yep hope this gets added. openvpn dco seems ready for primetime and various online benchmarks show it outperforming wireguard and using half the cpu or less in doing so, on x86 AM4 platforms using AES-NI ciphers.
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Sat, Aug 29
I will help formatting the PR if anything, dont woryy
You are right - Public task first, then PR with the T task reference
Ok, thank you! For some reason I thought this projected wanted an issue created before opening any PRs, but I see that isn't the case in the contributing docs. Should I reference this issue in my PR?
Thanks,
yes, usually if you have a fix - you fork the vyos.vyos, branch it, implement the fix and raise a PR that VyOS Gurus review and make it merge at some point.
Alternatively, you submit a bug or feature request, and other collaborators can try and implement it.
Sorry for the confusion, no PR opened for this. I figured I'd include relevant information for a potential fix. I can open a PR with the changes to plugins/modules/vyos_user.py if I'm not missing anything.
@mson thanks for submitting this?
You mentioned a fix - is there a PR for this, or you want someone to look into this and fix, please?
I am unable to edit the task (issues with edit policy permissions). However, the following line can be ignored:
Fri, Aug 28
Aug 27 2026
@Viacheslav
I used an AI assistant to draft the write-up. The bug, the diagnosis and the production validation are mine — I've been chasing this for two days on a live HA pair. Happy to answer anything about the code.
if that helps, I worked on a fix for defect 2 and created a draft PR
https://github.com/vyos/vyos-1x/pull/5430
vyos-1x#5421 closed by jestabro: post-config.d is unused Vyatta-era and will not be returned in this form. docs#2217 closed to match. We keep an operator vyos-postconfig-bootup.script runner out of tree.
Addressed alexk37 2026-08-22 follow-up on https://github.com/vyos/vyos-1x/pull/5342 (a526ccdde; rebased onto current rolling):
Addressed alexk37 2026-08-22 follow-up on https://github.com/vyos/vyos-1x/pull/5340 (6d2ee03b2; rebased onto current rolling):
@Viacheslav which option would you choose for Defect 1 ? regex extension ?
I probably shoudn't have claimed this one, should I ?
Fix proposed in https://github.com/vyos/vyos-1x/pull/5429
@Viacheslav, sure
@rockfish do you want to claim the task and add a PR fix?
FYI, this is meant for VyOS Ansible Collection but the "Submit Bug Report" link from the home page populates the form with the VyOS Rolling tag, and I was not able to update it.
Aug 26 2026
Is there any update on this at all, please? Stream is still sitting vulnerable as far as I can see. Even a Stream 2006.03-1 with just an updated kernel would have been vastly preferable, versus no mitigation and no new Stream image for >3 months since the CVE disclosures (and five months since the last Stream release).
Reminder for myself, update initial post as soon as that is possible to:
There are all dependencies that were used for podman build https://github.com/vyos/vyos-build/blob/14d959fbb5ce0d2bf051c236b9050be81e17c885/scripts/package-build/podman/package.toml#L189-L198
Podman upstream has an open PR related to exactly this case: https://github.com/podman-container-tools/podman/pull/27033 ("healthcheck for non-systemd podman"). The current non-systemd implementation doesn't schedule health checks automatically, and that PR adds a scheduler for it.
Aug 25 2026
If you need to temporarily resolve this issue, you can try increasing the number of all ethX (for example, starting the interface naming from eth100). I have a server with 8x E823-L ports and named them from eth101-eth108.
@canoziia we've discussed with maintainers, could you add a PR for the vyos-vpp-patches repo?
We should try to find the root cause.
If you don't mind I can post a report from LLM. Although it's long, I think it did find the problem.