfaces l2tpv3 l2tpeth1010 local-ip '2001:db8::2'
set interfaces l2tpv3 l2tpeth1010 peer-session-id '100'
set interfaces l2tpv3 l2tpeth1010 peer-tunnel-id '200'
set interfaces l2tpv3 l2tpeth1010 remote-ip '2001:db8::1'
set interfaces l2tpv3 l2tpeth1010 session-id '100'
set interfaces l2tpv3 l2tpeth1010 tunnel-id '200'
Oct 19 2020, 6:04 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta, test
Viacheslav closed T1588: VRRP failed to start if any of its interaces not exist as Resolved.
vyos@r4-roll# run show version
Oct 19 2020, 5:58 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-vrrp
c-po added a comment to T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.

Do other vendors suppert highjacking/altering of DHCP options? I feel this kills the whole concept of DHCP.

Oct 19 2020, 2:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX8598a765e8ac: unittests: T2995: vyos_dict_search() must return None on non-existing keys.
Oct 19 2020, 2:40 PM
c-po committed rVYOSONEXd1592875cadc: unittests: cleanup unused imports.
Oct 19 2020, 2:40 PM
Viacheslav added a comment to T927: IPv6 GRE packets not being forwarded.

@jjcordon can you test the latest rolling?

Oct 19 2020, 2:29 PM · VyOS 1.3 Equuleus (1.3.6), test
Alfa80 created T3000: Mismatch between "prefix-length" and "preference" in dhcp6-server syntax.
Oct 19 2020, 1:53 PM · VyOS 1.3 Equuleus (1.3.0)
SrividyaA created T2999: Add snmp mibs for QoS.
Oct 19 2020, 1:18 PM · Restricted Project, VyOS Rolling
Viacheslav updated the task description for T2998: SNMP v3 oid "exclude" option doesn't work.
Oct 19 2020, 12:55 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7)
Viacheslav created T2998: SNMP v3 oid "exclude" option doesn't work.
Oct 19 2020, 12:52 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7)
Magnum added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

Just tested with:
https://github.com/vyos/vyos-1x/commit/85cc735b05be109e6daa5403efa4122b8b6e79d2

Oct 19 2020, 12:28 PM · VyOS 1.3 Equuleus (1.3.0)
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 19 2020, 12:28 PM · VyOS 1.3 Equuleus (1.3.0)
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 19 2020, 12:26 PM · VyOS 1.3 Equuleus (1.3.0)
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 19 2020, 12:23 PM · VyOS 1.3 Equuleus (1.3.0)
Alfa80 updated the task description for T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 19 2020, 12:19 PM · VyOS 1.3 Equuleus (1.3.0)
Alfa80 created T2997: DHCP: disallow/do-not-request certain options when requesting IP address from server.
Oct 19 2020, 12:16 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) changed the status of T2883: op-mode reset vpn command shows wrong completion from Open to In progress.

It looks like this works, but when we don't have any connected user, it listed the current directory file

vyos@RTR1:~$ touch 1.txt
vyos@RTR1:~$ reset vpn remote-access user <tab>
Possible completions:
  1.txt         Terminate specified user's current remote access VPN session(s)

After a user connected, all works properly

vyos@RTR1:~$ reset vpn remote-access user <tab>
Possible completions:
  test1         Terminate specified user's current remote access VPN session(s)
Oct 19 2020, 11:30 AM · VyOS 1.2 Crux
Viacheslav added a comment to T2938: Adding remote Syslog RFC5424 compatibility.

@D0peX Can you check the latest rolling?

Oct 19 2020, 11:19 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T752: Add an option to disable IPv4 forwarding on specific interface only as Resolved.

Works as expected.

Oct 19 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
Magnum added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

No, I'm running this commit:
https://github.com/vyos/vyos-1x/commit/029f9839c21317ec5959b331eee25da472d08dc1

Oct 19 2020, 10:50 AM · VyOS 1.3 Equuleus (1.3.0)