Page MenuHomeVyOS Platform
Feed All Stories

Nov 15 2021

c-po moved T3994: VRF: unable to delete vrf when name contains numbers, hyphen or underscore from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 15 2021, 8:24 PM · VyOS 1.4 Sagitta
c-po moved T3995: OpenVPN: do not stop/start service on configuration change from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 15 2021, 8:24 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXeceaa3a78792: openvpn: T3995: implement systemd reload support.
Nov 15 2021, 8:24 PM
Viacheslav added a subtask for T3995: OpenVPN: do not stop/start service on configuration change: T2400: OpenVPN: dont restart server if no need.
Nov 15 2021, 8:23 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a parent task for T2400: OpenVPN: dont restart server if no need: T3995: OpenVPN: do not stop/start service on configuration change.
Nov 15 2021, 8:23 PM · VyOS 1.3 Equuleus ( 1.3.1)
c-po added a comment to T3995: OpenVPN: do not stop/start service on configuration change.
Nov 15 21:23:22 LR1 systemd[1]: Reloading OpenVPN connection to vtun1.
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: event_wait : Interrupted system call (code=4)
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: Closing TUN/TAP interface
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: net_addr_ptp_v4_del: 10.255.1.1 dev vtun1
Nov 15 21:23:22 LR1 systemd[1]: Reloaded OpenVPN connection to vtun1.
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: SIGHUP[hard,] received, process restarting
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: Cipher negotiation is disabled since neither P2MP client nor server mode is enabled
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: WARNING: file '/run/openvpn/vtun1_shared.key' is group or others accessible
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: library versions: OpenSSL 1.1.1k  25 Mar 2021, LZO 2.10
Nov 15 21:23:22 LR1 openvpn-vtun1[13941]: Restart pause, 5 second(s)
Nov 15 2021, 8:23 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a project to T3350: OpenVPN config file generation broken: VyOS 1.4 Sagitta.
Nov 15 2021, 8:08 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T3995: OpenVPN: do not stop/start service on configuration change from Open to In progress.
Nov 15 2021, 8:07 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3995: OpenVPN: do not stop/start service on configuration change.
Nov 15 2021, 8:07 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXba476efa31ba: vrf: T3994: fix broken regex when modifying FRR vrf section.
Nov 15 2021, 7:55 PM
c-po committed rVYOSONEX91774813de0c: smoketest: vrf: T3960: verify co-existence of multiple VNIs.
Nov 15 2021, 7:55 PM
c-po committed rVYOSONEXf4f447738aa1: vrf: T3960: when adding multiple VRFs and VNIs - do not delete previous ones.
Nov 15 2021, 7:55 PM
c-po committed rVYOSONEXe196fae2f934: vrf: T3655: remove superfluous import of NamedTemporaryFile.
Nov 15 2021, 7:55 PM
c-po closed T3960: FRR Misconfig when using multiple VRF VNI as Resolved.
Nov 15 2021, 7:55 PM · VyOS 1.4 Sagitta
c-po closed T3994: VRF: unable to delete vrf when name contains numbers, hyphen or underscore as Resolved.
Nov 15 2021, 7:55 PM · VyOS 1.4 Sagitta
c-po changed the status of T3994: VRF: unable to delete vrf when name contains numbers, hyphen or underscore from Open to In progress.
Nov 15 2021, 7:29 PM · VyOS 1.4 Sagitta
c-po created T3994: VRF: unable to delete vrf when name contains numbers, hyphen or underscore.
Nov 15 2021, 7:29 PM · VyOS 1.4 Sagitta
c-po triaged T3960: FRR Misconfig when using multiple VRF VNI as Normal priority.
Nov 15 2021, 6:37 PM · VyOS 1.4 Sagitta
Viacheslav triaged T2081: Support Ethernet over IP (EoIP) as Wishlist priority.
Nov 15 2021, 6:11 PM · VyOS 1.5 Circinus
jestabro edited projects for T3993: Extend HTTP API GraphQL support, added: VyOS 1.3 Equuleus; removed VyOS 1.3 Equuleus (1.3.0).
Nov 15 2021, 6:01 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T2768: Define a high level HTTP API: T3993: Extend HTTP API GraphQL support.
Nov 15 2021, 5:51 PM · VyOS Rolling
jestabro added a parent task for T3993: Extend HTTP API GraphQL support: T2768: Define a high level HTTP API.
Nov 15 2021, 5:51 PM · VyOS 1.4 Sagitta
jestabro triaged T3993: Extend HTTP API GraphQL support as Normal priority.
Nov 15 2021, 5:50 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2081: Support Ethernet over IP (EoIP) .

By the way, mikrotik IPoE format doesn't compatible with VyOS

Nov 15 2021, 5:49 PM · VyOS 1.5 Circinus
Unknown Object (User) created T3992: Unhandled exception when trying to add an interface with an assigned address to a bridge.
Nov 15 2021, 3:26 PM · VyOS 1.3 Equuleus (1.3.7)
Viacheslav added a comment to T3979: vyos-hostd unable to hostfile-update.

https://github.com/vyos/vyos-1x/blob/1353757247c027f6352000a9450b502c25c460c8/src/utils/vyos-hostsd-client#L123-L139
entry['address']] expect list

Nov 15 2021, 3:12 PM · VyOS 1.4 Sagitta
Viacheslav reassigned T3960: FRR Misconfig when using multiple VRF VNI from Unknown Object (User) to c-po.
Nov 15 2021, 10:29 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T3991: PKI operational command return traceback.
Nov 15 2021, 10:21 AM · Restricted Project, VyOS 1.4 Sagitta
Viacheslav added a comment to T3960: FRR Misconfig when using multiple VRF VNI.

Zebra configuration:

root@r11-roll:/home/vyos# cat foo.txt 
!
frr version 7.5.1-20210619-12-g3f8a74e70
frr defaults traditional
hostname r11-roll
log syslog
log facility local7
service integrated-vtysh-config
!
vrf blue
 vni 2000
 exit-vrf
!
vrf red
 vni 3000
 exit-vrf
!
line vty
!
end
Nov 15 2021, 10:08 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2044: RPKI doesn't boot properly.

Still reproducible VyOS 1.3-beta-202111150443
After reboot

Nov 15 2021, 9:01 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel.

For 1.4 it was implemented in T645
IPSec was completely rewritten in 1.4

Nov 15 2021, 8:23 AM · VyOS 1.4 Sagitta
Viacheslav closed T645: Allow multiple prefixes in ipsec tunnel, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Nov 15 2021, 8:22 AM · VyOS 1.4 Sagitta
Viacheslav closed T645: Allow multiple prefixes in ipsec tunnel as Resolved.
Nov 15 2021, 8:22 AM · VyOS 1.4 Sagitta
Viacheslav closed T3934: Openconnect VPN broken: ocserv-worker general protection fault on client connect as Resolved.

Fixed VyOS 1.3-beta-202111150443

Nov 15 2021, 7:56 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3989: Firewall - Can't delete rule in firewall entry and leave just default-action when firewall entry is in used.

Duplicate T1292

Nov 15 2021, 5:55 AM

Nov 14 2021

syncer reassigned T3946: Automatically resize the root partition if the drive has extra space from syncer to dmbaturin.
Nov 14 2021, 10:27 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX1353757247c0: dhcp-server: T3982: dot (.) is an allowed static-mapping character.
Nov 14 2021, 7:34 PM
c-po committed rVYOSONEXaf1cfebaff5e: dhcp-server: T3982: dot (.) is an allowed static-mapping character.
Nov 14 2021, 7:34 PM
c-po closed T3974: route-map commit fails if interface does not exist as Resolved.
Nov 14 2021, 7:26 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0)

Nov 13 2021

marc_s created T3990: WATCHFRR: crashlog and per-thread log buffering unavailable (due to files left behind in /var/tmp/frr/ after reboot).
Nov 13 2021, 1:17 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)
n.fort created T3989: Firewall - Can't delete rule in firewall entry and leave just default-action when firewall entry is in used.
Nov 13 2021, 11:27 AM
Unknown Object (User) renamed T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel from Feature Request: IPsec Multiple local prefix for the tunnel to Feature Request: IPsec Multiple local/remote prefix for the tunnel.
Nov 13 2021, 6:33 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel.
Nov 13 2021, 6:27 AM · VyOS 1.4 Sagitta

Nov 12 2021

RyVolodya created T3987: An error occurs after stopping snmpd in frr.
Nov 12 2021, 10:38 PM · VyOS 1.3 Equuleus (1.3.6)
jestabro added a comment to T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.

This brings up an interesting issue: validate_value.ml could easily be modified to print warnings, while maintaining T2759 (namely, only print fatal errors if _all_ validators fail for a given setting), however, is this reasonable behaviour ? One would think that a 'validator' is either pass or fail, and if it is just giving a warning, it is no longer a validator.

Nov 12 2021, 7:20 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav committed rVYOSONEX05c4d3ec9a6e: ipsec: T3986: Fix typos in descriptions.
Nov 12 2021, 4:33 PM
GitHub <noreply@github.com> committed rVYOSONEXbceaab68b9b5: Merge pull request #1071 from sever-sever/T3986 (authored by c-po).
Nov 12 2021, 4:33 PM
jestabro claimed T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.

I will take a look; thanks for the report !

Nov 12 2021, 4:12 PM · VyOS 1.3 Equuleus (1.3.6)
jestabro committed rVYOSONEX86e498517b89: interface-names: T3871: shift index to accommodate KVM behaviour.
Nov 12 2021, 2:54 PM
Viacheslav added a comment to T3983: show pki certificate Doesnt show x509 certificates.

Note, the host was upgraded from 1.2.8

Nov 12 2021, 12:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T3946: Automatically resize the root partition if the drive has extra space.

PRs 1069 and 1070 will be merged

Nov 12 2021, 10:04 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
afics added a comment to T2251: VRF communication breaks when utilizing zone-based firewalling.

Adding set zone-policy zone SERVER interface SERVER to the presented test case should solve the issue. This is because the traffic needs to pass both eth1 and its associated VRF "master" interface, in this case TEST.

Nov 12 2021, 9:19 AM · VyOS Rolling, Bugs
Unknown Object (User) changed the status of T3946: Automatically resize the root partition if the drive has extra space from Open to In progress.
Nov 12 2021, 8:34 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3986: Incorrect description for vpn ipsec site-to-site authentication and connection.

PR https://github.com/vyos/vyos-1x/pull/1071

Nov 12 2021, 8:28 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3986: Incorrect description for vpn ipsec site-to-site authentication and connection from Open to In progress.
Nov 12 2021, 8:20 AM · VyOS 1.4 Sagitta
ross211 added a comment to T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.

From what I understand this looks to be due to https://github.com/vyos/vyos-utils/blob/master/src/validate_value.ml catching both stdout and stderr output from the validators and only printing the captured output if the validator exit status is 0 so there isn't a way to print warnings unless it always prints the output or handling for a special 'warning' exit code was added.

Nov 12 2021, 7:19 AM · VyOS 1.3 Equuleus (1.3.6)

Nov 11 2021

c-po committed rVYOSONEXedfab6fd9b5b: ipsec: T3093: fix log-level completion help string.
Nov 11 2021, 7:52 PM
SrividyaA committed rVYOSONEX26463065e748: T3796:op-mode: wireguard interface not shown.
Nov 11 2021, 6:56 PM
GitHub <noreply@github.com> committed rVYOSONEXb3412d5d3ea1: Merge pull request #1061 from srividya0208/T3796 (authored by c-po).
Nov 11 2021, 6:56 PM
sarthurdev committed rVYOSONEX23691df934ff: pki: T3970: Allow op-mode PKI commands in a config session to install directly.
Nov 11 2021, 6:56 PM
GitHub <noreply@github.com> committed rVYOSONEXe6e09a039fe4: Merge pull request #1066 from sarthurdev/pki_install (authored by c-po).
Nov 11 2021, 6:56 PM
Unknown Object (User) closed T1058: hw-id is ignored when naming interfaces as Resolved.

This issue should be fixed after these changes https://phabricator.vyos.net/T1970 (udevadm settle)
Tested on EdgeCore SAF51015I with generic ISOs.

Nov 11 2021, 6:42 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T1349: L2TP remote-access vpn terminated and not showing as connected as Resolved.

Does not possible to reproduce this behavior on 1.3-epa3.

Nov 11 2021, 6:35 PM · VyOS 1.3 Equuleus (1.3.0), test
Viacheslav created T3986: Incorrect description for vpn ipsec site-to-site authentication and connection.
Nov 11 2021, 6:31 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3985: vpn IPSec site-to-site continues to work if certificates are deleted.

Certificates can be wound there:

loaded certificate from '/etc/swanctl/x509/R1.pem'
loaded certificate from '/etc/swanctl/x509ca/CA.pem'
loaded RSA key from '/etc/swanctl/private/x509_R1.pem'
Nov 11 2021, 6:17 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3985: vpn IPSec site-to-site continues to work if certificates are deleted from Open to Confirmed.
Nov 11 2021, 6:16 PM · VyOS 1.4 Sagitta
Viacheslav created T3985: vpn IPSec site-to-site continues to work if certificates are deleted.
Nov 11 2021, 6:16 PM · VyOS 1.4 Sagitta
Kim Hagen <kim@sentrium.io> committed rVYOSONEXe8c3b66a1747: T3946: Automatically resize the root partition if the drive has extra space.
Nov 11 2021, 5:54 PM
GitHub <noreply@github.com> committed rVYOSONEX7357be6b5d77: Merge pull request #1069 from UnicronNL/partresize (authored by c-po).
Nov 11 2021, 5:54 PM
UnicronNL changed the status of T1869: Install and Boot from RAID Doesn't Work from Confirmed to On hold.
Nov 11 2021, 2:39 PM
dmbaturin edited projects for T1759: Replacing Vyatta::Interface perl, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.0).
Nov 11 2021, 2:38 PM · VyOS 1.4 Sagitta
erkin changed the status of T1634: Commit fails when changing policy route "set table" and adding the table at the same time, results in config deadlock from Open to In progress.
Nov 11 2021, 2:31 PM
UnicronNL merged task T1208: 'install images' fails on removable storage into T1155: VyOS don't install on USB Stick .
Nov 11 2021, 2:29 PM · VyOS 1.3 Equuleus (1.3.0)
UnicronNL merged task T2865: System hangs at boot after mounting config into T1155: VyOS don't install on USB Stick .
Nov 11 2021, 2:29 PM · VyOS 1.3 Equuleus (1.3.0)
UnicronNL merged tasks T2865: System hangs at boot after mounting config, T1208: 'install images' fails on removable storage into T1155: VyOS don't install on USB Stick .
Nov 11 2021, 2:29 PM
dmbaturin closed T914: Extend list_interfaces.py to support multiple interface types, a subtask of T913: Rewrite dhcprelay service in XML/Python, as Resolved.
Nov 11 2021, 2:24 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc4)
dmbaturin closed T914: Extend list_interfaces.py to support multiple interface types as Resolved.
Nov 11 2021, 2:24 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin closed T688: Move component versions used for config migration purposes into vyos-1x as Resolved.
Nov 11 2021, 2:23 PM · VyOS 1.3 Equuleus (1.3.0), test
dmbaturin reassigned T1058: hw-id is ignored when naming interfaces from UnicronNL to Unknown Object (User).
Nov 11 2021, 2:20 PM · VyOS 1.3 Equuleus (1.3.0)
evgbondarenko removed a member for Sentrium: oleksandr.mamenko.
Nov 11 2021, 2:16 PM
evgbondarenko removed a member for Sentrium: Unknown Object (User).
Nov 11 2021, 2:15 PM
evgbondarenko added a member for Sentrium: Unknown Object (User).
Nov 11 2021, 2:12 PM
Viacheslav created T3984: Ability to disable all logs.
Nov 11 2021, 1:20 PM
ross211 added a comment to T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.

This doesn't seem to help, whatever is calling the validator script seems to hide the output unless the exit status is non-zero.

Nov 11 2021, 12:40 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav created T3983: show pki certificate Doesnt show x509 certificates.
Nov 11 2021, 11:03 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 10 2021

c-po added a comment to T3981: VRF support for flow-accounting.

https://github.com/pmacct/pmacct/blob/master/QUICKSTART#L603-L621

Nov 10 2021, 7:49 PM · VyOS 1.4 Sagitta
c-po moved T3974: route-map commit fails if interface does not exist from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 10 2021, 7:44 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0)
c-po moved T3974: route-map commit fails if interface does not exist from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.9) board.
Nov 10 2021, 7:44 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXc45e4beadf30: dhcp-server: T3982: remove support for invalid characters . and +.
Nov 10 2021, 6:39 PM
c-po committed rVYOSONEXac682795b7d6: dhcp-server: T3982: remove support for invalid characters . and +.
Nov 10 2021, 6:39 PM
c-po closed T3982: DHCP server commit fails if static-mapping contains + or . as Resolved.
Nov 10 2021, 6:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po renamed T3982: DHCP server commit fails if static-mapping contains + or . from DHCP server commit fails if static-mapping contains + to DHCP server commit fails if static-mapping contains + or ..
Nov 10 2021, 6:26 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po claimed T3982: DHCP server commit fails if static-mapping contains + or ..
Nov 10 2021, 6:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3982: DHCP server commit fails if static-mapping contains + or ..
Nov 10 2021, 6:19 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.

Try to restart vyos-configd after changing script file

Nov 10 2021, 3:17 PM · VyOS 1.3 Equuleus (1.3.6)
anthr76 added a comment to T3979: vyos-hostd unable to hostfile-update.

A simple re-prdoucer is

Nov 10 2021, 3:10 PM · VyOS 1.4 Sagitta
eyesfire2 created T3981: VRF support for flow-accounting.
Nov 10 2021, 2:53 PM · VyOS 1.4 Sagitta
ross211 created T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception.
Nov 10 2021, 2:35 PM · VyOS 1.3 Equuleus (1.3.6)
anthr76 added a comment to T3979: vyos-hostd unable to hostfile-update.

Indeed, this looks like the commit

Nov 10 2021, 12:38 PM · VyOS 1.4 Sagitta
UnicronNL closed T3834: [OPENVPN] Support for Two Factor Authentication totp. as Resolved.
Nov 10 2021, 9:23 AM · VyOS 1.4 Sagitta (1.4.0-GA)