In T970#177585, @olivier.hault wrote:I'm not sure if this was been included in version 1.4 or not?
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Feed Search
Feb 23 2024
Feb 23 2024
Viacheslav moved T970: Support matching domain name in firewall rules from Backlog to Finished on the VyOS 1.4 Sagitta board.
In T970#177580, @olivier.hault wrote:Any updates ?
Feb 22 2024
Feb 22 2024
Viacheslav edited projects for T6052: Easy-rsa build-ca : Can't load /config/my-easy-rsa-config/pki/.rnd into RNG, added: VyOS 1.3 Equuleus (1.3.7); removed VyOS 1.3 Equuleus (1.3.6).
Viacheslav triaged T6051: VyOS slow to get wan pppoe ipv6 address after disconnect and reconnect pppoe interface as Normal priority.
Feb 21 2024
Feb 21 2024
Feb 20 2024
Feb 20 2024
Viacheslav triaged T6050: Wrong scripting commands descriptions in accel-ppp services as Normal priority.
Feb 19 2024
Feb 19 2024
Viacheslav changed the status of T6039: cloud-init DNS search-domain causes configuration migration/validation error, a subtask of T5907: cloud-init root task for 1.5 and 1.4 , from Open to Needs reporter action.
Viacheslav changed the status of T6039: cloud-init DNS search-domain causes configuration migration/validation error from Open to Needs reporter action.
Viacheslav added a comment to T6039: cloud-init DNS search-domain causes configuration migration/validation error.
@lclements0 Can you re-check?
Probably was fixed in https://github.com/vyos/vyos-cloud-init/commit/412287741b70b536458d84972257eda0b3c18d9f
Possible FRR bug https://github.com/FRRouting/frr/issues/13561
Feb 18 2024
Feb 18 2024
Viacheslav raised the priority of T6038: Losing default route after first reboot (cloud-init & DHCP) from Normal to High.
Viacheslav closed T6047: Configuration path: system ip [nht] is not valid, but according to docs, it shuld be as Invalid.
Use the latest rolling.
Feb 16 2024
Feb 16 2024
Viacheslav moved T1311: WAN load-balancing can't flush connections when conntrack-sync is enabled from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa1) board.
Feb 16 2024, 5:17 PM · VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, test
Viacheslav closed T2113: OpenVPN Options error: you cannot use --verify-x509-name with --compat-names or --no-name-remapping as Resolved.
Compat names were dropped in https://github.com/vyos/vyos-1x/commit/c8ef5e8bdce01bbf05297df39e6c6223d0b2a2ea
Feb 16 2024, 5:06 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, VyOS 1.3 Equuleus (1.3.7), openvpn
Viacheslav moved T5418: Allow arbitrary subnets in PPPoE client IP pools from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.7) board.
Fixed for 1.4
set interfaces bonding bond0 member interface 'eth1' set interfaces bonding bond0 member interface 'eth2' set interfaces bonding bond0 mode '802.3ad' set interfaces bonding bond0 vif 667 address '10.6.67.11/24' set interfaces bonding bond0 vif 668 address '172.29.0.11/24' set interfaces bonding bond0 vif 668 redirect 'ifb0' set interfaces input ifb0 commit
Viacheslav added a comment to T2747: "enable-local-traffic" has no effect in load-balancing to redirect local traffic.
enable-local-traffic just writes several old iptables rules https://github.com/vyos/vyatta-wanloadbalance/blob/961a2e8862280d2ce5500626cdee8a1adaa67ab2/src/lbdecision.cc#L124-L130
Propose to close task as "wontfix" due to the old backend and C implementation.
The correct behavior should be implemented for the protocols failover route feature.
I also propose to close all load-balancing wan tasks as wontfix for the same reason.
The task for dynamic interface T5647
Viacheslav added a comment to T3681: Stray compiled Python objects break the VMware virtual machine resume script.
Update from the PR
The changes from this pull request has already been incorporated and will be in the next major release of open-vm-tools.
https://github.com/vmware/open-vm-tools/pull/689#issuecomment-1948466725
Viacheslav changed the status of T3529: vyos.frr class has no support for multi-line modify_section, a subtask of T3523: VRF BGP daemon route-map command missing, from Needs testing to Confirmed.
Viacheslav changed the status of T3529: vyos.frr class has no support for multi-line modify_section from Needs testing to Confirmed.
Still bug for VyOS 1.5-rolling-202402131735
I'd delete the whole firewall configuration, at least for test.
Viacheslav added a comment to T3902: Firewall does not load on boot, address-group not found, even though it exists.
@FileGo Could you re-check? As you have the full configuration to reproduce.
@hexes Could you recheck/update if it is still the bug?
Feb 16 2024, 12:34 PM · Bugs, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1), Restricted Project, openvpn
@n.fort Which migration are you expecting here?
Viacheslav closed T4723: Error when issuing 'show flow-accounting interface pppoe0' as Not Applicable.
Fixed
vyos@r11# run show conf com | match "flow|ppp" set interfaces pppoe pppoe1 authentication password 'user1' set interfaces pppoe pppoe1 authentication username 'user1' set interfaces pppoe pppoe1 source-interface 'eth1'
Viacheslav moved T5926: IPSEC does not apply after l2tp configuration was changed from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa1) board.
Viacheslav changed the status of T4729: VxLAN does not work and deleted after tun changed from Needs reporter action to Confirmed.
It is still a bug VyOS 1.4-rolling-202402160309. After deleting the tunnel key from both sites there are no pings
Viacheslav edited projects for T6043: VxLAN and bridge error bug, added: VyOS 1.4 Sagitta (1.4.0-epa1); removed VyOS 1.4 Sagitta.
Viacheslav changed the status of T6042: ssh scripts should work with arguments again; they do not anymore from Open to Needs reporter action.
Viacheslav added a comment to T6042: ssh scripts should work with arguments again; they do not anymore.
Do not see the difference with 1.3.6
$ ./automation.sh te123 ++ dirname ./automation.sh + SCRIPT_DIR=. + HOST=te123 + echo 'local arg of host: te123' local arg of host: te123 + ssh vyos@192.168.122.15 '/bin/vbash -s' te123 remote hostname: 1
Viacheslav triaged T6042: ssh scripts should work with arguments again; they do not anymore as Normal priority.
Viacheslav reassigned T5418: Allow arbitrary subnets in PPPoE client IP pools from RFigas to a.apostoliuk.
Not a bug for 1.5/1.4 anymore.
vyos@r11# set service pppoe-server client-ip-pool POOL range 100.64.24.1/24 [edit] vyos@r11# run show ver Version: VyOS 1.4.0-rc3 Release train: sagitta
Viacheslav closed T5342: Bgp route-map will not configured in frr for the right protocol as Wontfix.
It is not a bug for 1.5/1.4
set policy route-map FOO rule 10 action 'permit' set policy route-map FOOv6 rule 10 action 'permit'
Feb 16 2024, 8:17 AM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus
Viacheslav added a comment to T6015: "journalctl_charon" file does not contain data in the generated "ipsec debug-archive" file.
@SrividyaA Could you re-check and close the task?
Try to check if the routes exist in the FRR config.
vtsyh -c "show run staticd"
Needs re-check as FRR was updated. Also, update GNS3 to the latest version.
It is not clear how to reproduce it without GNS3 on the some VM
Feb 15 2024
Feb 15 2024
The UPNP Implemented but not fully working, related task T5835
Feb 14 2024
Feb 14 2024
Viacheslav triaged T6030: QoS policy shaper can generate unexpected tc filter rate rules as Normal priority.
@Apachez, what exactly do you want to fix here?
Viacheslav triaged T6038: Losing default route after first reboot (cloud-init & DHCP) as Normal priority.
As I understand changes as in this example
https://wiki.nftables.org/wiki-nftables/index.php/Conntrack_helpers
Feb 13 2024
Feb 13 2024
Smoketest conntrack fix https://github.com/vyos/vyos-1x/pull/3005
Viacheslav changed the status of T3522: policy based routing not working, a subtask of T3505: Commits do not respect changes in FRR that are not stored in a config, from Open to Needs testing.
Viacheslav changed the status of T3522: policy based routing not working from Open to Needs testing.
Viacheslav closed T4676: IPoE server with mac authentication generates a wrong dictionary as Not Applicable.
IPoE server was rewritten to get_config_dict
The original bug was solved
Viacheslav changed the status of T3449: Unsuccessful attempt at network boot causes packet loss on associated VLAN from Open to Needs reporter action.
@FileGo Could you re-check it with 1.4-rc3 or the latest rolling?
Not sure that we can fix anything in this specific case.
Close it as invalid; there are no responses from the author.
Feel free to reopen it if you still have this issue. We need more details, dumps, and probably the whole configuration for debugging.
No responses from the author
I closed the task because we do not have other issues like this.
Feel free to reopen if it is required.
Viacheslav changed the status of T4305: Global log facility does not have consistent default settings, and doesn't change when modified from Confirmed to Needs reporter action.
@dberlin Can you recheck?
Viacheslav changed the status of T4289: Flow-accounting Netflow - Incorrect SRC and DST IPs from Open to Needs reporter action.
@JonD Have you figured out what the problem is?
@pjeevarathinam Could you re-check wiht 1.4-rc3 or the latest rolling?
You can play with descriptions
vyos@r4# set system frr descriptors Possible completions: <1024-8192> Number of file descriptors
Viacheslav moved T5064: Value validation for domain-groups seems to be broken from Open to Finished on the VyOS 1.5 Circinus board.
Viacheslav moved T5928: Configuration fails to load on boot if offloading has VLAN interfaces defined from Open to Finished on the VyOS 1.5 Circinus board.
@tfiebig Could you add a PR?
Viacheslav changed the status of T5064: Value validation for domain-groups seems to be broken from Open to In progress.
Viacheslav changed the status of T5359: VyOS user/pass remains in config, a subtask of T5907: cloud-init root task for 1.5 and 1.4 , from Open to Needs reporter action.
Viacheslav changed the status of T5359: VyOS user/pass remains in config from Open to Needs reporter action.
@greywolfe Any update?
Viacheslav changed the status of T5376: Conntrack FTP helper does not work properly from Needs testing to Needs reporter action.
@svd135 Can you recheck?
@twan Could you try with the 1.4-rc3 image?
Viacheslav changed the subtype of T6040: Implement a firewall blacklisting solution from "Task" to "Feature Request".
Viacheslav changed the status of T5482: Chrony NTP Server Fails To Sync Time from Open to Needs reporter action.
@dcplaya provide the whole configuration to reproduce or close the task if the reason is firewall incorrect configuration.
Viacheslav changed the status of T5930: vrf - route-leak not work using route-target both command. from In progress to Needs testing.
Feb 12 2024
Feb 12 2024
Viacheslav triaged T6037: QoS policy limiter without specified class selector error as Normal priority.
Viacheslav updated the task description for T6037: QoS policy limiter without specified class selector error.
@evilmog Can you provide the OpenVPN/other configuration to achieve what you want?
Viacheslav changed the status of T1317: OpenVPN configuration fails if it depends on another interface. from In progress to Needs reporter action.
Wait two weeks before closing.
@mb300sd Let us know if it is fixed.
Viacheslav triaged T6035: random-detect QoS policies cause commit failures due to a missing tc parameter (avpkt) as Normal priority.
Viacheslav moved T3843: l2tp configuration not cleared after delete from Open to Finished on the VyOS 1.4 Sagitta board.
Viacheslav moved T3843: l2tp configuration not cleared after delete from Open to Finished on the VyOS 1.5 Circinus board.
It cannot be backported to 1.3 as there are no config-mode-dependencies
Viacheslav added a comment to T2505: XCP-ng packet drops for small packets (e.g. icmp) under Xen and AWS.
There have been no reports since 2021