Page MenuHomeVyOS Platform
Feed All Stories

May 17 2022

Viacheslav added a comment to T970: Support matching domain name in firewall rules.

PR https://github.com/vyos/vyos-1x/pull/1327

May 17 2022, 10:04 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a comment to T4413: Add an API endpoint with basic system stats.

Details of adding a query such as this (20 lines of meaningful code/50 of boilerplate):
https://github.com/vyos/vyos-1x/commit/b62f5df2c796d0567b370e27fcec2005a02a4cd3

May 17 2022, 9:04 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4413: Add an API endpoint with basic system stats.

An initial implementation has been provided to Andrew Moshensky for testing with the local UI.

May 17 2022, 6:52 PM · VyOS 1.4 Sagitta
Viacheslav closed T4424: policy local-route6 shows ipv4 format as Resolved.
May 17 2022, 11:49 AM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4429: Ability to detect external IP address from op-mode.
May 17 2022, 11:43 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav changed the status of T4429: Ability to detect external IP address from op-mode from Open to In progress.
May 17 2022, 11:34 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T4429: Ability to detect external IP address from op-mode.

PR https://github.com/vyos/vyos-1x/pull/1326

May 17 2022, 11:27 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav created T4429: Ability to detect external IP address from op-mode.
May 17 2022, 10:24 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
shaferstockton created T4428: Update ddclient to newer version.
May 17 2022, 3:09 AM · VyOS 1.4 Sagitta

May 16 2022

Cheeze_It added a comment to T4257: Discussion on changing BGP autonomous system number syntax.

@c-po, lets run with "system-as"

May 16 2022, 11:14 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4396: HTTP API no response after several days restarted.

The current discussion has taken place in the vyos-api-discussion channel; results will be summarized here.

May 16 2022, 5:36 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4373: PPPoE-server add multiplier option for shaper from In progress to Needs testing.

Need testing:

set service pppoe-server authentication mode 'radius'
set service pppoe-server authentication radius rate-limit attribute 'Mikrotik-Rate-Limit'
set service pppoe-server authentication radius rate-limit enable
set service pppoe-server authentication radius rate-limit multiplier '0.001'
set service pppoe-server authentication radius rate-limit vendor 'Mikrotik'
set service pppoe-server authentication radius server 192.0.2.1 key 'foo'
set service pppoe-server client-ip-pool start '192.0.2.5'
set service pppoe-server client-ip-pool stop '192.0.2.254'
set service pppoe-server gateway-address '192.0.2.1'
set service pppoe-server interface eth3

Or any live example

May 16 2022, 5:26 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXb9e1a141ee2a: pppoe-server: T4373: Add option multiplier for correct shaping.
May 16 2022, 3:55 PM
GitHub <noreply@github.com> committed rVYOSONEX9347dc53c5bd: Merge pull request #1290 from sever-sever/T4373 (authored by c-po).
May 16 2022, 3:55 PM
Viacheslav added a project to T4421: Add support for floating point numbers in the numeric validator: VyOS 1.3 Equuleus (1.3.2).
May 16 2022, 3:13 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
SrividyaA claimed T3989: Firewall - Can't delete rule in firewall entry and leave just default-action when firewall entry is in used.
May 16 2022, 1:39 PM
jestabro added a comment to T4396: HTTP API no response after several days restarted.

Firstly, is there any info in the logs ?

May 16 2022, 12:40 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4396: HTTP API no response after several days restarted.

As discussed in the slack channel today, let us follow up here, as I'd like to run through some analysis, and set up a reproducer if possible.

May 16 2022, 12:32 PM · VyOS 1.4 Sagitta
dmbaturin renamed T4427: Remove the vyos-utils package list from vyos-build from Remove the vyos-utils package list to Remove the vyos-utils package list from vyos-build.
May 16 2022, 7:42 AM · VyOS 1.4 Sagitta
dmbaturin created T4427: Remove the vyos-utils package list from vyos-build.
May 16 2022, 7:41 AM · VyOS 1.4 Sagitta
dmbaturin created T4426: Add arpwatch to the image.
May 16 2022, 7:28 AM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
Unknown Object (User) closed T4377: generate tech-support archive includes previous archives as Resolved.

The command works well.

May 16 2022, 1:29 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Unknown Object (User) added a comment to T4377: generate tech-support archive includes previous archives.
vyos@vyos:~$ show version
May 16 2022, 1:28 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

May 15 2022

Viacheslav committed rVYOSONEX415a470f9dba: ldp: T4082: Add restart ldp command for op-mode (authored by devon).
May 15 2022, 7:20 PM
GitHub <noreply@github.com> committed rVYOSONEX2353f164fc1f: Merge pull request #1324 from sever-sever/T4082 (authored by dmbaturin).
May 15 2022, 7:20 PM
n.fort added a comment to T4387: Create additional smoketests for multiwan PBR & load-balanced configurations .

I agree that having a smoketest for WLB will be great. But, there are certain limitations/considerations:

May 15 2022, 3:01 PM · VyOS 1.4 Sagitta

May 13 2022

c-po committed rVYOSONEXf105efc658b9: smoketest: add sshguard allow-from case.
May 13 2022, 4:44 PM
c-po committed rVYOSONEX37a08888d103: sshguard: T4408: rename whitelist-address -> allow-from.
May 13 2022, 4:44 PM
c-po committed rVYOSONEX049c8d556085: Debian: T4408: add missing sshguard dependency.
May 13 2022, 4:44 PM
zsdc created T4425: Hide DHCP leases from interfaces without active DHCP client.
May 13 2022, 2:12 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX2e81f9e057f5: sshguard: T4408: Add service ssh dynamic-protection.
May 13 2022, 11:13 AM
GitHub <noreply@github.com> committed rVYOSONEX8b122bd2ba6b: Merge pull request #1320 from sever-sever/T4408 (authored by c-po).
May 13 2022, 11:13 AM
Viacheslav added a project to T4377: generate tech-support archive includes previous archives: VyOS 1.4 Sagitta.
May 13 2022, 9:06 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav changed the status of T4377: generate tech-support archive includes previous archives from Open to Needs testing.
May 13 2022, 9:06 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po moved T4414: Add route-map "as-path prepend last-as x" option from Open to Finished on the VyOS 1.4 Sagitta board.
May 13 2022, 5:53 AM · VyOS 1.4 Sagitta
c-po moved T4417: VRRP doesn't start with conntrack-sync from Open to Finished on the VyOS 1.4 Sagitta board.
May 13 2022, 5:53 AM · VyOS 1.4 Sagitta
c-po moved T4419: vrf: support to disable IP forwarding within a given VRF from Open to Finished on the VyOS 1.4 Sagitta board.
May 13 2022, 5:53 AM · VyOS 1.4 Sagitta
yakatz awarded T160: Support NAT64 a Like token.
May 13 2022, 5:35 AM · VyOS 1.4 Sagitta (1.4.0-epa1)

May 12 2022

skor closed T4417: VRRP doesn't start with conntrack-sync as Resolved.
May 12 2022, 9:48 PM · VyOS 1.4 Sagitta
skor added a comment to T4417: VRRP doesn't start with conntrack-sync.

It works now.
Thank you!

May 12 2022, 9:47 PM · VyOS 1.4 Sagitta
hexa added a comment to T4417: VRRP doesn't start with conntrack-sync.

Fixed in https://github.com/vyos/vyos-1x/commit/d70c2b4493366c02f025f43d2a777b2bef3e1789 and works on 1.4-rolling-202205121610.

May 12 2022, 7:25 PM · VyOS 1.4 Sagitta
n.fort closed T4100: Firewall increase maximum number of rules as Resolved.
May 12 2022, 5:14 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po committed rVYOSONEXd70c2b449336: vrrp: T4417: bugfix service startup priority.
May 12 2022, 3:50 PM
c-po committed rVYOSONEXd40549360a4e: conntrack: T3535: use "reload-or-restart" from systemd.
May 12 2022, 3:50 PM
c-po committed rVYOSONEX8d120b9af496: vrrp: T3944: use "reload-or-restart" over individual code paths.
May 12 2022, 3:50 PM
c-po committed rVYOSONEX373227e717fa: container: T2216: use warning over exception when container image does not exist.
May 12 2022, 3:50 PM
Viacheslav added a reverting change for rVYOSONEXd1455f936ca7: NHRP : T4399: fix issues restart nhrp when add or del tunnel: rVYOSONEX1efeab024888: Revert "NHRP : T4399: fix issues restart nhrp when add or del tunnel".
May 12 2022, 2:02 PM
Viacheslav committed rVYOSONEX1efeab024888: Revert "NHRP : T4399: fix issues restart nhrp when add or del tunnel".
May 12 2022, 2:02 PM
GitHub <noreply@github.com> committed rVYOSONEX2a8833356a30: Merge pull request #1323 from sever-sever/T4399 (authored by c-po).
May 12 2022, 2:02 PM
Viacheslav committed rVYOSONEX2146002ed27e: policy: T4424: Fix incorrect format for IPv6 prefixes.
May 12 2022, 2:01 PM
GitHub <noreply@github.com> committed rVYOSONEX02c1993afbac: Merge pull request #1325 from sever-sever/T4424 (authored by c-po).
May 12 2022, 2:01 PM
n.fort added a comment to T990: Make DNAT/SNAT a valid state in firewall rules. .

PR for docs: https://github.com/vyos/vyos-documentation/pull/771

May 12 2022, 1:55 PM · VyOS 1.4 Sagitta, test
Viacheslav changed the status of T4424: policy local-route6 shows ipv4 format from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/1325

May 12 2022, 1:25 PM · VyOS 1.4 Sagitta
Viacheslav created T4424: policy local-route6 shows ipv4 format.
May 12 2022, 1:15 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4082: Add op mode command to restart ldpd.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1324

May 12 2022, 12:56 PM · VyOS 1.3 Equuleus (1.3.0)
dongjunbo created T4423: `reset dns forwarding all` can't clear all dns cache.
May 12 2022, 10:04 AM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav updated the task description for T4418: Telegraf - output Plugin azure-data-explorer.
May 12 2022, 9:13 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

PR revert previous commit https://github.com/vyos/vyos-1x/pull/1323

May 12 2022, 8:58 AM · VyOS 1.4 Sagitta (1.4.3)

May 11 2022

n.fort changed the status of T3907: Firewall - Set log levels from Open to In progress.
May 11 2022, 1:42 PM · VyOS 1.4 Sagitta
n.fort claimed T3907: Firewall - Set log levels.
May 11 2022, 1:42 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4405: DHCP client sometimes ignores `no-default-route` option of an interface from Unknown Status to Resolved.
May 11 2022, 11:38 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX636e9dc5b2b8: T4405: Fix administrative distance of DHCP routes (authored by dtoux).
May 11 2022, 10:41 AM
GitHub <noreply@github.com> committed rVYOSONEXab75607030f0: Merge pull request #1321 from sever-sever/T4405 (authored by c-po).
May 11 2022, 10:41 AM

May 10 2022

Viacheslav added a comment to T1619: Migrate user home directories on image update.

@dmbaturin Do we really need this?

May 10 2022, 5:30 PM
Viacheslav closed T4156: Adding DHCP Option 13 (bootfile-size) as Resolved.
May 10 2022, 5:24 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4187: XDP broken for VLAN/vif interfaces with hardware offloading.

Maybe it will fix it https://github.com/sematext/oxdpus/blob/master/pkg/xdp/prog/xdp.c

May 10 2022, 4:16 PM · VyOS 1.4 Sagitta
zedalert added a comment to T4422: WAN load-balance status failed on all interfaces if one of them failed.

Already tested config in the 1.3-rolling-202205100648 and 1.4-rolling-202205080844, behavior remains the same.

May 10 2022, 4:05 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T4422: WAN load-balance status failed on all interfaces if one of them failed.

I could be wrong
1.3.0-rc6 old release
Could you check it on more actual version?

May 10 2022, 4:00 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

PR for 1.4 https://github.com/vyos/vyos-1x/pull/1321

May 10 2022, 3:59 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
zedalert added a comment to T4422: WAN load-balance status failed on all interfaces if one of them failed.

@Viacheslav But in this case there is no point to use different test addresses, if the target is pinged with "interface" option.

May 10 2022, 3:54 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T4422: WAN load-balance status failed on all interfaces if one of them failed.

@zedalert Tested addresses should be different, as I remember it send pings with "interface" option
So targets should be different

May 10 2022, 3:38 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T4408: Add sshguard to protect against brut-forces.

PR https://github.com/vyos/vyos-1x/pull/1320
PR https://github.com/vyos/vyos-build/pull/233

May 10 2022, 3:35 PM · VyOS 1.4 Sagitta
lmcdasm added a watcher for VyOS 2.0.x: lmcdasm.
May 10 2022, 2:42 PM
zedalert created T4422: WAN load-balance status failed on all interfaces if one of them failed.
May 10 2022, 2:40 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T1972: Allow setting interface name for virtual_ipaddress in VRRP VRID as Resolved.
May 10 2022, 10:37 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav moved T4405: DHCP client sometimes ignores `no-default-route` option of an interface from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
May 10 2022, 10:28 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav moved T4405: DHCP client sometimes ignores `no-default-route` option of an interface from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
May 10 2022, 10:27 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav edited projects for T4405: DHCP client sometimes ignores `no-default-route` option of an interface, added: VyOS 1.3 Equuleus (1.3.2); removed VyOS 1.3 Equuleus ( 1.3.1).
May 10 2022, 10:27 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav closed T4405: DHCP client sometimes ignores `no-default-route` option of an interface as Unknown Status.
May 10 2022, 10:26 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin created T4421: Add support for floating point numbers in the numeric validator.
May 10 2022, 9:59 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 9 2022

n.fort changed the status of T990: Make DNAT/SNAT a valid state in firewall rules. from Open to Needs testing.
May 9 2022, 10:03 PM · VyOS 1.4 Sagitta, test
n.fort added a comment to T990: Make DNAT/SNAT a valid state in firewall rules. .

PR: https://github.com/vyos/vyos-1x/pull/1279

May 9 2022, 10:03 PM · VyOS 1.4 Sagitta, test
c-po updated the task description for T4417: VRRP doesn't start with conntrack-sync.
May 9 2022, 5:10 PM · VyOS 1.4 Sagitta
c-po changed the status of T4417: VRRP doesn't start with conntrack-sync from Open to In progress.
May 9 2022, 5:05 PM · VyOS 1.4 Sagitta
dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

It may be a good idea to cherry-pick this for 1.4.x branch.

May 9 2022, 3:48 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
e.khudiyev added a comment to T4416: Convert 'traceroute' operation to the new syntax and expand available options using python.

Tested on the latest rolling release:

May 9 2022, 2:37 PM · VyOS 1.4 Sagitta
n.fort committed rVYOSONEX3a5cf74b06ce: Firewall: T990: Add snat and dnat connection status on firewall.
May 9 2022, 5:22 AM
n.fort committed rVYOSONEX19d38aa98cd6: Firewall: T990: Add snat and dst connection status on firewall.
May 9 2022, 5:22 AM
n.fort committed rVYOSONEX15e55af88e61: Firewall: T990: Modifications for new connection-status cli.
May 9 2022, 5:22 AM
GitHub <noreply@github.com> committed rVYOSONEX432fd1b5e7b5: Merge pull request #1279 from nicolas-fort/T990 (authored by c-po).
May 9 2022, 5:22 AM
c-po committed rVYOSONEX1f5f9a49e064: smoketest: add basic QoS configuration.
May 9 2022, 4:46 AM
GitHub <noreply@github.com> committed rVYOSONEXb98e0e90ce1e: Merge pull request #1307 from c-po/qos-config-equuleus (authored by c-po).
May 9 2022, 4:46 AM
Unknown Object (User) added a comment to T4420: Feature Request: ocserv: show configured 2FA OTP key.

PR:
https://github.com/vyos/vyos-1x/pull/1319

May 9 2022, 1:24 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T4420: Feature Request: ocserv: show configured 2FA OTP key.
May 9 2022, 12:15 AM · VyOS 1.4 Sagitta

May 8 2022

dmbaturin committed rVYOSONEXf64b7cb6e6c9: T4402: fix ifconfig-pool generation logic.
May 8 2022, 9:18 PM
GitHub <noreply@github.com> committed rVYOSONEXa9f2a2ed73aa: Merge pull request #1309 from dmbaturin/T4402-equ (authored by dmbaturin).
May 8 2022, 9:18 PM
GitHub <noreply@github.com> committed rVYOSONEX0c00e7bf8b6e: T4405: Fix administrative distance of DHCP routes (authored by dtoux).
May 8 2022, 9:14 PM
GitHub <noreply@github.com> committed rVYOSONEX84f68455cbe9: Merge pull request #1313 from dtoubelis/equuleus (authored by dmbaturin).
May 8 2022, 9:14 PM
c-po committed rVYOSONEX2e28d3f68c10: container: T4000: use unique storage for container image.
May 8 2022, 7:59 PM
c-po committed rVYOSONEX7e7c6a5f120f: container: op-mode: T3852: use XML inline podman commands.
May 8 2022, 7:59 PM