Page MenuHomeVyOS Platform
Feed Advanced Search

Aug 11 2023

Apachez claimed T5461: Improve rootfs directory variable.
Aug 11 2023, 7:10 AM · VyOS 1.4 Sagitta
Apachez created T5461: Improve rootfs directory variable.
Aug 11 2023, 7:09 AM · VyOS 1.4 Sagitta

Aug 10 2023

Apachez added a comment to T5460: Firewall - remove config-trap.

Its good for traceability to get a snmp trap sent when the firewall config has been altered/changed/(re-)applied.

Aug 10 2023, 9:30 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5460: Firewall - remove config-trap from Open to Confirmed.
Aug 10 2023, 7:04 PM · VyOS 1.4 Sagitta
n.fort created T5460: Firewall - remove config-trap.
Aug 10 2023, 7:04 PM · VyOS 1.4 Sagitta
n.fort closed T5416: Ignoring "ipsec match-none" for firewall as Resolved.
Aug 10 2023, 6:54 PM · VyOS 1.4 Sagitta
n.fort claimed T5453: Fix nat66 - broken after load-balance was introduced in nat.
Aug 10 2023, 6:38 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5458: USB Console options is missing for a new image after "add system image" upgrade.

Yeah, no worries.

Aug 10 2023, 2:28 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Apachez added a comment to T5457: Add environmental variable pointing to current rootfs directory.

Im biased but here are my testresults using modified VyOS 1.4-rolling-202308060317:

Aug 10 2023, 2:20 PM · VyOS 1.4 Sagitta
c-po claimed T5459: ospfv3: add authentication support.
Aug 10 2023, 2:19 PM · VyOS Rolling
c-po created T5459: ospfv3: add authentication support.
Aug 10 2023, 2:18 PM · VyOS Rolling
unity added a comment to T5458: USB Console options is missing for a new image after "add system image" upgrade.

@Apachez thank you for your response 🙏
Sorry, I really have attached screenshots but didn't grant access to them. Fixed.

Aug 10 2023, 2:07 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav changed the status of T5457: Add environmental variable pointing to current rootfs directory from In progress to Needs testing.
Aug 10 2023, 1:57 PM · VyOS 1.4 Sagitta
Viacheslav closed T5329: Wireguard interface as GRE tunnel source causes configuration error on boot as Resolved.
Aug 10 2023, 1:56 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
n.fort added a comment to T660: 802.1p CoS priority support.

Some internal test where done, using integration between:

  • Traffic shaper. Currently supported in vyos cli
  • Bridge firewall. Currently not supported in vyos cli.
Aug 10 2023, 1:53 PM · VyOS Rolling
unity attached a referenced file: F3821514: screenshots.zip.
Aug 10 2023, 1:47 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Apachez added a comment to T5458: USB Console options is missing for a new image after "add system image" upgrade.

According to https://www.kernel.org/doc/html/v6.1/admin-guide/serial-console.html

Aug 10 2023, 11:49 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Apachez added a comment to T5458: USB Console options is missing for a new image after "add system image" upgrade.

There were no screenshots included with this task?

Aug 10 2023, 11:38 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
unity created T5458: USB Console options is missing for a new image after "add system image" upgrade.
Aug 10 2023, 10:58 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav changed the status of T5457: Add environmental variable pointing to current rootfs directory from Open to In progress.
Aug 10 2023, 10:48 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5457: Add environmental variable pointing to current rootfs directory.

PR created: https://github.com/vyos/vyatta-op/pull/65

Aug 10 2023, 10:42 AM · VyOS 1.4 Sagitta
Apachez claimed T5457: Add environmental variable pointing to current rootfs directory.
Aug 10 2023, 10:16 AM · VyOS 1.4 Sagitta
Apachez created T5457: Add environmental variable pointing to current rootfs directory.
Aug 10 2023, 9:33 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5444: R8169 driver crash.

It seems to exist for current Debian 12.1 (bookworm) so I think it should be a relativily simple task to add that if not already existing:

Aug 10 2023, 7:56 AM
Apachez created T5456: Add alias for "show ipv6 bgp".
Aug 10 2023, 7:33 AM · VyOS 1.4 Sagitta
Apachez created T5455: SSH fingerprints aren't migrated to the new image on upgrade.
Aug 10 2023, 7:15 AM · VyOS Rolling
Apachez created T5454: Add zebra dplane limit as a configurable option of FRR.
Aug 10 2023, 6:32 AM · VyOS Rolling
Apachez added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

Sounds almost related to this longrunning shitshow between FRR and the Linux kernel:

Aug 10 2023, 6:12 AM · VyOS Rolling, Restricted Project

Aug 9 2023

n.fort added a comment to T5450: Firewall interface group - Allow inverted matcher.

PR https://github.com/vyos/vyos-1x/pull/2142

Aug 9 2023, 9:19 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5450: Firewall interface group - Allow inverted matcher from Confirmed to In progress.
Aug 9 2023, 9:18 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5453: Fix nat66 - broken after load-balance was introduced in nat from Open to Needs testing.
Aug 9 2023, 6:48 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T5434: Replace remaining calls of vyos.xml library: T4914: Rewrite the PKI op mode in the new style.
Aug 9 2023, 6:12 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T4914: Rewrite the PKI op mode in the new style: T5434: Replace remaining calls of vyos.xml library.
Aug 9 2023, 6:12 PM · VyOS Rolling
jestabro changed the status of T4914: Rewrite the PKI op mode in the new style, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Aug 9 2023, 6:11 PM · VyOS Rolling
jestabro changed the status of T4914: Rewrite the PKI op mode in the new style from Open to In progress.
Aug 9 2023, 6:11 PM · VyOS Rolling
florin added a comment to T5444: R8169 driver crash.

I admit my setup isn't really the most common for production, but for the home lab crowd it might be ok. Realtek makes many network chip models I assume and their implementation might also vary from board manufacturer to another.
About not using VMware - that's a tougher ask :)

Aug 9 2023, 4:45 PM
jestabro added a comment to T5400: Move libvyosconfig build out of the Docker image.

As stated, building libvyosconfig outside of the Docker image may not be desirable. However, as a compromise solution, we can consider moving the vyos1x-config pin/build into the libvyosconfig build script. Suggested PR to follow, and update to task description.

Aug 9 2023, 3:43 PM · VyOS Rolling
jestabro closed T5452: Uncaught error in generate_cache during vyos-1x build as Resolved.
Aug 9 2023, 2:11 PM · VyOS 1.4 Sagitta
jestabro closed T5443: Add merge_defaults as Config method, a subtask of T5319: Remove remaining workarounds for incorrect defaults, as Resolved.
Aug 9 2023, 2:04 PM · VyOS 1.4 Sagitta
jestabro closed T5443: Add merge_defaults as Config method, a subtask of T5228: Simplify get_config_dict and add argument with_defaults, as Resolved.
Aug 9 2023, 2:04 PM · VyOS 1.4 Sagitta
jestabro closed T5443: Add merge_defaults as Config method as Resolved.
Aug 9 2023, 2:04 PM · VyOS 1.4 Sagitta
jestabro closed T5435: Expose utility function for default values at path, a subtask of T5434: Replace remaining calls of vyos.xml library, as Resolved.
Aug 9 2023, 2:04 PM · VyOS 1.4 Sagitta
jestabro closed T5435: Expose utility function for default values at path as Resolved.
Aug 9 2023, 2:04 PM · VyOS 1.4 Sagitta
n.fort renamed T5453: Fix nat66 - broken after load-balance was introduced in nat from Fix nat66 smoketest to Fix nat66 - broken after load-balance was introduced in nat.
Aug 9 2023, 10:53 AM · VyOS 1.4 Sagitta
n.fort added a comment to T5453: Fix nat66 - broken after load-balance was introduced in nat.

Not only affects, smoketest.. nat66 got broken

Aug 9 2023, 10:52 AM · VyOS 1.4 Sagitta
n.fort created T5453: Fix nat66 - broken after load-balance was introduced in nat.
Aug 9 2023, 10:03 AM · VyOS 1.4 Sagitta
jestabro triaged T5452: Uncaught error in generate_cache during vyos-1x build as Normal priority.
Aug 9 2023, 3:36 AM · VyOS 1.4 Sagitta

Aug 8 2023

Viacheslav updated the task description for T5448: Add service zabbix-agent.
Aug 8 2023, 10:11 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5448: Add service zabbix-agent.

PR https://github.com/vyos/vyos-1x/pull/2140

set service monitoring zabbix-agent directory '/config/zabbix/'
set service monitoring zabbix-agent limits buffer-send '8'
set service monitoring zabbix-agent limits buffer-size '120'
set service monitoring zabbix-agent log debug-level 'warning'
set service monitoring zabbix-agent log size '1'
set service monitoring zabbix-agent server '192.0.2.5'
set service  monitoring zabbix-agent server-active 192.0.2.5 port '10051'
set service monitoring zabbix-agent server-active 2001:db8::123
Aug 8 2023, 7:35 PM · VyOS 1.4 Sagitta
twan created T5451: Firewall: Support combined ipv4&6 rules using netfilter family inet.
Aug 8 2023, 6:35 PM · VyOS Rolling
n.fort changed the status of T5450: Firewall interface group - Allow inverted matcher from Open to Confirmed.
Aug 8 2023, 6:03 PM · VyOS 1.4 Sagitta
n.fort created T5450: Firewall interface group - Allow inverted matcher.
Aug 8 2023, 6:02 PM · VyOS 1.4 Sagitta
dmbaturin created T5449: Add options for TCP MSS probing.
Aug 8 2023, 3:15 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav changed the status of T5448: Add service zabbix-agent, a subtask of T118: Native Zabbix Support, from Open to In progress.
Aug 8 2023, 10:47 AM · Restricted Project, VyOS 1.4 Sagitta
Viacheslav changed the status of T5448: Add service zabbix-agent from Open to In progress.
Aug 8 2023, 10:47 AM · VyOS 1.4 Sagitta
Viacheslav claimed T5448: Add service zabbix-agent.
Aug 8 2023, 10:47 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4989: QoS Policy Limiter - classes for marked traffic do not work.

PR https://github.com/vyos/vyos-1x/pull/2138

Aug 8 2023, 10:45 AM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Viacheslav created T5448: Add service zabbix-agent.
Aug 8 2023, 10:36 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5447: Allow static MACsec keys with peers from "Task" to "Feature Request".
Aug 8 2023, 7:48 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5446: bgp: validity check for bestpath med option from In progress to Needs testing.
Aug 8 2023, 7:45 AM · VyOS 1.4 Sagitta
giga1699 created T5447: Allow static MACsec keys with peers.
Aug 8 2023, 1:25 AM · VyOS 1.4 Sagitta

Aug 7 2023

aalmenar added a comment to T2044: RPKI doesn't boot properly.

Nope, now i had to do

Aug 7 2023, 10:39 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
aalmenar added a comment to T2044: RPKI doesn't boot properly.
Aug 7 2023, 9:56 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T2044: RPKI doesn't boot properly.

@aalmenar could you test this patch?

Aug 7 2023, 9:11 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po changed the status of T2044: RPKI doesn't boot properly from Open to In progress.
Aug 7 2023, 9:09 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
syncer assigned T660: 802.1p CoS priority support to n.fort.
Aug 7 2023, 8:50 PM · VyOS Rolling
syncer raised the priority of T660: 802.1p CoS priority support from Wishlist to Normal.
Aug 7 2023, 8:49 PM · VyOS Rolling
jestabro updated the task description for T5443: Add merge_defaults as Config method.
Aug 7 2023, 8:28 PM · VyOS 1.4 Sagitta
fernando added a comment to T660: 802.1p CoS priority support.

information that can be useful for this feature request :

Aug 7 2023, 5:31 PM · VyOS Rolling
aserkin added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

If that was pppoe i'd have thought of arp, but here with fixed number of l2tp tunnels (22 tunnels from LACs) i don't think arp cache oversizes the table.
Some more information which i can't think of as a failure reason yet, but it looks strange, - just before the issue we see that LAC drops l2tp tunnel for some reason and starts to send SCCRQ with tid=0 as if it just started working. After a while accel-ppp daemon drops the old tunnels and starts the new ones for few LACs. This definitely cause massive (thousands) route updates between zebra and kernel i guess. Sometimes the system can stand this, sometimes it cant.

Aug 7 2023, 5:21 PM · VyOS Rolling, Restricted Project
syncer added a project to T660: 802.1p CoS priority support: VyOS 1.4 Sagitta.
Aug 7 2023, 5:09 PM · VyOS Rolling
n.fort added a comment to T5446: bgp: validity check for bestpath med option.

PR: https://github.com/vyos/vyos-1x/pull/2137

Aug 7 2023, 5:07 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

I tried digging through google if somebody else have encountered the same but I couldnt find any obvious hints (except for the zebra nexthop-group keep 1 already mentioned).

Aug 7 2023, 4:51 PM · VyOS Rolling, Restricted Project
n.fort changed the status of T5446: bgp: validity check for bestpath med option from Open to In progress.
Aug 7 2023, 4:07 PM · VyOS 1.4 Sagitta
aserkin added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

I checked the FRR version in the recent rolling release - it is release candidate still. Does it worth upgrading from 8.5.2? As for the possibility - yes, sure we can build latest image.

Aug 7 2023, 3:43 PM · VyOS Rolling, Restricted Project
Apachez added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

I added a comment to https://github.com/FRRouting/frr/issues/12239 so hopefully there might be some other commands or stuff to do other than the debug-commands to hunt this thing down.

Aug 7 2023, 3:40 PM · VyOS Rolling, Restricted Project
aserkin added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.


Adding what was available this time. Will try to turn on debugs next time if we have another chance. Yes, the behavior was identical to previous.

Aug 7 2023, 3:35 PM · VyOS Rolling, Restricted Project
Apachez added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

And the logs looks the same as in your original post?

Aug 7 2023, 3:18 PM · VyOS Rolling, Restricted Project
aserkin added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

After 19 hours of production run since yesterday the failure occurred again despite the workaround applied. Routes are cleared from kernel for some reason. During the run we observed few l2tp tunnels drops followed by 600 to 6000 sessions drop. The reason is not clear for now but i'm not sure this should kill zebra functionality this way.

Aug 7 2023, 3:06 PM · VyOS Rolling, Restricted Project
Viacheslav closed T5071: QOS-Rewrite: DSCP match missing, a subtask of T5048: QoS doesn't work correctly root task, as Resolved.
Aug 7 2023, 11:31 AM · VyOS 1.4 Sagitta
Viacheslav closed T5071: QOS-Rewrite: DSCP match missing as Resolved.

Fixed

set qos interface eth1 egress 'VyOS-HTB'
set qos policy shaper VyOS-HTB bandwidth '100mbit'
set qos policy shaper VyOS-HTB class 10 bandwidth '40%'
set qos policy shaper VyOS-HTB class 10 description 'dscp_EF_ipprec_5_GETS'
set qos policy shaper VyOS-HTB class 10 match AF11 ip dscp 'AF11'
set qos policy shaper VyOS-HTB class 10 priority '1'
set qos policy shaper VyOS-HTB class 10 queue-type 'fair-queue'
set qos policy shaper VyOS-HTB class 20 bandwidth '30%'
set qos policy shaper VyOS-HTB class 20 description 'dscp_AF4x_ipprec_4'
set qos policy shaper VyOS-HTB class 20 match ef ip dscp 'EF'
set qos policy shaper VyOS-HTB class 20 priority '2'
set qos policy shaper VyOS-HTB class 20 queue-type 'fair-queue'
set qos policy shaper VyOS-HTB default bandwidth '20%'
set qos policy shaper VyOS-HTB default queue-type 'fq-codel'
Aug 7 2023, 11:31 AM · VyOS 1.4 Sagitta
Viacheslav closed T5302: QoS class with multiple matches generates one filter rule but expects several rules, a subtask of T5048: QoS doesn't work correctly root task, as Resolved.
Aug 7 2023, 11:23 AM · VyOS 1.4 Sagitta
Viacheslav closed T5302: QoS class with multiple matches generates one filter rule but expects several rules as Resolved.
Aug 7 2023, 11:23 AM · VyOS 1.4 Sagitta
Viacheslav closed T5266: QoS- HTB error when match with a dscp parameter for queue-type 'priority', a subtask of T5048: QoS doesn't work correctly root task, as Resolved.
Aug 7 2023, 10:27 AM · VyOS 1.4 Sagitta
Viacheslav closed T5266: QoS- HTB error when match with a dscp parameter for queue-type 'priority' as Resolved.
Aug 7 2023, 10:27 AM · VyOS 1.4 Sagitta
Viacheslav moved T5406: "update webproxy blacklists" fails when vrf is being configured from Open to Finished on the VyOS 1.4 Sagitta board.
Aug 7 2023, 9:45 AM · VyOS 1.4 Sagitta
n.fort closed T5406: "update webproxy blacklists" fails when vrf is being configured as Resolved.
Aug 7 2023, 9:43 AM · VyOS 1.4 Sagitta
Viacheslav added projects to T5444: R8169 driver crash: VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.4).
Aug 7 2023, 9:30 AM
Viacheslav added a comment to T5446: bgp: validity check for bestpath med option.

There is template for it https://github.com/vyos/vyos-1x/blob/710dac553fac93d8a205c9bc7e6b116753ac0b34/data/templates/frr/bgpd.frr.j2#L483-L485

Aug 7 2023, 7:25 AM · VyOS 1.4 Sagitta
aalmenar added a comment to T2044: RPKI doesn't boot properly.

@c-po Tried with latest rolling 1.4-rolling-202308060317, rpki doesn't start automatically, one must do:

Aug 7 2023, 7:21 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a comment to T5319: Remove remaining workarounds for incorrect defaults.

PR:
https://github.com/vyos/vyos-1x/pull/2136

Aug 7 2023, 7:13 AM · VyOS 1.4 Sagitta
jestabro added a comment to T5443: Add merge_defaults as Config method.

PR:
https://github.com/vyos/vyos-1x/pull/2136

Aug 7 2023, 7:13 AM · VyOS 1.4 Sagitta
SrividyaA created T5446: bgp: validity check for bestpath med option.
Aug 7 2023, 6:56 AM · VyOS 1.4 Sagitta
c-po added a comment to T2044: RPKI doesn't boot properly.

Latest rolling uses FRR 9.0. - could you re-test it please?

Aug 7 2023, 4:43 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Aug 6 2023

c-po closed T5420: nftables - upgrade to latest 1.0.8 as Resolved.
Aug 6 2023, 7:56 PM · VyOS 1.4 Sagitta
c-po moved T5420: nftables - upgrade to latest 1.0.8 from Open to In Progress on the VyOS 1.4 Sagitta board.
Aug 6 2023, 7:36 PM · VyOS 1.4 Sagitta
c-po changed the status of T5420: nftables - upgrade to latest 1.0.8 from Open to In progress.
Aug 6 2023, 7:33 PM · VyOS 1.4 Sagitta
c-po moved T5437: logrotate.service fails to start from Open to In Progress on the VyOS 1.4 Sagitta board.
Aug 6 2023, 7:15 PM · VyOS 1.4 Sagitta
c-po added a subtask for T5441: Add the ability to mount an external device: T5442: Allow configuring where container overlays are stored.
Aug 6 2023, 7:15 PM · VyOS Rolling
c-po added a parent task for T5442: Allow configuring where container overlays are stored: T5441: Add the ability to mount an external device.
Aug 6 2023, 7:15 PM · VyOS Rolling