Page MenuHomeVyOS Platform
Feed Search

Feb 8 2023

Viacheslav moved T2603: pppoe-server: reduce min MTU from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 8 2023, 7:26 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav claimed T2229: PPPOE Default Queue type selection.
Feb 8 2023, 6:49 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T2229: PPPOE Default Queue type selection: VyOS 1.4 Sagitta.

@skoenman Could you write some examples of configuration?

Feb 8 2023, 6:48 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4987: Structure HTTPS-API output - "show ip bgp neighbours".

@Usman there is a root task for op-mode rewriting https://phabricator.vyos.net/T4564
https://github.com/vyos/vyos-1x/blob/1042fc32c371a74f048ffaf9a551b5d13c227f45/src/op_mode/bgp.py#L77-L80

Feb 8 2023, 6:32 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T1993: Extended pppoe rate-limiter .

PR https://github.com/vyos/vyos-1x/pull/1808

Feb 8 2023, 6:14 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T4987: Structure HTTPS-API output - "show ip bgp neighbours".

@Usman You have to update to the latest rolling.
https://vyos.net/get/nightly-builds/

Feb 8 2023, 4:17 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4987: Structure HTTPS-API output - "show ip bgp neighbours".

Hi perhaps it is better to get JSON format

Feb 8 2023, 3:50 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T1993: Extended pppoe rate-limiter from Open to In progress.
Feb 8 2023, 3:40 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav committed rVYOSONEX9733bbae4e21: T2603: PPPoE-server change default min-mtu value 1280.
Feb 8 2023, 2:51 PM
Viacheslav added a project to T1993: Extended pppoe rate-limiter : VyOS 1.4 Sagitta.
Feb 8 2023, 1:20 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T2603: pppoe-server: reduce min MTU.

PR 1.4 https://github.com/vyos/vyos-1x/pull/1804
PR 1.3 https://github.com/vyos/vyos-1x/pull/1806

Feb 8 2023, 1:11 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav changed the status of T2603: pppoe-server: reduce min MTU from Open to In progress.
Feb 8 2023, 12:27 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav claimed T2603: pppoe-server: reduce min MTU.
Feb 8 2023, 12:27 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav changed the subtype of T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols from "Task" to "Feature Request".
Feb 8 2023, 12:10 PM · VyOS Rolling
Viacheslav triaged T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols as Wishlist priority.
Feb 8 2023, 12:10 PM · VyOS Rolling
Viacheslav closed T4852: pppoe - static default route deleted automatically with default-route none option as Wontfix.
Feb 8 2023, 11:36 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4852: pppoe - static default route deleted automatically with default-route none option.

Why did you delete this option and add a static route? Is there any use case?

Feb 8 2023, 11:20 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4852: pppoe - static default route deleted automatically with default-route none option.

This option has more priority than others.

Feb 8 2023, 11:03 AM · VyOS 1.4 Sagitta
Viacheslav closed T1288: FRR: rewrite staticd backend (/opt/vyatta/share/vyatta-cfg/templates/protocols/static/*), a subtask of T1267: FRR: Add interface name for static routes, as Resolved.
Feb 8 2023, 9:53 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T1288: FRR: rewrite staticd backend (/opt/vyatta/share/vyatta-cfg/templates/protocols/static/*) as Resolved.

Rewritten in 1.4
We are not planning to modify it in 1.3

Feb 8 2023, 9:53 AM · VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).

Got it; it is impossible for now after this migration https://phabricator.vyos.net/T3090
We are working on the re-design firewall CLI

Feb 8 2023, 9:23 AM · VyOS 1.4 Sagitta
Viacheslav created T4986: Ability to filter traffic originating from the router itself via firewall .
Feb 8 2023, 8:06 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4948: pppoe: add CLI option to allow definition of host-uniq flag from In progress to Needs testing.
Feb 8 2023, 7:38 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T4985: reset vpn ipsec-peer command with peer name does not work from "Task" to "Bug".
Feb 8 2023, 7:31 AM · VyOS 1.4 Sagitta

Feb 7 2023

Viacheslav closed T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should as Resolved.
Feb 7 2023, 4:33 PM · VyOS 1.4 Sagitta
Viacheslav moved T4980: chrony not listening as a server from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 7 2023, 4:32 PM · VyOS 1.4 Sagitta
Viacheslav moved T4117: Does not possible to configure PoD/CoA for L2TP vpn from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 7 2023, 4:31 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav closed T4117: Does not possible to configure PoD/CoA for L2TP vpn as Resolved.
Feb 7 2023, 4:31 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav changed the status of T4969: QoS Policy - Unable to set class match mark number from In progress to Needs testing.
Feb 7 2023, 4:04 PM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Viacheslav changed the status of T4980: chrony not listening as a server from Open to Needs testing.
Feb 7 2023, 4:03 PM · VyOS 1.4 Sagitta
Viacheslav created T4984: Firewall add mark for outgoing packets.
Feb 7 2023, 11:28 AM · VyOS Rolling
Viacheslav added a comment to T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default.

Setting it configurable will be a good solution.
Just like it is done in OpenVPN

vyos@r14# set interfaces openvpn vtun0 tls tls-version-min 
Possible completions:
   1.0                  TLS v1.0
   1.1                  TLS v1.1
   1.2                  TLS v1.2
   1.3                  TLS v1.3
Feb 7 2023, 9:34 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the subtype of T4981: Warn when a nat rule evicts a set of other active rules from "Task" to "Feature Request".
Feb 7 2023, 9:14 AM · VyOS Rolling
Viacheslav added a comment to T4971: Radius attribute "Framed-Pool" for PPPoE.

PR https://github.com/vyos/vyos-1x/pull/1803

Feb 7 2023, 8:55 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Feb 6 2023

Viacheslav changed the status of T4971: Radius attribute "Framed-Pool" for PPPoE from Open to In progress.
Feb 6 2023, 1:28 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav assigned T4968: VPN IPsec check dpd and close action for empty values to a.apostoliuk.
Feb 6 2023, 9:53 AM · VyOS 1.4 Sagitta

Feb 5 2023

Viacheslav added a project to T1963: Can't copy or rename a node: VyOS 1.4 Sagitta.
Feb 5 2023, 10:06 AM · VyOS Rolling, Bugs, VyOS 1.5 Circinus
Viacheslav updated subscribers of T4974: OpenVPN- Data Channel Offload(DCO).

@c-po @ordex Do you know how to integrate sources with our build system?

Feb 5 2023, 9:54 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4817: Please add support for RFC 9234 from Open to Needs testing.
Feb 5 2023, 9:52 AM · VyOS 1.4 Sagitta

Feb 3 2023

Viacheslav changed the status of T4969: QoS Policy - Unable to set class match mark number from Open to In progress.
Feb 3 2023, 1:29 PM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Viacheslav added a comment to T4969: QoS Policy - Unable to set class match mark number.

@daniil Could you update the PR?

Feb 3 2023, 1:29 PM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Viacheslav added a comment to T4971: Radius attribute "Framed-Pool" for PPPoE.

Could you send the full accel-ppp working configuration that you expect?

Feb 3 2023, 1:27 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T4973: show dhcp server leases error for lease time 4294967295.

@Jimz Show please the file cat /config/dhcpd.leases
I cannot reproduce it even if no any leases

vyos@r14:~$ show dhcp server leases 
IP Address    MAC address    State    Lease start    Lease expiration    Remaining    Pool    Hostname
------------  -------------  -------  -------------  ------------------  -----------  ------  ----------
vyos@r14:~$
Feb 3 2023, 1:14 PM · VyOS 1.4 Sagitta

Feb 1 2023

Viacheslav added a comment to T4974: OpenVPN- Data Channel Offload(DCO).

There are some limitations

In particular, this is a list (may not be complete) of features that are not available when using ovpn-dco:
Feb 1 2023, 7:58 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4737: FRRouting/zebra 7.5.1 does not redistribute routes to other protocols from In progress to Needs testing.
Feb 1 2023, 12:04 PM · VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols.

accel-ppp doesn't support FQDN for RADIUS https://docs.accel-ppp.org/en/latest/configuration/radius.html#radius
So it is impossible until it is available in the accep-ppp

Feb 1 2023, 11:21 AM · VyOS Rolling

Jan 31 2023

Viacheslav closed T4157: Add jinja2 to pip test requirements as Resolved.
Jan 31 2023, 1:59 PM · VyOS 1.4 Sagitta
Viacheslav moved T4958: Add OpenConnect RADIUS Accounting support from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 31 2023, 8:43 AM · VyOS 1.4 Sagitta
Viacheslav closed T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working as Resolved.
Jan 31 2023, 8:39 AM · VyOS 1.4 Sagitta

Jan 30 2023

Viacheslav changed the status of T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working from In progress to Needs testing.

Will be fixed in the next rolling release

Jan 30 2023, 5:15 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX6135da49ffb8: T4964: Fix template bgpd.frr.j2 for l2vpn vni route-targets.
Jan 30 2023, 5:00 PM
Viacheslav changed the status of T4959: Add container registry authentication config for containers from Open to In progress.
Jan 30 2023, 2:07 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

PR https://github.com/vyos/vyos-1x/pull/1791

Jan 30 2023, 1:21 PM · VyOS 1.4 Sagitta
Viacheslav closed T4118: IPsec syntax overhaul as Resolved.
Jan 30 2023, 12:20 PM · VyOS 1.4 Sagitta
Viacheslav created T4968: VPN IPsec check dpd and close action for empty values.
Jan 30 2023, 10:48 AM · VyOS 1.4 Sagitta
Viacheslav created T4967: Ability to set hostname for the container.
Jan 30 2023, 10:21 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4966: UDEV deadlock on interface name shuffle from Open to Needs testing.
Jan 30 2023, 9:00 AM
Viacheslav changed the status of T4916: Rewrite IPsec authentication from In progress to Needs testing.
Jan 30 2023, 8:58 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX7ae0b404ad9f: T4916: Rewrite IPsec peer authentication and psk migration.
Jan 30 2023, 8:56 AM

Jan 27 2023

Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

Ok I'll re-check with the latest rolling.

r14# show version 
FRRouting 8.4.2 (r14) on Linux(6.1.6-amd64-vyos).
Copyright 1996-2005 Kunihiro Ishiguro, et al.
Jan 27 2023, 12:30 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

The Original FRR log
This command is only supported under EVPN VRF

r14# conf t
r14(config)# router bgp 65000
r14(config-router)# address-family l2vpn evpn 
r14(config-router-af)# 
r14(config-router-af)# vni 100
r14(config-router-af-vni)# 
r14(config-router-af-vni)# route-target import 65000:100
This command is only supported under EVPN VRF
r14(config-router-af-vni)#
Jan 27 2023, 12:13 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working from Open to In progress.
Jan 27 2023, 11:25 AM · VyOS 1.4 Sagitta
Viacheslav moved T4912: Rewrite the IGMP op mode in the new style from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 27 2023, 10:25 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4963: vyos.ethtool: improve/fix driver name detection from In progress to Needs testing.
Jan 27 2023, 10:23 AM · VyOS 1.4 Sagitta

Jan 26 2023

Viacheslav changed the status of T4958: Add OpenConnect RADIUS Accounting support from Open to In progress.
Jan 26 2023, 10:31 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4951: Add an op mode exception for cases when operations fail due to insufficient system resources from Open to Needs testing.
Jan 26 2023, 8:48 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav changed the status of T4956: 'show hardware cpu' issue on arm64 from Open to Needs testing.
Jan 26 2023, 8:46 AM · VyOS 1.4 Sagitta

Jan 25 2023

Viacheslav added projects to T4955: Openconnect radiusclient.conf generating with extra authserver: VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3).
Jan 25 2023, 11:57 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the status of T1297: Add GARP settings to VRRP/keepalived from On hold to Needs testing.
Jan 25 2023, 4:52 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav changed the status of T4815: Fix various name server config issues from Open to Needs testing.
Jan 25 2023, 8:20 AM · VyOS 1.4 Sagitta
Viacheslav closed T4941: Accel-ppp IPoE incompatibility with kernel 6.1 as Resolved.
Jan 25 2023, 8:08 AM · VyOS 1.4 Sagitta

Jan 24 2023

Viacheslav changed the status of T4941: Accel-ppp IPoE incompatibility with kernel 6.1 from Open to In progress.
Jan 24 2023, 1:59 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4941: Accel-ppp IPoE incompatibility with kernel 6.1.

PR https://github.com/vyos/vyos-build/pull/298

Jan 24 2023, 1:58 PM · VyOS 1.4 Sagitta

Jan 20 2023

Viacheslav closed T3496: show conntrack-sync statistics shows a warning, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, as Not Applicable.
Jan 20 2023, 2:02 PM · VyOS Rolling
Viacheslav closed T3496: show conntrack-sync statistics shows a warning as Not Applicable.
Jan 20 2023, 2:01 PM · VyOS 1.4 Sagitta
Viacheslav triaged T4941: Accel-ppp IPoE incompatibility with kernel 6.1 as High priority.
Jan 20 2023, 8:45 AM · VyOS 1.4 Sagitta

Jan 18 2023

Viacheslav renamed T4941: Accel-ppp IPoE incompatibility with kernel 6.1 from Accel-ppp IPoE incomability with kernel 6.1 to Accel-ppp IPoE incompatibility with kernel 6.1.
Jan 18 2023, 2:21 PM · VyOS 1.4 Sagitta
Viacheslav created T4941: Accel-ppp IPoE incompatibility with kernel 6.1.
Jan 18 2023, 2:09 PM · VyOS 1.4 Sagitta
Viacheslav moved T4940: Interface debugging from Open to In Progress on the VyOS 1.4 Sagitta board.
Jan 18 2023, 10:18 AM · VyOS 1.4 Sagitta (1.4.0-epa1)

Jan 17 2023

Viacheslav moved T4906: ipsec connections shows only one connection as up from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 17 2023, 8:57 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX89534f72b010: T4906: Fix show vpn ipsec connections data.
Jan 17 2023, 6:09 PM
Viacheslav added a comment to T4906: ipsec connections shows only one connection as up.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1762

Jan 17 2023, 4:57 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T4916: Rewrite IPsec authentication.

updated actual PR https://github.com/vyos/vyos-1x/pull/1761

Jan 17 2023, 11:10 AM · VyOS 1.4 Sagitta
Viacheslav added a project to T1297: Add GARP settings to VRRP/keepalived: VyOS 1.4 Sagitta.
Jan 17 2023, 7:51 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T4939: VRRP command no-preempt not work as expected from "Task" to "Bug".
Jan 17 2023, 7:37 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav edited projects for T4939: VRRP command no-preempt not work as expected, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Jan 17 2023, 7:36 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Jan 16 2023

Viacheslav moved T4575: vyos.utill add new wrapper "rc_cmd" to get the return code and output from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Jan 16 2023, 5:23 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXa0b0670f4612: vyos.util: T4575: Add new wrapper "rc_cmd".
Jan 16 2023, 5:09 PM
Viacheslav added a comment to T4575: vyos.utill add new wrapper "rc_cmd" to get the return code and output.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1759

Jan 16 2023, 7:31 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXa40e1b1ab045: vyos.util: T4575: Add new wrapper "rc_cmd".
Jan 16 2023, 7:20 AM

Jan 15 2023

Viacheslav changed the status of T4927: Need to change restart to reload-or-restart in Webproxy module from In progress to Needs testing.
Jan 15 2023, 9:39 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
Viacheslav created T4938: Interface input ifb does not work.
Jan 15 2023, 10:35 AM · VyOS 1.4 Sagitta

Jan 13 2023

Viacheslav added a project to T4575: vyos.utill add new wrapper "rc_cmd" to get the return code and output: VyOS 1.3 Equuleus (1.3.3).

We should backport it to 1.3

Jan 13 2023, 10:27 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Jan 12 2023

Viacheslav changed the status of T4935: ospfv3: "not-advertise" and "advertise" conflict from Open to Needs testing.
Jan 12 2023, 8:11 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4916: Rewrite IPsec authentication.

PR https://github.com/vyos/vyos-1x/pull/1757
PR https://github.com/vyos/vyatta-cfg-system/pull/195

Jan 12 2023, 7:16 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX013866069823: T4118: Add default value any for connection remote-id.
Jan 12 2023, 6:41 PM
Viacheslav added a project to T4931: Failed to build firmware for arm64: VyOS 1.4 Sagitta.
Jan 12 2023, 7:01 AM
Viacheslav changed the subtype of T4932: Some entries are missing or wrong in toml for builds for the arm64 architecture from "Task" to "Bug".
Jan 12 2023, 7:01 AM · Bugs, VyOS Rolling, VyOS 1.5 Circinus, vyos-build
Viacheslav added a comment to T4930: Allow using domain names for WireGuard peer addresses.

See tasks T1700 T2943

Jan 12 2023, 6:11 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling

Jan 11 2023

Viacheslav added a comment to T4924: Systemctl strongswan.service for some reason is not disabled.

So there are 2 options

  1. Live it as it is, it works as before (but maybe it is a legacy way)
  2. Return the strongswan.service and use it in all required places (conf-mode, op-mode, dmvpn scripts, etc). So old ipsec/starter must not be overlapped with strongswan.service restarts
Jan 11 2023, 4:04 PM · VyOS 1.4 Sagitta