Page MenuHomeVyOS Platform
Feed All Stories

Feb 3 2021

jestabro moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from In Progress to Finished on the VyOS 1.4 Sagitta board.
Feb 3 2021, 5:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro added a project to T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds: VyOS 1.3 Equuleus.
Feb 3 2021, 5:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 changed the status of T3283: Support for IPv4 neigh tables from Open to In progress.
Feb 3 2021, 3:45 PM · VyOS 1.4 Sagitta
SrividyaA added a comment to T3047: OSPF : virtual-link and passive-interface default parameters does not work together.

@Viacheslav , I tested in the 1.4 version, it seems that the neighborship is stuck in ExStart state with basic config. This behavior is not seen in 1.2.5 and 1.3
And also no frr.log is created.

Feb 3 2021, 3:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
jack9603301 added a comment to T3283: Support for IPv4 neigh tables.

PR: https://github.com/vyos/vyos-1x/pull/718

Feb 3 2021, 2:39 PM · VyOS 1.4 Sagitta
jack9603301 claimed T3283: Support for IPv4 neigh tables.
Feb 3 2021, 2:16 PM · VyOS 1.4 Sagitta
jack9603301 created T3283: Support for IPv4 neigh tables.
Feb 3 2021, 2:16 PM · VyOS 1.4 Sagitta
erkin closed T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. , a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Feb 3 2021, 11:58 AM · VyOS 1.4 Sagitta
erkin closed T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. as Resolved.
Feb 3 2021, 11:58 AM · VyOS 1.2 Crux (VyOS 1.2.7)
dmbaturin added a project to T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. : VyOS 1.2 Crux (VyOS 1.2.7).
Feb 3 2021, 11:19 AM · VyOS 1.2 Crux (VyOS 1.2.7)
erkin closed T2873: "show nat destination translation address" doesn't filter at all as Resolved.
Feb 3 2021, 9:24 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3282: Add XML for [conf-mode] RIPng from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3282: Add XML for [conf-mode] RIPng, a subtask of T3281: Rewrite protocol RIPng [conf-mode] to new XML/Python style, from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3280: Add XML for [conf-mode] STATIC, a subtask of T3279: Rewrite protocol STATIC [op-mode] to new XML/Python style, from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3280: Add XML for [conf-mode] STATIC from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
sempervictus added a comment to T2884: Upstream Kernel Patches from Semper Victus Linux Hardened Tree.

To round out the effort, i've added an optional patch to the series which provides granular AAA/RBAC from ring0 and can also deliver the W^X functionality for userspace along with those functions.

Feb 3 2021, 12:37 AM · VyOS Rolling

Feb 2 2021

sempervictus added a comment to T2884: Upstream Kernel Patches from Semper Victus Linux Hardened Tree.

Since 5.10 appears to be holding solid, and grsecurity is using 5.10 for their beta branch, i've completed the forward port of these core functions to the same kernel revision being used in the current branch (at the time of commit).
Whats the intent with Intel drivers there? If we want to pull in from Intel, i think we ought to do the same in-tree patch process to build and sign the modules at build-time (and enforce module signing validation to load at runtime).

Feb 2 2021, 10:52 PM · VyOS Rolling
c-po moved T3229: Ethtool CLI Integration from Open to Backlog on the VyOS 1.4 Sagitta board.
Feb 2 2021, 10:19 PM · VyOS 1.5 Circinus
c-po moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from Open to In Progress on the VyOS 1.4 Sagitta board.
Feb 2 2021, 10:19 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3263: OSPF Hello subsecond timer, a subtask of T3235: Rewrite protocol OSPF to new XML/Python style, as Resolved.
Feb 2 2021, 10:16 PM
c-po closed T3263: OSPF Hello subsecond timer as Resolved.
Feb 2 2021, 10:16 PM · VyOS 1.4 Sagitta
c-po removed a project from T3263: OSPF Hello subsecond timer: VyOS 1.3 Equuleus.
Feb 2 2021, 10:15 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX8c26c1987c4c: ospf: T3263: hello-multiplier is only available for interfaces, not virtual-link.
Feb 2 2021, 10:13 PM
c-po moved T3263: OSPF Hello subsecond timer from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 9:59 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXc9e1a3b357f2: ospf: T3263: support hello sub-second timer.
Feb 2 2021, 9:59 PM
c-po changed the status of T3263: OSPF Hello subsecond timer, a subtask of T3235: Rewrite protocol OSPF to new XML/Python style, from Open to Needs testing.
Feb 2 2021, 9:59 PM
c-po changed the status of T3263: OSPF Hello subsecond timer from Open to Needs testing.
Feb 2 2021, 9:59 PM · VyOS 1.4 Sagitta
c-po closed T3018: Unclear behaviour when configuring vif and vif-s interfaces as Resolved.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3018: Unclear behaviour when configuring vif and vif-s interfaces from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3018: Unclear behaviour when configuring vif and vif-s interfaces from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXccd516b4d10c: vlan: T3018: vif/vif-s vlan id can not be re-used.
Feb 2 2021, 9:34 PM
c-po committed rVYOSONEX86209c679c6b: vlan: T3018: vif/vif-s vlan id can not be re-used.
Feb 2 2021, 9:34 PM
c-po added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.
cpo@LR1.wue3# commit
[ interfaces ethernet eth1 ]
Duplicate VLAN id "100" used for vif and vif-s interfaces!
Feb 2 2021, 9:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style, a subtask of T2175: Rewriting all FRR processes allow for reloading and to XML/Python style, from Unknown Status to Resolved.
Feb 2 2021, 9:08 PM
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style from Unknown Status to Resolved.
Feb 2 2021, 9:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX3828d05afbf2: rpki: T3255: backport new implementation from current branch.
Feb 2 2021, 9:07 PM
c-po committed rVYOSONEX6b3834351500: nat: T2873: Add address filtering for DNAT translations (authored by erkin).
Feb 2 2021, 9:07 PM
c-po claimed T3018: Unclear behaviour when configuring vif and vif-s interfaces.
Feb 2 2021, 8:10 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3018: Unclear behaviour when configuring vif and vif-s interfaces from Open to Confirmed.
Feb 2 2021, 8:09 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.

It is also allowed in VyOS 1.2 but the Kernel errors out:

Feb 2 2021, 8:09 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3253: rpki: multiple peers cannot be configured from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 7:58 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3255: Rewrite protocol RPKI to new XML/Python style from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3255: Rewrite protocol RPKI to new XML/Python style from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added projects to T3255: Rewrite protocol RPKI to new XML/Python style: VyOS 1.3 Equuleus, VyOS 1.4 Sagitta.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sever-sever <v.gletenko@vyos.io> committed rVYOSONEX57adeb1bd1f7: conf-mode: T3282: Add XML for protocol RIPng.
Feb 2 2021, 7:43 PM
GitHub <noreply@github.com> committed rVYOSONEX204bfe78de11: Merge pull request #717 from sever-sever/T3282 (authored by c-po).
Feb 2 2021, 7:43 PM
GitHub <noreply@github.com> committed rVYOSONEX22c5f86dbe18: Merge branch 'current' into T3282 (authored by c-po).
Feb 2 2021, 7:43 PM
erkin committed rVYOSONEX06024ee642f9: nat: T2873: Add address filtering for DNAT translations.
Feb 2 2021, 7:42 PM
GitHub <noreply@github.com> committed rVYOSONEX940db8f35485: Merge pull request #716 from erkin/current (authored by c-po).
Feb 2 2021, 7:42 PM
stepler added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.

If you create a VIF and VIF-S interface with the same ID, the resulting device names collide:

Feb 2 2021, 7:06 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sever-sever <v.gletenko@vyos.io> committed rVYOSONEX3edaff512227: conf-mode: T3280: Add XML for protocols static.
Feb 2 2021, 4:39 PM
GitHub <noreply@github.com> committed rVYOSONEXf888192eec0f: Merge pull request #715 from sever-sever/T3280 (authored by c-po).
Feb 2 2021, 4:39 PM
erkin changed the subtype of T2873: "show nat destination translation address" doesn't filter at all from "Task" to "Bug".

This is caused by the omission of a call to conntrack --orig-dst in the new Python script.

Feb 2 2021, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3282: Add XML for [conf-mode] RIPng.

PR https://github.com/vyos/vyos-1x/pull/717

Feb 2 2021, 12:15 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3282: Add XML for [conf-mode] RIPng as Normal priority.
Feb 2 2021, 12:08 PM · VyOS 1.4 Sagitta
Viacheslav created T3281: Rewrite protocol RIPng [conf-mode] to new XML/Python style.
Feb 2 2021, 12:06 PM · VyOS 1.4 Sagitta
erkin added a comment to T2873: "show nat destination translation address" doesn't filter at all.

I have successfully replicated this on 1.3-rolling-202101052023 and 1.4-rolling-202101240218. It's absent in 1.2.6. I'm going to investigate this regression.

Feb 2 2021, 11:25 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3280: Add XML for [conf-mode] STATIC.

PR https://github.com/vyos/vyos-1x/pull/715

Feb 2 2021, 10:27 AM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX1b6db7ec490a: Merge pull request #714 from erkin/current (authored by dmbaturin).
Feb 2 2021, 10:14 AM
erkin committed rVYOSONEX31c4595b1e21: powerctl: Fix typo.
Feb 2 2021, 10:14 AM
Viacheslav updated the task description for T3280: Add XML for [conf-mode] STATIC.
Feb 2 2021, 10:13 AM · VyOS 1.4 Sagitta
Viacheslav triaged T3280: Add XML for [conf-mode] STATIC as Normal priority.
Feb 2 2021, 10:12 AM · VyOS 1.4 Sagitta
Viacheslav triaged T3279: Rewrite protocol STATIC [op-mode] to new XML/Python style as Normal priority.
Feb 2 2021, 10:11 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3278: Add XML for "protocols vrf" [conf-mode], a subtask of T2450: Rewrite "protocols vrf" tree in XML and Python, from Open to Needs testing.
Feb 2 2021, 9:00 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3278: Add XML for "protocols vrf" [conf-mode] from Open to Needs testing.
Feb 2 2021, 9:00 AM · VyOS 1.4 Sagitta

Feb 1 2021

stepler added a comment to T3269: VIF-C interfaces don't verify configuration.

Looks good on 1.4-rolling-202102010218 and 1.3-beta-202102010443:

Feb 1 2021, 8:44 PM · VyOS 1.3 Equuleus (1.3.0)
stepler closed T3268: Add VRF support to VIF-S interfaces as Resolved.

Looks good on 1.4-rolling-202102010218 and 1.3-beta-202102010443:

Feb 1 2021, 8:40 PM · VyOS 1.3 Equuleus (1.3.0)
stepler added a comment to T3262: DHCPv6 client runs when dhcpv6-options is configured without requesting an address or PD.

Looks good on 1.3-beta-202102010443:

vyos@vyos:~$ configure
[edit]
vyos@vyos# set interfaces ethernet eth0 dhcpv6-options
[edit]
vyos@vyos# commit
[edit]
vyos@vyos# exit
Warning: configuration changes have not been saved.
exit
vyos@vyos:~$ ps ax | grep dhcp6c
 1877 ttyS0    R+     0:00 grep dhcp6c
vyos@vyos:~$ show version
Feb 1 2021, 8:34 PM · VyOS 1.3 Equuleus (1.3.0)
stepler added a comment to T3240: Support per-interface DHCPv6 DUIDs.

Looks good on 1.3-beta-202102010443:

vyos@vyos:~$ configure
[edit]
vyos@vyos# set interfaces dummy dum0
[edit]
vyos@vyos# set interfaces ethernet eth0 dhcpv6-options pd 0 interface dum0
[edit]
vyos@vyos# set interfaces ethernet eth0 dhcpv6-options duid 00:02:00:00:0d:e9:30:30:31:45:34:36:2d:58:58:58:58:58:58:58:58:58:58:58:58:58:58
[edit]
vyos@vyos# commit
[edit]
vyos@vyos# exit
Warning: configuration changes have not been saved.
exit
vyos@vyos:~$ show version
Feb 1 2021, 8:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3266: Deleting RPKI does not remove entire FRR configuration., a subtask of T3255: Rewrite protocol RPKI to new XML/Python style, as Resolved.
Feb 1 2021, 7:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3266: Deleting RPKI does not remove entire FRR configuration. as Resolved.
Feb 1 2021, 7:56 PM
c-po changed the status of T3266: Deleting RPKI does not remove entire FRR configuration., a subtask of T3255: Rewrite protocol RPKI to new XML/Python style, from Open to On hold.
Feb 1 2021, 7:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3266: Deleting RPKI does not remove entire FRR configuration. from Open to On hold.
Feb 1 2021, 7:56 PM
c-po committed rVYOSONEXcb65321adc98: smoketest: configs: import sample config provided by Andri Steiner.
Feb 1 2021, 7:52 PM
rgrant added a comment to T3253: rpki: multiple peers cannot be configured .

There's an easy workaround to hack this into your "configure" scripts:

Feb 1 2021, 7:45 PM · VyOS 1.3 Equuleus (1.3.0)
sever-sever <v.gletenko@vyos.io> committed rVYOSONEXd8d466bff36b: vrf: T3278: Add XML for conf-mode.
Feb 1 2021, 6:35 PM
GitHub <noreply@github.com> committed rVYOSONEX40c4a14a6ff9: Merge pull request #713 from sever-sever/T3278 (authored by c-po).
Feb 1 2021, 6:35 PM
Viacheslav added a comment to T3250: PPPoE server: wrong local usernames.

On the other hand, it will not be possible to use login with "_"
https://github.com/vyos/vyos-1x/blob/current/data/templates/accel-ppp/chap-secrets.config_dict.tmpl#L6-L8

Feb 1 2021, 6:24 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T439: local PBR support.

@dirtycache a lot of dependences which not present in 1.2, for example, dict_merge/node_changed/leaf_node_changed/render/call/airbag.

Feb 1 2021, 5:57 PM · VyOS 1.4 Sagitta
jack9603301 updated the task description for T3116: Support back-end L4 level load balancing.
Feb 1 2021, 5:38 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3278: Add XML for "protocols vrf" [conf-mode].

PR https://github.com/vyos/vyos-1x/pull/713

Feb 1 2021, 5:32 PM · VyOS 1.4 Sagitta
Viacheslav claimed T3278: Add XML for "protocols vrf" [conf-mode].
Feb 1 2021, 1:09 PM · VyOS 1.4 Sagitta
Viacheslav created T3278: Add XML for "protocols vrf" [conf-mode].
Feb 1 2021, 1:09 PM · VyOS 1.4 Sagitta
Viacheslav placed T2450: Rewrite "protocols vrf" tree in XML and Python up for grabs.
Feb 1 2021, 1:07 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav claimed T2450: Rewrite "protocols vrf" tree in XML and Python.
Feb 1 2021, 1:07 PM · VyOS 1.3 Equuleus (1.3.0)
SrividyaA added a comment to T3047: OSPF : virtual-link and passive-interface default parameters does not work together.

@Viacheslav , working on it and update you soon.

Feb 1 2021, 10:00 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
erkin closed T3274: ask_yes_no() doesn't handle EOFError as Resolved.
Feb 1 2021, 1:56 AM · VyOS 1.3 Equuleus (1.3.0)

Jan 31 2021

FileGo created T3277: DNS Forwarding - reverse zones.
Jan 31 2021, 10:28 PM · VyOS 1.3 Equuleus (1.3.0-epa2), VyOS 1.4 Sagitta
c-po closed T3276: Update Linux Kernel to v5.4.94 / 5.10.12 as Resolved.
Jan 31 2021, 4:27 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3276: Update Linux Kernel to v5.4.94 / 5.10.12.
Jan 31 2021, 4:24 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXbe05dcafbbe2: smoketest: routes: add initial tests for static routes.
Jan 31 2021, 2:22 PM
c-po closed T2947: Nat translation many-many with prefix does not map 1-1., a subtask of T3092: nat: migrate to get_config_dict(), as Unknown Status.
Jan 31 2021, 12:43 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2947: Nat translation many-many with prefix does not map 1-1. as Unknown Status.
Jan 31 2021, 12:43 PM · VyOS 1.4 Sagitta
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style from Resolved to Unknown Status.
Jan 31 2021, 12:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style, a subtask of T2175: Rewriting all FRR processes allow for reloading and to XML/Python style, from Resolved to Unknown Status.
Jan 31 2021, 12:42 PM
c-po closed T3255: Rewrite protocol RPKI to new XML/Python style, a subtask of T2175: Rewriting all FRR processes allow for reloading and to XML/Python style, as Resolved.
Jan 31 2021, 12:42 PM
c-po closed T3255: Rewrite protocol RPKI to new XML/Python style as Resolved.
Jan 31 2021, 12:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX8076176ec689: smoketest: routes: add initial tests for static routes.
Jan 31 2021, 12:26 PM
c-po committed rVYOSONEXe29a4b2cad28: moketest: routes: add initial tests for static routes.
Jan 31 2021, 12:25 PM
c-po committed rVYOSONEX5f11deaf4de0: smoketest: vrf: add test case for static v4/v6 routes incl. leaking.
Jan 31 2021, 11:49 AM