Page MenuHomeVyOS Platform
Feed All Stories

Apr 30 2024

Apachez created T6285: Listen-address in DHCP-server when going VyOS 1.4 to 1.5 will cause problems.
Apr 30 2024, 1:54 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a comment to T6169: DNS forwarding configuration rejects underscores in SRV records.

@Zen3515, any idea for regex?

Apr 30 2024, 1:40 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T1751: DNS server addresses from DHCPv6 are not added to resolv.conf from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.7) board.
Apr 30 2024, 9:04 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav moved T1751: DNS server addresses from DHCPv6 are not added to resolv.conf from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 30 2024, 9:04 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav closed T1751: DNS server addresses from DHCPv6 are not added to resolv.conf, a subtask of T2464: DNS bugs (parent task), as Resolved.
Apr 30 2024, 9:04 AM · VyOS 1.3 Equuleus (1.3.9)
Viacheslav closed T1751: DNS server addresses from DHCPv6 are not added to resolv.conf as Resolved.

Works as expected in VyOS 1.5-rolling-202404290019 and VyOS 1.4-stable-202404300309 and VyOS 1.3-stable-202404300508

vyos@r1-right:~$ cat /etc/resolv.conf 
### Autogenerated by VyOS ###
### Do not edit, your changes will get overwritten ###
Apr 30 2024, 9:04 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav triaged T6284: IPoE server op mode commands do not show IPv6 addresses as Normal priority.
Apr 30 2024, 8:08 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav created T6284: IPoE server op mode commands do not show IPv6 addresses.
Apr 30 2024, 8:08 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk assigned T6283: Cannot delete as-path prepend from policy when it contains more than one AS to c-po.
Apr 30 2024, 7:55 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk assigned T6250: "policy route-map set table" cannot be deleted from the rule to c-po.
Apr 30 2024, 7:54 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk updated the task description for T6283: Cannot delete as-path prepend from policy when it contains more than one AS.
Apr 30 2024, 7:24 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk lowered the priority of T6283: Cannot delete as-path prepend from policy when it contains more than one AS from High to Normal.
Apr 30 2024, 7:16 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk triaged T6283: Cannot delete as-path prepend from policy when it contains more than one AS as High priority.
Apr 30 2024, 7:14 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk created T6283: Cannot delete as-path prepend from policy when it contains more than one AS.
Apr 30 2024, 7:14 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6282: Generate SNMP trap if a commit is failed as Wishlist priority.
Apr 30 2024, 7:08 AM · VyOS 1.5 Circinus
Viacheslav created T6282: Generate SNMP trap if a commit is failed.
Apr 30 2024, 7:08 AM · VyOS 1.5 Circinus

Apr 29 2024

syncer closed T2820: BGP crash in if_destroy_via_zapi as Wontfix.

1.2 is EOL

Apr 29 2024, 11:32 PM · VyOS 1.2 Crux
rchrist added a comment to T6281: Wireguard does not pass traffic if VRFs are used.
In T6281#185394, @c-po wrote:

Please note that the Wireguard tunnel itself is sourced from the default VRF. Only the "inner side" of the tunnel runs in VRF wan.

There is no possibility to source the wireguard interface from

  • Another VRf
  • A discrete source IP
  • A discrete source interface

This can only be handled by applying fwmark values and policy based routing - this is a WireGuard design thing.

Apr 29 2024, 7:29 PM · VyOS 1.5 Circinus
c-po changed the status of T6162: ixgbe: Add 1000BASE-BX support from Open to In progress.
Apr 29 2024, 7:29 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po claimed T6281: Wireguard does not pass traffic if VRFs are used.
Apr 29 2024, 7:27 PM · VyOS 1.5 Circinus
c-po added a comment to T6281: Wireguard does not pass traffic if VRFs are used.

Please note that the Wireguard tunnel itself is sourced from the default VRF. Only the "inner side" of the tunnel runs in VRF wan.

Apr 29 2024, 7:27 PM · VyOS 1.5 Circinus
c-po moved T6162: ixgbe: Add 1000BASE-BX support from Need Triage to Finished on the VyOS 1.5 Circinus board.
Apr 29 2024, 7:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po added projects to T6162: ixgbe: Add 1000BASE-BX support: VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3).
Apr 29 2024, 7:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
rchrist added a comment to T5811: static dhcp-interface routes not installed.

Running into this issue on VyOS 1.5-rolling-202404280021

set protocols static route xxx.xxx.74.149/32 dhcp-interface eth1.999
Apr 29 2024, 5:23 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
rchrist added a comment to T4214: [DHCP] static route dhcp-interface issues.
Apr 29 2024, 5:22 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.9)
marekm awarded T6264: ISO builder fails to build 1.4 because of sagitta-packages repo 403 error a Like token.
Apr 29 2024, 5:22 PM · VyOS 1.4 Sagitta
marekm awarded T6224: More easily produceable source builds a Like token.
Apr 29 2024, 5:05 PM · VyOS 1.5 Circinus
marekm added a comment to T6224: More easily produceable source builds.

It would be useful for 1.4 as well, to be able to rebuild the LTS with local patches to some packages but otherwise unmodified, for example to make it easier to test bug fixes in a single package (such as accel-ppp https://vyos.dev/T4600 ) without much risk to introduce new bugs.

Apr 29 2024, 5:04 PM · VyOS 1.5 Circinus
marekm added a comment to T2820: BGP crash in if_destroy_via_zapi.

I can (carefully) say it's probably fixed in 1.3.x with newer FRR (compared to 1.2.x in the original report) - I've moved the two PPPoE servers to the same two boxes running BGP (still using OSPF to redistribute routes, at few hundreds of them scalability is probably not an issue yet that would require BGP) and they don't seem to crash anymore.
Not tested in 1.4.x yet - I may test it some time after the 1.4 final release, if I will still be able to get it.

Apr 29 2024, 4:43 PM · VyOS 1.2 Crux
rchrist created T6281: Wireguard does not pass traffic if VRFs are used.
Apr 29 2024, 4:35 PM · VyOS 1.5 Circinus
JeffWDH added a comment to T5647: Extend failover route functionality to use dynamically assigned interface next hops.

If this ever becomes a thing, support for directly connected routes (ie. PPPoE) would be great as well.

Apr 29 2024, 2:24 PM · VyOS 1.5 Circinus
jestabro closed T6111: Minor revision to unicode support in configtree backend as Resolved.
Apr 29 2024, 12:22 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
jestabro closed T5836: Add boolean check for whether config-mode script was called as a dependency, a subtask of T4820: Support for inter-config-mode script dependencies, as Resolved.
Apr 29 2024, 12:18 PM · VyOS 1.4 Sagitta
jestabro closed T5836: Add boolean check for whether config-mode script was called as a dependency as Resolved.
Apr 29 2024, 12:18 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T5839: Remove trivial redundancies in calls to config dependency scripts, a subtask of T5660: Remove redundant calls to config dependency scripts, as Resolved.
Apr 29 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T5839: Remove trivial redundancies in calls to config dependency scripts as Resolved.
Apr 29 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T5660: Remove redundant calls to config dependency scripts, a subtask of T4820: Support for inter-config-mode script dependencies, as Resolved.
Apr 29 2024, 12:17 PM · VyOS 1.4 Sagitta
jestabro closed T5660: Remove redundant calls to config dependency scripts, a subtask of T5644: Firewall groups deletion can break config, as Resolved.
Apr 29 2024, 12:17 PM · VyOS 1.5 Circinus
jestabro closed T5660: Remove redundant calls to config dependency scripts as Resolved.
Apr 29 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T6276: Do not call config dependencies on script error as Resolved.
Apr 29 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro closed T6276: Do not call config dependencies on script error, a subtask of T5660: Remove redundant calls to config dependency scripts, as Resolved.
Apr 29 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro moved T6276: Do not call config dependencies on script error from Need Triage to Finished on the VyOS 1.5 Circinus board.
Apr 29 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T6206: L2tp smoketest fails if vyos-configd is running from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 29 2024, 11:01 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav closed T6206: L2tp smoketest fails if vyos-configd is running as Resolved.
Apr 29 2024, 11:01 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav changed the status of T4921: Miniupnpd only allows for IGDv2 while IGDv1 is mostly common used and supported from Open to Needs reporter action.

@yarokifor The current version is updated, add steps to reproduce (set of commands) or close the task

vyos@r4# run show ver all | match upnp
ii  miniupnpd-nftables                   2.3.1-1                          amd64        UPnP and NAT-PMP daemon for gateway routers - nftables backend
[edit]
vyos@r4#
Apr 29 2024, 9:36 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a subtask for T3664: Build flavor system redesign: T4932: Some entries are missing or wrong in toml for builds for the arm64 architecture.
Apr 29 2024, 9:32 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a parent task for T4932: Some entries are missing or wrong in toml for builds for the arm64 architecture: T3664: Build flavor system redesign.
Apr 29 2024, 9:32 AM · Restricted Project, VyOS 1.5 Circinus, vyos-build
Viacheslav assigned T6082: BGP doesn't allow the same local AS and remote AS in peer groups to HollyGurza.
Apr 29 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6267: Improve commit failure messages for wireless interface configuration from Open to In progress.
Apr 29 2024, 9:27 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6272: PPPoE configuration does not load after deleting a PPPoE interface from the system from Open to In progress.
Apr 29 2024, 8:35 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names from Open to In progress.
Apr 29 2024, 8:34 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T2279: Router resolves as 127.0.1.1 when using Router's Recursive DNS, a subtask of T2464: DNS bugs (parent task), as Resolved.
Apr 29 2024, 8:29 AM · VyOS 1.3 Equuleus (1.3.9)
Viacheslav closed T2279: Router resolves as 127.0.1.1 when using Router's Recursive DNS as Resolved.

Fixed in the commit https://github.com/vyos/vyos-1x/commit/b75e0ba0a297fd64307960f98f30c27a689deab7

Apr 29 2024, 8:29 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus, VyOS 1.3 Equuleus (1.3.7)
dmbaturin triaged T6275: SSH-keys from home-directory are not included during an update as Normal priority.
Apr 29 2024, 7:58 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav triaged T6280: OpenVPN add oauth2 plugin as Wishlist priority.
Apr 29 2024, 7:02 AM · VyOS 1.5 Circinus
Viacheslav created T6280: OpenVPN add oauth2 plugin.
Apr 29 2024, 7:02 AM · VyOS 1.5 Circinus
kmadaras added a comment to T6275: SSH-keys from home-directory are not included during an update.

It seems like if there's an option to use remote backup in the config, yet the keys get erased every time it's upgraded that would be a bug. However , I am new to dev on VYOS, so classify it as makes sense for the team and I'll hope it get implemented at some point. 👍

Apr 29 2024, 6:38 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a comment to T6275: SSH-keys from home-directory are not included during an update.

The bug means the feature is implemented but works with issues, but this functionality has never been implemented :)
I created a root task T6279, and several similar/related subtasks.

Apr 29 2024, 6:29 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav triaged T6279: The root task for copying SSH keys and files from the home directory to use between updates as Normal priority.
Apr 29 2024, 6:25 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a subtask for T6279: The root task for copying SSH keys and files from the home directory to use between updates: T741: move user home to persistent storage.
Apr 29 2024, 6:24 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a parent task for T741: move user home to persistent storage: T6279: The root task for copying SSH keys and files from the home directory to use between updates.
Apr 29 2024, 6:24 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a subtask for T6279: The root task for copying SSH keys and files from the home directory to use between updates: T5455: SSH fingerprints aren't migrated to the new image on upgrade.
Apr 29 2024, 6:24 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a parent task for T5455: SSH fingerprints aren't migrated to the new image on upgrade: T6279: The root task for copying SSH keys and files from the home directory to use between updates.
Apr 29 2024, 6:24 AM · VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a subtask for T6279: The root task for copying SSH keys and files from the home directory to use between updates: T110: Ability to store SSH keys out of the config.
Apr 29 2024, 6:23 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a parent task for T110: Ability to store SSH keys out of the config: T6279: The root task for copying SSH keys and files from the home directory to use between updates.
Apr 29 2024, 6:23 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a subtask for T6279: The root task for copying SSH keys and files from the home directory to use between updates: T6275: SSH-keys from home-directory are not included during an update.
Apr 29 2024, 6:22 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a parent task for T6275: SSH-keys from home-directory are not included during an update: T6279: The root task for copying SSH keys and files from the home directory to use between updates.
Apr 29 2024, 6:22 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav created T6279: The root task for copying SSH keys and files from the home directory to use between updates.
Apr 29 2024, 6:22 AM · Restricted Project, VyOS 1.5 Circinus
kmadaras added a comment to T6275: SSH-keys from home-directory are not included during an update.

I disagree, being that there's a command and associated config entry to backup config to a remote ssh server. This config option requires key based authentication. It would seem that the backup function puts this in- scope as a bug. Everyone who uses the remote configuration backup to an external ssh box is affected.

Apr 29 2024, 6:17 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a comment to T6275: SSH-keys from home-directory are not included during an update.

It is not a bug but a feature request.
Only keys in /etc/ssh are copied. The keys in the home user directory were never copied.

Apr 29 2024, 6:12 AM · Restricted Project, VyOS 1.5 Circinus
jestabro added a subtask for T6176: image-tools: rationalize setting of console type: T6278: Attempt hint for console type during image install.
Apr 29 2024, 3:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a parent task for T6278: Attempt hint for console type during image install: T6176: image-tools: rationalize setting of console type.
Apr 29 2024, 3:17 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
jestabro triaged T6278: Attempt hint for console type during image install as Normal priority.
Apr 29 2024, 3:17 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus

Apr 28 2024

jestabro added a comment to T6276: Do not call config dependencies on script error.

PR for 1.5:
https://github.com/vyos/vyos-1x/pull/3372
Combined PRs for backport to 1.4 of T5839, T5660, T6276 pending.

Apr 28 2024, 11:59 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
syncer edited projects for T6277: 'protocols ospf interface ... passive disable' should be renamed, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 28 2024, 11:39 PM · VyOS 1.5 Circinus
syncer updated subscribers of T6275: SSH-keys from home-directory are not included during an update.

@Viacheslav can you create root task maybe and we consolidate related tasks under it

Apr 28 2024, 10:54 PM · Restricted Project, VyOS 1.5 Circinus
Harliff updated the task description for T6277: 'protocols ospf interface ... passive disable' should be renamed.
Apr 28 2024, 10:03 PM · VyOS 1.5 Circinus
syncer assigned T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default to Embezzle.

@Viacheslav @c-po can you guys review this PR

Apr 28 2024, 9:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Harliff updated the task description for T6277: 'protocols ospf interface ... passive disable' should be renamed.
Apr 28 2024, 9:11 PM · VyOS 1.5 Circinus
Harliff created T6277: 'protocols ospf interface ... passive disable' should be renamed.
Apr 28 2024, 9:10 PM · VyOS 1.5 Circinus
Embezzle added a comment to T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default.

PR: https://github.com/vyos/vyos-1x/pull/3371

Apr 28 2024, 8:05 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a parent task for T6276: Do not call config dependencies on script error: T5660: Remove redundant calls to config dependency scripts.
Apr 28 2024, 7:43 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a subtask for T5660: Remove redundant calls to config dependency scripts: T6276: Do not call config dependencies on script error.
Apr 28 2024, 7:43 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro triaged T6276: Do not call config dependencies on script error as High priority.
Apr 28 2024, 7:43 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
kmadaras added a comment to T6275: SSH-keys from home-directory are not included during an update.

This would be the key's themselves and known_hosts, stored in the non-root user folder. The prompt during upgrade seems to indicate it'll copy them over. However, whenever I upgrade, I have to manually perform ssh-keygen and ssh-copy-id again for my backup server to allow my config backup to work.

Apr 28 2024, 5:45 PM · Restricted Project, VyOS 1.5 Circinus
syncer added a comment to T6275: SSH-keys from home-directory are not included during an update.

we talking about athorized_keys or known_hosts?

Apr 28 2024, 3:39 PM · Restricted Project, VyOS 1.5 Circinus
Apachez created T6275: SSH-keys from home-directory are not included during an update.
Apr 28 2024, 3:30 PM · Restricted Project, VyOS 1.5 Circinus
GurliGebis added a comment to T6002: When using git as config-management commit-archive, comment is not used as commit message.

You are right - I wonder why it didn't work when I tested it back then. (Most likely I forgot to write "comment")

Apr 28 2024, 8:27 AM · Restricted Project, VyOS 1.5 Circinus

Apr 27 2024

Embezzle added a comment to T6002: When using git as config-management commit-archive, comment is not used as commit message.

I explored implementing this feature, turns out it is already available.
Correct syntax for commit messages is commit comment "example message".

Apr 27 2024, 9:24 PM · Restricted Project, VyOS 1.5 Circinus
Apachez added a comment to T6209: Improve Configuration Load/Commit Speed by moving away from deep-tree flat-file backend.

Probably related: https://vyos.dev/T5388

Apr 27 2024, 11:04 AM · VyOS 1.5 Circinus
syncer assigned T6209: Improve Configuration Load/Commit Speed by moving away from deep-tree flat-file backend to dmbaturin.
Apr 27 2024, 10:10 AM · VyOS 1.5 Circinus
syncer closed T6268: Please delete my account as Resolved.

Your account had associated activities so as per GDPR, it was anonymized instead

Apr 27 2024, 9:42 AM
syncer closed T6271: Please delete my account as Resolved.

Your account had associated activities so as per GDPR, it was anonymized instead

Apr 27 2024, 9:42 AM
syncer updated the task description for T6271: Please delete my account.
Apr 27 2024, 9:42 AM
anon3fe35 updated anon3fe35.
Apr 27 2024, 9:39 AM
anonuser445y6 updated anonuser445y6.
Apr 27 2024, 9:38 AM
anonuser35hww45 updated anonuser35hww45.
Apr 27 2024, 9:36 AM
syncer reassigned T2192: Create common crypto library for creation/verification/management of RSA/EC/SSH keys, certificates, requests, etc. from syncer to sarthurdev.
Apr 27 2024, 5:26 AM · VyOS 1.3 Equuleus (1.3.9)

Apr 26 2024

Embezzle closed T6259: PKI: Support RFC822 (email) names in SAN as Resolved.

Tested as working in: VyOS 1.5-rolling-202404250020

Apr 26 2024, 6:03 PM · VyOS 1.5 Circinus
sarthurdev changed the status of T6257: Add op mode commands for dynamic firewall address groups from Open to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3369

Apr 26 2024, 5:42 PM · VyOS 1.4 Sagitta (1.4.0-epa3)