- Vyos Router <-> Switch <-> Multiple Computers
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
All Stories
Aug 12 2023
A workaround in the meantime:
And in that case the attacker would just replace your router with their own since they already got physical access to the box.
There are use cases when it would be ideal to force a password at boot to protect the contents of the configuration. For example, a portable router with sensitive keys meant for temporary network connectivity.
The problem is how to make sure that the router can boot and reboot (for example "set system option reboot-on-panic" is handy) on itself without somebody having to connect to its console before it starts to function again. Really shitty situation for a remote site because then somebody needs to visit it aswell.
- How is the physical topology (can you provide a drawing)?
I am having this exact problem and it evidently has been a problem for quite a few years.
Can this be accomplished with LUKS?
Aug 11 2023
That CLI node ipv6 only implements a minor subset of the entire featureset of port forwarding.
Adding comments : maybe discontinue show ip bgp gives some issues / problems with automation tools (ansible o some custom script)While thinking out loud, it can be useful for new users create to alias.
Its not possible to "symlink" it?
Unfortunately this is "not that easy" as out CLI commands are passed down to FRR raw.
But at the same time it would help others who migrate to VyOS from Cisco, Arista etc.
show ip bgp is an old command, it comes from quagga ...So in my point of view , adding more command to do the same , could generate more confusion . show bgp address-family should be used.
PR created: https://github.com/vyos/vyatta-op/pull/66
Aug 10 2023
Its good for traceability to get a snmp trap sent when the firewall config has been altered/changed/(re-)applied.
Yeah, no worries.
Im biased but here are my testresults using modified VyOS 1.4-rolling-202308060317:
@Apachez thank you for your response 🙏
Sorry, I really have attached screenshots but didn't grant access to them. Fixed.
Some internal test where done, using integration between:
- Traffic shaper. Currently supported in vyos cli
- Bridge firewall. Currently not supported in vyos cli.