Page MenuHomeVyOS Platform
Feed All Stories

Dec 1 2020

c-po added a subtask for T3100: Migrate DHCP/DHCPv6 server to get_config_dict(): T2562: VyOS can't be used as a DHCP server for a DHCP relay.
Dec 1 2020, 3:07 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a parent task for T2562: VyOS can't be used as a DHCP server for a DHCP relay: T3100: Migrate DHCP/DHCPv6 server to get_config_dict().
Dec 1 2020, 3:07 PM · VyOS 1.3 Equuleus (1.3.0)
c-po merged T3101: Support configuration of DHCP scopes even when there is no locally attached subnet into T2562: VyOS can't be used as a DHCP server for a DHCP relay.
Dec 1 2020, 3:07 PM · VyOS 1.3 Equuleus (1.3.0)
c-po merged task T3101: Support configuration of DHCP scopes even when there is no locally attached subnet into T2562: VyOS can't be used as a DHCP server for a DHCP relay.
Dec 1 2020, 3:07 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3101: Support configuration of DHCP scopes even when there is no locally attached subnet.
Dec 1 2020, 3:05 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T3100: Migrate DHCP/DHCPv6 server to get_config_dict() from Open to In progress.
Dec 1 2020, 3:05 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3100: Migrate DHCP/DHCPv6 server to get_config_dict().
Dec 1 2020, 3:04 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T3099: invalid.
Dec 1 2020, 2:40 PM · Rejected
c-po committed rVYOSONEX50a9bf97e193: dhcpv6: T1433: combine templates for v4 and v6.
Dec 1 2020, 2:33 PM
c-po closed T3094: Can not specify multiple deny ports in FW rule as Resolved.
Dec 1 2020, 2:29 PM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po closed T2713: VyOS must not change permissions on files in /config/auth as Resolved.
Dec 1 2020, 1:22 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T1316: Support for IS-IS .

Perhaps replace config (from_re "interface" | from_re "isis *") delete also and route-maps/prefix-lists from FRR configuration.
https://github.com/vyos/vyos-1x/blob/current/src/conf_mode/protocols_isis.py#L121

Dec 1 2020, 10:47 AM · VyOS 1.3 Equuleus (1.3.0)
Opacha triaged T3098: Cannot talk to rtnetlink: Message too long Command failed -:1 as Normal priority.
Dec 1 2020, 10:36 AM · VyOS 1.3 Equuleus (1.3.4)
Opacha created T3097: Cannot talk to rtnetlink: Message too long Command failed -:1.
Dec 1 2020, 10:32 AM · Invalid
Viacheslav added a comment to T2713: VyOS must not change permissions on files in /config/auth.

Before update

Dec 1 2020, 8:28 AM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin created T3096: Add a build option to disallow live CD boot.
Dec 1 2020, 7:48 AM · VyOS Rolling

Nov 30 2020

c-po added a comment to T3094: Can not specify multiple deny ports in FW rule.

Ah, thanks for the clarification.

Nov 30 2020, 6:29 PM · VyOS 1.2 Crux (VyOS 1.2.7)
Viacheslav added a comment to T3094: Can not specify multiple deny ports in FW rule.

@c-po It's mean all NOT ports. If you want to drop not 22,23,24,25

Nov 30 2020, 6:28 PM · VyOS 1.2 Crux (VyOS 1.2.7)
GitHub <noreply@github.com> committed rVYOSONEX669969f3f48a: Merge pull request #624 from Cheeze-It/current (authored by c-po).
Nov 30 2020, 5:49 PM
Cheeze_It added a comment to T1316: Support for IS-IS .

This will be on my list to test here in a little bit. I'm almost done with stuff relating to LDP.

Nov 30 2020, 5:03 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3091: Add "tag" for static route as Resolved.
Nov 30 2020, 3:30 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T1207: DMVPN behind NAT as Resolved.

PR with changed types in docs https://github.com/vyos/vyos-documentation/pull/380
ESP transport mode works properly on Cisco Router and VyOS routers together.

Nov 30 2020, 2:28 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav changed the status of T1316: Support for IS-IS from Open to Needs testing.
Nov 30 2020, 11:03 AM · VyOS 1.3 Equuleus (1.3.0)
GitHub <noreply@github.com> committed rVYOSONEX621f85524fee: Merge pull request #627 from erkin/crux (authored by dmbaturin).
Nov 30 2020, 11:03 AM
GitHub <noreply@github.com> committed rVYOSONEX9dab6e725568: Merge pull request #612 from sever-sever/T1316 (authored by dmbaturin).
Nov 30 2020, 10:59 AM
GitHub <noreply@github.com> committed rVYOSONEXcb1729ca4f37: Merge pull request #625 from erkin/current (authored by dmbaturin).
Nov 30 2020, 10:51 AM
Viacheslav added a comment to T3093: Add xml for vpn ipsec.

PR https://github.com/vyos/vyos-1x/pull/626

Nov 30 2020, 9:03 AM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEXb05fdfead0cb: GitHub: update PR template with additional notes (authored by c-po).
Nov 30 2020, 7:59 AM
GitHub <noreply@github.com> committed rVYOSONEX773d5b129de1: CONTRIBUTING: extend guidelines with samples from the documentation (authored by c-po).
Nov 30 2020, 7:52 AM
Unknown Object (User) changed the status of T1207: DMVPN behind NAT from Open to In progress.

DMVPN Spokes work properly behind a NAT if we use transport mode instead of tunnel. e.g.

set vpn ipsec esp-group ESP-HUB mode transport

So I think we need to add this info to docs.vyos.io and close this Feature Request

Nov 30 2020, 7:27 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

Nov 29 2020

Cheeze_It added a comment to T915: MPLS Support.

Put in a new PR to enable ethernet sub interface MPLS enablement. I screwed up the first one...but here's hoping this one is good.

Nov 29 2020, 9:17 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po committed rVYOSONEXbced875d7202: dhcpv6-relay: T3095: improve verify().
Nov 29 2020, 7:34 PM
c-po committed rVYOSONEXea3c4544634a: dhcpv6-relay: T3095: migrate service to get_config_dict().
Nov 29 2020, 7:34 PM
c-po committed rVYOSONEX4d3acd6e6fb0: smoketest: dhcpv6-relay: T3095: verify the verify() section.
Nov 29 2020, 7:34 PM
c-po renamed T3095: Migrate dhcp-relay and dhcpv6-relay to get_config_dict() from Migrate dhcp-relay to get_config_dict() to Migrate dhcp-relay and dhcpv6-relay to get_config_dict().
Nov 29 2020, 6:48 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX796d52eae697: smoketest: dhcpv6-relay: T3095: initial tests.
Nov 29 2020, 5:28 PM
c-po committed rVYOSONEXb6086681007c: smoketest: dhcp-relay: T3095: remove non referenced function from unittest.
Nov 29 2020, 5:28 PM
c-po added a comment to T2297: NTP add support for pool configuration.

See documentation https://docs.vyos.io/en/latest/system/ntp.html, support will be in next rolling release

Nov 29 2020, 12:50 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX3169f1270fe8: ntp: T2297: support configuration of NTP pool.
Nov 29 2020, 12:32 PM
c-po renamed T2297: NTP add support for pool configuration from ntp configuration to NTP add support for pool configuration.
Nov 29 2020, 12:31 PM · VyOS 1.4 Sagitta
c-po closed T3095: Migrate dhcp-relay and dhcpv6-relay to get_config_dict() as Resolved.
Nov 29 2020, 11:31 AM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXcacbc208d080: Merge branch 'dhcp-relay' of github.com:c-po/vyos-1x into current.
Nov 29 2020, 11:31 AM
c-po committed rVYOSONEXd6974be8d96c: dhcp-relay: T3095: migrate service to get_config_dict().
Nov 29 2020, 11:31 AM
c-po committed rVYOSONEX8f8629227c06: smoketest: dhcp-relay: T3095: initial tests.
Nov 29 2020, 11:31 AM
c-po triaged T3095: Migrate dhcp-relay and dhcpv6-relay to get_config_dict() as Low priority.
Nov 29 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T3095: Migrate dhcp-relay and dhcpv6-relay to get_config_dict() from Open to In progress.
Nov 29 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3095: Migrate dhcp-relay and dhcpv6-relay to get_config_dict().
Nov 29 2020, 10:51 AM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX72f831a15e38: [dhcp-relay] add completion helper to relay-agents-packets.
Nov 29 2020, 10:47 AM
c-po added a project to T3094: Can not specify multiple deny ports in FW rule: VyOS 1.2 Crux (VyOS 1.2.7).
Nov 29 2020, 9:56 AM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po created T3094: Can not specify multiple deny ports in FW rule.
Nov 29 2020, 9:56 AM · VyOS 1.2 Crux (VyOS 1.2.7)
Viacheslav claimed T3093: Add xml for vpn ipsec.
Nov 29 2020, 9:30 AM · VyOS 1.4 Sagitta
Viacheslav created T3093: Add xml for vpn ipsec.
Nov 29 2020, 9:30 AM · VyOS 1.4 Sagitta
c-po added a comment to T2947: Nat translation many-many with prefix does not map 1-1..

Even on Kernel 5.4 this is not supported.

Nov 29 2020, 7:32 AM · VyOS 1.4 Sagitta

Nov 28 2020

c-po closed T3092: nat: migrate to get_config_dict() as Resolved.
Nov 28 2020, 8:56 PM · VyOS 1.3 Equuleus (1.3.0)
GitHub <noreply@github.com> committed rVYOSONEXb474b60a8c42: Merge pull request #623 from c-po/nat (authored by c-po).
Nov 28 2020, 8:56 PM
c-po added a comment to T2947: Nat translation many-many with prefix does not map 1-1..

The command works on the experimental Kernel 5.9.9 VyOS ISO, but not using a 4.19 series Kernel. looks like it's not yet supported in nftables.

Nov 28 2020, 8:55 PM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEXe8f8eaa18ed6: Merge pull request #622 from c-po/github-pr-template (authored by c-po).
Nov 28 2020, 8:11 PM
c-po added a comment to T2947: Nat translation many-many with prefix does not map 1-1..

We actually need this:
http://git.nftables.org/nftables/commit/?id=35a6b10c1bc488ca195e9c641563c29251f725f3

Nov 28 2020, 8:07 PM · VyOS 1.4 Sagitta
c-po changed the status of T3092: nat: migrate to get_config_dict() from Open to In progress.
Nov 28 2020, 7:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a subtask for T3092: nat: migrate to get_config_dict(): T2947: Nat translation many-many with prefix does not map 1-1..
Nov 28 2020, 7:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a parent task for T2947: Nat translation many-many with prefix does not map 1-1.: T3092: nat: migrate to get_config_dict().
Nov 28 2020, 7:03 PM · VyOS 1.4 Sagitta
c-po created T3092: nat: migrate to get_config_dict().
Nov 28 2020, 7:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXfb648267bf5a: system: T3038: remove /dev/console from loadkeys.
Nov 28 2020, 6:14 PM
Viacheslav changed the status of T3091: Add "tag" for static route from Open to Needs testing.
Nov 28 2020, 4:41 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2890: NAT error adding translation address range as Resolved.

Fixed.

Nov 28 2020, 4:39 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2539: Issues with parsing ip range for source nat translation address as Resolved.

Fixed

set nat source rule 1000 outbound-interface 'eth1'
set nat source rule 1000 source address '203.0.113.1-203.0.113.4'
set nat source rule 1000 translation address '10.0.0.1-10.0.0.4'
vyos@r5# commit
[ nat ]
Warning: IP address 10.0.0.1 does not exist on the system!
Warning: IP address 10.0.0.4 does not exist on the system!
Nov 28 2020, 4:37 PM · VyConf
Viacheslav changed the status of T3020: The "scp" example is wrong in the bash-completion for "set system config-management commit-archive location" from In progress to Needs testing.
Nov 28 2020, 4:20 PM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T3091: Add "tag" for static route.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/57

Nov 28 2020, 4:16 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav updated the task description for T3091: Add "tag" for static route.
Nov 28 2020, 4:03 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav updated the task description for T3091: Add "tag" for static route.
Nov 28 2020, 3:07 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav created T3091: Add "tag" for static route.
Nov 28 2020, 2:37 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXb75a8bd4f09f: smoketest: pppoe-server: drop superfluous import.
Nov 28 2020, 2:32 PM
c-po claimed T2947: Nat translation many-many with prefix does not map 1-1..
Nov 28 2020, 2:28 PM · VyOS 1.4 Sagitta
Viacheslav created T3090: Move 'adjust-mss' firewall options to the interface section..
Nov 28 2020, 2:16 PM · VyOS 1.4 Sagitta
Viacheslav closed T2868: Tcp-mss option in policy calls kernel-panic as Resolved.
Nov 28 2020, 1:14 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2713: VyOS must not change permissions on files in /config/auth.

@jjakob can you check the latest rolling?

Nov 28 2020, 10:41 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 updated the task description for T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring.
Nov 28 2020, 10:36 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 updated the task description for T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring.
Nov 28 2020, 10:32 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring.

https://github.com/vyos/vyatta-cfg-qos/pull/8
https://github.com/vyos/vyos-1x/pull/621

Nov 28 2020, 9:57 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 updated the task description for T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring.
Nov 28 2020, 8:23 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 updated the task description for T3030: Support ERSPAN Tunnel Protocol.
Nov 28 2020, 8:23 AM · VyOS 1.4 Sagitta
jack9603301 renamed T3030: Support ERSPAN Tunnel Protocol from Support ERSPAN port mirroring to Support ERSPAN Tunnel Protocol.
Nov 28 2020, 8:22 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXc87ad948999c: vyos.template: T2720: fix remaining in-line time_block syntax.
Nov 28 2020, 7:28 AM
jack9603301 changed the subtype of T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring from "Task" to "Feature Request".
Nov 28 2020, 4:38 AM · VyOS 1.3 Equuleus (1.3.0)

Nov 27 2020

GitHub <noreply@github.com> committed rVYOSONEX41f79409c742: vyos.template: T2720: fix resolv.conf trim blocks (authored by c-po).
Nov 27 2020, 10:23 PM
c-po changed the status of T2947: Nat translation many-many with prefix does not map 1-1. from Open to Confirmed.
Nov 27 2020, 9:31 PM · VyOS 1.4 Sagitta
c-po added a comment to T2947: Nat translation many-many with prefix does not map 1-1..

The root cause here is that there is yet no nftables map support in our template.

Nov 27 2020, 9:30 PM · VyOS 1.4 Sagitta
ossicoinc added a comment to T2947: Nat translation many-many with prefix does not map 1-1..

This one is holding us back from some great 1.3 features... would love to get it looked at!

Nov 27 2020, 7:27 PM · VyOS 1.4 Sagitta
jack9603301 closed T2714: A collection of utilities supporting IPv6 or ipv4 as Resolved.
Nov 27 2020, 3:29 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 closed T2714: A collection of utilities supporting IPv6 or ipv4, a subtask of T2706: Support NDP protocol monitoring, as Resolved.
Nov 27 2020, 3:29 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 closed T2715: Duplicate address detection option supporting ARP, a subtask of T2714: A collection of utilities supporting IPv6 or ipv4, as Resolved.
Nov 27 2020, 3:29 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 closed T2715: Duplicate address detection option supporting ARP as Resolved.
Nov 27 2020, 3:29 PM · VyOS 1.3 Equuleus (1.3.0)
GitHub <noreply@github.com> committed rVYOSONEX0b06b4807887: Merge pull request #508 from jack9603301/current (authored by c-po).
Nov 27 2020, 3:25 PM
Viacheslav added a comment to T2713: VyOS must not change permissions on files in /config/auth.

PR https://github.com/vyos/vyatta-cfg-system/pull/132

Nov 27 2020, 3:00 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring.

+1

Nov 27 2020, 2:48 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXa2ac9fac16ee: vyos.template: T2720: always enable Jinja2 trim_blocks feature.
Nov 27 2020, 2:41 PM
Viacheslav changed the status of T2868: Tcp-mss option in policy calls kernel-panic from Open to Needs testing.
Nov 27 2020, 1:56 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2868: Tcp-mss option in policy calls kernel-panic.

PR https://github.com/vyos/vyatta-cfg-firewall/pull/19

Nov 27 2020, 1:19 PM · VyOS 1.3 Equuleus (1.3.0)
runar updated subscribers of T2744: igmp-proxy issue: Address already in use.

@Dmitry I dont really know if this is a good idea.
The reason for this is that the configuration synchronisation between frr daemons depends on the daemons started at the same time, and always running when global configuration is applied.. this is also one of the reasons why frr-daemons starts prior to vyos starting on bootup and not when a daemon is configured. I do not know if this will be a issue with PIM, so i'm not sure what will happen with this daemon.
as an example for such synctonization is a prefix-list.
If you start bgp and ospf and then create a prefix-list, the list will be created in both ospf and bgp.
If you start bgp , then create the prefix-list and then start ospf, ospf will not automatically add the prefix-list but when you show the combined configuration is is still show'ed as a global prefix-list.. to get the prefix-list into ospf you need to manually add the commands to the daemon to get in sync.

Nov 27 2020, 1:18 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 moved T3089: Migrate port mirroring to vyos-1x and support two-way traffic mirroring from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Nov 27 2020, 10:32 AM · VyOS 1.3 Equuleus (1.3.0)