Page MenuHomeVyOS Platform
Feed All Stories

Nov 8 2023

n.fort closed T5564: Both show firewall group and show firewall summary fails as Resolved.
Nov 8 2023, 6:58 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez closed T5693: Adding variable vyos_persistence_dir (and improve variable vyos_rootfs_dir) as Resolved.

Verified with VyOS 1.5-rolling-202311081451.

Nov 8 2023, 6:06 PM · VyOS 1.5 Circinus
Viacheslav added a project to T5724: About dhcp client hooks: VyOS 1.5 Circinus.
Nov 8 2023, 4:47 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5715: IPSec VPN: restart vpn is not working from Open to In progress.
Nov 8 2023, 4:34 PM · VyOS 1.3 Equuleus (1.3.6)
giuavo created T5724: About dhcp client hooks.
Nov 8 2023, 3:46 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
SrividyaA added a comment to T5715: IPSec VPN: restart vpn is not working.

submitted PR: https://github.com/vyos/vyatta-op-vpn/pull/37

Nov 8 2023, 10:13 AM · VyOS 1.3 Equuleus (1.3.6)
tjjh89017 added a comment to T5668: Disable VXLAN bridge learning and enable neigh_suppress when using EVPN.

@c-po It seems you only implement the "type bridge_slave neigh_suppress on"
And "type bridge_slave learning on" is not implemented in this PR.
Will you add this also?
Thank you

Nov 8 2023, 9:16 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5716: PPPoE-server shaper template bug down-limiter option does not rely on fwmark from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:33 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a project to T5716: PPPoE-server shaper template bug down-limiter option does not rely on fwmark: VyOS 1.4 Sagitta.
Nov 8 2023, 8:33 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5716: PPPoE-server shaper template bug down-limiter option does not rely on fwmark as Resolved.
Nov 8 2023, 8:32 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT as Resolved.
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT.
set protocols static neighbor-proxy arp 192.0.2.1 interface eth1

check

vyos@r4# sudo ip nei show proxy
192.0.2.1 dev eth1 proxy 
[edit]
vyos@r4#
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:29 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP as Resolved.
Nov 8 2023, 8:29 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5720: PPPoE-server adding new interface does not work from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:23 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5720: PPPoE-server adding new interface does not work as Resolved.
Nov 8 2023, 8:23 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
indrajitr committed rVYOSONEXeb9067390471: mdns: T5723: Always reload systemd daemon before applying changes.
Nov 8 2023, 7:37 AM
GitHub <noreply@github.com> committed rVYOSONEXb083e1bbf230: Merge pull request #2459 from indrajitr/mdns-streamline (authored by Viacheslav).
Nov 8 2023, 7:37 AM
giga1699 added a comment to T5715: IPSec VPN: restart vpn is not working.

It looks like maybe there’s just some op mode command changes.

Nov 8 2023, 4:46 AM · VyOS 1.3 Equuleus (1.3.6)
n.fort committed rVYOSONEXe65d73ac2be1: T5681: firewall: bump firewall cli version to 12, which was missed in last….
Nov 8 2023, 4:04 AM
GitHub <noreply@github.com> committed rVYOSONEX30b5da64378d: Merge pull request #2460 from nicolas-fort/T5681-bump-cli-version (authored by c-po).
Nov 8 2023, 4:04 AM

Nov 7 2023

indrajitr added a project to T5723: mdns repeater: Always reload systemd daemon before applying changes: VyOS 1.5 Circinus.
Nov 7 2023, 9:03 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr triaged T5723: mdns repeater: Always reload systemd daemon before applying changes as Normal priority.
Nov 7 2023, 9:01 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX3238cb64c533: Merge pull request #2458 from vyos/mergify/bp/sagitta/pr-2240 (authored by c-po).
Nov 7 2023, 7:59 PM
GitHub <noreply@github.com> committed rVYOSONEX41bad6ac01ef: Merge pull request #2457 from vyos/mergify/bp/sagitta/pr-2434 (authored by c-po).
Nov 7 2023, 7:59 PM
Viacheslav changed the status of T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces from In progress to Needs testing.
Nov 7 2023, 7:41 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX6fd250ea8e54: T5559: Add static neighbor-proxy feature (authored by Viacheslav).
Nov 7 2023, 7:39 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX529aa5e6f36e: T5702: SNMP add interface-mib max-interfaces-number and prefix (authored by Viacheslav).
Nov 7 2023, 7:38 PM
Viacheslav committed rVYOSONEXc56af995b6e3: T5559: Add static neighbor-proxy feature.
Nov 7 2023, 7:31 PM
GitHub <noreply@github.com> committed rVYOSONEX4e8b16e4039a: Merge pull request #2240 from sever-sever/T5559 (authored by c-po).
Nov 7 2023, 7:31 PM
GitHub <noreply@github.com> committed rVYOSONEXc3ddea58e2ae: Merge pull request #2434 from sever-sever/T5702 (authored by c-po).
Nov 7 2023, 7:30 PM
Viacheslav committed rVYOSONEX30a05ee1d447: T5702: SNMP add interface-mib max-interfaces-number and prefix.
Nov 7 2023, 7:30 PM
GitHub <noreply@github.com> committed rVYOSONEX269ad333bc74: Merge pull request #2455 from vyos/mergify/bp/sagitta/pr-2437 (authored by c-po).
Nov 7 2023, 6:40 PM
GitHub <noreply@github.com> committed rVYOSONEXcafc5c0fb00b: Merge pull request #2456 from vyos/mergify/bp/sagitta/pr-2436 (authored by c-po).
Nov 7 2023, 4:51 PM
GitHub <noreply@github.com> committed rVYOSONEXa37dca329767: Merge pull request #2454 from vyos/mergify/bp/sagitta/pr-2453 (authored by c-po).
Nov 7 2023, 4:41 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXb6c471fd617d: T5706: Add custom systemd udev rules to exclude dynamic interfaces (authored by Viacheslav).
Nov 7 2023, 4:41 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXa8645039c4f1: T5713: only strip "secret" CLI node and nothing else (authored by c-po).
Nov 7 2023, 4:40 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX3e48e0cb9565: T5713: Strip string after "secret" in IPSEC config (authored by sempervictus).
Nov 7 2023, 4:40 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXf216969a46f7: T5720: Fix for PPPoE-server adding new interfaces (authored by Viacheslav).
Nov 7 2023, 4:19 PM
Viacheslav committed rVYOSONEXca9cc8623352: T5706: Add custom systemd udev rules to exclude dynamic interfaces.
Nov 7 2023, 4:18 PM
GitHub <noreply@github.com> committed rVYOSONEX45c6b0ccae5c: Merge pull request #2436 from sever-sever/T5706 (authored by dmbaturin).
Nov 7 2023, 4:18 PM
sempervictus committed rVYOSONEX30eb308149f2: T5713: Strip string after "secret" in IPSEC config.
Nov 7 2023, 4:17 PM
c-po committed rVYOSONEX863af115df85: T5713: only strip "secret" CLI node and nothing else.
Nov 7 2023, 4:17 PM
GitHub <noreply@github.com> committed rVYOSONEX5defe01200a9: Merge pull request #2437 from sempervictus/bug/strip_secrets_misses_secret (authored by dmbaturin).
Nov 7 2023, 4:17 PM
Viacheslav committed rVYOSONEXffda9068b22e: T5720: Fix for PPPoE-server adding new interfaces.
Nov 7 2023, 3:27 PM
GitHub <noreply@github.com> committed rVYOSONEXc7f4a5ac86ef: Merge pull request #2453 from sever-sever/T5720 (authored by c-po).
Nov 7 2023, 3:27 PM
GitHub <noreply@github.com> committed rVYOSONEX11ca0a12272a: Merge pull request #2452 from vyos/mergify/bp/sagitta/pr-2451 (authored by c-po).
Nov 7 2023, 1:56 PM
JeffWDH added a comment to T5681: Interface match - Simplified and unified cli.

According to firewall-version.xml.i, the firewall config version was not updated to 12. Was this intentional?

Nov 7 2023, 12:58 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
giuavo updated the task description for T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.
Nov 7 2023, 11:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
giuavo added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

@Viacheslav My addition of the onlink option is really brute-force, applied blindly to everything just to see if that was a solution and give you more information. I do not think my "fix" is really ready for a PR.

Nov 7 2023, 11:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network: VyOS 1.5 Circinus.
Nov 7 2023, 11:37 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

@giuavo I didn't test "default route", only regular routes for some prefixes, and it worked.
Could you create a PR?

Nov 7 2023, 11:36 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5720: PPPoE-server adding new interface does not work.

PR https://github.com/vyos/vyos-1x/pull/2453

Nov 7 2023, 11:11 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk closed T5586: Disable by default SNMP for Keepalived VRRP as Resolved.
Nov 7 2023, 11:02 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk added a comment to T5586: Disable by default SNMP for Keepalived VRRP.

Tested in 1.3. Everything works

Nov 7 2023, 11:00 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
giuavo created T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.
Nov 7 2023, 10:06 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
giuavo created T5721: Error in migrating configuration from VyOS 1.4.
Nov 7 2023, 9:45 AM · VyOS 1.5 Circinus
a.apostoliuk added a comment to T5402: VRRP router with rfc3768-compatibility sends multiple ARP replies .

Tested in 1.5

Nov 7 2023, 9:21 AM · VyOS 1.5 Circinus, VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX91917fc1c99f: T5716: Fix smoketest for accel-ppp limiter tbf (authored by Viacheslav).
Nov 7 2023, 8:16 AM
Viacheslav committed rVYOSONEXd8ffbbe72c79: T5716: Fix smoketest for accel-ppp limiter tbf.
Nov 7 2023, 8:15 AM
GitHub <noreply@github.com> committed rVYOSONEXb7ff6f81e2bd: Merge pull request #2451 from sever-sever/T5716 (authored by Viacheslav).
Nov 7 2023, 8:15 AM
Viacheslav added a project to T5720: PPPoE-server adding new interface does not work: VyOS 1.4 Sagitta.
Nov 7 2023, 7:34 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav created T5720: PPPoE-server adding new interface does not work.
Nov 7 2023, 7:34 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEX9c82fea9f086: Merge pull request #2450 from vyos/mergify/bp/sagitta/pr-2440 (authored by c-po).
Nov 7 2023, 7:28 AM
GitHub <noreply@github.com> committed rVYOSONEX366ee7d81082: Merge pull request #2449 from vyos/mergify/bp/sagitta/pr-2357 (authored by c-po).
Nov 7 2023, 7:27 AM
GitHub <noreply@github.com> committed rVYOSONEX56e2864bf29f: Merge pull request #2448 from vyos/mergify/bp/sagitta/pr-2447 (authored by c-po).
Nov 7 2023, 7:27 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXcda6fd0f78cc: T5716: Fix accel-ppp template down-limiter does not rely on fwmark (authored by Viacheslav).
Nov 7 2023, 7:18 AM
Viacheslav added a comment to T5648: ldpd neighbour template errors.

Backport to 1.4 https://github.com/vyos/vyos-1x/pull/2449

Nov 7 2023, 7:09 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXf9bc65c93fb7: ldpd: T5648: Fix ldpd template errors (authored by devon).
Nov 7 2023, 7:07 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0c63e1784468: mdns: T5719: Add op-mode commands to mDNS repeater (authored by indrajitr).
Nov 7 2023, 6:17 AM
indrajitr committed rVYOSONEXace8a25552fa: mdns: T5719: Add op-mode commands to mDNS repeater.
Nov 7 2023, 6:17 AM
GitHub <noreply@github.com> committed rVYOSONEXee46dbadb586: Merge pull request #2447 from indrajitr/mdns-log-monitor (authored by c-po).
Nov 7 2023, 6:17 AM
GitHub <noreply@github.com> committed rVYOSONEX7a4d59acaf62: Merge pull request #2444 from vyos/mergify/bp/sagitta/pr-2416 (authored by c-po).
Nov 7 2023, 6:06 AM
devon added a comment to T5648: ldpd neighbour template errors.

It's fixed in 1.5-rolling-202311060023 but the bug is still present in 1.4.

Nov 7 2023, 5:55 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
indrajitr triaged T5719: mdns repeater: Add op-mode commands as Normal priority.
Nov 7 2023, 1:18 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 6 2023

Apachez added a comment to T5471: Conntrack logging doesnt seem to be working.

I would mainly want to log new conntrack entries for various reasons.

Nov 6 2023, 9:27 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
indrajitr committed rVYOSONEX0b01f5ffe42c: ddclient: T5708: Migration to 3.11.1 and related improvements.
Nov 6 2023, 8:53 PM
GitHub <noreply@github.com> committed rVYOSONEX9bdcf318cc4c: Merge pull request #2446 from indrajitr/ddclient-bump-311-permission-fix (authored by c-po).
Nov 6 2023, 8:53 PM
Viacheslav committed rVYOSONEXcf9229544a30: T5716: Fix accel-ppp template down-limiter does not rely on fwmark.
Nov 6 2023, 8:33 PM
GitHub <noreply@github.com> committed rVYOSONEX02d84bcf4dcf: Merge pull request #2440 from sever-sever/T5716 (authored by c-po).
Nov 6 2023, 8:33 PM
c-po committed rVYOSONEXb6917f386e5f: scripts: T4269: node.def generator should automatically add default values.
Nov 6 2023, 8:23 PM
GitHub <noreply@github.com> committed rVYOSONEX8f59318c3866: Merge pull request #2348 from c-po/t4269-cli-defaults-backport (authored by c-po).
Nov 6 2023, 8:23 PM
c-po changed the status of T4269: node.def generator should automatically add default values from Unknown Status to Resolved.
Nov 6 2023, 8:23 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po claimed T5718: Add netlink wrapper to talk to the Kernel.
Nov 6 2023, 8:19 PM · VyOS Rolling
c-po created T5718: Add netlink wrapper to talk to the Kernel.
Nov 6 2023, 8:19 PM · VyOS Rolling
c-po closed T5707: Wireguard peer public key update leaves redundant peers and breaks connectivity as Resolved.
Nov 6 2023, 8:17 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando changed the subtype of T5717: ospfv3 - add allow to set metric-type to ospf redistribution while frr docs says its possible. from "Bug" to "Feature Request".
Nov 6 2023, 8:06 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
c-po committed rVYOSONEXf4b1df3c8407: op-mode: bgp: T5698: add "es-vrf" and "next-hops" CLI commands.
Nov 6 2023, 8:02 PM
c-po committed rVYOSONEX43288b57d8dc: op-mode: bgp: T5698: fix "rd" route-distinguisher help string.
Nov 6 2023, 8:02 PM
fernando renamed T5717: ospfv3 - add allow to set metric-type to ospf redistribution while frr docs says its possible. from Vyos 1.5-rolling-202310060022 doesnt allow to set metric-type to ospf redistribution while frr docs says its possible. to ospfv3 - add allow to set metric-type to ospf redistribution while frr docs says its possible..
Nov 6 2023, 8:02 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEX7b7d422e11b1: Merge pull request #2443 from vyos/mergify/bp/sagitta/pr-2439 (authored by c-po).
Nov 6 2023, 8:01 PM
fernando added a comment to T5717: ospfv3 - add allow to set metric-type to ospf redistribution while frr docs says its possible..

it's not a bug, this command are able in ospf :

Nov 6 2023, 7:59 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX91a65d295550: bgp: T5698: add support for EVPN Multihoming (authored by c-po).
Nov 6 2023, 7:56 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX062ac6bc4c04: bond: T5698: add support for EVPN Multihoming (authored by c-po).
Nov 6 2023, 7:56 PM
fernando added a comment to T5648: ldpd neighbour template errors.

@devon

Nov 6 2023, 7:50 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando added a comment to T5648: ldpd neighbour template errors.

after merge this ldp bug fixed , I saw that now it's already working . Could you check it ? I've tested on a lab and it seems to work :

Nov 6 2023, 7:49 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
giga1699 added a comment to T5715: IPSec VPN: restart vpn is not working.

I’m also seeing this error after the update to 1.3.4

Nov 6 2023, 7:40 PM · VyOS 1.3 Equuleus (1.3.6)
c-po committed rVYOSONEX583d007b09e6: vxlan: T3700: add bridge dependency call when altering member interfaces.
Nov 6 2023, 7:19 PM
marc_s added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

That looks better:

        chain VZONE_LOCAL_OUT {
                oifname "lo" counter packets 387 bytes 33672 return
                oifname "bond0.40" counter packets 14 bytes 496 jump NAME_LOCAL_TO_ALL
                oifname "bond0.40" counter packets 0 bytes 0 return
                oifname "bond0.70" counter packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname "bond0.70" counter packets 0 bytes 0 return
r packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname { "bond0.7", "bond0.30", "bond0.90", "bond0.88" } counter packets 0 bytes 0 return
                oifname { "eth0", "pppoe0", "eth1.281" } counter packets 3 bytes 180 jump NAME_LOCAL_TO_ALL
                oifname { "eth0", "pppoe0", "eth1.281" } counter packets 0 bytes 0 return
                oifname "bond0.80" counter packets 2 bytes 80 jump NAME_LOCAL_TO_ALL
                oifname "bond0.80" counter packets 0 bytes 0 return
                oifname { "bond0.1", "podman-cntr-net" } counter packets 2 bytes 128 jump NAME_LOCAL_TO_ALL
                oifname { "bond0.1", "podman-cntr-net" } counter packets 0 bytes 0 return
                oifname { "wg0", "vti0", "vtun0", "podman-ts-net" } counter packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname { "wg0", "vti0", "vtun0", "podman-ts-net" } counter packets 0 bytes 0 return
                counter packets 0 bytes 0 drop comment "zone_LOCAL default-action drop"
        }
Nov 6 2023, 7:16 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta