Page MenuHomeVyOS Platform
Feed All Stories

Jun 8 2021

c-po added projects to T3605: Allow to set prefer-global for ipv6-next-hop: VyOS 1.3 Equuleus, VyOS 1.4 Sagitta.
Jun 8 2021, 6:25 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3607: [route-map] set ipv6 next-hop prefer-global as Resolved.
Jun 8 2021, 6:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3607: [route-map] set ipv6 next-hop prefer-global from Open to Finished on the VyOS 1.4 Sagitta board.
Jun 8 2021, 6:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3607: [route-map] set ipv6 next-hop prefer-global from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 8 2021, 6:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a project to T3607: [route-map] set ipv6 next-hop prefer-global: VyOS 1.3 Equuleus.
Jun 8 2021, 6:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po assigned T3607: [route-map] set ipv6 next-hop prefer-global to fernando.
Jun 8 2021, 6:18 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po assigned T3605: Allow to set prefer-global for ipv6-next-hop to fernando.
Jun 8 2021, 6:18 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3289: No description for node "service" conf-mode as Resolved.
Jun 8 2021, 6:17 AM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.4 Sagitta
c-po committed rVYOSONEX88676e526c8f: T3170: check if any generated node.def file is empty.
Jun 8 2021, 6:17 AM
c-po committed rVYOSONEXbe4b097b94d6: T3289: add missing description(help string for services node.
Jun 8 2021, 6:17 AM
c-po committed rVYOSONEXbca6af49ffe3: T3165: prevent override of populated node.def file with empty content.
Jun 8 2021, 6:17 AM
c-po changed the status of T3289: No description for node "service" conf-mode from Confirmed to In progress.
Jun 8 2021, 5:59 AM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.4 Sagitta
fernando added a comment to T3605: Allow to set prefer-global for ipv6-next-hop.

I create PR to add this new feature with the syntax to vyos-cli and frr commnads ,

Jun 8 2021, 12:03 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Jun 7 2021

fernando renamed T3607: [route-map] set ipv6 next-hop prefer-global from [route-mapset ipv6 next-hop prefer-global to [route-map] set ipv6 next-hop prefer-global.
Jun 7 2021, 11:59 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
fernando created T3607: [route-map] set ipv6 next-hop prefer-global.
Jun 7 2021, 11:48 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav moved T3289: No description for node "service" conf-mode from Open to Finished on the VyOS 1.4 Sagitta board.
Jun 7 2021, 11:15 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.4 Sagitta
Viacheslav closed T3455: system users can not be added in "edit" as Resolved.
Jun 7 2021, 11:12 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3461: OpenConnect Server redundancy check from Unknown Status to Resolved.
Jun 7 2021, 11:10 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3581: Incomplete command `show ipv6 ospfv3 linkstate` as Resolved.
Jun 7 2021, 11:01 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav created T3606: SNMP unknown notification OID.
Jun 7 2021, 10:37 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2620: Add ipsec peer-name to log to simplifies grepping and troubleshooting.

PR https://github.com/vyos/vyos-build/pull/169

Jun  8 00:59:20 r1-roll ipsec_starter[2373]: charon (2374) started after 400 ms
Jun  8 00:59:20 r1-roll charon: 05[CFG] received stroke: add connection 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 05[CFG] added configuration 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 07[CFG] received stroke: initiate 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 07[IKE] <peer-192.0.2.2-tunnel-0|1> initiating Main Mode IKE_SA peer-192.0.2.2-tunnel-0[1] to 192.0.2.2
Jun  8 00:59:20 r1-roll charon: 07[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ SA V V V V V ]
Jun  8 00:59:20 r1-roll charon: 07[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (180 bytes)
Jun  8 00:59:20 r1-roll charon: 09[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (160 bytes)
Jun  8 00:59:20 r1-roll charon: 09[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ SA V V V V ]
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received XAuth vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received DPD vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received FRAGMENTATION vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received NAT-T (RFC 3947) vendor ID
Jun  8 00:59:20 r1-roll charon: 09[CFG] <peer-192.0.2.2-tunnel-0|1> selected proposal: IKE:AES_CBC_256/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_1024
Jun  8 00:59:20 r1-roll charon: 09[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ KE No NAT-D NAT-D ]
Jun  8 00:59:20 r1-roll charon: 09[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (244 bytes)
Jun  8 00:59:20 r1-roll charon: 10[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (244 bytes)
Jun  8 00:59:20 r1-roll charon: 10[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ KE No NAT-D NAT-D ]
Jun  8 00:59:20 r1-roll charon: 10[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ ID HASH N(INITIAL_CONTACT) ]
Jun  8 00:59:20 r1-roll charon: 10[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (108 bytes)
Jun  8 00:59:20 r1-roll charon: 11[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (76 bytes)
Jun  8 00:59:20 r1-roll charon: 11[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ ID HASH ]
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> IKE_SA peer-192.0.2.2-tunnel-0[1] established between 192.0.2.1[192.0.2.1]...192.0.2.2[192.0.2.2]
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> scheduling rekeying in 2720s
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> maximum IKE_SA lifetime 3260s
Jun  8 00:59:20 r1-roll charon: 11[ENC] <peer-192.0.2.2-tunnel-0|1> generating QUICK_MODE request 3783917425 [ HASH SA No KE ID ID ]
Jun  8 00:59:20 r1-roll charon: 11[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (316 bytes)
Jun  8 00:59:20 r1-roll charon: 12[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (316 bytes)
Jun  8 00:59:20 r1-roll charon: 12[ENC] <peer-192.0.2.2-tunnel-0|1> parsed QUICK_MODE response 3783917425 [ HASH SA No KE ID ID ]
Jun  8 00:59:20 r1-roll charon: 12[CFG] <peer-192.0.2.2-tunnel-0|1> selected proposal: ESP:AES_CBC_256/HMAC_SHA1_96/MODP_1024/NO_EXT_SEQ
Jun  8 00:59:20 r1-roll charon: 12[IKE] <peer-192.0.2.2-tunnel-0|1> CHILD_SA peer-192.0.2.2-tunnel-0{1} established with SPIs c4d940b7_i c9a69e83_o and TS 10.1.0.0/24 === 10.2.3.0/24
Jun  8 00:59:20 r1-roll charon: 12[ENC] <peer-192.0.2.2-tunnel-0|1> generating QUICK_MODE request 3783917425 [ HASH ]
Jun  8 00:59:20 r1-roll charon: 12[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (60 bytes)
Jun 7 2021, 10:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Lucaber created T3605: Allow to set prefer-global for ipv6-next-hop.
Jun 7 2021, 9:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a project to T2620: Add ipsec peer-name to log to simplifies grepping and troubleshooting: VyOS 1.4 Sagitta.
Jun 7 2021, 8:50 PM · VyOS 1.2 Crux (VyOS 1.2.8)
trae32566 updated the task description for T3604: Changing BGP Neighbor Peer-Group Association Causes Routing Subsystem Failure.
Jun 7 2021, 8:32 PM
trae32566 created T3604: Changing BGP Neighbor Peer-Group Association Causes Routing Subsystem Failure.
Jun 7 2021, 8:31 PM
trae32566 added a comment to T3602: Renaming BGP Peer Groups Leaves Router Broken.

This is indeed fixed!

Jun 7 2021, 8:27 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3358: VRRP: Is it necessary to support switches between master and backup with script? as Invalid.

@arvin This functions in all versions of VyOS.

Jun 7 2021, 7:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T2763: New SNMP resource request - SNMP over TCP from "Task" to "Feature Request".
Jun 7 2021, 6:35 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
UnicronNL claimed T3339: Cloud-Init domain search setting not applied.
Jun 7 2021, 6:32 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
Viacheslav added a comment to T2855: disabled vti interfaces still working.

I can't reproduce it in 1.2.7 and VyOS 1.3-beta-202105272051

Jun 7 2021, 6:25 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a comment to T3017: bridge will lose the tuntap member after reboots.

@jingyun Can you describe steps on how to reproduce it? Or re-check it.
My test config after reboot works fine

set interfaces bridge br0 member interface tun0
set interfaces tunnel tun0 encapsulation 'gre-bridge'
set interfaces tunnel tun0 local-ip '100.64.0.1'
set interfaces tunnel tun0 remote-ip '100.64.0.254'
Jun 7 2021, 6:08 PM · Invalid
c-po committed rVYOSONEXe69879df07e1: smoketest: ipsec: chmod +x testcase.
Jun 7 2021, 5:41 PM
c-po committed rVYOSONEXaf76ccbe603e: nhrp: T3599: adjust Jinja2 template to common style pattern.
Jun 7 2021, 5:41 PM
c-po committed rVYOSONEXeee2bb6c242f: ipsec: T2816: adjust Jinja2 template to common style pattern.
Jun 7 2021, 5:41 PM
Viacheslav moved T3138: ddclient improperly updated when apply rfc2136 config from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
Jun 7 2021, 5:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 7 2021, 5:10 PM · VyOS 1.4 Sagitta
c-po closed T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan as Resolved.
Jun 7 2021, 5:10 PM · VyOS 1.4 Sagitta
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 7 2021, 5:09 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX19b8f729dc53: vti: T3588: remove interfaces not bound to IPSec tunnel.
Jun 7 2021, 5:08 PM
c-po committed rVYOSONEX13236b0a6632: ipsec: T3588: remove site-to-site tunnel CLI options only valid in Openswan.
Jun 7 2021, 4:55 PM
Viacheslav changed the status of T3602: Renaming BGP Peer Groups Leaves Router Broken, a subtask of T3182: Main blocker Task for FRR 7.4/7.5 series update, from Open to Needs testing.
Jun 7 2021, 4:40 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3602: Renaming BGP Peer Groups Leaves Router Broken from Open to Needs testing.
Jun 7 2021, 4:40 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3516: FRR 7.5 adds a second route when you attempt to change a static route distance instead of overwriting the old route, a subtask of T3182: Main blocker Task for FRR 7.4/7.5 series update, as Resolved.
Jun 7 2021, 4:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3516: FRR 7.5 adds a second route when you attempt to change a static route distance instead of overwriting the old route as Resolved.
Jun 7 2021, 4:39 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav claimed T3602: Renaming BGP Peer Groups Leaves Router Broken.
Jun 7 2021, 4:35 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3602: Renaming BGP Peer Groups Leaves Router Broken.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/81

Jun 7 2021, 4:20 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a subtask for T3182: Main blocker Task for FRR 7.4/7.5 series update: T3602: Renaming BGP Peer Groups Leaves Router Broken.
Jun 7 2021, 2:44 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a parent task for T3602: Renaming BGP Peer Groups Leaves Router Broken: T3182: Main blocker Task for FRR 7.4/7.5 series update.
Jun 7 2021, 2:44 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3602: Renaming BGP Peer Groups Leaves Router Broken.

https://github.com/vyos/vyatta-cfg-quagga/blob/fef5870b764e6166b639043fadb9317c8a49881d/scripts/bgp/vyatta-bgp.pl#L621-L625
https://github.com/vyos/vyatta-cfg-quagga/blob/fef5870b764e6166b639043fadb9317c8a49881d/scripts/bgp/vyatta-bgp.pl#L802-L806

Jun 7 2021, 2:31 PM · VyOS 1.3 Equuleus (1.3.0)
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX05b5cd0d8c11: nhrp: T3599: Update config path to new /run directory.
Jun 7 2021, 1:01 PM
GitHub <noreply@github.com> committed rVYOSONEX84ec8b75c190: Merge pull request #868 from sarthurdev/current (authored by c-po).
Jun 7 2021, 1:01 PM
Viacheslav added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

In the crux.

set system conntrack timeout custom rule 10 destination address '203.0.113.74'
set system conntrack timeout custom rule 10 destination port '80'
set system conntrack timeout custom rule 10 protocol tcp established '300'
set system conntrack timeout custom rule 10 source address '192.0.2.168'

commit

vyos@r2-lts# commit
[ system conntrack hash-size 32768 ]
Updated conntrack hash size. This change will take affect when the system is rebooted.
Jun 7 2021, 12:39 PM · VyOS 1.4 Sagitta
anthr76 added a comment to T3600: DHCP Interface static route breaks PBR.

It looks like your assessment is correct. It also seems like next-hop IP would be sufficient as well if I wasn't dealing with dynamic WAN IPs. For the moment I'm sticking with interface instead of dhcp-interface. The related issue you sent seems exactly related to this.

Jun 7 2021, 11:55 AM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T3505: Commits do not respect changes in FRR that are not stored in a config: T3600: DHCP Interface static route breaks PBR.
Jun 7 2021, 9:17 AM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a parent task for T3600: DHCP Interface static route breaks PBR: T3505: Commits do not respect changes in FRR that are not stored in a config.
Jun 7 2021, 9:17 AM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.

Clarifying as requested by c-po:

Jun 7 2021, 9:12 AM · VyOS 1.4 Sagitta
vindenesen added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

I believe I have found out why modification/deletion of rules fails. This is the rule definition in iptables:

Jun 7 2021, 9:10 AM · VyOS 1.4 Sagitta
trae32566 created T3602: Renaming BGP Peer Groups Leaves Router Broken.
Jun 7 2021, 8:39 AM · VyOS 1.3 Equuleus (1.3.0)

Jun 6 2021

fernando added a comment to T3600: DHCP Interface static route breaks PBR.

I think it is also related https://phabricator.vyos.net/T3522

Jun 6 2021, 9:53 PM · VyOS 1.4 Sagitta
fernando added a comment to T3600: DHCP Interface static route breaks PBR.

I have checked that functionality , i can replicate the issues .although there is a workaround if you "set protocols static table 11 route 0.0.0.0/0 dhcp-interface " any interfaces , it doesn't see in your table ( table 10 /11 ) we can see theses routes in the default table , let me show :

Jun 6 2021, 9:50 PM · VyOS 1.4 Sagitta
c-po closed T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 6 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po closed T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords, a subtask of T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan, as Resolved.
Jun 6 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po closed T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords as Resolved.
Jun 6 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 6 2021, 5:17 PM · VyOS 1.4 Sagitta
erkin claimed T3459: Inform the user when unable to install outdated image.
Jun 6 2021, 2:21 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX5bca2a9009b0: ipsec: T3588: remove CLI options deprecated by strongSwan.
Jun 6 2021, 1:57 PM
c-po committed rVYOSONEXfbedc0b14440: T1168: ipsec: add copyright header to migration script.
Jun 6 2021, 1:57 PM
erkin committed rVYOSONEXace6cc3b5165: T3356: remote: Add friendly download procedure for user-facing scripts.
Jun 6 2021, 1:49 PM
erkin committed rVYOSONEXdd94e6f1cf76: T3356: remote: Add authentication support.
Jun 6 2021, 1:49 PM
erkin committed rVYOSONEX0aa64e0c260d: T3356: remote: Read username and password from environment variables.
Jun 6 2021, 1:49 PM
erkin committed rVYOSONEXf3072a64a807: T3356: Add progressbars to FTP transfers.
Jun 6 2021, 1:49 PM
erkin committed rVYOSONEX0856dd2f2584: T3356: Add progressbars to SFTP and HTTP transfers.
Jun 6 2021, 1:49 PM
GitHub <noreply@github.com> committed rVYOSONEXf0bceeeb67e0: Merge pull request #846 from erkin/current (authored by c-po).
Jun 6 2021, 1:49 PM
UnicronNL triaged T3601: Error in ssh keys for vmware cloud-init if ssh keys is left empty. as Normal priority.
Jun 6 2021, 1:09 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po committed rVYOSONEX6289ee5ac3e7: Debian: add missing dependency on vyatta-cfg.
Jun 6 2021, 9:37 AM
c-po committed rVYOSONEXfd9032fb7bfc: Debian: add missing dependency on vyatta-cfg.
Jun 6 2021, 9:35 AM
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 6 2021, 9:11 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX4d295da35caa: nhrp: T3599: replace vyos-opennhrp with opennhrp package.
Jun 6 2021, 9:03 AM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEXb3bce6497cc2: nhrp: T3599: Migrate NHRP to XML/Python.
Jun 6 2021, 9:01 AM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX68e5ca6b56b2: nhrp: T3599: Remove vpn_ipsec.py from configd until bug is resolved.
Jun 6 2021, 9:01 AM
GitHub <noreply@github.com> committed rVYOSONEXf9c142bab451: Merge pull request #865 from sarthurdev/current (authored by c-po).
Jun 6 2021, 9:01 AM

Jun 5 2021

anthr76 created T3600: DHCP Interface static route breaks PBR.
Jun 5 2021, 11:41 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXc1a450a72aa9: ipsec: T3093: drop superfluous top level priority.
Jun 5 2021, 4:34 PM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEXa7ca03799105: ipsec: T2816: Fix typo from refactor.
Jun 5 2021, 6:26 AM
GitHub <noreply@github.com> committed rVYOSONEX71313fb44520: Merge pull request #866 from sarthurdev/fix-ipsec (authored by c-po).
Jun 5 2021, 6:26 AM

Jun 4 2021

sarthurdev changed the status of T3599: Migrate NHRP to XML/Python from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/865

Jun 4 2021, 9:55 PM · VyOS 1.4 Sagitta
c-po added a comment to T3040: NHRP IPv6 Support.

Hi @francis the latest FRR version lacks support for Cisco authentication https://github.com/FRRouting/frr/blob/master/nhrpd/nhrp_peer.c#L1212

Jun 4 2021, 6:33 PM · VyOS 1.5 Circinus
c-po closed T3595: Cannot create new VTI interface, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 4 2021, 5:34 PM · VyOS 1.4 Sagitta
c-po closed T3595: Cannot create new VTI interface as Resolved.
Jun 4 2021, 5:34 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX31d58e7d038d: vti: T3595: error out when adding VTI interface withouth IPSec.
Jun 4 2021, 5:34 PM
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 4 2021, 5:33 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T3599: Migrate NHRP to XML/Python from Open to In progress.
Jun 4 2021, 5:28 PM · VyOS 1.4 Sagitta
francis added a comment to T3040: NHRP IPv6 Support.

@c-po with this merge on FRR https://github.com/FRRouting/frr/pull/8153#event-4589485067 is migration possible? Possibly related to https://phabricator.vyos.net/T2326

Jun 4 2021, 4:45 PM · VyOS 1.5 Circinus
francis added a comment to T2326: Migrate NHRP(DMVPN) to FRR.
Jun 4 2021, 4:44 PM · VyOS 1.5 Circinus
jack9603301 added a comment to T3596: Support wide-dhcp6-relay.

I wonder why this is flagged only as refactoring bit you open an entire new CLI tree.

Jun 4 2021, 2:34 PM
c-po added a comment to T3596: Support wide-dhcp6-relay.

Hi Jack,

Jun 4 2021, 2:04 PM
jack9603301 added a comment to T3596: Support wide-dhcp6-relay.

PR draft: https://github.com/vyos/vyos-1x/pull/863

Jun 4 2021, 1:08 PM
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.123 / 5.10.41 to Update Linux Kernel to v5.4.124 / 5.10.42.
Jun 4 2021, 12:55 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T3195: Add support for cisco style GRE keepalives from Open to Backlog on the VyOS 1.4 Sagitta board.
Jun 4 2021, 12:52 PM · VyOS Rolling
c-po changed the status of T3195: Add support for cisco style GRE keepalives from Open to Needs testing.
Jun 4 2021, 12:52 PM · VyOS Rolling