Page MenuHomeVyOS Platform
Feed All Stories

Jun 9 2024

c-po moved T6424: ipsec: op-mode command to generate client profiles should honor common name of the CA node that signed the server certificate from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 9 2024, 12:47 PM · VyOS 1.4 Sagitta (1.4.1)
c-po edited projects for T6424: ipsec: op-mode command to generate client profiles should honor common name of the CA node that signed the server certificate, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta (1.4.0).
Jun 9 2024, 12:47 PM · VyOS 1.4 Sagitta (1.4.1)
c-po added a comment to T6424: ipsec: op-mode command to generate client profiles should honor common name of the CA node that signed the server certificate.

https://github.com/vyos/vyos-1x/pull/3610

Jun 9 2024, 12:47 PM · VyOS 1.4 Sagitta (1.4.1)
c-po added a comment to T6407: Generate ipsec profile error.

This was merged Thu May 30 16:35:43 2024 +0200 and your image is from 2024-05-30.

Jun 9 2024, 11:21 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
aztec102 added a comment to T5169: Add CGNAT Carrier-Grade NAT based on nftables.

Good afternoon I heard that the solution based on nftables is no longer new, but you took it as a basis.
At the same time, I heard that VyOS added support for VPP. Maybe it makes sense to use two implementations?
I don’t want to offend you in any way, I appreciate everything you do.
https://s3-docs.fd.io/vpp/22.06/cli-reference/clis/clicmd_src_plugins_nat_det44.html

Jun 9 2024, 9:57 AM · Restricted Project, VyOS 1.5 Circinus
Embezzle changed the status of T6454: Explicitly set the default reverse proxy mode to HTTP from In progress to Needs testing.
Jun 9 2024, 9:51 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
talmakion added a comment to T4667: DMVPN IPSec allows cleartext GRE over the internet when reconnecting.

I may have figured something out in https://vyos.dev/T4694.

Jun 9 2024, 9:49 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T4694: Allow VyOS Firewall to Match Outbound IPSec Traffic.

It looks like outbound encap can be matched via routing expressions:

Jun 9 2024, 9:39 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
c-po moved T6460: Showing DHCPv6 leases can fail due to DUID parsing issues from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 8:10 AM · VyOS 1.4 Sagitta (1.4.1)
c-po closed T6460: Showing DHCPv6 leases can fail due to DUID parsing issues as Resolved.
Jun 9 2024, 8:10 AM · VyOS 1.4 Sagitta (1.4.1)
Vijayakumar created T6461: Create a workflow, that checks existence of codeowners file in repo, if not create one..
Jun 9 2024, 8:08 AM · Restricted Project, GitHub Infrastructure
c-po moved T6454: Explicitly set the default reverse proxy mode to HTTP from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 7:17 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6454: Explicitly set the default reverse proxy mode to HTTP from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 9 2024, 7:17 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a project to T6454: Explicitly set the default reverse proxy mode to HTTP: VyOS 1.4 Sagitta (1.4.1).
Jun 9 2024, 7:17 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Vijayakumar updated the task description for T6449: PR title/commit message check workfow to add comment to PR incase of title is not compliant.
Jun 9 2024, 6:58 AM · GitHub Infrastructure
c-po moved T6423: Require command definition nodes that have an owner to also have a priority from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 6:29 AM · VyOS 1.4 Sagitta (1.4.1)
c-po added a project to T6423: Require command definition nodes that have an owner to also have a priority: VyOS 1.5 Circinus.
Jun 9 2024, 6:29 AM · VyOS 1.4 Sagitta (1.4.1)
c-po edited projects for T6423: Require command definition nodes that have an owner to also have a priority, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.5 Circinus, VyOS 1.4 Sagitta.
Jun 9 2024, 6:29 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6423: Require command definition nodes that have an owner to also have a priority from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 9 2024, 6:29 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6453: GRUB variables with `=` in a value are parsed improperly from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 6:28 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6453: GRUB variables with `=` in a value are parsed improperly from In Progress to Finished on the VyOS 1.5 Circinus board.
Jun 9 2024, 6:28 AM · VyOS 1.4 Sagitta (1.4.1)
c-po edited projects for T6453: GRUB variables with `=` in a value are parsed improperly, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta.
Jun 9 2024, 6:28 AM · VyOS 1.4 Sagitta (1.4.1)
c-po assigned T6401: Attempts to delete vlan-to-vni option causes an unhandled exception to talmakion.
Jun 9 2024, 6:26 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6401: Attempts to delete vlan-to-vni option causes an unhandled exception from Finished to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 6:25 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6401: Attempts to delete vlan-to-vni option causes an unhandled exception from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 9 2024, 6:25 AM · VyOS 1.4 Sagitta (1.4.1)
c-po edited projects for T6401: Attempts to delete vlan-to-vni option causes an unhandled exception, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta.
Jun 9 2024, 6:25 AM · VyOS 1.4 Sagitta (1.4.1)
c-po moved T6401: Attempts to delete vlan-to-vni option causes an unhandled exception from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 9 2024, 6:25 AM · VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T6456: "monitor traffic" incorrectly consumes some arguments.

PR created: https://github.com/vyos/vyos-1x/pull/3601

Jun 9 2024, 2:07 AM · VyOS 1.5 Circinus

Jun 8 2024

nvollmar added a comment to T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.

Created a PR with a fix

Jun 8 2024, 10:12 PM · VyOS 1.4 Sagitta (1.4.1)
nvollmar added a comment to T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.

Added an example how to reproduce it

Jun 8 2024, 9:53 PM · VyOS 1.4 Sagitta (1.4.1)
nvollmar updated the task description for T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.
Jun 8 2024, 9:53 PM · VyOS 1.4 Sagitta (1.4.1)
nvollmar added a comment to T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.

Currently I'm not sure, might be related to changes from T4519

Jun 8 2024, 9:34 PM · VyOS 1.4 Sagitta (1.4.1)
fernando added a comment to T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.

please , Could you share configuration on how to replicate it ? it's also here the guideline about report a bug :

Jun 8 2024, 9:19 PM · VyOS 1.4 Sagitta (1.4.1)
nvollmar created T6460: Showing DHCPv6 leases can fail due to DUID parsing issues.
Jun 8 2024, 9:11 PM · VyOS 1.4 Sagitta (1.4.1)
nvollmar closed T6459: Showing DHCPv6 leases fails as Invalid.
Jun 8 2024, 9:10 PM · VyOS 1.4 Sagitta (1.4.0)
nvollmar created T6459: Showing DHCPv6 leases fails.
Jun 8 2024, 9:09 PM · VyOS 1.4 Sagitta (1.4.0)
fmertz created T6458: Extend support for Lanner appliances with serial LCDs.
Jun 8 2024, 7:54 PM · VyOS 1.2 Crux (VyOS 1.2.7)
Apachez added a comment to T6457: Update strip-private function to improve op command output for IPs.

The suggested change as in matching number of "x" with number of characters in each octet/hextet in the IPv4/IPv6 address will be less anonymizing than todays method.

Jun 8 2024, 7:17 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
L0crian updated the task description for T6457: Update strip-private function to improve op command output for IPs.
Jun 8 2024, 6:39 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
L0crian created T6457: Update strip-private function to improve op command output for IPs.
Jun 8 2024, 6:37 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
syncer added a comment to T6450: Use http instead of https for rolling apt repo access.

@blueish want to do a docs article for this?

Jun 8 2024, 6:35 PM
blueish added a comment to T6450: Use http instead of https for rolling apt repo access.

If you can use the APT then you can create mirror as well - the same way APT talks to the repository. There is no need for additional protocols like rsync.

Jun 8 2024, 6:26 PM
L0crian added a comment to T6455: Add Support for ZeroTier.

Draft PR Added: https://github.com/vyos/vyos-1x/pull/3599

Jun 8 2024, 5:42 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
talmakion created T6456: "monitor traffic" incorrectly consumes some arguments.
Jun 8 2024, 3:23 PM · VyOS 1.5 Circinus
L0crian claimed T6455: Add Support for ZeroTier.
Jun 8 2024, 2:18 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
L0crian created T6455: Add Support for ZeroTier.
Jun 8 2024, 2:17 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
syncer set Forum thread to https://forum.vyos.io/t/thinking-about-system-name-server-and-vrfs/14656 on T5371: "system name-server" is not vrf aware.
Jun 8 2024, 10:25 AM · Restricted Project, VyOS 1.5 Circinus

Jun 7 2024

syncer moved T5633: op-cmd: Interrupting the "tech-support report" command generates error from Need Triage to Backlog on the VyOS 1.5 Circinus board.
Jun 7 2024, 8:16 PM · Restricted Project, Restricted Project, VyOS 1.5 Circinus
Viacheslav assigned T5633: op-cmd: Interrupting the "tech-support report" command generates error to Giggum.
Jun 7 2024, 7:33 PM · Restricted Project, Restricted Project, VyOS 1.5 Circinus
Giggum added a comment to T5633: op-cmd: Interrupting the "tech-support report" command generates error.

Can this be assigned to me please, will give it a go.

Jun 7 2024, 5:45 PM · Restricted Project, Restricted Project, VyOS 1.5 Circinus
L0crian added a comment to T6452: Add QoS Op Mode Commands.

Added PR: https://github.com/vyos/vyos-1x/pull/3591

Jun 7 2024, 3:05 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
syncer closed T6446: Display the support URL from image build data in LTS builds as Resolved.
Jun 7 2024, 2:51 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza moved T5756: L2TP RADIUS backup and weight settings from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 7 2024, 1:48 PM · Restricted Project, VyOS 1.5 Circinus
HollyGurza closed T5756: L2TP RADIUS backup and weight settings as Resolved.
Jun 7 2024, 1:48 PM · Restricted Project, VyOS 1.5 Circinus
fatred added a comment to T6403: nat64 input validation required.

Will pull that on Sunday and give it a try, thanks!

Jun 7 2024, 1:47 PM · VyOS 1.5 Circinus
HollyGurza moved T6354: Get rid of the custom boot type check in version.py from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 7 2024, 1:46 PM · VyOS 1.5 Circinus
HollyGurza closed T6354: Get rid of the custom boot type check in version.py as Resolved.
Jun 7 2024, 1:46 PM · VyOS 1.5 Circinus
HollyGurza moved T4576: vpn l2tp logging level configuration from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-GA) board.
Jun 7 2024, 1:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza moved T4576: vpn l2tp logging level configuration from In Progress to Finished on the VyOS 1.5 Circinus board.
Jun 7 2024, 1:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza closed T4576: vpn l2tp logging level configuration as Resolved.
Jun 7 2024, 1:43 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza moved T5786: Add set/show system image to /image endpoint from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 7 2024, 1:42 PM · VyOS 1.5 Circinus
HollyGurza closed T5786: Add set/show system image to /image endpoint as Resolved.
Jun 7 2024, 1:42 PM · VyOS 1.5 Circinus
Vijayakumar added a comment to T6449: PR title/commit message check workfow to add comment to PR incase of title is not compliant.

Required updates in reusable workflows done.
Please approve/merge https://github.com/vyos/vyos-1x/pull/3596

Jun 7 2024, 12:36 PM · GitHub Infrastructure
Embezzle added a comment to T6454: Explicitly set the default reverse proxy mode to HTTP.

PR: https://github.com/vyos/vyos-1x/pull/3598

Jun 7 2024, 11:02 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza added a comment to T5742: Define port-group as a oneliner instead of multiline.

https://github.com/vyos/vyos-1x/pull/3597

Jun 7 2024, 10:39 AM · VyOS 1.5 Circinus
Embezzle created T6454: Explicitly set the default reverse proxy mode to HTTP.
Jun 7 2024, 10:24 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HappyShr00m added a comment to T6448: Remove all unused container images that has been downloaded.

I have not used it since I thought it would delete even running instances or stop them. if it doesn't, then may I suggest adding a description to the command to indicate that it will not impact the running containers. thanks

It should not affect running container images.
Try it on some test instance.

Jun 7 2024, 7:50 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza claimed T5742: Define port-group as a oneliner instead of multiline.
Jun 7 2024, 6:04 AM · VyOS 1.5 Circinus
Thunderstorm added a comment to T6444: "config-sync section service dhcp-server" should swap remote/source-address during sync.

what about moving the dhcp high-availability configuration under the existing high-availability node? that would allow the entire dhcp section to be synced.

Jun 7 2024, 2:06 AM · Restricted Project, VyOS 1.5 Circinus

Jun 6 2024

talmakion added a comment to T6403: nat64 input validation required.

@fatred fix should be in the latest rolling, if you'd like to give it a go?

Jun 6 2024, 11:29 PM · VyOS 1.5 Circinus
syncer triaged T6449: PR title/commit message check workfow to add comment to PR incase of title is not compliant as Normal priority.
Jun 6 2024, 9:43 PM · GitHub Infrastructure
syncer triaged T6451: Please consider removing trademarked logo/artwork in public build scripts as Wishlist priority.
Jun 6 2024, 9:43 PM · VyOS 1.5 Circinus
syncer triaged T6452: Add QoS Op Mode Commands as Normal priority.
Jun 6 2024, 9:43 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
syncer triaged T6453: GRUB variables with `=` in a value are parsed improperly as Normal priority.
Jun 6 2024, 9:43 PM · VyOS 1.4 Sagitta (1.4.1)
zsdc added a comment to T6453: GRUB variables with `=` in a value are parsed improperly.

PR for 1.5: https://github.com/vyos/vyos-1x/pull/3592

Jun 6 2024, 8:10 PM · VyOS 1.4 Sagitta (1.4.1)
zsdc moved T6453: GRUB variables with `=` in a value are parsed improperly from Need Triage to In Progress on the VyOS 1.5 Circinus board.
Jun 6 2024, 8:10 PM · VyOS 1.4 Sagitta (1.4.1)
zsdc changed the status of T6453: GRUB variables with `=` in a value are parsed improperly from Open to In progress.
Jun 6 2024, 8:09 PM · VyOS 1.4 Sagitta (1.4.1)
zsdc created T6453: GRUB variables with `=` in a value are parsed improperly.
Jun 6 2024, 7:59 PM · VyOS 1.4 Sagitta (1.4.1)
syncer added a comment to T6450: Use http instead of https for rolling apt repo access.

Public - yes.
Mirroring is not sure, as object storage does not support rsync, but maybe other tools can do it.

Jun 6 2024, 5:39 PM
Embezzle closed T6434: Support additional health check protocols in reverse-proxy as Resolved.

Tested as working in: VyOS 1.5-rolling-202406060020

Jun 6 2024, 5:02 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6254: Extend VRF table number .

At the meeting, we concluded that tables should not intersect with protocols static table x
This PR was just to make this use case when they intersect and have a more flexible configuration.
Without using the same tables, it makes no sense in this PR.
That's why it was closed

Jun 6 2024, 4:44 PM · Restricted Project, VyOS 1.5 Circinus
Apachez added a comment to T6254: Extend VRF table number .

Care to elaborate on why this became "wontfix"?

Jun 6 2024, 4:24 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav removed a project from T6092: Static interface index: VyOS 1.4 Sagitta (1.4.0-GA).
Jun 6 2024, 4:24 PM · VyOS 1.5 Circinus
jestabro moved T3821: Add latest versions to default config files from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 6 2024, 4:20 PM · VyOS 1.5 Circinus
jestabro closed T3275: Disable conntrack helpers by default as Resolved.

Resolved by T6006.

Jun 6 2024, 4:20 PM · VyOS 1.5 Circinus
jestabro closed T3821: Add latest versions to default config files as Resolved.
Jun 6 2024, 4:18 PM · VyOS 1.5 Circinus
jestabro closed T3821: Add latest versions to default config files, a subtask of T3275: Disable conntrack helpers by default, as Resolved.
Jun 6 2024, 4:18 PM · VyOS 1.5 Circinus
jestabro added a comment to T3821: Add latest versions to default config files.

Resolved by PR merged in T6006.

Jun 6 2024, 4:17 PM · VyOS 1.5 Circinus
Viacheslav closed T6254: Extend VRF table number as Wontfix.
Jun 6 2024, 3:52 PM · Restricted Project, VyOS 1.5 Circinus
n.fort changed the status of T3900: Add support for raw tables to firewall from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3578

Jun 6 2024, 3:25 PM · VyOS 1.5 Circinus
n.fort changed the status of T6394: Migrate conntrack timeout sysctl parameter to firewall from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3578

Jun 6 2024, 3:25 PM · VyOS 1.5 Circinus
marekm added a comment to T6450: Use http instead of https for rolling apt repo access.

I see. Thank you for explaining this.
Will this new storage continue to be public - or only for those with paid subscriptions?
If it will be public - will it be possible to mirror, to serve plain http to those who need it?

Jun 6 2024, 2:41 PM
syncer closed T6450: Use http instead of https for rolling apt repo access as Wontfix.

The current host is scheduled for decommissioning.
Future repositories will use object storage that doesn't support plain HTTP

Jun 6 2024, 2:03 PM
L0crian created T6452: Add QoS Op Mode Commands.
Jun 6 2024, 1:40 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
marekm created T6451: Please consider removing trademarked logo/artwork in public build scripts.
Jun 6 2024, 1:04 PM · VyOS 1.5 Circinus
marekm created T6450: Use http instead of https for rolling apt repo access.
Jun 6 2024, 12:25 PM
daniil added a comment to T6092: Static interface index.

I don't know how to solve this problem. I suggest rejecting the problem.

Jun 6 2024, 11:37 AM · VyOS 1.5 Circinus
talmakion added a comment to T6045: show more detail when using lldp.

I've created a PR for this one: https://github.com/vyos/vyos-1x/pull/3590 covering both pieces - for Remote Port, if the PortID type is ifname, we use the PortID before falling through to Descr and so on. The detail view side of things is a straightforward call to lldpcli in this PR but could be improved.

Jun 6 2024, 11:29 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6448: Remove all unused container images that has been downloaded.

I have not used it since I thought it would delete even running instances or stop them. if it doesn't, then may I suggest adding a description to the command to indicate that it will not impact the running containers. thanks

Jun 6 2024, 10:00 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
manuel81 added a comment to T6445: config-sync should be saved on receiving peer, after auto-commit.

Ok, auto-rollback might be a topic for another thread? Don't you think? OpenWRT does it, for example, and it has been useful to me in a few situations.

Jun 6 2024, 9:25 AM · VyOS 1.5 Circinus