Page MenuHomeVyOS Platform
Feed Search

Jul 16 2021

Viacheslav added a comment to T3688: Fail to save configuration via scp/sftp.

It looks like was the same bug T1866
Try ssh keyscan
https://docs.vyos.io/en/latest/cli.html#remote-archive

Jul 16 2021, 4:26 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a project to T3688: Fail to save configuration via scp/sftp: VyOS 1.3 Equuleus.
Jul 16 2021, 2:43 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a comment to T3686: Bridging OpenVPN tap with no local-address breaks.

@Scoopta Can you share commands on how to reproduce it?
It will be easier for developers to reproduce this bug.

Jul 16 2021, 9:23 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3687: IS-IS is missing IPv6 support from "Bug" to "Feature Request".
Jul 16 2021, 9:20 AM · VyOS 1.3 Equuleus (1.3.0)

Jul 15 2021

Viacheslav closed T3512: set protocols static table creates wrong frr config as Invalid.

I can't reproduce it.
Re-open the task if you get this issue again.

Jul 15 2021, 9:37 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a subtask for T3619: Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage: T2051: Throughput anomalies.
Jul 15 2021, 9:28 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a parent task for T2051: Throughput anomalies: T3619: Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage.
Jul 15 2021, 9:28 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav added a comment to T3017: bridge will lose the tuntap member after reboots.

@jingyun Can you describe more details?

Jul 15 2021, 8:50 PM · Invalid
Viacheslav added a comment to T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/925
PR for 1.4 https://github.com/vyos/vyos-1x/pull/926

Jul 15 2021, 7:56 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav updated the task description for T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.
Jul 15 2021, 7:06 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav updated the task description for T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.
Jul 15 2021, 5:38 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav created T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.
Jul 15 2021, 11:54 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

Jul 13 2021

Viacheslav added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: T3678: VyOS 1.4: Invalid error message while deleting ipsec vpn configuration.
Jul 13 2021, 3:54 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3678: VyOS 1.4: Invalid error message while deleting ipsec vpn configuration: T2816: Rewrite IPsec scripts with the new XML/Python approach.
Jul 13 2021, 3:54 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3671: Webproxy not functional in 1.2.8 update.

More details https://github.com/vyos/vyatta-webproxy/pull/17

Jul 13 2021, 10:50 AM · VyOS 1.2 Crux (VyOS 1.2.9)

Jul 12 2021

Viacheslav added a comment to T3671: Webproxy not functional in 1.2.8 update.

@trystan Can you download this pkg to vyos /tmp and install it? It should fix this issue

Jul 12 2021, 3:40 PM · VyOS 1.2 Crux (VyOS 1.2.9)

Jul 10 2021

Viacheslav closed T3636: SSTP / L2TP ipv6 support broken as Resolved.
Jul 10 2021, 8:38 AM · VyOS 1.4 Sagitta

Jul 9 2021

Viacheslav added a comment to T3674: Webproxy squid is stared by default without any configuration.

PR https://github.com/vyos/vyos-build/pull/176

Jul 9 2021, 3:21 PM · VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav claimed T3674: Webproxy squid is stared by default without any configuration.
Jul 9 2021, 3:15 PM · VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav created T3674: Webproxy squid is stared by default without any configuration.
Jul 9 2021, 2:23 PM · VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav added a comment to T3673: BGP large-community del operation missing.

PR https://github.com/vyos/vyos-1x/pull/914

Jul 9 2021, 2:06 PM · VyOS 1.4 Sagitta
Viacheslav claimed T3673: BGP large-community del operation missing.
Jul 9 2021, 1:58 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3673: BGP large-community del operation missing.

It is a feature request.
So we don't have a "large-comm-list" for set in our CLI. It is incorrect to compare "large-community" with "large-comm-list"
The option "delete" is preset only for the "lists"

Jul 9 2021, 12:40 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3673: BGP large-community del operation missing as Normal priority.
Jul 9 2021, 12:01 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3673: BGP large-community del operation missing from "Bug" to "Feature Request".
Jul 9 2021, 12:00 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3537: Unable to override the default OSPFv3 link cost for wireguard interface.

I can't reproduce it in 1.3-rc5

set interfaces wireguard wg0 address '10.1.0.3/24'
set interfaces wireguard wg0 address 'cafe:c01d:c01a::2/64'
set interfaces wireguard wg0 description 'VPN-to-wg-PEER01-192.0.2.1'
set interfaces wireguard wg0 ipv6 ospfv3 cost '24'
set interfaces wireguard wg0 ipv6 ospfv3 dead-interval '40'
set interfaces wireguard wg0 ipv6 ospfv3 hello-interval '10'
set interfaces wireguard wg0 ipv6 ospfv3 instance-id '0'
set interfaces wireguard wg0 ipv6 ospfv3 priority '1'
set interfaces wireguard wg0 ipv6 ospfv3 retransmit-interval '5'
set interfaces wireguard wg0 ipv6 ospfv3 transmit-delay '1'
set interfaces wireguard wg0 peer PEER01 address '192.0.2.1'
set interfaces wireguard wg0 peer PEER01 allowed-ips '0.0.0.0/0'
set interfaces wireguard wg0 peer PEER01 allowed-ips '10.0.3.0/24'
set interfaces wireguard wg0 peer PEER01 allowed-ips '::/0'
set interfaces wireguard wg0 peer PEER01 port '12345'
set interfaces wireguard wg0 peer PEER01 pubkey 'Cpqy8='
set interfaces wireguard wg0 port '54321'
set protocols ospf area 0 network '10.1.0.0/24'
set protocols ospf passive-interface 'default'
set protocols ospf passive-interface-exclude 'wg0'
set protocols ospfv3 area 0 interface 'wg0'
Jul 9 2021, 9:31 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T3662: Container configuration upgrade destroys system.

In the latest rolling release all works fine without any changes

vyos@r1-roll:~$ show version
Jul 9 2021, 8:39 AM · VyOS 1.4 Sagitta

Jul 8 2021

Viacheslav changed the status of T3671: Webproxy not functional in 1.2.8 update from Open to Confirmed.

It seems there were changes in squid , but not in our code.

Jul 8 2021, 10:52 PM · VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav closed T3669: frr.log file missing from /var/log/frr/ as Invalid.

It is not used /var/log/frr anymore T2061

Jul 8 2021, 5:09 PM

Jul 5 2021

Viacheslav added a comment to T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration.

@tjh If you have a test lab, can you check conntrack-sync in the latest 1.3?

Jul 5 2021, 10:48 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

Jul 4 2021

Viacheslav added a subtask for T2216: Containerized third-party applications for VyOS: T3499: Podman is not compatible with nat rules.
Jul 4 2021, 3:08 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3499: Podman is not compatible with nat rules: T2216: Containerized third-party applications for VyOS.
Jul 4 2021, 3:08 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T2216: Containerized third-party applications for VyOS: T3662: Container configuration upgrade destroys system.
Jul 4 2021, 3:07 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3662: Container configuration upgrade destroys system: T2216: Containerized third-party applications for VyOS.
Jul 4 2021, 3:07 PM · VyOS 1.4 Sagitta

Jul 2 2021

Viacheslav moved T3535: Rewrite vyatta-conntrack-sync in new XML and Python flavor from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jul 2 2021, 5:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a project to T3535: Rewrite vyatta-conntrack-sync in new XML and Python flavor: VyOS 1.3 Equuleus.
Jul 2 2021, 5:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP).

Fixed for 1.3 in commit https://github.com/vyos/vyos-1x/commit/21527ef4551613fe9b7eed9e4b2ce33ad46fe540

Jul 2 2021, 5:37 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav added a comment to T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration.

Fixed for 1.3 in commit https://github.com/vyos/vyos-1x/commit/21527ef4551613fe9b7eed9e4b2ce33ad46fe540 and T3535

Jul 2 2021, 5:37 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav moved T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP) from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jul 2 2021, 5:35 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav moved T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jul 2 2021, 5:35 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav committed rVYOSONEX4e1a5c7cf421: conntrack-sync: T3535: Rewrite conf and op modes to XML python style.
Jul 2 2021, 2:50 PM
Viacheslav added a comment to T3535: Rewrite vyatta-conntrack-sync in new XML and Python flavor.

PR for 1.3
https://github.com/vyos/vyos-1x/pull/904
https://github.com/vyos/vyos-world/pull/4

Jul 2 2021, 1:55 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Jun 29 2021

Viacheslav added a comment to T3652: BGP handshake with cisco router ends in timeout.

Is it worked in 1.3/1.2?

Jun 29 2021, 6:49 PM · VyOS 1.4 Sagitta

Jun 28 2021

Viacheslav changed the subtype of T3655: NAT doesn't work correctly with VRF from "Task" to "Bug".
Jun 28 2021, 5:56 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration.

For 1.2.7 it adds unexpected multicast group per "save"
Configs for reproduce:

Jun 28 2021, 5:46 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP).

To reproduce (VyOS 1.3-beta-202106271614):

Jun 28 2021, 5:00 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav added a project to T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP): VyOS 1.2 Crux (VyOS 1.2.8).
Jun 28 2021, 4:46 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav edited projects for T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP), added: VyOS 1.3 Equuleus; removed VyOS 1.2 Crux.
Jun 28 2021, 4:45 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav added a subtask for T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration: T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP).
Jun 28 2021, 4:45 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a parent task for T3045: Changes to Conntrack-Sync don't apply correctly (Mutlicast->UDP): T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration.
Jun 28 2021, 4:45 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav edited projects for T3076: Router reboot adds unwanted 'conntrack-sync mcast-group '225.0.0.50'' line to configuration, added: VyOS 1.2 Crux (VyOS 1.2.8), VyOS 1.3 Equuleus; removed VyOS 1.2 Crux.
Jun 28 2021, 4:05 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav closed T3567: Building Crux from Docker Image failing to download repo index as Resolved.
Jun 28 2021, 10:53 AM · VyOS 1.2 Crux, vyos-build
Viacheslav closed T3627: Building Crux from Docker image failing as Resolved.
Jun 28 2021, 10:52 AM · VyOS 1.2 Crux, vyos-build
Viacheslav added a comment to T3648: op-mode: nat rules broken.

Doesn't work, VyOS 1.4-rolling-202106271939

Jun 28 2021, 9:19 AM · VyOS 1.4 Sagitta

Jun 27 2021

Viacheslav added a project to T3627: Building Crux from Docker image failing: VyOS 1.2 Crux.
Jun 27 2021, 3:50 PM · VyOS 1.2 Crux, vyos-build

Jun 26 2021

Viacheslav changed the status of T3648: op-mode: nat rules broken from Open to Needs testing.
Jun 26 2021, 2:04 PM · VyOS 1.4 Sagitta

Jun 25 2021

Viacheslav assigned T3648: op-mode: nat rules broken to jack9603301.
Jun 25 2021, 8:49 PM · VyOS 1.4 Sagitta

Jun 24 2021

Viacheslav added a comment to T2661: SSTP wrong certificates check.

@Dmitry Is it an actual task? Code was rewritten.

Jun 24 2021, 8:38 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2722: get_config_dict() and key_mangling=('-', '_') will alter CLI data for tagNodes as Resolved.

Already fixed with "no_tag_node_value_mangle=True"
https://github.com/vyos/vyos-1x/blob/705eddbc7a2caf09c37ecafb27418a764217975a/python/vyos/config.py#L218

Jun 24 2021, 8:33 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a project to T2770: Allow any character to be used in the SNMP community field: VyOS 1.4 Sagitta.
Jun 24 2021, 8:17 PM · VyOS Rolling
Viacheslav added a project to T2778: Migrate "system syslog" to get_config_dict() to support new features: VyOS 1.4 Sagitta.
Jun 24 2021, 8:10 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T2773: EIGRP support for VRF: VyOS 1.4 Sagitta.
Jun 24 2021, 8:10 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2773: EIGRP support for VRF.

Eigrp in the FRR doesn't work correctly.
The routes still live even if neighbors in a shutdown state.

Jun 24 2021, 8:09 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2771: BGP VPNv4 & VPNv6 Address Family Support.

@Cheeze_It can you re-check it?

Jun 24 2021, 8:04 PM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav committed rVYOSONEX50a742b50bc0: IPSec: T3643: Fix path for swanctl.conf file.
Jun 24 2021, 5:00 PM
Viacheslav added a comment to T3640: Allow resetting Wireguard interface.

There is a link to the existing code for configuration mode, not pr.
So we can to add the op-mode function to re-add/reset with a similar logic. Only thoughts

Jun 24 2021, 11:02 AM

Jun 23 2021

Viacheslav added a comment to T3638: Passwords With Dollar Sign Set Incorrectly.

Not sure about double quotes, but for example for cloud-init configs, it is necessary to use single quotes.
Ideally, the configuration should look like in show configuration commands

Jun 23 2021, 6:51 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3640: Allow resetting Wireguard interface.

I think it will be enough to remove the peer and add again.
@hagbard what do you think?
https://github.com/vyos/vyos-1x/blob/d48dddab0509e562209adfb115b0e691b8e47f54/python/vyos/ifconfig/wireguard.py#L197

Jun 23 2021, 6:41 PM
Viacheslav added a project to T1877: Feature Request: Allow NAT to use network and address groups: VyOS 1.4 Sagitta.
Jun 23 2021, 5:06 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3643: show vpn ipsec sa doesn't show tunnels in "down" state.

PR https://github.com/vyos/vyos-1x/pull/897
Fix path for swanctl.conf file

Jun 23 2021, 3:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3646: ospfd logs inacessbile for user as Invalid.

@Harliff Try 1.2.7/1.3 it was fixed with commit https://github.com/vyos/vyos-build/pull/138/files#diff-c7d29a506307d9cf8d86c3cd3f65ca4e4058ea442cacdf9a89d2485b56c7417aR67
T2061

Jun 23 2021, 2:49 PM · vyos-frr, VyOS 1.2 Crux

Jun 22 2021

Viacheslav closed T3582: 'delete log file' does not work as Resolved.
Jun 22 2021, 4:23 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav edited projects for T3582: 'delete log file' does not work, added: VyOS 1.2 Crux (VyOS 1.2.8); removed VyOS 1.2 Crux (VyOS 1.2.7).
Jun 22 2021, 4:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a comment to T1790: OSPF Exchanged Routes marked as invalid when run through a GRE PTMP/PTP OSPF between peers .

@SquirePug Can you check 1.2.7 release?

Jun 22 2021, 3:51 PM
Viacheslav added a comment to T2892: Remove command: "set firewall options interface <interface> disable".

I don't see the reason to delete the "disable" option, as it uses for adjust-mss and adjust-mss6.
And you need temporarily disable it.

Jun 22 2021, 1:03 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3636: SSTP / L2TP ipv6 support broken from Open to Needs testing.
Jun 22 2021, 12:56 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXb6d2abba08ef: sstp-l2tp: T3636: Add ipv6 options.
Jun 22 2021, 12:54 PM
Viacheslav reassigned T3629: IPoE server shifting address in the range from Viacheslav to Unknown Object (User).
Jun 22 2021, 12:46 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3629: IPoE server shifting address in the range as Resolved.
Jun 22 2021, 12:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3636: SSTP / L2TP ipv6 support broken.

PR https://github.com/vyos/vyos-1x/pull/895

Jun 22 2021, 12:27 PM · VyOS 1.4 Sagitta
Viacheslav assigned T3643: show vpn ipsec sa doesn't show tunnels in "down" state to sarthurdev.
Jun 22 2021, 10:59 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3638: Passwords With Dollar Sign Set Incorrectly.

Try to set single quotes.

Jun 22 2021, 10:13 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3643: show vpn ipsec sa doesn't show tunnels in "down" state.

Different format

vyos@r1-roll:~$ show vpn ipsec sa
Connection                State    Uptime    Bytes In/Out    Packets In/Out    Remote address    Remote ID    Proposal
------------------------  -------  --------  --------------  ----------------  ----------------  -----------  ----------
peer_192-0-2-2_tunnel_1   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_10  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_11  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_12  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_13  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_14  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_15  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_16  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_17  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_18  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_19  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_2   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_20  down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_3   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_4   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_5   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_6   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_7   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_8   down     N/A       N/A             N/A               N/A               N/A          N/A
peer_192-0-2-2_tunnel_9   down     N/A       N/A             N/A               N/A               N/A          N/A
vyos@r1-roll:~$
Jun 22 2021, 10:07 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Jun 21 2021

Viacheslav added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: T3643: show vpn ipsec sa doesn't show tunnels in "down" state.
Jun 21 2021, 8:57 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3643: show vpn ipsec sa doesn't show tunnels in "down" state: T2816: Rewrite IPsec scripts with the new XML/Python approach.
Jun 21 2021, 8:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3643: show vpn ipsec sa doesn't show tunnels in "down" state.
Jun 21 2021, 8:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a project to T3636: SSTP / L2TP ipv6 support broken: VyOS 1.4 Sagitta.
Jun 21 2021, 8:50 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3636: SSTP / L2TP ipv6 support broken from "Bug" to "Feature Request".
Jun 21 2021, 8:50 PM · VyOS 1.4 Sagitta
Viacheslav renamed T3643: show vpn ipsec sa doesn't show tunnels in "down" state from show vpn ipsec sa doesn't show tunnel in "down" state to show vpn ipsec sa doesn't show tunnels in "down" state.
Jun 21 2021, 8:47 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav created T3643: show vpn ipsec sa doesn't show tunnels in "down" state.
Jun 21 2021, 8:46 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a subtask for T2799: VyOS Certificates Manager: T3642: PKI configuration.
Jun 21 2021, 6:08 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a parent task for T3642: PKI configuration: T2799: VyOS Certificates Manager.
Jun 21 2021, 6:08 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav added a comment to T3640: Allow resetting Wireguard interface.

We don't use any configuration file for it, so I think we can't use wg-quick
We use "wg set"

$ sudo wg set --help
Usage: wg set <interface> [listen-port <port>] [fwmark <mark>] [private-key <file path>] [peer <base64 public key> [remove] [preshared-key <file path>] [endpoint <ip>:<port>] [persistent-keepalive <interval seconds>] [allowed-ips <ip1>/<cidr1>[,<ip2>/<cidr2>]...] ]...
Jun 21 2021, 4:26 PM
Viacheslav added a comment to T3640: Allow resetting Wireguard interface.

Is it helps in your case?

set interfaces wireguard wg0 disable 
commit
del interfaces wireguard wg0 disable 
commit

There is no any native command for reset wireguard interface in Linux (as I know). Also, we don't use any daemons which we can restart to "re-establish" session.
Is one host behind nat?

Jun 21 2021, 2:48 PM

Jun 18 2021

Viacheslav moved T3633: Add LRO offload for interface ethernet from Open to Backport Candidates on the VyOS 1.4 Sagitta board.

Works fine VyOS 1.4-rolling-202106180929

vyos@r1-roll# set interfaces ethernet eth1 offload lro 
[edit]
vyos@r1-roll# commit
[edit]
vyos@r1-roll# sudo ethtool -k eth1 | match large-receive-offload
large-receive-offload: on
[edit]
vyos@r1-roll#
Jun 18 2021, 1:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX4b2fef88644b: ethernet: T3633: Add LRO offload.
Jun 18 2021, 4:06 AM

Jun 17 2021

Viacheslav added a comment to T3633: Add LRO offload for interface ethernet.

PR https://github.com/vyos/vyos-1x/pull/883

Jun 17 2021, 7:55 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav claimed T3633: Add LRO offload for interface ethernet.
Jun 17 2021, 7:52 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav renamed T3633: Add LRO offload for interface ethernet from Add LRO offload to Add LRO offload for interface ethernet.
Jun 17 2021, 6:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a project to T3633: Add LRO offload for interface ethernet: VyOS 1.3 Equuleus.
Jun 17 2021, 6:06 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta