Page MenuHomeVyOS Platform
Feed Search

Apr 19 2024

c-po added a project to T6244: Improve formatting in "show system uptime": VyOS 1.5 Circinus.
Apr 19 2024, 2:45 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6249: ISO builder fails because of changed buster-backport repository as High priority.
Apr 19 2024, 4:30 AM · VyOS 1.3 Equuleus (1.3.6)
MattK added a comment to T6249: ISO builder fails because of changed buster-backport repository.

This is the result of buster-backports being removed from the main repository server: https://backports.debian.org/news/Removal_of_buster-backports_from_the_debian_archive/

Apr 19 2024, 3:02 AM · VyOS 1.3 Equuleus (1.3.6)

Apr 18 2024

jmn added a comment to T6249: ISO builder fails because of changed buster-backport repository.

Hi,
I was playing around with VyOS and thought i'd build myself an iso and hit this issue. Not sure if its the correct way to solve it, but this is what I did:

Apr 18 2024, 11:36 PM · VyOS 1.3 Equuleus (1.3.6)
syncer assigned T5907: cloud-init root task for 1.5 and 1.4 to zsdc.
Apr 18 2024, 10:21 PM · VyOS Rolling
Viacheslav placed T2279: Router resolves as 127.0.1.1 when using Router's Recursive DNS up for grabs.
Apr 18 2024, 4:50 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus, VyOS 1.3 Equuleus (1.3.7)
Viacheslav closed T4422: WAN load-balance status failed on all interfaces if one of them failed, a subtask of T4470: Rewrite load-balancing wan to XML/Python, as Wontfix.
Apr 18 2024, 4:39 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav closed T4422: WAN load-balance status failed on all interfaces if one of them failed as Wontfix.

Test addresses have to be different

Apr 18 2024, 4:39 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T4422: WAN load-balance status failed on all interfaces if one of them failed, a subtask of T4470: Rewrite load-balancing wan to XML/Python, from Open to Needs reporter action.
Apr 18 2024, 4:29 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav changed the status of T4422: WAN load-balance status failed on all interfaces if one of them failed from Open to Needs reporter action.
Apr 18 2024, 4:29 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T4422: WAN load-balance status failed on all interfaces if one of them failed.

Provide the set of the commands to reproduce

Apr 18 2024, 4:28 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
rusnino updated the task description for T6249: ISO builder fails because of changed buster-backport repository.
Apr 18 2024, 3:44 PM · VyOS 1.3 Equuleus (1.3.6)
rusnino updated the task description for T6249: ISO builder fails because of changed buster-backport repository.
Apr 18 2024, 3:44 PM · VyOS 1.3 Equuleus (1.3.6)
rusnino created T6249: ISO builder fails because of changed buster-backport repository.
Apr 18 2024, 2:15 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a project to T5471: Conntrack logging doesnt seem to be working: VyOS 1.5 Circinus.
Apr 18 2024, 1:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
Viacheslav added a comment to T5471: Conntrack logging doesnt seem to be working.

The old implementation used this script and https://github.com/vyos/vyatta-conntrack/blob/current/src/vyatta-conntrack-logging.c for the logging and it seems not impelemted for the current
At least there is not mention of the log

Apr 18 2024, 1:43 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
Viacheslav added a comment to T5549: Result of system audit by Lynis.

Without subtasks, it is going to be dead.
@Apachez It is not clear what you want to fix exactly. Fix all and do all working well could be related to any task.

Apr 18 2024, 12:11 PM · Invalid
Viacheslav closed T5755: Running set pki ca NAME certificate with a name with spaces breaks the config as Not Applicable.

Not reproduced on VyOS 1.5-rolling-202404141045

vyos@r-left# set pki ca "my test ca name" certificate 'MIIDnTCCAoWgAwIBAgIUFvyB2rY0V1V6AaIpPWHCftGRwN8wDQYJKoZIhvcNAQELBQAwVzELMAkGA0IxEzARBgNVBAgMClNvbWUtU3RhdGUxEjAQBgNVBAcMCVNvbWUtQ2l0eTENMAsGA1UECgwEVnlPUzEQMA4GA1UEAwwHdnlvcy5pbzAeFw0yNDA0MTgxMTM3MzZaFw0yOTA0MzZaMFcxCzAJBgNVBAYTAkdCMRMwEQYDVQQIDApTb21lLVN0YXRlMRIwEAYDVQQHDAlTb21lLUNpdHkxDTALBgNVBAoMBFZ5T1MxEDAOBgNVBAMMB3Z5b3MuaW8wggEiMA0GCQEBAQUAA4IBDwAwggEKAoIBAQCKEVxs7gdzmnN4iMinvXN1vdGaT+v3TOnHSXbBkWHnt9YdWmo8UoqFpVqyVM3E8xmoT+3HOXJeWkKArEpMkGo93kWaGo0f25KGEFWbS2ttgNA9cqH9PGa42XTKyTY+5ZoIWaQQzNNiUSaIoslRrMSV4V2yQs90ECxR37ezlV2RAIHEhZ6mizUkMkuSmdjqRolh2tpF1MoisyhspFPXBC6lJ8d0jFZEi1tP3tlQjqVEWPjTvtddy34iOLFeUjBF5cOwfmpVLzWBVLbIxJr5ZHamGeQIabn36Jg1u0+/6p7hb8avqBW4dT0K8UykWVqgjQ4W4rM7AgMBAAGjYTBfMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATAdBgNVHQ4EFgQUxEx+IVaoLb7M/SW9AkCVRaXCNTUwDQYJKoZIhvcNAQELBQADggEBAGjV6WiH4Z+hfdANG8oWgY0xsHmUZg8dCjwqO5GMwjBVIuu8GuoZu0JobtLa097behWcgCkwjvKBffuwCu542WbFkxdXzBLZjSAc+K3itegZIuy4jqRO5z6Q0IbPSaFUhR4HhfwejwlyXgjNCFzEMzwoDL2/3PXjWyilkqthYyFcx092tgwiXtnfO9z9Xm/YQHQmRG2VWzLEwucOhV698xnqFgRJk3uKqcDN9KjF+5v32OQ0eis7GHn1aJim5aUee1nnCRFdQO0llNJRwF6fIaICzKLwa7zzMjF7HhRehh5kpwY8omcQX7xYz7GJag4='
Apr 18 2024, 11:43 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a project to T5755: Running set pki ca NAME certificate with a name with spaces breaks the config: VyOS 1.5 Circinus.
Apr 18 2024, 11:32 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav placed T2003: BGP FQDN capability has improper hostname after new image install up for grabs.
Apr 18 2024, 11:12 AM · VyOS Rolling
Viacheslav changed the status of T1790: OSPF Exchanged Routes marked as invalid when run through a GRE PTMP/PTP OSPF between peers from Open to Needs reporter action.

@SquirePug re-check please with the latest rolling image.

Apr 18 2024, 11:12 AM
Viacheslav reopened T2003: BGP FQDN capability has improper hostname after new image install as "Needs reporter action".
Apr 18 2024, 11:10 AM · VyOS Rolling
Viacheslav closed T2003: BGP FQDN capability has improper hostname after new image install as Resolved.

@jmaslak can you check the latest rolling image?

Apr 18 2024, 11:09 AM · VyOS Rolling
Viacheslav changed the status of T2616: BFD Configuration causes flapping from Needs testing to Needs reporter action.
Apr 18 2024, 11:06 AM
Viacheslav added a comment to T2616: BFD Configuration causes flapping.

@kroy can you re-test this case?

Apr 18 2024, 11:06 AM
Viacheslav added a project to T3393: IPoE does not assign IPv6 PD or WAN address: VyOS 1.5 Circinus.
Apr 18 2024, 10:28 AM

Apr 17 2024

jmoore created T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7.
Apr 17 2024, 4:34 PM · VyOS Rolling
dex added a comment to T5386: Execute VRRP transition script when `set high-availability disable` is commited.

Just checked with the current rolling release 1.5-rolling-202404141045. After committing set high-availability disable, keepalived is successfully stopped and the logs show that the transition script seems to be executed:

Apr 17 2024, 2:15 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
tjh updated the task description for T6244: Improve formatting in "show system uptime".
Apr 17 2024, 9:11 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6244: Improve formatting in "show system uptime" as Wishlist priority.
Apr 17 2024, 9:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
tjh assigned T6244: Improve formatting in "show system uptime" to c-po.
Apr 17 2024, 9:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
tjh created T6244: Improve formatting in "show system uptime".
Apr 17 2024, 9:00 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5360: ddclient generating abuse as Resolved.
Apr 17 2024, 8:36 AM · VyOS 1.4 Sagitta
indrajitr closed T5574: Support per-service cache management for dynamic dns providers as Resolved.
Apr 17 2024, 6:53 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr closed T5612: Miscellaneous improvements and fixes for dynamic DNS configuration as Resolved.
Apr 17 2024, 6:53 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr closed T5723: mdns repeater: Always reload systemd daemon before applying changes as Resolved.
Apr 17 2024, 6:52 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr closed T5966: Adjust dynamic dns configuration address subpath to be more intuitive and other op-mode adjustments, a subtask of T5791: Update dynamic dns configuration path to be consistent with other areas of VyOS, as Resolved.
Apr 17 2024, 6:51 AM · VyOS 1.5 Circinus (2025.11)
indrajitr closed T5966: Adjust dynamic dns configuration address subpath to be more intuitive and other op-mode adjustments as Resolved.

Updates have been applied on 1.4 and 1.5.

Apr 17 2024, 6:51 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr added a comment to T5360: ddclient generating abuse.

This can probably be closed.

Apr 17 2024, 6:50 AM · VyOS 1.4 Sagitta
jestabro closed T6154: Installer should ask for password twice, a subtask of T4516: Rewrite system image manipulation tools in Python, as Resolved.
Apr 17 2024, 1:27 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 16 2024

jestabro added a comment to T6022: set system image default-boot.

The regression causing 'image cannot be found" was fixed in https://vyos.dev/T6186.

Apr 16 2024, 4:46 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro added a subtask for T6022: set system image default-boot: T6186: 'set system image default-boot' fails to find images that actually do exist in the system.
Apr 16 2024, 4:45 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro removed a subtask for T6022: set system image default-boot: T5917: Restore annotations of (running)/(default boot) in select image list.
Apr 16 2024, 4:44 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro removed a parent task for T5917: Restore annotations of (running)/(default boot) in select image list: T6022: set system image default-boot.
Apr 16 2024, 4:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a subtask for T6022: set system image default-boot: T5917: Restore annotations of (running)/(default boot) in select image list.
Apr 16 2024, 4:41 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro added a parent task for T5917: Restore annotations of (running)/(default boot) in select image list: T6022: set system image default-boot.
Apr 16 2024, 4:41 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from In progress to Needs testing.
Apr 16 2024, 4:33 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6123: Limit NTP allow-client config to internal addresses by default from Open to Needs testing.
Apr 16 2024, 1:03 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav closed T5946: TASK [setup-root-partition : Create a fileystem on EFI partition] failing in Docker as Wontfix.

A docker container usually has issues with loop devices:
Use the VM or attach dev

Apr 16 2024, 10:10 AM · VyOS 1.4 Sagitta
HollyGurza added a comment to T4248: There isn't a way to remove the only rule from the (traffic-policy) class..

https://github.com/vyos/vyos-1x/pull/3316

Apr 16 2024, 8:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
HollyGurza changed the status of T4248: There isn't a way to remove the only rule from the (traffic-policy) class. from Open to In progress.
Apr 16 2024, 8:01 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 15 2024

Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Open to In progress.
Apr 15 2024, 3:32 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

PR https://github.com/vyos/vyos-1x/pull/3313
Add onlink option

set interfaces ethernet eth0 vif 10 address '10.20.30.1/32'
set protocols static route 10.20.30.0/32 interface eth0.10
Apr 15 2024, 3:31 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

It is more of a feature request than a bug due to specific kernel routes.
Feature to add onlink option

Apr 15 2024, 11:52 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav renamed T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Failing to add route in failover to Failing to add route in failover if gateway not in the same interface network.
Apr 15 2024, 11:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk closed T6100: NAT config migration error in 1.4.0-epa1 if invalid address/network defined in 1.3.6 version, a subtask of T5938: Migration fail root task for 1.4-rc, as Resolved.
Apr 15 2024, 7:47 AM · VyOS Rolling, Bugs
HollyGurza claimed T4248: There isn't a way to remove the only rule from the (traffic-policy) class..
Apr 15 2024, 4:35 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 14 2024

Unknown Object (User) closed T5155: restart bgp daemon throws route-map error as Invalid.

Seems like its either fixed or was a quirk in that specific version.

Apr 14 2024, 3:54 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

The dictionaries process the \n different way
environment.POSTGRES_HOST_AUTH_METHOD.value.
1.5

vyos@r4# commit
[ container ]
{'container_remove': ['c1', 'c2'],
 'name': {'test-postgres-master': {'allow_host_networks': {},
                                   'command': 'postgres -c wal_level=replica '
                                              '-c hot_standby=on -c '
                                              'max_wal_senders=10 -c '
                                              'max_replication_slots=10 -c '
                                              'hot_standby_feedback=on',
                                   'environment': {'POSTGRES_HOST_AUTH_METHOD': {'value': 'scram-sha-256\\nhost '
                                                                                          'replication '
                                                                                          'all '
                                                                                          '0.0.0.0/0 '
                                                                                          'md5'},
                                                   'POSTGRES_PASSWORD': {'value': 'password'}},
                                   'image': 'postgres:14-alpine',
                                   'memory': '512',
                                   'restart': 'always',
                                   'shared_memory': '64'}},
 'network': {'NET01': {'prefix': ['10.0.0.0/24']}},
 'registry': {'docker.io': {}, 'quay.io': {}}}
Apr 14 2024, 11:29 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

Diff
check --env "POSTGRES_HOST_AUTH_METHOD=. options
1.5

vyos@r4# cat /run/systemd/system/vyos-container-test-postgres-master.service | grep ExecStart -A2
ExecStartPre=/bin/rm -f %t/%n.pid %t/%n.cid
ExecStart=/usr/bin/podman run \
        --conmon-pidfile %t/%n.pid --cidfile %t/%n.cid --cgroups=no-conmon \
        --detach --interactive --tty --replace  --memory 512m --shm-size 64m --memory-swap 0 --restart always --name test-postgres-master      --env "POSTGRES_HOST_AUTH_METHOD=scram-sha-256\nhost replication all 0.0.0.0/0 md5" --env "POSTGRES_PASSWORD=password"   --net host  postgres:14-alpine postgres -c wal_level=replica -c hot_standby=on -c max_wal_senders=10 -c max_replication_slots=10 -c hot_standby_feedback=on
Apr 14 2024, 11:10 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav removed a project from T5986: Container: Error on commit when environment variable value contains \n line break: VyOS 1.5 Circinus.

Try the latest version

vyos@r4# set container name test-postgres-master environment POSTGRES_HOST_AUTH_METHOD value 'scram-sha-256\nhost replication all 0.0.0.0/0 md5'
[edit]
vyos@r4# commit
[edit]
vyos@r4# run show container 
CONTAINER ID  IMAGE                                 COMMAND               CREATED         STATUS         PORTS       NAMES
75a7fb610b57  localhost/gobgp-new:1                                       3 weeks ago     Created                    new
fdb74e9700e5  docker.io/library/alpine:3.19         /bin/sh               47 minutes ago  Up 47 minutes              c1
c05806fdb92c  docker.io/library/busybox:latest      sh                    39 minutes ago  Up 39 minutes              c2
1b5fc3d4a07b  docker.io/library/postgres:14-alpine  postgres -c wal_l...  24 seconds ago  Up 25 seconds              test-postgres-master
[edit]
vyos@r4# run show ver
Version:          VyOS 1.5-rolling-202404140022
Release train:    current
Apr 14 2024, 11:00 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T6123: Limit NTP allow-client config to internal addresses by default.

Will a migrationsscript be included so that users who used the default of:

Apr 14 2024, 3:54 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

Apr 13 2024

Viacheslav closed T6238: vyos-build Check pull request title requires the python script as Resolved.
Apr 13 2024, 11:12 AM · VyOS 1.4 Sagitta
Viacheslav closed T6235: Git check PR status: conflicts and resolution as Resolved.
Apr 13 2024, 11:09 AM · VyOS 1.4 Sagitta
c-po added a comment to T5369: System login timeout doesnt work as expected.

There is also an inactivity timer in systemd-logind, but this will log you out even while running e.g. htop and just watching - I wonder if that's the preferred way :/

Apr 13 2024, 10:46 AM · VyOS Rolling, Bugs
Viacheslav claimed T6238: vyos-build Check pull request title requires the python script.
Apr 13 2024, 8:39 AM · VyOS 1.4 Sagitta
Viacheslav claimed T6235: Git check PR status: conflicts and resolution.

PR https://github.com/vyos/vyos-build/pull/561

Apr 13 2024, 8:39 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T6238: vyos-build Check pull request title requires the python script.

PR https://github.com/vyos/vyos-build/pull/560

Apr 13 2024, 8:23 AM · VyOS 1.4 Sagitta
Viacheslav created T6238: vyos-build Check pull request title requires the python script.
Apr 13 2024, 8:13 AM · VyOS 1.4 Sagitta

Apr 12 2024

n.fort moved T6213: Validations in firewall groups mistakenly reject correct configurations from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 12 2024, 5:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
n.fort moved T6213: Validations in firewall groups mistakenly reject correct configurations from Open to Finished on the VyOS 1.5 Circinus board.
Apr 12 2024, 5:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
n.fort closed T6213: Validations in firewall groups mistakenly reject correct configurations as Resolved.
Apr 12 2024, 5:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
syncer assigned T5938: Migration fail root task for 1.4-rc to dmbaturin.
Apr 12 2024, 4:00 PM · VyOS Rolling, Bugs
syncer triaged T6236: Packet-Tracer Output as Normal priority.
Apr 12 2024, 2:58 PM · VyOS Rolling
L0crian claimed T6236: Packet-Tracer Output.
Apr 12 2024, 2:52 PM · VyOS Rolling
L0crian created T6236: Packet-Tracer Output.
Apr 12 2024, 2:52 PM · VyOS Rolling
dmbaturin closed T6216: Firewall group names that contain the '+' character break the config, a subtask of T5938: Migration fail root task for 1.4-rc, as Resolved.
Apr 12 2024, 2:50 PM · VyOS Rolling, Bugs
dmbaturin renamed T5631: Ability to export the current configuration in JSON format from Ability to have the current configuration in JSON format to Ability to export the current configuration in JSON format.
Apr 12 2024, 2:34 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav closed T5447: Allow static MACsec keys with peers as Resolved.

Already implemented

vyos@r4# set interfaces macsec macsec0 security static 
Possible completions:
   key                  MACsec static key
+> peer                 MACsec peer name
Apr 12 2024, 2:30 PM · VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a project to T5986: Container: Error on commit when environment variable value contains \n line break: VyOS 1.5 Circinus.
Apr 12 2024, 2:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T6082: BGP doesn't allow the same local AS and remote AS in peer groups: VyOS 1.5 Circinus.
Apr 12 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav updated subscribers of T6082: BGP doesn't allow the same local AS and remote AS in peer groups.
Apr 12 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
dmbaturin merged task T5216: Add encrypting syslog traffic with TLS (SSL) into T4251: Add TLS functionality for rsyslog.
Apr 12 2024, 2:01 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T6235: Git check PR status: conflicts and resolution.

PR https://github.com/vyos/vyos-1x/pull/3300

Apr 12 2024, 1:50 PM · VyOS 1.4 Sagitta
Viacheslav created T6235: Git check PR status: conflicts and resolution.
Apr 12 2024, 1:31 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2288: Include iprange package in Vyos.

@tjh Do you still need this package? As it was relevant for ipset/iptables

iprange/stable 1.0.4+ds-2 amd64
  optimizing ipsets for iptables
Apr 12 2024, 1:04 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav reopened T5872: ipsec remote access VPN: support dhcp-interface as "Open".
Apr 12 2024, 12:41 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
hiddenman added a comment to T5872: ipsec remote access VPN: support dhcp-interface.
commit 40b0986d66c3a0891dedbedc273b5485e5a8ca3a
Author: Lucas Christian <lucas@lucasec.com>
Date:   Sat Feb 10 11:26:47 2024 -0800
Apr 12 2024, 12:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5386: Execute VRRP transition script when `set high-availability disable` is commited.

It was implemented around a year ago https://github.com/vyos/vyos-1x/commit/e201454f073c9a92fb56b65f497eae55fc634521
Just need to check if it works as expected.

Apr 12 2024, 8:31 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav added a comment to T6222: VRRP rfc3768-compatibility not working correctly when resulting interface name is over 15 characters.

Wouldn’t your suggested fix to https://vyos.dev/T6223 also apply here? If the plan is to validate interface name lengths and allow custom names this would be a non-issue.

Apr 12 2024, 8:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
a.apostoliuk closed T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down as Resolved.
Apr 12 2024, 7:57 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk added a comment to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down.

After considering, we decided that reset is the same as terminate.
If you want to add a feature start manual initialization, please create a feature request.

Apr 12 2024, 7:56 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
haakon.nore added a comment to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down.

Here is an example of a perferctly valid vyos vpn config that will never recover a child SA when resetting it.

Apr 12 2024, 7:54 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
haakon.nore added a comment to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down.

In 1.4 and 1.5 command reset vpn ipsec has a termination meaning.

No, it says reset, both the command, and auto complete output. It does not say terminate or clear. If you run a reset you do expect it to restart or re-populate in one way or another, not just stop working completley.

Apr 12 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
dex added a comment to T5386: Execute VRRP transition script when `set high-availability disable` is commited.

Just to make sure: This change is part of the current nightly build, right?

Apr 12 2024, 7:25 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza claimed T6225: Unhandled exception when configuring random-detect QoS policy.
Apr 12 2024, 5:56 AM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza edited projects for T6035: random-detect QoS policies cause commit failures due to a missing tc parameter (avpkt), added: VyOS 1.4 Sagitta; removed VyOS 1.4 Sagitta (1.4.0).
Apr 12 2024, 5:50 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk added a comment to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down.

In 1.4 and 1.5 command reset vpn ipsec has a termination meaning.

Apr 12 2024, 5:37 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Apr 11 2024

jestabro changed the status of T3474: Revisit storing syntax version of interface definitions in XML file from Unknown Status to Resolved.
Apr 11 2024, 7:26 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
jestabro changed the status of T3474: Revisit storing syntax version of interface definitions in XML file, a subtask of T3475: XML dictionary cache unable to process syntaxVersion elements, from Unknown Status to Resolved.
Apr 11 2024, 7:26 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta