Page MenuHomeVyOS Platform
Feed All Stories

Feb 5 2021

jack9603301 moved T2518: Add support for IPv6 NAT (NPTv6) from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 5 2021, 4:30 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
jack9603301 added a comment to T3030: Support ERSPAN Tunnel Protocol.

PR: https://github.com/vyos/vyos-1x/pull/720

Feb 5 2021, 4:19 AM · VyOS 1.4 Sagitta

Feb 4 2021

c-po added a comment to T2450: Rewrite "protocols vrf" tree in XML and Python.

https://github.com/vyos/vyos-1x/pull/719

Feb 4 2021, 6:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T2450: Rewrite "protocols vrf" tree in XML and Python.
Feb 4 2021, 6:34 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3280: Add XML for [conf-mode] STATIC, a subtask of T3279: Rewrite protocol STATIC [op-mode] to new XML/Python style, as Resolved.
Feb 4 2021, 6:33 PM · VyOS 1.4 Sagitta
c-po closed T3280: Add XML for [conf-mode] STATIC as Resolved.
Feb 4 2021, 6:33 PM · VyOS 1.4 Sagitta
Dickins created T3287: Ability to set DNAT translation address incorrectly.
Feb 4 2021, 5:16 PM · vyatta-nat, VyOS 1.4 Sagitta
jack9603301 changed the status of T3030: Support ERSPAN Tunnel Protocol from In progress to Needs testing.
Feb 4 2021, 4:56 PM · VyOS 1.4 Sagitta
jack9603301 closed T3283: Support for IPv4 neigh tables as Resolved.
Feb 4 2021, 4:56 PM · VyOS 1.4 Sagitta
jack9603301 committed rVYOSONEXa8028063b3ed: tunnel: T3030: Add erspan protocol support.
Feb 4 2021, 4:31 PM
jack9603301 committed rVYOSONEXc7d0865455c9: tunnel: T3030: Modify the command line to streamline configuration (support….
Feb 4 2021, 4:31 PM
GitHub <noreply@github.com> committed rVYOSONEX8413278c9013: Merge pull request #620 from jack9603301/T3030 (authored by c-po).
Feb 4 2021, 4:31 PM
jack9603301 committed rVYOSONEX6735125bce20: op-mode: ip: T3283: Support for IPv4 neigh tables.
Feb 4 2021, 4:30 PM
jack9603301 committed rVYOSONEX884b280fa021: op-mode: ip: T3283: Format Neigh tables.
Feb 4 2021, 4:30 PM
GitHub <noreply@github.com> committed rVYOSONEX7650ba287273: Merge pull request #718 from jack9603301/T3283 (authored by c-po).
Feb 4 2021, 4:30 PM
erkin added a comment to T469: Problem after commit with errors.

It's better to let this problem be solved by the migration to pftables (per T3286) instead of try and a band-aid over this isolated issue.

Feb 4 2021, 3:20 PM · VyOS 1.3 Equuleus (1.3.4), test
erkin created T3286: Switch the firewall from iptables to nftables.
Feb 4 2021, 3:01 PM · VyOS 1.4 Sagitta
erkin added a project to T3285: Schedule reboots through systemd-shutdownd instead of atd: VyOS 1.3 Equuleus.
Feb 4 2021, 2:14 PM · VyOS 1.3 Equuleus (1.3.0)
erkin added a project to T3274: ask_yes_no() doesn't handle EOFError: VyOS 1.3 Equuleus.
Feb 4 2021, 2:14 PM · VyOS 1.3 Equuleus (1.3.0)
erkin added a comment to T661: Show a warning if the router is going to reboot soon (due to "commit-confirm" command).

I opened T3285 to it. Once the switch to shutdownd is done, I'll incorporate a service that warns the user of an impending shutdown.

Feb 4 2021, 1:31 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
erkin added a parent task for T661: Show a warning if the router is going to reboot soon (due to "commit-confirm" command): T3285: Schedule reboots through systemd-shutdownd instead of atd.
Feb 4 2021, 1:29 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
erkin added a subtask for T3285: Schedule reboots through systemd-shutdownd instead of atd: T661: Show a warning if the router is going to reboot soon (due to "commit-confirm" command).
Feb 4 2021, 1:29 PM · VyOS 1.3 Equuleus (1.3.0)
erkin triaged T3285: Schedule reboots through systemd-shutdownd instead of atd as Wishlist priority.
Feb 4 2021, 1:29 PM · VyOS 1.3 Equuleus (1.3.0)
erkin created T3285: Schedule reboots through systemd-shutdownd instead of atd.
Feb 4 2021, 1:29 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2505: XCP-ng packet drops for small packets (e.g. icmp) under Xen and AWS.

We don't find any solution right now. We test with different kernels/offloads/sysctl params but without result.
Additional topic
https://xcp-ng.org/forum/topic/2956/tx-dropped-in-pv-vm

Feb 4 2021, 12:55 PM · VyOS Rolling, Bugs, VyOS 1.4 Sagitta (1.4.1)
Unknown Object (User) closed T2834: Config rollback function is broken due lack access to the config.boot as Resolved.

Own build crux version from 13 Jan 2021 19:08 UTC - works properly
1.2.6-S1 - works properly
1.2.6 - affected (does not works)
1.4-rolling-202102040221 - works properly
1.3-beta-202102040443 - works properly

Feb 4 2021, 12:01 PM · Restricted Project
dmbaturin added a comment to T661: Show a warning if the router is going to reboot soon (due to "commit-confirm" command).

Yes, but since it won't solve the notification problem, these are separate concerns. Let's make a new task for migrating that script from atd to systems for scheduling reboots.

Feb 4 2021, 11:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
mathiashedberg added a comment to T2505: XCP-ng packet drops for small packets (e.g. icmp) under Xen and AWS.

Hi,
I've been experiencing issues similar to what is being mentioned here. From my experience, I cant find any indication that the packet loss is related to packet size, it seems random.
Im running 1.4-rolling-202101270854 on XCP-NG 8.1.0. Confirmed on both Intel(R) Atom(TM) CPU C2758 and Intel(R) Xeon(R) CPU E5-2630 v3 machines. HW-checksumming turned off in XCP-NG makes no difference.

Feb 4 2021, 10:09 AM · VyOS Rolling, Bugs, VyOS 1.4 Sagitta (1.4.1)

Feb 3 2021

c-po added a comment to T2450: Rewrite "protocols vrf" tree in XML and Python.

So it turn's out, while looking at the current status more closely, there is a lot of redundancy available which should be migrated away.

Feb 3 2021, 10:19 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3278: Add XML for "protocols vrf" [conf-mode], a subtask of T2450: Rewrite "protocols vrf" tree in XML and Python, as Resolved.
Feb 3 2021, 10:12 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3278: Add XML for "protocols vrf" [conf-mode] as Resolved.
Feb 3 2021, 10:11 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX7288d31824cb: ospfv3: T3244: drop superfluous import of dict_search.
Feb 3 2021, 8:57 PM
c-po committed rVYOSONEX7fc2d2f05aea: rpki: T3255: remove superfluous import of verify_route_maps.
Feb 3 2021, 8:57 PM
jestabro triaged T3284: merge/load fail silently if unable to resolve host as Normal priority.
Feb 3 2021, 7:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro changed the status of T2910: XML: generator should support override of variables from Unknown Status to Resolved.
Feb 3 2021, 6:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro changed the status of T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds, a subtask of T2910: XML: generator should support override of variables, from Unknown Status to Resolved.
Feb 3 2021, 6:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro changed the status of T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from Unknown Status to Resolved.
Feb 3 2021, 6:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from In Progress to Finished on the VyOS 1.3 Equuleus board.
Feb 3 2021, 6:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe336cfe1d4c6: xml: T3239: override default mtu values and remove workarounds.
Feb 3 2021, 6:42 PM
jestabro committed rVYOSONEXd38fdaa3a91b: xml: T2910: add override script to Makefile.
Feb 3 2021, 6:42 PM
jestabro committed rVYOSONEXc5d56604c972: xml: T2910: add script to support override of defaultValue elements.
Feb 3 2021, 6:42 PM
jestabro moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Feb 3 2021, 5:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro moved T2910: XML: generator should support override of variables from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 3 2021, 5:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from In Progress to Finished on the VyOS 1.4 Sagitta board.
Feb 3 2021, 5:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro added a project to T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds: VyOS 1.3 Equuleus.
Feb 3 2021, 5:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 changed the status of T3283: Support for IPv4 neigh tables from Open to In progress.
Feb 3 2021, 3:45 PM · VyOS 1.4 Sagitta
SrividyaA added a comment to T3047: OSPF : virtual-link and passive-interface default parameters does not work together.

@Viacheslav , I tested in the 1.4 version, it seems that the neighborship is stuck in ExStart state with basic config. This behavior is not seen in 1.2.5 and 1.3
And also no frr.log is created.

Feb 3 2021, 3:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
jack9603301 added a comment to T3283: Support for IPv4 neigh tables.

PR: https://github.com/vyos/vyos-1x/pull/718

Feb 3 2021, 2:39 PM · VyOS 1.4 Sagitta
jack9603301 claimed T3283: Support for IPv4 neigh tables.
Feb 3 2021, 2:16 PM · VyOS 1.4 Sagitta
jack9603301 created T3283: Support for IPv4 neigh tables.
Feb 3 2021, 2:16 PM · VyOS 1.4 Sagitta
erkin closed T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. , a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Feb 3 2021, 11:58 AM · VyOS 1.4 Sagitta
erkin closed T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. as Resolved.
Feb 3 2021, 11:58 AM · VyOS 1.2 Crux (VyOS 1.2.7)
dmbaturin added a project to T627: IPSec configuration directive deletion fails, causes bad IPSec state on reboot. : VyOS 1.2 Crux (VyOS 1.2.7).
Feb 3 2021, 11:19 AM · VyOS 1.2 Crux (VyOS 1.2.7)
erkin closed T2873: "show nat destination translation address" doesn't filter at all as Resolved.
Feb 3 2021, 9:24 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3282: Add XML for [conf-mode] RIPng from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3282: Add XML for [conf-mode] RIPng, a subtask of T3281: Rewrite protocol RIPng [conf-mode] to new XML/Python style, from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3280: Add XML for [conf-mode] STATIC, a subtask of T3279: Rewrite protocol STATIC [op-mode] to new XML/Python style, from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3280: Add XML for [conf-mode] STATIC from Open to Needs testing.
Feb 3 2021, 8:04 AM · VyOS 1.4 Sagitta
sempervictus added a comment to T2884: Upstream Kernel Patches from Semper Victus Linux Hardened Tree.

To round out the effort, i've added an optional patch to the series which provides granular AAA/RBAC from ring0 and can also deliver the W^X functionality for userspace along with those functions.

Feb 3 2021, 12:37 AM · VyOS Rolling

Feb 2 2021

sempervictus added a comment to T2884: Upstream Kernel Patches from Semper Victus Linux Hardened Tree.

Since 5.10 appears to be holding solid, and grsecurity is using 5.10 for their beta branch, i've completed the forward port of these core functions to the same kernel revision being used in the current branch (at the time of commit).
Whats the intent with Intel drivers there? If we want to pull in from Intel, i think we ought to do the same in-tree patch process to build and sign the modules at build-time (and enforce module signing validation to load at runtime).

Feb 2 2021, 10:52 PM · VyOS Rolling
c-po moved T3229: Ethtool CLI Integration from Open to Backlog on the VyOS 1.4 Sagitta board.
Feb 2 2021, 10:19 PM · VyOS 1.5 Circinus
c-po moved T3239: XML: override 'defaultValue' for mtu of certain interfaces; remove workarounds from Open to In Progress on the VyOS 1.4 Sagitta board.
Feb 2 2021, 10:19 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3263: OSPF Hello subsecond timer, a subtask of T3235: Rewrite protocol OSPF to new XML/Python style, as Resolved.
Feb 2 2021, 10:16 PM
c-po closed T3263: OSPF Hello subsecond timer as Resolved.
Feb 2 2021, 10:16 PM · VyOS 1.4 Sagitta
c-po removed a project from T3263: OSPF Hello subsecond timer: VyOS 1.3 Equuleus.
Feb 2 2021, 10:15 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX8c26c1987c4c: ospf: T3263: hello-multiplier is only available for interfaces, not virtual-link.
Feb 2 2021, 10:13 PM
c-po moved T3263: OSPF Hello subsecond timer from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 9:59 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXc9e1a3b357f2: ospf: T3263: support hello sub-second timer.
Feb 2 2021, 9:59 PM
c-po changed the status of T3263: OSPF Hello subsecond timer, a subtask of T3235: Rewrite protocol OSPF to new XML/Python style, from Open to Needs testing.
Feb 2 2021, 9:59 PM
c-po changed the status of T3263: OSPF Hello subsecond timer from Open to Needs testing.
Feb 2 2021, 9:59 PM · VyOS 1.4 Sagitta
c-po closed T3018: Unclear behaviour when configuring vif and vif-s interfaces as Resolved.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3018: Unclear behaviour when configuring vif and vif-s interfaces from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3018: Unclear behaviour when configuring vif and vif-s interfaces from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXccd516b4d10c: vlan: T3018: vif/vif-s vlan id can not be re-used.
Feb 2 2021, 9:34 PM
c-po committed rVYOSONEX86209c679c6b: vlan: T3018: vif/vif-s vlan id can not be re-used.
Feb 2 2021, 9:34 PM
c-po added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.
cpo@LR1.wue3# commit
[ interfaces ethernet eth1 ]
Duplicate VLAN id "100" used for vif and vif-s interfaces!
Feb 2 2021, 9:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style, a subtask of T2175: Rewriting all FRR processes allow for reloading and to XML/Python style, from Unknown Status to Resolved.
Feb 2 2021, 9:08 PM
c-po changed the status of T3255: Rewrite protocol RPKI to new XML/Python style from Unknown Status to Resolved.
Feb 2 2021, 9:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX3828d05afbf2: rpki: T3255: backport new implementation from current branch.
Feb 2 2021, 9:07 PM
c-po committed rVYOSONEX6b3834351500: nat: T2873: Add address filtering for DNAT translations (authored by erkin).
Feb 2 2021, 9:07 PM
c-po claimed T3018: Unclear behaviour when configuring vif and vif-s interfaces.
Feb 2 2021, 8:10 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3018: Unclear behaviour when configuring vif and vif-s interfaces from Open to Confirmed.
Feb 2 2021, 8:09 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.

It is also allowed in VyOS 1.2 but the Kernel errors out:

Feb 2 2021, 8:09 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3253: rpki: multiple peers cannot be configured from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 7:58 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3255: Rewrite protocol RPKI to new XML/Python style from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3255: Rewrite protocol RPKI to new XML/Python style from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added projects to T3255: Rewrite protocol RPKI to new XML/Python style: VyOS 1.3 Equuleus, VyOS 1.4 Sagitta.
Feb 2 2021, 7:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sever-sever <v.gletenko@vyos.io> committed rVYOSONEX57adeb1bd1f7: conf-mode: T3282: Add XML for protocol RIPng.
Feb 2 2021, 7:43 PM
GitHub <noreply@github.com> committed rVYOSONEX204bfe78de11: Merge pull request #717 from sever-sever/T3282 (authored by c-po).
Feb 2 2021, 7:43 PM
GitHub <noreply@github.com> committed rVYOSONEX22c5f86dbe18: Merge branch 'current' into T3282 (authored by c-po).
Feb 2 2021, 7:43 PM
erkin committed rVYOSONEX06024ee642f9: nat: T2873: Add address filtering for DNAT translations.
Feb 2 2021, 7:42 PM
GitHub <noreply@github.com> committed rVYOSONEX940db8f35485: Merge pull request #716 from erkin/current (authored by c-po).
Feb 2 2021, 7:42 PM
stepler added a comment to T3018: Unclear behaviour when configuring vif and vif-s interfaces.

If you create a VIF and VIF-S interface with the same ID, the resulting device names collide:

Feb 2 2021, 7:06 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sever-sever <v.gletenko@vyos.io> committed rVYOSONEX3edaff512227: conf-mode: T3280: Add XML for protocols static.
Feb 2 2021, 4:39 PM
GitHub <noreply@github.com> committed rVYOSONEXf888192eec0f: Merge pull request #715 from sever-sever/T3280 (authored by c-po).
Feb 2 2021, 4:39 PM
erkin changed the subtype of T2873: "show nat destination translation address" doesn't filter at all from "Task" to "Bug".

This is caused by the omission of a call to conntrack --orig-dst in the new Python script.

Feb 2 2021, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3282: Add XML for [conf-mode] RIPng.

PR https://github.com/vyos/vyos-1x/pull/717

Feb 2 2021, 12:15 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3282: Add XML for [conf-mode] RIPng as Normal priority.
Feb 2 2021, 12:08 PM · VyOS 1.4 Sagitta
Viacheslav created T3281: Rewrite protocol RIPng [conf-mode] to new XML/Python style.
Feb 2 2021, 12:06 PM · VyOS 1.4 Sagitta
erkin added a comment to T2873: "show nat destination translation address" doesn't filter at all.

I have successfully replicated this on 1.3-rolling-202101052023 and 1.4-rolling-202101240218. It's absent in 1.2.6. I'm going to investigate this regression.

Feb 2 2021, 11:25 AM · VyOS 1.3 Equuleus (1.3.0)