Page MenuHomeVyOS Platform
Feed All Stories

Jul 23 2021

jack9603301 added a subtask for T1354: Add support for VLAN-Aware bridges: T3700: Support VLAN tunnel mapping of VLAN aware bridges.
Jul 23 2021, 7:20 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jack9603301 added a parent task for T3700: Support VLAN tunnel mapping of VLAN aware bridges: T1354: Add support for VLAN-Aware bridges.
Jul 23 2021, 7:20 AM · VyOS 1.4 Sagitta
jack9603301 changed the subtype of T3700: Support VLAN tunnel mapping of VLAN aware bridges from "Task" to "Feature Request".
Jul 23 2021, 7:19 AM · VyOS 1.4 Sagitta
jack9603301 moved T3700: Support VLAN tunnel mapping of VLAN aware bridges from Open to In Progress on the VyOS 1.4 Sagitta board.
Jul 23 2021, 7:19 AM · VyOS 1.4 Sagitta
jack9603301 created T3700: Support VLAN tunnel mapping of VLAN aware bridges.
Jul 23 2021, 7:19 AM · VyOS 1.4 Sagitta
c-po created T3699: login: verify selected "system login user" name is not already used by the base system..
Jul 23 2021, 5:26 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 closed T3698: Support bridge monitoring as Resolved.
Jul 23 2021, 1:31 AM · VyOS 1.4 Sagitta

Jul 22 2021

c-po removed a project from T3697: Impossible to delete IPsec completely: VyOS 1.4 Sagitta.
Jul 22 2021, 9:17 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T3697: Impossible to delete IPsec completely.

No issue on 1.4-rolling-202107191536 and later.

Jul 22 2021, 9:17 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXd4b2777c1bff: op-mode: xml: rename definition file for "generate wireguard" command.
Jul 22 2021, 9:16 PM
c-po committed rVYOSONEXd8d743fe63bc: pki: wireguard: T3642: remove obsolete op-mode script.
Jul 22 2021, 9:16 PM
c-po committed rVYOSONEXcb3ea19b6aed: pki: wireguard: T3642: remove obsolete "show wireguard keypairs" command.
Jul 22 2021, 9:16 PM
c-po committed rVYOSONEX5bcca8f59314: pki: wireguard: T3642: remove obsolete "delete wireguard keypair" command.
Jul 22 2021, 9:16 PM
jack9603301 committed rVYOSONEX050289987d8c: bridge: op-mode: T3698: Support bridge monitoring.
Jul 22 2021, 9:14 PM
GitHub <noreply@github.com> committed rVYOSONEXad80507e4c61: Merge pull request #937 from jack9603301/T3698 (authored by c-po).
Jul 22 2021, 9:14 PM
c-po committed rVYOSONEX688022de47c3: xml: op-mode: move "show interfaces wireguard" to dedicated file.
Jul 22 2021, 9:05 PM
c-po committed rVYOSONEX6c571d9a9900: pki: wireguard: T3642: add new op-mode command for public-key.
Jul 22 2021, 9:05 PM
Viacheslav added a comment to T3694: Static routes not installed into kernel nor frr.

Interesting. But I never saw it.
Can you check the latest rolling? I have no other ideas yet.

Jul 22 2021, 6:48 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX4e4dacee2810: ipsec: T2816: remove "auto-update" CLI option.
Jul 22 2021, 6:01 PM
c-po committed rVYOSONEX2495ea2f0104: xml: add building block for "local-users".
Jul 22 2021, 6:01 PM
jack9603301 committed rVYOSONEX7e8929d451d2: bridge: op-mode: T3667: Fix displaying members of a specific bridge interface.
Jul 22 2021, 6:01 PM
GitHub <noreply@github.com> committed rVYOSONEXf59277966a43: Merge pull request #936 from jack9603301/T3667 (authored by c-po).
Jul 22 2021, 6:01 PM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX1870a3db38e6: pki: https: T3642: Migrate HTTPS to use PKI configuration.
Jul 22 2021, 5:55 PM
GitHub <noreply@github.com> committed rVYOSONEXa8cc9ab8ea58: Merge pull request #935 from sarthurdev/pki_https (authored by c-po).
Jul 22 2021, 5:55 PM
jack9603301 moved T3698: Support bridge monitoring from Open to In Progress on the VyOS 1.4 Sagitta board.
Jul 22 2021, 5:51 PM · VyOS 1.4 Sagitta
jack9603301 created T3698: Support bridge monitoring.
Jul 22 2021, 5:51 PM · VyOS 1.4 Sagitta
Viacheslav edited a custom field on T3677: "sipcalc" not included in 1.3.
Jul 22 2021, 5:18 PM · VyOS 1.3 Equuleus (1.3.0), test
Viacheslav triaged T3677: "sipcalc" not included in 1.3 as Wishlist priority.
Jul 22 2021, 5:16 PM · VyOS 1.3 Equuleus (1.3.0), test
ernstjo added a comment to T3694: Static routes not installed into kernel nor frr.

Just that shitty. When i enable debug mode route install works fine when i disable debugging i won't work.
I have that situation on multiple routers.

Jul 22 2021, 5:10 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T3642: PKI configuration, a subtask of T2799: VyOS Certificates Manager, from In progress to Needs testing.
Jul 22 2021, 3:49 PM · VyOS 1.3 Equuleus (1.3.6)
sarthurdev changed the status of T3642: PKI configuration from In progress to Needs testing.
Jul 22 2021, 3:49 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
sarthurdev updated the task description for T3642: PKI configuration.
Jul 22 2021, 3:49 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
dmbaturin committed rVYOSONEXed63951fc63f: T3697: check if strongswan should be running before attempting to restart it..
Jul 22 2021, 3:45 PM
dmbaturin created T3697: Impossible to delete IPsec completely.
Jul 22 2021, 3:44 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3696: Squid starts by default.

I think it is already fixed in T3674

Jul 22 2021, 3:30 PM
dmbaturin claimed T3696: Squid starts by default.
Jul 22 2021, 2:49 PM
dmbaturin created T3696: Squid starts by default.
Jul 22 2021, 2:49 PM
dmbaturin assigned T3695: OpenConnect reports commit success when ocserv fails to start due to SSL cert/key file issues to Unknown Object (User).
Jul 22 2021, 2:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3688: Fail to save configuration via scp/sftp.

@ramaxlo You can try to set this workaround:

Jul 22 2021, 1:54 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a comment to T3694: Static routes not installed into kernel nor frr.

How to get the debug logs? I already enabled debug mode.

Jul 22 2021, 1:34 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3694: Static routes not installed into kernel nor frr.

Tested configuration:

set interfaces ethernet eth1 address '192.0.2.1/24'
set interfaces ethernet eth1 address 'dead:beef:b004:3::1/64'
set interfaces tunnel tun0 address '2a0f:5707:b004:3::1/64'
set interfaces tunnel tun0 encapsulation 'sit'
set interfaces tunnel tun0 parameters ip ttl '255'
set interfaces tunnel tun0 parameters ipv6 hoplimit '255'
set interfaces tunnel tun0 remote '192.0.2.2'
set interfaces tunnel tun0 source-address '192.0.2.1'
set protocols static route6 cafe:e1f:b046:1::/64 next-hop 2a0f:5707:b004:3::2
set protocols static route6 cafe:e1f:b046:c000::/56 next-hop 2a0f:5707:b004:3::2
Jul 22 2021, 1:22 PM · VyOS 1.4 Sagitta
ernstjo added a comment to T3694: Static routes not installed into kernel nor frr.

How to get the debug logs? I already enabled debug mode.

Jul 22 2021, 1:18 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3694: Static routes not installed into kernel nor frr.

Try to touch frr debug to collect more information
https://docs.vyos.io/en/latest/debugging.html#frr

Jul 22 2021, 1:06 PM · VyOS 1.4 Sagitta
ramaxlo added a comment to T3688: Fail to save configuration via scp/sftp.

Have tried, but no luck.

Jul 22 2021, 12:32 PM · VyOS 1.3 Equuleus (1.3.6)
ernstjo added a comment to T3694: Static routes not installed into kernel nor frr.

It's a basic tunnel setup and also reproducible with routes which do not point to a tunnel interface and happens also with physical interfaces.

Jul 22 2021, 12:00 PM · VyOS 1.4 Sagitta
Viacheslav updated subscribers of T3693: ISIS Route redistribution ipv6 support missing.
Jul 22 2021, 11:45 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3693: ISIS Route redistribution ipv6 support missing from "Bug" to "Feature Request".
Jul 22 2021, 11:35 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3694: Static routes not installed into kernel nor frr.

@ernstjo Can you share an example of your tunnel interface?
I don't understand yet how to reproduce it.
If you delete routes and add again, do you get the same result?

Jul 22 2021, 11:31 AM · VyOS 1.4 Sagitta
dmbaturin created T3695: OpenConnect reports commit success when ocserv fails to start due to SSL cert/key file issues.
Jul 22 2021, 10:45 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
ernstjo created T3694: Static routes not installed into kernel nor frr.
Jul 22 2021, 10:11 AM · VyOS 1.4 Sagitta
ernstjo created T3693: ISIS Route redistribution ipv6 support missing.
Jul 22 2021, 7:56 AM · VyOS 1.4 Sagitta
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEXa9e9c4acfa90: pki: openvpn: T3642: Migrate OpenVPN to PKI and refactor.
Jul 22 2021, 7:16 AM
GitHub <noreply@github.com> committed rVYOSONEXe09dd24cd1d7: Merge pull request #934 from sarthurdev/pki_openvpn (authored by c-po).
Jul 22 2021, 7:16 AM
sempervictus triaged T3692: VyOS build failing due to repo.saltstack.com as High priority.
Jul 22 2021, 1:14 AM · VyOS 1.4 Sagitta

Jul 21 2021

sarthurdev updated the task description for T3642: PKI configuration.
Jul 21 2021, 10:01 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
sarthurdev updated the task description for T3642: PKI configuration.
Jul 21 2021, 10:00 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.132 / 5.10.50 to Update Linux Kernel to v5.4.134 / 5.10.52.
Jul 21 2021, 7:52 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
yun added a comment to T3681: Stray compiled Python objects break the VMware virtual machine resume script.

Want to test latest rolling iso, but equuleus seems to be stuck at vyos-1.3-beta-202107121144-amd64.iso which doesn't have this fix yet.

Jul 21 2021, 7:40 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
c-po closed T3675: L2TP over IPSEC broken as Resolved.
Jul 21 2021, 7:33 PM
GitHub <noreply@github.com> committed rVYOSONEX5149b540cba2: Merge pull request #933 from sever-sever/T3683 (authored by c-po).
Jul 21 2021, 7:13 PM
Viacheslav committed rVYOSONEX18c954363b86: VXLAN: T3683: Fix for ipv6 source-interface option.
Jul 21 2021, 7:13 PM
Viacheslav changed the status of T3681: Stray compiled Python objects break the VMware virtual machine resume script from Open to Needs testing.
Jul 21 2021, 6:55 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
Viacheslav changed the status of T3682: Remove running dhclient from ether-resume.py from Open to Needs testing.
Jul 21 2021, 6:54 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.

PR https://github.com/vyos/vyos-1x/pull/933

Jul 21 2021, 6:51 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
primoz added a comment to T3675: L2TP over IPSEC broken.

With 1.4-rolling-202107202017 at the latest l2tp over ipsec works with swanctl.

Jul 21 2021, 6:22 PM
Viacheslav closed T3689: static ipv6 route doesn't deleted in some cases as Resolved.
Jul 21 2021, 4:53 PM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav moved T3689: static ipv6 route doesn't deleted in some cases from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.9) board.
Jul 21 2021, 4:53 PM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav moved T3689: static ipv6 route doesn't deleted in some cases from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Jul 21 2021, 4:52 PM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav added a comment to T3685: IPv6 PBR doesn't allow setting of an egress interface.

Will be available in the next 1.3 beta release.

Jul 21 2021, 4:24 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3685: IPv6 PBR doesn't allow setting of an egress interface as Resolved.
Jul 21 2021, 4:23 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3685: IPv6 PBR doesn't allow setting of an egress interface.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/85

set protocols static table 1 route6 ::/0 next-hop fe80::11 interface eth0
commit
Jul 21 2021, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3685: IPv6 PBR doesn't allow setting of an egress interface.

To reproduce, without the "interface" option

set protocols static table 1 route6 ::/0 next-hop fe80::11
commit
Jul 21 2021, 11:53 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the subtype of T3685: IPv6 PBR doesn't allow setting of an egress interface from "Bug" to "Feature Request".
Jul 21 2021, 11:52 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a project to T3689: static ipv6 route doesn't deleted in some cases: Ready for Crux (1.2.x).
Jul 21 2021, 11:35 AM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav moved T3689: static ipv6 route doesn't deleted in some cases from Need Triage to Backport Candidates on the VyOS 1.3 Equuleus board.
Jul 21 2021, 11:35 AM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
Viacheslav claimed T3689: static ipv6 route doesn't deleted in some cases.
Jul 21 2021, 11:34 AM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x), VyOS 1.2 Crux (VyOS 1.2.9)
jack9603301 added a comment to T3662: Container configuration upgrade destroys system.

Unfortunately, it seems that the same problem still happened. Although it seems that the container can be started normally after restart due to priority adjustment and some factors, it is not a normal operation result!

Jul 21 2021, 2:33 AM · VyOS 1.4 Sagitta

Jul 20 2021

c-po committed rVYOSONEX936b36fdf180: ipsec: T1210: create uuid from empty string in ios profile.
Jul 20 2021, 7:03 PM
c-po committed rVYOSONEX69614d7d5018: ipsec: T1210: add op-mode command for macOS and iOS profile generation.
Jul 20 2021, 6:59 PM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX1554d3316eb7: pki: T3642: Fix Wireguard migration comment.
Jul 20 2021, 6:34 PM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEXbfadd6dfb596: pki: eapol: T3642: Migrate EAPoL to use PKI configuration.
Jul 20 2021, 6:34 PM
GitHub <noreply@github.com> committed rVYOSONEX4d55afded46a: Merge pull request #931 from sarthurdev/pki_eapol (authored by c-po).
Jul 20 2021, 6:34 PM
c-po closed T3691: GRETAP: key is not applied when interface is created as Resolved.
Jul 20 2021, 6:04 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3691: GRETAP: key is not applied when interface is created from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jul 20 2021, 6:04 PM · VyOS 1.3 Equuleus (1.3.0)
c-po removed a project from T3691: GRETAP: key is not applied when interface is created: VyOS 1.4 Sagitta.
Jul 20 2021, 6:04 PM · VyOS 1.3 Equuleus (1.3.0)
GitHub <noreply@github.com> committed rVYOSONEXd114792a0dd7: ifconfig: tunnel: T3691: add missing GRETAP key support (authored by c-po).
Jul 20 2021, 5:28 PM
c-po changed the status of T3691: GRETAP: key is not applied when interface is created from Open to Confirmed.
Jul 20 2021, 5:13 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3691: GRETAP: key is not applied when interface is created.
Jul 20 2021, 5:13 PM · VyOS 1.3 Equuleus (1.3.0)
syncer moved T1441: Add support for IPSec XFRM interfaces from Open to Finished on the VyOS 1.4 Sagitta board.
Jul 20 2021, 3:51 PM · VyOS 1.4 Sagitta
sarthurdev updated the task description for T3642: PKI configuration.
Jul 20 2021, 1:46 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX2bb8817348a6: pki: openconnect: T3642: Migrate OpenConnect SSL to PKI configuration.
Jul 20 2021, 1:44 PM
GitHub <noreply@github.com> committed rVYOSONEX4ff379d18a75: Merge pull request #930 from sarthurdev/pki_migration (authored by c-po).
Jul 20 2021, 1:43 PM
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX70785300b0db: pki: sstp: T3642: Migrate SSTP to PKI configuration.
Jul 20 2021, 1:43 PM
Viacheslav added a comment to T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.

Also, the bug still present, fix for which I sent above in diff

vyos@r5-1.3-myb# compare 
[edit interfaces]
+vxlan vxlan0 {
+    mtu 1430
+    remote fe80::2
+    source-address fe80::3
+    source-interface eth0
+    vni 0
+}
[edit]
vyos@r5-1.3-myb# commit
WARNING: RFC7348 recommends VXLAN tunnels preserve a 1500 byte MTU
Jul 20 2021, 9:42 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav updated subscribers of T3683: VXLAN not accept ipv6 and source-interface options and mtu bug.

@c-po It seems doesn't work

Jul 20 2021, 9:17 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
ernstjo added a comment to T3652: BGP handshake with cisco router ends in timeout.

No tried with 1.3 / 1.2. But problem has been solved with enabling ebgp multihop support, but both routers are directly connected.
Looks like an issue during the capabilities negotiation.

Jul 20 2021, 8:24 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3690: Issue with vxlan source-address config from Resolved to Invalid.
Jul 20 2021, 6:51 AM
hitesh.happani closed T3690: Issue with vxlan source-address config as Resolved.
Jul 20 2021, 6:41 AM
hitesh.happani created T3690: Issue with vxlan source-address config.
Jul 20 2021, 6:14 AM

Jul 19 2021

syncer moved T1995: "show vpn ike sa" command always show child-sas as down from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.8) board.
Jul 19 2021, 8:52 PM · VyOS 1.2 Crux (VyOS 1.2.8)