Page MenuHomeVyOS Platform
Feed Search

Oct 31 2022

Viacheslav changed the status of T1875: Add the ability to use network address as BGP neighbor (bgp listen range), a subtask of T2174: Rewrite protocol BGP to new XML/Python style, from Unknown Status to Resolved.
Oct 31 2022, 12:00 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T1875: Add the ability to use network address as BGP neighbor (bgp listen range) from Unknown Status to Resolved.
Oct 31 2022, 12:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav closed T4786: Add package python3-pyhumps as Resolved.
Oct 31 2022, 11:44 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXa3ae74860809: T4786: Add package python3-pyhumps.
Oct 31 2022, 11:39 AM
Viacheslav added a comment to T4771: Rewrite protocol BGP op-mode to vyos.opmode format.

PR https://github.com/vyos/vyos-1x/pull/1623

Oct 31 2022, 11:06 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4786: Add package python3-pyhumps.

PR https://github.com/vyos/vyos-1x/pull/1631

Oct 31 2022, 11:05 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4786: Add package python3-pyhumps from Open to In progress.
Oct 31 2022, 10:44 AM · VyOS 1.4 Sagitta
Viacheslav edited a custom field on T4786: Add package python3-pyhumps.
Oct 31 2022, 10:41 AM · VyOS 1.4 Sagitta
Viacheslav created T4786: Add package python3-pyhumps.
Oct 31 2022, 10:41 AM · VyOS 1.4 Sagitta

Oct 29 2022

Viacheslav added a comment to T4776: NVME storage is not detected properly during installation.

@zsdc could we backport it to 1.3?

Oct 29 2022, 7:26 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav added a parent task for T4779: Make raw op mode command outputs use bytes for data amount values: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Oct 29 2022, 7:21 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4779: Make raw op mode command outputs use bytes for data amount values.
Oct 29 2022, 7:21 PM · VyOS Rolling
Viacheslav updated subscribers of T4781: cloud-init fails to handle "::" as a netmask for routes.
Oct 29 2022, 7:18 PM · VyOS Rolling, Bugs
Viacheslav closed T4783: Add support for stunnel as Resolved.
Oct 29 2022, 7:16 PM · VyOS 1.4 Sagitta

Oct 28 2022

Viacheslav changed the status of T4771: Rewrite protocol BGP op-mode to vyos.opmode format, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Oct 28 2022, 12:47 PM · VyOS Rolling
Viacheslav changed the status of T4771: Rewrite protocol BGP op-mode to vyos.opmode format from Open to In progress.
Oct 28 2022, 12:46 PM · VyOS 1.4 Sagitta

Oct 27 2022

Viacheslav added a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4778: Raise error UnconfiguredSubsystem if op-mode ipsec.py fails initialization.
Oct 27 2022, 7:03 PM · VyOS Rolling
Viacheslav added a parent task for T4778: Raise error UnconfiguredSubsystem if op-mode ipsec.py fails initialization: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Oct 27 2022, 7:03 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4777: Ability to get logs in machine readable format.
Oct 27 2022, 1:58 PM · VyOS 1.5 Circinus
Viacheslav updated the task description for T4777: Ability to get logs in machine readable format.
Oct 27 2022, 1:54 PM · VyOS 1.5 Circinus
Viacheslav created T4777: Ability to get logs in machine readable format.
Oct 27 2022, 1:52 PM · VyOS 1.5 Circinus
Viacheslav closed T4762: Show nat rules with empty rules incorrect error, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, as Resolved.
Oct 27 2022, 12:56 PM · VyOS Rolling
Viacheslav closed T4762: Show nat rules with empty rules incorrect error as Resolved.
Oct 27 2022, 12:56 PM · VyOS 1.4 Sagitta
Viacheslav closed T4763: Change XML for Show nat destination statistics, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, as Resolved.
Oct 27 2022, 12:55 PM · VyOS Rolling
Viacheslav closed T4763: Change XML for Show nat destination statistics as Resolved.
Oct 27 2022, 12:55 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX6acf41ea7d11: T4763: Use nat.py for show nat destination statistics.
Oct 27 2022, 12:55 PM
Viacheslav committed rVYOSONEX28b312d68729: T4762: Add check for show nat if nat config does not exist.
Oct 27 2022, 12:55 PM
Viacheslav changed the subtype of T4774: Disallow duplicate pubkey on peers of a wireguard interface from "Task" to "Bug".
Oct 27 2022, 10:33 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta

Oct 25 2022

Viacheslav closed T4720: Ability to configure SSH HostKeyAlgorithms, a subtask of T4712: Collaborative Protection Profile cPP for Network Devices root task, as Resolved.
Oct 25 2022, 5:02 PM · VyOS Rolling, VyOS 1.5 Circinus (1.5-stream-2025-Q4)
Viacheslav closed T4720: Ability to configure SSH HostKeyAlgorithms as Resolved.
Oct 25 2022, 5:02 PM · VyOS 1.4 Sagitta

Oct 23 2022

Viacheslav closed T3723: op-mode IPSec show vpn ipsec sa output with underscores, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Oct 23 2022, 7:08 PM · VyOS 1.4 Sagitta
Viacheslav closed T3723: op-mode IPSec show vpn ipsec sa output with underscores as Resolved.
Oct 23 2022, 7:08 PM · VyOS 1.4 Sagitta

Oct 21 2022

Viacheslav created T4771: Rewrite protocol BGP op-mode to vyos.opmode format.
Oct 21 2022, 7:18 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4770: Rewrite OpenVPN op-mode to vyos.opmode format.
Oct 21 2022, 6:43 PM · VyOS 1.4 Sagitta
Viacheslav created T4770: Rewrite OpenVPN op-mode to vyos.opmode format.
Oct 21 2022, 6:32 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4767: replace sh to Python (generate_ipsec_debug_archive.sh) from Open to In progress.
Oct 21 2022, 2:25 PM

Oct 20 2022

Viacheslav added a comment to T4612: Support arbitrary netmasks in firewall rules.

Also, it can be wildcard-address
@Rain Could you create a PR?

Oct 20 2022, 4:08 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4720: Ability to configure SSH HostKeyAlgorithms, a subtask of T4712: Collaborative Protection Profile cPP for Network Devices root task, from In progress to Needs testing.
Oct 20 2022, 3:28 PM · VyOS Rolling, VyOS 1.5 Circinus (1.5-stream-2025-Q4)
Viacheslav changed the status of T4720: Ability to configure SSH HostKeyAlgorithms from In progress to Needs testing.
Oct 20 2022, 3:28 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX85f04237160a: ssh: T4720: Ability to configure SSH-server HostKeyAlgorithms.
Oct 20 2022, 3:27 PM
Viacheslav committed rVYOSONEX3ff47d3388fb: T4720: Add smoketest for SSH NDcPP.
Oct 20 2022, 3:27 PM
Viacheslav added a comment to T4762: Show nat rules with empty rules incorrect error.

PR https://github.com/vyos/vyos-1x/pull/1606

Oct 20 2022, 12:02 PM · VyOS 1.4 Sagitta
Viacheslav renamed T4764: NAT tables vyos_nat and vyos_static_nat not deleting after deleting nat from NAT tables vyos_nat and vyos_static_nat not delete after deleting nat to NAT tables vyos_nat and vyos_static_nat not deleting after deleting nat.
Oct 20 2022, 11:14 AM · VyOS 1.4 Sagitta
Viacheslav created T4764: NAT tables vyos_nat and vyos_static_nat not deleting after deleting nat.
Oct 20 2022, 11:14 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4763: Change XML for Show nat destination statistics, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Oct 20 2022, 10:43 AM · VyOS Rolling
Viacheslav changed the status of T4763: Change XML for Show nat destination statistics from Open to In progress.
Oct 20 2022, 10:43 AM · VyOS 1.4 Sagitta
Viacheslav created T4763: Change XML for Show nat destination statistics.
Oct 20 2022, 10:42 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4762: Show nat rules with empty rules incorrect error, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Oct 20 2022, 9:07 AM · VyOS Rolling
Viacheslav changed the status of T4762: Show nat rules with empty rules incorrect error from Open to In progress.
Oct 20 2022, 9:07 AM · VyOS 1.4 Sagitta

Oct 19 2022

Viacheslav edited a custom field on T4762: Show nat rules with empty rules incorrect error.
Oct 19 2022, 5:38 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T4762: Show nat rules with empty rules incorrect error from "Feature Request" to "Bug".
Oct 19 2022, 5:37 PM · VyOS 1.4 Sagitta
Viacheslav created T4762: Show nat rules with empty rules incorrect error.
Oct 19 2022, 5:37 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4758: Rewrite show dhcp server to vyos.opmode format.

PR https://github.com/vyos/vyos-1x/pull/1604

Oct 19 2022, 2:26 PM · VyOS 1.4 Sagitta

Oct 18 2022

Viacheslav removed a parent task for T4751: Feature Request: system login: 2FA OTP key generator in VyOS CLI: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Oct 18 2022, 5:26 PM · VyOS 1.4 Sagitta
Viacheslav removed a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4751: Feature Request: system login: 2FA OTP key generator in VyOS CLI.
Oct 18 2022, 5:26 PM · VyOS Rolling
Viacheslav added a parent task for T4751: Feature Request: system login: 2FA OTP key generator in VyOS CLI: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Oct 18 2022, 5:23 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T4754: Improvement: system login: show configured 2FA OTP key: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Oct 18 2022, 5:23 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added subtasks for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4751: Feature Request: system login: 2FA OTP key generator in VyOS CLI, T4754: Improvement: system login: show configured 2FA OTP key.
Oct 18 2022, 5:23 PM · VyOS Rolling
Viacheslav changed the status of T4758: Rewrite show dhcp server to vyos.opmode format, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Oct 18 2022, 11:53 AM · VyOS Rolling
Viacheslav changed the status of T4758: Rewrite show dhcp server to vyos.opmode format from Open to In progress.
Oct 18 2022, 11:53 AM · VyOS 1.4 Sagitta
Viacheslav created T4758: Rewrite show dhcp server to vyos.opmode format.
Oct 18 2022, 11:53 AM · VyOS 1.4 Sagitta
Viacheslav closed T4684: Rewrite show ip route by protocol to vyos.opmode format, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, as Resolved.
Oct 18 2022, 11:47 AM · VyOS Rolling
Viacheslav closed T4684: Rewrite show ip route by protocol to vyos.opmode format as Resolved.
Oct 18 2022, 11:47 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4755: Configure unsuccessful logon attempts.

Tested with next configuration:

vyos@r14:~$ sudo cat /etc/pam.d/common-auth 
auth  required      pam_env.so
auth  required      pam_faillock.so preauth silent audit deny=3 unlock_time=300
auth  sufficient    pam_unix.so  nullok  try_first_pass
auth  [default=die] pam_faillock.so  authfail  audit  deny=3  unlock_time=300
auth  requisite     pam_succeed_if.so uid >= 1000 quiet_success
auth  required      pam_deny.so
vyos@r14:~$
Oct 18 2022, 9:15 AM · VyOS Rolling
Viacheslav changed the status of T4714: Delete unused ipset from the filecaps from In progress to Needs testing.
Oct 18 2022, 8:30 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4714: Delete unused ipset from the filecaps from Open to In progress.

PR https://github.com/vyos/vyatta-cfg-system/pull/186

Oct 18 2022, 6:52 AM · VyOS 1.4 Sagitta

Oct 17 2022

Viacheslav updated the task description for T4712: Collaborative Protection Profile cPP for Network Devices root task.
Oct 17 2022, 2:12 PM · VyOS Rolling, VyOS 1.5 Circinus (1.5-stream-2025-Q4)
Viacheslav updated subscribers of T4720: Ability to configure SSH HostKeyAlgorithms.
Oct 17 2022, 1:42 PM · VyOS 1.4 Sagitta
Viacheslav claimed T4720: Ability to configure SSH HostKeyAlgorithms.
Oct 17 2022, 12:25 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4720: Ability to configure SSH HostKeyAlgorithms, a subtask of T4712: Collaborative Protection Profile cPP for Network Devices root task, from Open to In progress.
Oct 17 2022, 12:25 PM · VyOS Rolling, VyOS 1.5 Circinus (1.5-stream-2025-Q4)
Viacheslav changed the status of T4720: Ability to configure SSH HostKeyAlgorithms from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/1601

set service ssh hostkey-algorithm 'sk-ssh-ed25519@openssh.com'
set service ssh hostkey-algorithm 'ssh-rsa'
Oct 17 2022, 12:25 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4755: Configure unsuccessful logon attempts.
Oct 17 2022, 10:30 AM · VyOS Rolling
Viacheslav created T4755: Configure unsuccessful logon attempts.
Oct 17 2022, 10:03 AM · VyOS Rolling
Viacheslav updated subscribers of T3909: Add ability to upload scripts via API.
Oct 17 2022, 9:35 AM · VyOS Rolling
Viacheslav added a comment to T4487: Create container without downloaded image wrong behavior.

@CuBiC3D There is a comment of the commit https://github.com/vyos/vyos-1x/commit/373227e717fac82af5ea8d71e611a3df1c59054e

Oct 17 2022, 9:23 AM · VyOS 1.4 Sagitta
Viacheslav added a project to T4752: ICMP redirects not working / not properly configured: VyOS 1.3 Equuleus (1.3.3).
Oct 17 2022, 9:08 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav closed T4725: Unable to reset vpn IPsec peer as Resolved.
Oct 17 2022, 9:00 AM · VyOS 1.4 Sagitta
Viacheslav added a project to T4752: ICMP redirects not working / not properly configured: VyOS 1.4 Sagitta.
Oct 17 2022, 6:50 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta

Oct 15 2022

Viacheslav committed rVYOSONEXf12c0e4f426b: ddclient: T4743: Add option for IPv6 Dynamic DNS.
Oct 15 2022, 4:22 AM

Oct 14 2022

Viacheslav changed the status of T4533: Radius clients don’t have simple permissions from Open to Needs testing.
Oct 14 2022, 6:30 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav moved T4533: Radius clients don’t have simple permissions from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
Oct 14 2022, 6:24 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX372ccffe5bd1: T4533: Allow basic permissions to unprivileged RADIUS users.
Oct 14 2022, 6:21 PM
Viacheslav added a comment to T4533: Radius clients don’t have simple permissions.

PR https://github.com/vyos/vyos-1x/pull/1598

Oct 14 2022, 6:11 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T3905: Add NAS-Identifier for system login.

@adaker
Could you describe the check/test procedure, how to test that all works as you expected?

Oct 14 2022, 2:44 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a comment to T4750: Support of higher level SSH keys (sk-ssh-ed25519).

I mean Linux man https://man7.org/linux/man-pages/man5/sshd_config.5.html

HostKeyAlgorithms
        Specifies the host key signature algorithms that the server
        offers.  The default for this option is:
Oct 14 2022, 12:49 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4750: Support of higher level SSH keys (sk-ssh-ed25519).

Also, it should be enabled by default (at least in ssh documentation)
Could you check it?

Oct 14 2022, 12:36 PM · VyOS 1.4 Sagitta
Viacheslav closed T4672: RADIUS server disable does not work as Resolved.
Oct 14 2022, 12:32 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4750: Support of higher level SSH keys (sk-ssh-ed25519).

We already have task T4720

Oct 14 2022, 12:29 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4725: Unable to reset vpn IPsec peer from In progress to Needs testing.
Oct 14 2022, 9:52 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXf089aa624e07: T4725: Fix Regex for correctly reset IPsec peers.
Oct 14 2022, 9:26 AM
Viacheslav changed the status of T4725: Unable to reset vpn IPsec peer from Open to In progress.
Oct 14 2022, 8:18 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4725: Unable to reset vpn IPsec peer.

PR https://github.com/vyos/vyos-1x/pull/1596

vyos@r14:~$ show vpn ipsec sa 
Connection         State    Uptime    Bytes In/Out    Packets In/Out    Remote address    Remote ID    Proposal
-----------------  -------  --------  --------------  ----------------  ----------------  -----------  ---------------------------------------
OFFICE-B-tunnel-0  up       4s        0B/0B           0/0               192.0.2.2         192.0.2.2    AES_CBC_256/HMAC_SHA2_256_128/MODP_1024
vyos@r14:~$ 
vyos@r14:~$ 
vyos@r14:~$ reset vpn ipsec-peer OFFICE-B 
closing CHILD_SA OFFICE-B-tunnel-0{16} with SPIs cc364877_i (0 bytes) c521f540_o (0 bytes) and TS 192.168.0.0/24 === 10.0.0.0/21
CHILD_SA {16} closed successfully
generating QUICK_MODE request 1449430238 [ HASH SA No KE ID ID ]
sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (332 bytes)
received packet: from 192.0.2.2[500] to 192.0.2.1[500] (332 bytes)
parsed QUICK_MODE response 1449430238 [ HASH SA No KE ID ID ]
selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_1024/NO_EXT_SEQ
CHILD_SA OFFICE-B-tunnel-0{17} established with SPIs cd451e27_i cfb63c3c_o and TS 192.168.0.0/24 === 10.0.0.0/21
generating QUICK_MODE request 1449430238 [ HASH ]
sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (76 bytes)
connection 'OFFICE-B-tunnel-0' established successfully
Peer reset result: success
vyos@r14:~$
Oct 14 2022, 8:18 AM · VyOS 1.4 Sagitta

Oct 13 2022

Viacheslav changed the subtype of T2958: DHCP server doesn't work from a live CD from "Task" to "Bug".
Oct 13 2022, 4:03 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
Viacheslav edited projects for T3011: router becomes unreachable for few minutes when vti interfaces goes down, added: VyOS 1.4 Sagitta; removed vyos-frr.
Oct 13 2022, 4:03 PM · VyOS 1.4 Sagitta
Viacheslav closed T3057: Document GRE-Bridge in 1.3 once fixed as Not Applicable.
Oct 13 2022, 4:02 PM · Restricted Project
Viacheslav added a project to T2113: OpenVPN Options error: you cannot use --verify-x509-name with --compat-names or --no-name-remapping: VyOS 1.4 Sagitta.
Oct 13 2022, 3:59 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, VyOS 1.3 Equuleus (1.3.7), openvpn
Viacheslav changed the status of T3965: arm: Extend configure scripts to allow for arm builds from Open to Needs testing.
Oct 13 2022, 3:58 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T4252: `show configuration json` (op mode) and `show | json` (conf mode) represent multi-value nodes differently: VyOS 1.4 Sagitta.
Oct 13 2022, 3:57 PM · VyOS Rolling, Restricted Project
Viacheslav added a project to T4303: BGP neighbor interface v6only fails to commit: VyOS 1.4 Sagitta.

I can't reproduce this bug with the latest rolling

vyos@r14# run show conf com | match bgp
set protocols bgp address-family ipv4-unicast redistribute connected
set protocols bgp neighbor eth1 interface remote-as '65001'
set protocols bgp neighbor eth1 interface v6only peer-group 'SPING'
set protocols bgp peer-group SPING address-family ipv4-unicast
set protocols bgp peer-group SPING address-family ipv6-unicast
set protocols bgp peer-group SPING capability extended-nexthop
set protocols bgp peer-group SPING password 'foo'
set protocols bgp system-as '65001'
Oct 13 2022, 3:55 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T3909: Add ability to upload scripts via API: VyOS 1.4 Sagitta.
Oct 13 2022, 3:43 PM · VyOS Rolling