Page MenuHomeVyOS Platform
Feed All Stories

Mar 15 2024

n.fort added a project to T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity: VyOS 1.5 Circinus.
Mar 15 2024, 9:43 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
anonuser445y6 added a comment to T6126: Unable to add image.

I can download the image and add it from path just fine, e.g this works fine:

Mar 15 2024, 7:45 PM · VyOS 1.4 Sagitta
anonuser445y6 created T6126: Unable to add image.
Mar 15 2024, 7:31 PM · VyOS 1.4 Sagitta
daniil renamed T6125: Support 802.1ad (0x88a8) vlan filtering for bridge from Support 802.1ad (0x88a8) for bridge to Support 802.1ad (0x88a8) vlan filtering for bridge.
Mar 15 2024, 6:10 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
daniil created T6125: Support 802.1ad (0x88a8) vlan filtering for bridge.
Mar 15 2024, 6:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed.

Proper would be to throw out chrony and use ntpsec instead which supports proper filtering.

Mar 15 2024, 5:06 PM · VyOS 1.4 Sagitta
Viacheslav edited projects for T6124: Docker equuleus build image doesn't build due to fpm, added: VyOS 1.3 Equuleus (1.3.7); removed VyOS 1.3 Equuleus.
Mar 15 2024, 3:46 PM · VyOS 1.3 Equuleus (1.3.7)
Viacheslav triaged T6124: Docker equuleus build image doesn't build due to fpm as High priority.
Mar 15 2024, 3:45 PM · VyOS 1.3 Equuleus (1.3.7)
matthewr added a comment to T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed.

Given that Chrony only allows one bind address, versus ntpd which allows multiple, a "wontfix" sounds like the correct answer! :-)

Mar 15 2024, 3:12 PM · VyOS 1.4 Sagitta
MattK updated the task description for T6124: Docker equuleus build image doesn't build due to fpm.
Mar 15 2024, 3:02 PM · VyOS 1.3 Equuleus (1.3.7)
MattK created T6124: Docker equuleus build image doesn't build due to fpm.
Mar 15 2024, 2:57 PM · VyOS 1.3 Equuleus (1.3.7)
n.fort changed the status of T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity, a subtask of T5938: Migration fail root task for 1.4-rc, from Open to Confirmed.
Mar 15 2024, 2:33 PM · VyOS Rolling, Bugs
n.fort changed the status of T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity from Open to Confirmed.
Mar 15 2024, 2:33 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6116: VyOS can't work as expected at k8s platform as Normal priority.
Mar 15 2024, 2:30 PM · VyOS Rolling, Bugs
Viacheslav changed the status of T6109: remote syslog does not get all the logs from Open to Needs reporter action.

@m.serdienis Add set of configuration commands to reproduce.

Mar 15 2024, 2:26 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po closed T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed as Wontfix.
Mar 15 2024, 2:26 PM · VyOS 1.4 Sagitta
c-po added a comment to T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed.

The issue is which to choose if there are multiple, thus removing all, chrony will listen on all interfaces.

Mar 15 2024, 2:26 PM · VyOS 1.4 Sagitta
Viacheslav edited projects for T6108: VTYSH - Slowdown, added: VyOS 1.3 Equuleus (1.3.7); removed VyOS 1.3 Equuleus.
Mar 15 2024, 2:25 PM
Viacheslav triaged T6108: VTYSH - Slowdown as Normal priority.
Mar 15 2024, 2:25 PM
Viacheslav triaged T6106: Improve the commit error message for the case when route-reflector-client option is defined in a peer-group as High priority.
Mar 15 2024, 2:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6105: Service HTTPS using ACME certificate does not present full chain as Normal priority.
Mar 15 2024, 2:24 PM · VyOS 1.5 Circinus
Viacheslav triaged T6092: Static interface index as Wishlist priority.
Mar 15 2024, 2:23 PM
Viacheslav triaged T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed as Normal priority.

Most likely won't fix
https://chrony-project.org/doc/3.4/chrony.conf.html

Mar 15 2024, 2:23 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity: T5938: Migration fail root task for 1.4-rc.
Mar 15 2024, 2:02 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a subtask for T5938: Migration fail root task for 1.4-rc: T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity.
Mar 15 2024, 2:02 PM · VyOS Rolling, Bugs
Viacheslav triaged T6090: Migration of "policy route" configs fails due to TCP flag case sensitivity as High priority.
Mar 15 2024, 2:01 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6120: integration speedtest cli as Wishlist priority.

I don't think it is expected to get speed to the node itself.
A router is generally used for forwarding traffic. It is better to use iperf to check the speed between 2 hosts.

Mar 15 2024, 1:54 PM · VyOS 1.5 Circinus
c-po closed T6118: radvd: RFC8781: add nat64prefix support as Resolved.
Mar 15 2024, 12:39 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po moved T6118: radvd: RFC8781: add nat64prefix support from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0) board.
Mar 15 2024, 12:39 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T4610: Firewall with 20K entries cannot load after reboot.

There do already exists tasks regarding commit and boot times such as: https://vyos.dev/T5388

Mar 15 2024, 10:35 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4610: Firewall with 20K entries cannot load after reboot.

@Apachez the original issue was related nft

If use nftables natively as:
Mar 15 2024, 7:54 AM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEXa0b2b259484d: Merge pull request #3136 from vyos/mergify/bp/sagitta/pr-3135 (authored by c-po).
Mar 15 2024, 6:25 AM
GitHub <noreply@github.com> committed rVYOSONEXdbd54c1ed094: Merge pull request #3134 from vyos/mergify/bp/sagitta/pr-3133 (authored by c-po).
Mar 15 2024, 6:25 AM
Giggum changed Version from - to VyOS 1.4.0-epa1 on T6123: Limit NTP allow-client config to internal addresses by default.
Mar 15 2024, 1:01 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Giggum created T6123: Limit NTP allow-client config to internal addresses by default.
Mar 15 2024, 12:43 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

Mar 14 2024

Apachez added a comment to T4610: Firewall with 20K entries cannot load after reboot.

I wouldnt call 1m37s of commit time for a single line of configchange as "resolved"...

Mar 14 2024, 10:33 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5388: Something is fishy with commit and boot times when more than a few hundred static routes are being used.

Also probably related: https://forum.vyos.io/t/long-commit-time-for-multiple-vrfs/14053

Mar 14 2024, 8:48 PM · VyOS Rolling, Bugs
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXaacdd44508d3: xml: T160: improve NAT64 help string (authored by c-po).
Mar 14 2024, 8:32 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX25005a9a95f5: xml: T2518: improve NAT66/NPTv6 help string (authored by c-po).
Mar 14 2024, 8:32 PM
c-po committed rVYOSONEX63de63f43aaa: xml: T2518: improve NAT66/NPTv6 help string.
Mar 14 2024, 8:31 PM
c-po committed rVYOSONEX7ca0ad917440: xml: T160: improve NAT64 help string.
Mar 14 2024, 8:31 PM
GitHub <noreply@github.com> committed rVYOSONEXf237e75e9fd1: Merge pull request #3135 from c-po/xml-nat66 (authored by c-po).
Mar 14 2024, 8:31 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8bd803ec62e9: xml: T3642: improve PKI CLI help string (authored by c-po).
Mar 14 2024, 8:20 PM
c-po committed rVYOSONEXd6226d60dce4: xml: T3642: improve PKI CLI help string.
Mar 14 2024, 8:19 PM
GitHub <noreply@github.com> committed rVYOSONEXf23ff39cf3e2: Merge pull request #3133 from c-po/xml (authored by c-po).
Mar 14 2024, 8:19 PM
L0crian updated the task description for T6122: Protocols under VRF config run in a single pass against their conf_mode scripts.
Mar 14 2024, 8:10 PM · VyOS Rolling
c-po moved T6118: radvd: RFC8781: add nat64prefix support from Open to Finished on the VyOS 1.5 Circinus board.
Mar 14 2024, 8:02 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po moved T6118: radvd: RFC8781: add nat64prefix support from Open to 1.4.0 on the VyOS 1.4 Sagitta board.
Mar 14 2024, 8:02 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T6111: Minor revision to unicode support in configtree backend as Unknown Status.
Mar 14 2024, 6:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
natali-rs1985 committed rVYOSONEX0364d44b4ffb: snmp: T2998: SNMP v3 oid "exclude" option fix.
Mar 14 2024, 4:11 PM
natali-rs1985 committed rVYOSONEX1fb746332602: snmp: T2998: updated snmp.py.
Mar 14 2024, 4:11 PM
GitHub <noreply@github.com> committed rVYOSONEX713b2f370213: Merge pull request #3121 from natali-rs1985/T2998-equuleus (authored by dmbaturin).
Mar 14 2024, 4:10 PM
n.fort committed rVYOSONEXd56b4c05726d: T6110: dhcp: add error check when fail-over is enabled on a subnet, but range….
Mar 14 2024, 4:10 PM
GitHub <noreply@github.com> committed rVYOSONEXc2e66922c93b: Merge pull request #3111 from nicolas-fort/T6110 (authored by dmbaturin).
Mar 14 2024, 4:10 PM
Viacheslav triaged T6122: Protocols under VRF config run in a single pass against their conf_mode scripts as Normal priority.
Mar 14 2024, 2:33 PM · VyOS Rolling
L0crian created T6122: Protocols under VRF config run in a single pass against their conf_mode scripts.
Mar 14 2024, 2:28 PM · VyOS Rolling
Viacheslav added a comment to T6121: Extend service config-sync for sections vpn, policy, vrf.

PR https://github.com/vyos/vyos-1x/pull/3132

set service config-sync mode 'load'
set service config-sync secondary address '192.0.2.1'
set service config-sync secondary key 'xxx'
set service config-sync section firewall
set service config-sync section interfaces pseudo-ethernet
set service config-sync section interfaces virtual-ethernet
set service config-sync section nat
set service config-sync section nat66
set service config-sync section protocols static
set service config-sync section pki
set service config-sync section vrf

Change some section:

vyos@r4# set nat source rule 100 outbound-interface name 'eth0'
[edit]
vyos@r4# set nat source rule 100 source address '10.0.0.0/24'
[edit]
vyos@r4# set nat source rule 100 translation address 'masquerade'
[edit]
vyos@r4# commit
INFO:vyos_config_sync:Config synchronization: Mode=load, Secondary=192.0.2.1
[edit]
vyos@r4#
Mar 14 2024, 1:50 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
natali-rs1985 committed rVYOSONEXd632ce658cbe: vrrp: T5504: Keepalived VRRP ability to set more than one peer-address.
Mar 14 2024, 11:14 AM
GitHub <noreply@github.com> committed rVYOSONEX1ba302d55b86: Merge pull request #3130 from natali-rs1985/T5504-equuleus (authored by dmbaturin).
Mar 14 2024, 11:14 AM
Apachez added a comment to T2433: Improve CLI value validator performance.

Is this related to the long commit and boot times when one have more than a handful routes or firewall rules as described in https://vyos.dev/T5388 ?

Mar 14 2024, 10:54 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
natali-rs1985 added a comment to T5504: Make it possible to set more than one peer-address in unicast VRRP.

PR for 1.3: https://github.com/vyos/vyos-1x/pull/3130

Mar 14 2024, 9:46 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7)
Viacheslav claimed T6121: Extend service config-sync for sections vpn, policy, vrf.
Mar 14 2024, 9:11 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav created T6121: Extend service config-sync for sections vpn, policy, vrf.
Mar 14 2024, 9:11 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Unknown Object (User) created T6120: integration speedtest cli.
Mar 14 2024, 8:18 AM · VyOS 1.5 Circinus
HollyGurza claimed T3232: ISIS incorrect hostname and LSP ID.
Mar 14 2024, 7:46 AM · Bugs, VyOS Rolling
HollyGurza added a comment to T1871: Add MTU option to "traffic-policy limiter".

https://github.com/vyos/vyos-1x/pull/3131

Mar 14 2024, 7:40 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Mar 13 2024

a.apostoliuk added a comment to T3040: NHRP IPv6 Support.

I have tested FRR NHRP with IPv6 as an overlay and I found some issues.

Mar 13 2024, 3:13 PM · VyOS 1.5 Circinus
a.apostoliuk added a subtask for T2326: Migrate NHRP(DMVPN) to FRR: T3040: NHRP IPv6 Support.
Mar 13 2024, 1:53 PM · VyOS 1.5 Circinus
a.apostoliuk added a parent task for T3040: NHRP IPv6 Support: T2326: Migrate NHRP(DMVPN) to FRR.
Mar 13 2024, 1:53 PM · VyOS 1.5 Circinus
natali-rs1985 changed Issue type from unspecified to feature on T1244: Add support for StartupResync in conntrack-sync.
Mar 13 2024, 1:08 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.3 Equuleus (1.3.7)
GitHub <noreply@github.com> committed rVYOSONEX4dfc9b7c195e: Merge pull request #3129 from vyos/mergify/bp/sagitta/pr-3125 (authored by dmbaturin).
Mar 13 2024, 12:18 PM
GitHub <noreply@github.com> committed rVYOSONEX729d67856862: Merge pull request #3128 from vyos/mergify/bp/sagitta/pr-3093 (authored by c-po).
Mar 13 2024, 11:48 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX306e83a66e2e: radvd: T6118: add nat64prefix support RFC8781 (authored by c-po).
Mar 13 2024, 10:15 AM
c-po committed rVYOSONEXf1ead5c6a16a: radvd: T6118: add nat64prefix support RFC8781.
Mar 13 2024, 10:13 AM
GitHub <noreply@github.com> committed rVYOSONEX7fb112d409af: Merge pull request #3125 from c-po/radvd-T6118 (authored by dmbaturin).
Mar 13 2024, 10:13 AM
GitHub <noreply@github.com> committed rVYOSONEXc8528d080786: Merge pull request #3127 from vyos/mergify/bp/sagitta/pr-3126 (authored by dmbaturin).
Mar 13 2024, 10:12 AM
natali-rs1985 claimed T1244: Add support for StartupResync in conntrack-sync.
Mar 13 2024, 9:21 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.3 Equuleus (1.3.7)
HollyGurza changed the status of T1871: Add MTU option to "traffic-policy limiter" from Open to In progress.
Mar 13 2024, 7:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
BurlyLuo added a comment to T6116: VyOS can't work as expected at k8s platform.

Interfaces aren't added on boot because mac address is locally administered: https://github.com/vyos/vyos-1x/blob/current/src/helpers/vyos-interface-rescan.py#L60

Raised this issue before with @jestabro as also seen with VyOS as VM.

Mar 13 2024, 5:58 AM · VyOS Rolling, Bugs
dongjunbo added a comment to T5892: container network interface and policy fails to apply after reboot.

Can we let local-route support group options both in destination and source ?

set policy local-route rule 10 destination
Possible completions:
+  address              IPv4 address or prefix
   port                 Port number used by connection
Mar 13 2024, 4:43 AM · VyOS Rolling, Bugs
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXfd2a16c66b5b: T2447: add configurable kernel boot option 'disable-power-saving' (authored by c-po).
Mar 13 2024, 4:40 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX84b520dd580b: grub: T4548: Fixed configuration files order (authored by zsdc).
Mar 13 2024, 4:35 AM
zsdc committed rVYOSONEXf74923202311: grub: T4548: Fixed configuration files order.
Mar 13 2024, 4:34 AM
GitHub <noreply@github.com> committed rVYOSONEXf2038cd6f23f: Merge pull request #3126 from zdc/T4548-circinus (authored by c-po).
Mar 13 2024, 4:34 AM

Mar 12 2024

c-po merged task T5956: Implement PREF64 (RFC8781) Support into T6118: radvd: RFC8781: add nat64prefix support.
Mar 12 2024, 9:58 PM · VyOS 1.5 Circinus
c-po merged T5956: Implement PREF64 (RFC8781) Support into T6118: radvd: RFC8781: add nat64prefix support.
Mar 12 2024, 9:58 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6118: radvd: RFC8781: add nat64prefix support.

PR for 1.4 https://github.com/vyos/vyos-build/pull/528

Mar 12 2024, 9:58 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
sarthurdev updated subscribers of T6116: VyOS can't work as expected at k8s platform.

Interfaces aren't added on boot because mac address is locally administered: https://github.com/vyos/vyos-1x/blob/current/src/helpers/vyos-interface-rescan.py#L60

Mar 12 2024, 9:11 PM · VyOS Rolling, Bugs
Cheeze_It added a comment to T3232: ISIS incorrect hostname and LSP ID.

Did this test again, and I got the same result.

Mar 12 2024, 9:04 PM · Bugs, VyOS Rolling
dmbaturin triaged T6119: Use a compliant TOML parser as High priority.
Mar 12 2024, 8:26 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEXed3332f9eac3: Merge pull request #3124 from vyos/mergify/bp/sagitta/pr-3123 (authored by c-po).
Mar 12 2024, 7:04 PM
Viacheslav closed T4289: Flow-accounting Netflow - Incorrect SRC and DST IPs as Invalid.

Close the task due to the reporter not responding.
Reopen if you still have this bug.

Mar 12 2024, 6:55 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5970: Rollback revision completion error as Not Applicable.

Seems fixed, checked on VyOS 1.5-rolling-202403110024

vyos@r4# rollback 
Possible completions:
  <N>	Rollback to revision N (currently requires reboot)
Mar 12 2024, 6:51 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6118: radvd: RFC8781: add nat64prefix support.

The similar task T5956

Mar 12 2024, 6:45 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
dmbaturin renamed T1436: Config entries with default values do not correctly show as changed from Config entries with default values does not correctly show as changed to Config entries with default values do not correctly show as changed.
Mar 12 2024, 6:37 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
dmbaturin closed T1436: Config entries with default values do not correctly show as changed as Resolved.

There are no old-style CLI definitions anymore, and thus no default: tags either, so this shouldn't be an issue anymore.

Mar 12 2024, 6:37 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
dmbaturin added a comment to T839: Add options for DHCPD OMAPI.

VyOS 1.5 will use Kea, while ISC DHCP is completely abandoned now and there's no hope this will be fixed.

Mar 12 2024, 6:21 PM
dmbaturin closed T839: Add options for DHCPD OMAPI, a subtask of T823: Rewrite DHCP op mode in the new style, as Wontfix.
Mar 12 2024, 6:21 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
dmbaturin closed T839: Add options for DHCPD OMAPI as Wontfix.
Mar 12 2024, 6:21 PM
dmbaturin renamed T3202: Enable wireguard debug messages by default from enable wireguard debug messages per default to Enable wireguard debug messages by default.
Mar 12 2024, 6:12 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus