Page MenuHomeVyOS Platform
Feed All Stories

Aug 15 2021

GitHub <noreply@github.com> committed rVYOSONEX43fcc0db006a: conntrack: T3275: migrate 'disable' syntax to 'enable' syntax for the new… (authored by erkin).
Aug 15 2021, 10:11 AM

Aug 14 2021

c-po committed rVYOSONEX9b21e4a76938: smoketest: shim: wait for commit to be completed.
Aug 14 2021, 6:43 PM
c-po committed rVYOSONEXe7d841d2854d: smoketest: shim: remove superfluous sleep() in getFRRconfig().
Aug 14 2021, 6:43 PM
c-po committed rVYOSONEXceb623bbd658: openvpn: T3738: Disable authentication option for server mode (authored by Viacheslav).
Aug 14 2021, 6:38 PM
c-po committed rVYOSONEX4a79ca1b27af: vyos.util: T1503: use build in methods to determine current user for….
Aug 14 2021, 6:23 PM
c-po committed rVYOSONEX2cd7e709c796: op-mode: ipsec: T3745: "show vpn ipse sa" improve sorting.
Aug 14 2021, 6:23 PM
c-po closed T3745: op-mode IPSec show vpn ipse sa sorting, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Aug 14 2021, 6:17 PM · VyOS 1.4 Sagitta
c-po closed T3745: op-mode IPSec show vpn ipse sa sorting as Resolved.
Aug 14 2021, 6:17 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
c-po committed rVYOSONEXa74e67a778a6: vyos.util: T1503: use build in methods to determine current user for….
Aug 14 2021, 6:15 PM
rhn added a comment to T3754: Make config scripts more testable.

more amount of generalisation as we would not only want to use it for DHCp but all kind of services

Aug 14 2021, 6:14 PM · VyOS 1.4 Sagitta
c-po added a comment to T3754: Make config scripts more testable.

Well the commit you outlined alters file ins src/conf_mode - that directory is reserved for CLI configuration scripts.

Aug 14 2021, 5:54 PM · VyOS 1.4 Sagitta
erkin closed T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T2198: Rewrite NAT in new XML/Python style, as Resolved.
Aug 14 2021, 5:54 PM · VyOS 1.3 Equuleus (1.3.0)
erkin closed T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T3710: Upgrade the kernel in 1.3 to 5.10, as Resolved.
Aug 14 2021, 5:54 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
erkin closed T1083: Implement persistent/random address and port mapping options for NAT rules as Resolved.

I can confirm that this works fine on the latest 1.3 nightly.

Aug 14 2021, 5:54 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
c-po moved T3753: frr: upgrade to stable/8.1 release train from Open to Backlog on the VyOS 1.4 Sagitta board.
Aug 14 2021, 5:51 PM · VyOS 1.4 Sagitta
c-po moved T3755: ospf: adjust to new FRR 8 syntax where "no passive-interface " moved to interface section from Open to Backlog on the VyOS 1.4 Sagitta board.
Aug 14 2021, 5:51 PM · VyOS 1.4 Sagitta
c-po moved T3745: op-mode IPSec show vpn ipse sa sorting from Open to In Progress on the VyOS 1.4 Sagitta board.
Aug 14 2021, 5:51 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
erkin claimed T1083: Implement persistent/random address and port mapping options for NAT rules.
Aug 14 2021, 5:16 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
c-po changed the status of T3745: op-mode IPSec show vpn ipse sa sorting, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, from Open to Needs testing.
Aug 14 2021, 5:02 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX1229665d353a: op-mode: ipsec: T3745: "show vpn ipse sa" improve sorting.
Aug 14 2021, 5:02 PM
c-po changed the status of T3745: op-mode IPSec show vpn ipse sa sorting from Open to Needs testing.
Aug 14 2021, 5:02 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
erkin closed T521: Network services may fail if vyatta-router.service startup takes longer than a few seconds as Resolved.

I cannot replicate this in 1.2.8 or 1.3.0-rc5. No matter how long vyos-router.service (even absurdly high times) stalls, ssh.service happily starts. This was probably resolved a long time ago, making this a ghost bug.

Aug 14 2021, 4:39 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEXb4629d14d8ec: op-mode: vpn: use over absolute path.
Aug 14 2021, 4:25 PM
c-po committed rVYOSONEXf96435277e4c: op-mode: combine two "show vpn" definitions.
Aug 14 2021, 4:25 PM
c-po committed rVYOSONEXe36a4e684b95: ospf: T3236: use proper daemon named template file.
Aug 14 2021, 4:25 PM
rhn added a comment to T3754: Make config scripts more testable.

Thanks, that makes sense. Do you think the current outstanding change could be merged in? It's not resulting in any incompatibilities (that I'm aware of), and while it doesn't fix the problem entirely on its own (doesn't include infrastructure work), it improves the code under test.

Aug 14 2021, 3:53 PM · VyOS 1.4 Sagitta
c-po added a comment to T3754: Make config scripts more testable.

That is a noble idea. There are some build time tests available here: https://github.com/vyos/vyos-1x/tree/current/src/tests - maybe this helps

Aug 14 2021, 3:35 PM · VyOS 1.4 Sagitta
rhn added a comment to T3754: Make config scripts more testable.

As far as I can tell (from README), smoke tests are meant more to be integration than unit tests:

Aug 14 2021, 12:41 PM · VyOS 1.4 Sagitta
c-po added a comment to T3754: Make config scripts more testable.

that feels like you wan't to achieve the same goal as https://github.com/vyos/vyos-1x/blob/current/smoketest/scripts/cli/test_service_dhcp-server.py
I think the easiest way would be to just extend the smoketest with your tests that you find missing.

Aug 14 2021, 12:18 PM · VyOS 1.4 Sagitta
rhn added a comment to T3754: Make config scripts more testable.

I managed to make the DHCP configuration testable, although the code has some hardcoded paths which I didn't want to mess with too much, so my addition may be suboptimal.

Aug 14 2021, 12:04 PM · VyOS 1.4 Sagitta
jack9603301 added a comment to T3648: op-mode: nat rules broken.

Merging this PR can fix this problem. Due to the complexity of the JSON parsing of NFT by the operation mode script, this task still needs to be tested, and the local test passes

Aug 14 2021, 11:58 AM · VyOS 1.4 Sagitta
c-po added a project to T3754: Make config scripts more testable: VyOS 1.4 Sagitta.
Aug 14 2021, 11:42 AM · VyOS 1.4 Sagitta
c-po updated the task description for T3755: ospf: adjust to new FRR 8 syntax where "no passive-interface " moved to interface section.
Aug 14 2021, 10:41 AM · VyOS 1.4 Sagitta
c-po updated the task description for T3755: ospf: adjust to new FRR 8 syntax where "no passive-interface " moved to interface section.
Aug 14 2021, 10:35 AM · VyOS 1.4 Sagitta
c-po created T3755: ospf: adjust to new FRR 8 syntax where "no passive-interface " moved to interface section.
Aug 14 2021, 10:34 AM · VyOS 1.4 Sagitta
rhn created T3754: Make config scripts more testable.
Aug 14 2021, 8:10 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3741: [BGP] default no-ipv4-unicast - by default.

@c-po It makes sense
Need to try.

Aug 14 2021, 5:34 AM · VyOS 1.4 Sagitta

Aug 13 2021

m.cremers added a comment to T3734: Move EVPN VRF up in FRR config.

Well test it tomorrow once it becomes available :)

Aug 13 2021, 9:22 PM · VyOS 1.4 Sagitta
c-po added a comment to T3734: Move EVPN VRF up in FRR config.

They are all intermixed ;) - maybe I also missinterpreted the issue. Maybe you can retest the latest rolling which will be available by tomorrow? Image is currently build: https://ci.vyos.net/job/vyos-build/job/current/2195

Aug 13 2021, 8:50 PM · VyOS 1.4 Sagitta
c-po added a comment to T3753: frr: upgrade to stable/8.1 release train.

https://github.com/vyos/vyos-build/pull/182

Aug 13 2021, 8:49 PM · VyOS 1.4 Sagitta
c-po changed the status of T3753: frr: upgrade to stable/8.1 release train from Open to In progress.
Aug 13 2021, 8:30 PM · VyOS 1.4 Sagitta
c-po created T3753: frr: upgrade to stable/8.1 release train.
Aug 13 2021, 8:30 PM · VyOS 1.4 Sagitta
m.cremers added a comment to T3734: Move EVPN VRF up in FRR config.

Nvm I just noticed that the task number was mentioned in a commit, I have a feeling this won't solve the issue as this is related to the router bgp 123 vrf something rather than vrf something statements.

Aug 13 2021, 7:51 PM · VyOS 1.4 Sagitta
m.cremers added a comment to T3734: Move EVPN VRF up in FRR config.

Very cool this has apparently been fixed already, I was reading through the vyos-1x commints and didn't see anything that looked related. What was the implemented change for this?

Aug 13 2021, 7:43 PM · VyOS 1.4 Sagitta
jestabro moved T3234: multi_to_list fails in certain cases, with root cause an element redundancy in XML interface-definitions from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 13 2021, 7:41 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX3ee654987162: xml: T3234: update instead of overwrite on repeated path.
Aug 13 2021, 7:40 PM
c-po closed T3728: FRR not respect configured RD and RT for L3VNI as Resolved.
Aug 13 2021, 7:36 PM · VyOS 1.4 Sagitta
c-po closed T3734: Move EVPN VRF up in FRR config, a subtask of T3728: FRR not respect configured RD and RT for L3VNI, as Resolved.
Aug 13 2021, 7:36 PM · VyOS 1.4 Sagitta
c-po closed T3734: Move EVPN VRF up in FRR config as Resolved.
Aug 13 2021, 7:36 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX2b8854761c8e: vyos.util: "harden" is_systemd_service_running() function.
Aug 13 2021, 7:33 PM
c-po committed rVYOSONEXda94e0a73687: vrf: T3734: T3728: vni must be configured with a higher priority then bgpd.
Aug 13 2021, 7:33 PM
Viacheslav added a comment to T3736: openvpn-option keeps and adds double dashes ''--".

https://github.com/vyos/vyos-1x/blob/595ab70a5d50ef1f9e166959affd96ea1ee8c8c8/data/templates/openvpn/server.conf.tmpl#L228

Aug 13 2021, 5:23 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav moved T3738: openvpn fails if server and authentication are configured from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
Aug 13 2021, 5:19 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX87be4e407a49: pki: T3752: Fix file output for certificate requests.
Aug 13 2021, 4:59 PM
GitHub <noreply@github.com> committed rVYOSONEX595ab70a5d50: Merge pull request #969 from sarthurdev/T3752 (authored by c-po).
Aug 13 2021, 4:59 PM
Viacheslav claimed T3738: openvpn fails if server and authentication are configured.
Aug 13 2021, 4:47 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
sarthurdev changed the status of T3752: generate pki certificate file xxx doesn't touch file from Open to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/969

Aug 13 2021, 4:42 PM · VyOS 1.4 Sagitta
c-po added a comment to T3750: pdns-recursor 4.4 issue with dont-query and private DNS servers.
Aug 13 2021, 4:35 PM · VyOS 1.3 Equuleus (1.3.0-epa2), VyOS 1.4 Sagitta
jestabro added a project to T3234: multi_to_list fails in certain cases, with root cause an element redundancy in XML interface-definitions: test.
Aug 13 2021, 4:35 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX655876f4c22c: openvpn: T3738: Disable authentication option for server mode.
Aug 13 2021, 4:34 PM
GitHub <noreply@github.com> committed rVYOSONEXaa024a5c0afd: Merge pull request #968 from sever-sever/T3738 (authored by c-po).
Aug 13 2021, 4:34 PM
jestabro closed T3234: multi_to_list fails in certain cases, with root cause an element redundancy in XML interface-definitions as Unknown Status.
Aug 13 2021, 4:32 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe5c61fc80119: xml: T3234: update instead of overwrite on repeated path.
Aug 13 2021, 4:31 PM
Viacheslav assigned T3752: generate pki certificate file xxx doesn't touch file to sarthurdev.
Aug 13 2021, 4:05 PM · VyOS 1.4 Sagitta
Viacheslav created T3752: generate pki certificate file xxx doesn't touch file.
Aug 13 2021, 4:04 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3738: openvpn fails if server and authentication are configured.

PR https://github.com/vyos/vyos-1x/pull/968

Aug 13 2021, 3:59 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav claimed T3708: isisd and gre-bridge commit error.
Aug 13 2021, 3:43 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX326cab3da592: Merge pull request #914 from sever-sever/T3673 (authored by c-po).
Aug 13 2021, 3:08 PM
Viacheslav committed rVYOSONEXc7b8e12beb7c: policy: T3673: Add set large-comm-list-delete for route-map.
Aug 13 2021, 3:08 PM
GitHub <noreply@github.com> committed rVYOSONEXa342406a3623: Merge pull request #967 from sever-sever/T3708-curr (authored by c-po).
Aug 13 2021, 3:07 PM
Viacheslav committed rVYOSONEXde88a17ba972: isis: T3708: Fix errors in MTU calculation.
Aug 13 2021, 3:07 PM
jack9603301 updated the task description for T3700: Support VLAN tunnel mapping of VLAN aware bridges.
Aug 13 2021, 2:45 PM · VyOS 1.4 Sagitta
jack9603301 updated the task description for T3700: Support VLAN tunnel mapping of VLAN aware bridges.
Aug 13 2021, 2:41 PM · VyOS 1.4 Sagitta
Viacheslav created T3751: pki generate ca add new line after passphrase.
Aug 13 2021, 2:27 PM · VyOS 1.4 Sagitta
arnoxit added a comment to T3750: pdns-recursor 4.4 issue with dont-query and private DNS servers.

No, I am assuming it will be created when they have implemented a fix. In the meantime, I guess VyOS 1.4 could pin the package back to the previous 4.3.7-1pdns.buster version which is what we are doing locally for the moment. The developer on the pdns thread said that he hopes to have a fix out in a few days.

Aug 13 2021, 2:00 PM · VyOS 1.3 Equuleus (1.3.0-epa2), VyOS 1.4 Sagitta
dmbaturin reassigned T927: IPv6 GRE packets not being forwarded from zsdc to erkin.
Aug 13 2021, 1:52 PM · VyOS 1.3 Equuleus (1.3.6), test
Viacheslav added a comment to T3750: pdns-recursor 4.4 issue with dont-query and private DNS servers.

I don't see the repo for "bullseye"
http://repo.powerdns.com/

Aug 13 2021, 1:52 PM · VyOS 1.3 Equuleus (1.3.0-epa2), VyOS 1.4 Sagitta
Viacheslav added a comment to T3708: isisd and gre-bridge commit error.

PR for current https://github.com/vyos/vyos-1x/pull/967

Aug 13 2021, 12:37 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T3727: VPN IPsec ESP proposal and ESP presented in config missmatch, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Aug 13 2021, 11:53 AM · VyOS 1.4 Sagitta
Viacheslav closed T3727: VPN IPsec ESP proposal and ESP presented in config missmatch as Resolved.

Fixed, thanks.

Aug 13 2021, 11:53 AM · VyOS 1.4 Sagitta
arnoxit created T3750: pdns-recursor 4.4 issue with dont-query and private DNS servers.
Aug 13 2021, 11:43 AM · VyOS 1.3 Equuleus (1.3.0-epa2), VyOS 1.4 Sagitta
c-po closed T3740: HTTPs API breaks when the address is IPv6 as Resolved.
Aug 13 2021, 10:35 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po committed rVYOSONEX377df2b8abea: nginx: T3740: use bracketize_ipv6 Jinja2 filter on server address.
Aug 13 2021, 10:34 AM
c-po committed rVYOSONEXf3df9e97c6be: nginx: T3740: use bracketize_ipv6 Jinja2 filter on server address.
Aug 13 2021, 10:34 AM
c-po added projects to T3740: HTTPs API breaks when the address is IPv6: test, VyOS 1.3 Equuleus.
Aug 13 2021, 10:32 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3748: Container deletion bug.

@Viacheslav we have other "objects" in VyOS which also require deletion first under certain circumstances.

Aug 13 2021, 10:31 AM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T3742: Add l2tp force-encapsulation option.
Aug 13 2021, 5:59 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3748: Container deletion bug.

It seems impossible to delete network and container and add a new one in one commit

Aug 13 2021, 5:28 AM · VyOS 1.4 Sagitta
kroy closed T3749: V4/V6 Counters in network container validation aren't being reset as Resolved.
Aug 13 2021, 12:47 AM · VyOS 1.4 Sagitta
kroy moved T3749: V4/V6 Counters in network container validation aren't being reset from Open to Finished on the VyOS 1.4 Sagitta board.

Fixed by PR966

Aug 13 2021, 12:47 AM · VyOS 1.4 Sagitta
kroy committed rVYOSONEXef694deb9a62: T3749: Moving some counters into the proper loop.
Aug 13 2021, 12:17 AM
GitHub <noreply@github.com> committed rVYOSONEX986dcd3a5810: Merge pull request #966 from kroy-the-rabbit/T3749 (authored by jestabro).
Aug 13 2021, 12:17 AM

Aug 12 2021

kroy claimed T3749: V4/V6 Counters in network container validation aren't being reset.
Aug 12 2021, 11:00 PM · VyOS 1.4 Sagitta
kroy created T3749: V4/V6 Counters in network container validation aren't being reset.
Aug 12 2021, 11:00 PM · VyOS 1.4 Sagitta
kroy closed T3747: Container Network Naming Bug as Invalid.

Duplicate of T3499

Aug 12 2021, 9:07 PM · VyOS 1.4 Sagitta
kroy added a comment to T3748: Container deletion bug.

It appears things are in such a state where that network doesn't actually exist:

Aug 12 2021, 7:42 PM · VyOS 1.4 Sagitta
kroy added a comment to T3748: Container deletion bug.

To add to this, it looks like I'm not going to be able to get rid of that without rebooting:

Aug 12 2021, 7:40 PM · VyOS 1.4 Sagitta
kroy created T3748: Container deletion bug.
Aug 12 2021, 7:36 PM · VyOS 1.4 Sagitta
kroy created T3747: Container Network Naming Bug.
Aug 12 2021, 7:31 PM · VyOS 1.4 Sagitta
c-po closed T3746: Inform users logging into the system about a pending reboot as Resolved.
Aug 12 2021, 7:00 PM · VyOS 1.3 Equuleus (1.3.0-epa1), test, VyOS 1.4 Sagitta