Page MenuHomeVyOS Platform
Feed Search

Dec 4 2017

syncer added a comment to T488: GRUB can't boot from software RAID.

i mean, if that works silently but after install fails to boot from SW RAID
assuming that part of raid installs affected

Dec 4 2017, 5:40 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T488: GRUB can't boot from software RAID.

@syncer what do you mean by "other installs"?

Dec 4 2017, 5:38 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer added a comment to T488: GRUB can't boot from software RAID.

i think we also need mechanism to fix other installs once we sort out this problem

Dec 4 2017, 5:25 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po created T488: GRUB can't boot from software RAID.
Dec 4 2017, 5:20 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Tiberius added a comment to T484: Rules can't be deleted from firewall rule sets used in zone policies.

Here it is

Dec 4 2017, 3:47 AM · VyOS 1.2 Crux (VyOS 1.2.1)
syncer updated subscribers of T485: iBGP recursive route via OSPF-learned loopback next-hop selects (wrong) interface next-hop.
Dec 4 2017, 1:39 AM · Invalid
Tiberius changed Version from 1.2 to 999.201711232137 on T484: Rules can't be deleted from firewall rule sets used in zone policies.
Dec 4 2017, 1:37 AM · VyOS 1.2 Crux (VyOS 1.2.1)
Tiberius changed Version from 1.2 to 999.201711232137 on T485: iBGP recursive route via OSPF-learned loopback next-hop selects (wrong) interface next-hop.
Dec 4 2017, 1:37 AM · Invalid
Tiberius added a project to T486: Static IPv6 default route via OSPFv3-learned loopback is not activated: VyOS 1.2 Crux.
Dec 4 2017, 1:36 AM · Bugs, VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project, test

Dec 3 2017

Tiberius added a comment to T485: iBGP recursive route via OSPF-learned loopback next-hop selects (wrong) interface next-hop.

Rebooting the router fixed it...

Dec 3 2017, 11:46 PM · Invalid
Tiberius created T485: iBGP recursive route via OSPF-learned loopback next-hop selects (wrong) interface next-hop.
Dec 3 2017, 11:15 PM · Invalid
dmbaturin added a comment to T484: Rules can't be deleted from firewall rule sets used in zone policies.

I appreciate your work! Could you make the patch easier for us to merge and then to track for release and changelog?
Here's the proper procedure for making patches: https://wiki.vyos.net/wiki/Submit_a_patch

Dec 3 2017, 12:48 PM · VyOS 1.2 Crux (VyOS 1.2.1)
Tiberius added a comment to T484: Rules can't be deleted from firewall rule sets used in zone policies.

At a glance, a lot more looks wrong here than just this. Why is it checking for every rule in the rule set if the rule set is uniquely named?

Dec 3 2017, 12:21 AM · VyOS 1.2 Crux (VyOS 1.2.1)
Tiberius created T484: Rules can't be deleted from firewall rule sets used in zone policies.
Dec 3 2017, 12:14 AM · VyOS 1.2 Crux (VyOS 1.2.1)

Dec 2 2017

c-po edited a custom field on T480: Error if no serial interface is present (/dev/ttyS0: not a tty).
Dec 2 2017, 8:28 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po updated the task description for T480: Error if no serial interface is present (/dev/ttyS0: not a tty).
Dec 2 2017, 8:28 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po updated the task description for T480: Error if no serial interface is present (/dev/ttyS0: not a tty).
Dec 2 2017, 8:22 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po renamed T480: Error if no serial interface is present (/dev/ttyS0: not a tty) from /dev/ttyS0: not a tty to Error if no serial interface is present (/dev/ttyS0: not a tty).
Dec 2 2017, 8:19 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po closed T154: monitor feature strange message as Wontfix.
Dec 2 2017, 8:08 AM · Rejected
c-po added a comment to T154: monitor feature strange message.

Backporting coreutils could give us quiet some headache ... let's just schedule this for VyOS 1.3 where it will be auto fixed.

Dec 2 2017, 8:07 AM · Rejected

Dec 1 2017

carl.byington created T483: Add google-authenticator 2fa .
Dec 1 2017, 7:12 PM · VyOS 1.4 Sagitta
c-po moved T386: VyOS boot grub timeout in beta image? from Need Triage to In Progress on the VyOS 1.2 Crux board.
Dec 1 2017, 6:45 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T386: VyOS boot grub timeout in beta image?.

Implemented as 10 second timeout in https://github.com/vyos/vyos-build/pull/14

Dec 1 2017, 6:22 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po created T482: SNMP: non verbose error message on wrong listen-address.
Dec 1 2017, 5:23 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc4)
c-po moved T434: RADIUS as l2tp vpn authentication mode is broken from Need Triage to In Progress on the VyOS 1.2 Crux board.
Dec 1 2017, 4:57 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a project to T452: WiFi: Enable support for 5GHz AccesPoints with DFS: VyOS 1.3 Equuleus.
Dec 1 2017, 4:57 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@alainlamar I tried and tried but I never made it to properly build an image that has everything inside. This is a task for 1.3.x then, which is based on Debian 9! If this is setup it should be a piece of cake.

Dec 1 2017, 4:56 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T434: RADIUS as l2tp vpn authentication mode is broken.

Fixed in

Dec 1 2017, 4:47 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
aopdal added a comment to T306: Migration from vyatta-quagga to FRR.

We are hit by bugs in the OSPF of Quagga which are not fixed in newer versions, but are fixed in FRR. Most of my stuff is working. Getting up to date on Quagga is probably also quite some job, and from the testing perspective it's just the same. Everything must be tested... From the design and documentation perspective we need to put down some more work if we are using FRR.

Dec 1 2017, 8:54 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), vyos-frr
Merijn added a comment to T306: Migration from vyatta-quagga to FRR.

The current Quagga included is rather old, so if it is possible to migrate to FRR that would make a big difference.
I am testing my configs in the alpha release and so far it looks good. To assist i can test setups and configs.

Dec 1 2017, 8:19 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), vyos-frr
aopdal added a comment to T306: Migration from vyatta-quagga to FRR.

@dmbaturin is there a (estimated/proposed) releasedate on 1.2.0?

Dec 1 2017, 7:56 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), vyos-frr
dmbaturin added a comment to T306: Migration from vyatta-quagga to FRR.

@aopdal I suppose 1.2.0 will stick with quagga, though if we are able to weed out all issues with FRR in reasonable timeframe, perhaps we can attempt migration to FRR in 1.2.0 rather than a release after it.

Dec 1 2017, 4:01 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), vyos-frr

Nov 30 2017

aopdal added a comment to T105: VRRPv3 support (VRRP for IPv6).

Using two debian VM i have played around with this today.
I have been using debian 9.2 and keepalived v1.3.2

Nov 30 2017, 2:40 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
carl.byington added a project to T481: traffic-policy limiter is broken: VyOS 1.2 Crux.
Nov 30 2017, 12:45 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 29 2017

carl.byington added a comment to T296: Enabling NetFlow fails, iptables chain VYATTA_CT_PREROUTING_HOOK unknown.

Ah, I missed the -t raw. I thought maybe the ULOG target needs uacctd running first on netlink group 2, so I started it:

Nov 29 2017, 7:49 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po created T480: Error if no serial interface is present (/dev/ttyS0: not a tty).
Nov 29 2017, 7:01 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
aopdal added a comment to T306: Migration from vyatta-quagga to FRR.

Are we going for FRR in 1.2, or are we going to keep Quagga?
I'm just wondering what I should test ;-)

Nov 29 2017, 9:20 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), vyos-frr
Asteroza added a comment to V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.

I suppose I should also mention that I am also using a proxy PAC file hosted on the internal lighttpd instance as well over HTTP (again, can't use HTTPS due to certificate trust issues for unknown client PC's) which is important due to DHCP server URL designation of a PAC/WPAD file currently.

Nov 29 2017, 7:12 AM · VyOS 1.3 Equuleus, VyOS 1.2 Crux

Nov 28 2017

cwadge added a comment to V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.

Web proxies are relatively complex by nature and offer an attractive attack surface. I don't like having such software on routers at all, even if they are properly maintained. Better to relegate this functionality to a system which is external to the router.

Nov 28 2017, 11:34 PM · VyOS 1.3 Equuleus, VyOS 1.2 Crux
c-po added a comment to T473: missing source packages, git submodule init.

@carl.byington I added a branch on my Github fork: https://github.com/c-po/vyos-build/commit/65f1b3d77d2ac1022004dcc6095db5683e0ff917 this has all the submodules you mentioned.

Nov 28 2017, 7:55 PM
c-po added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@carl.byington Thanks for this blogpost. Do you mind in supplying a build-all bash script we can have insied the vyos-build repository?

Nov 28 2017, 7:12 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T473: missing source packages, git submodule init.

@carl.byington thank you for the investigation. I'll check if it produces a reasonable ISO and will perform a pull request.

Nov 28 2017, 7:02 PM
syncer triaged T479: ospfd: incorrect LSA checksum validation as Normal priority.
Nov 28 2017, 5:33 PM · Rejected
aopdal added a comment to T296: Enabling NetFlow fails, iptables chain VYATTA_CT_PREROUTING_HOOK unknown.

But if you run:

Nov 28 2017, 5:30 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
cwadge triaged T455: Add haveged package as Wishlist priority.
Nov 28 2017, 4:10 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc4)
carl.byington added a comment to T296: Enabling NetFlow fails, iptables chain VYATTA_CT_PREROUTING_HOOK unknown.

No, ULOG is there:

Nov 28 2017, 2:36 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
carl.byington added a comment to T454: flow-accounting broken.

duplicate of T296, this one can be deleted.

Nov 28 2017, 2:32 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
carl.byington added a comment to T473: missing source packages, git submodule init.

I was not able to create a patch for vyos-build since I am missing something in my understanding of submodules. There should be some way to generate a git patch that adds submodules. But this works:

Nov 28 2017, 12:06 AM

Nov 27 2017

Line2 added a comment to T475: IPSec set log-mode broken.
vyos@vyos-test# ls -al /run
total 56
drwxr-xr-x 25 root     root       900 Nov 27 21:29 .
drwxr-xr-x  1 root     root      4096 Nov 24 20:22 ..
drwxr-xr-x  2 root     root        40 Nov 24 20:23 agentx
-rw-r--r--  1 root     root         5 Nov 24 20:22 atd.pid
drwxr-xr-x  2 root     root        80 Nov 24 20:22 blkid
srwxrwx---  1 root     root         0 Nov 27 21:29 charon.ctl
-rw-r--r--  1 root     root         6 Nov 27 21:29 charon.pid
srwxrwx---  1 root     root         0 Nov 27 21:29 charon.vici
-rw-r--r--  1 root     root         5 Nov 24 20:22 crond.pid
Nov 27 2017, 9:04 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T475: IPSec set log-mode broken.

Can you please do a ls -al /run and check for charon.ctl?

Nov 27 2017, 9:02 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Line2 added a comment to T475: IPSec set log-mode broken.

that's exactly how i tested before. All other vpn config was done before and is running fine (commit and saved). As soon as i change (set or delete) something at 'vpn ipsec logging log-level' oder vpn ipsec logging log-modes' I get this message:

Nov 27 2017, 8:38 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T475: IPSec set log-mode broken.

Can you please try the following, setup your IPSEC connection w/o log-modes and check that after commit your connection is online. In a second step try set vpn ipsec logging log-modes mgr .

Nov 27 2017, 8:12 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Line2 added a comment to T475: IPSec set log-mode broken.

yes that's the version I tested on

Nov 27 2017, 7:25 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T475: IPSec set log-mode broken.

CurrentlyI'm running VyOS 999.201711072137 but upgrading to 999.201711232137 still works.

Nov 27 2017, 7:06 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Line2 added a comment to T475: IPSec set log-mode broken.

thanks @c-po.
I don't know what other information could be relevant. It's an instance on AWS. Nothing special before. The log-modes are set after the error messages. I can say that. Look at this here:

Nov 27 2017, 7:00 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T475: IPSec set log-mode broken.

I can't reproduce this.

Nov 27 2017, 6:31 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
aopdal added a comment to V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.

With limited people in the project I think the "core" features for a router should be of priority. A lot of things is nice to have, but we need to have a good router.
IPv6 with VRRP, connection tracking, updated routing engine, IPv6 PD is stuff we need and requires a lot of design, implementation, testing and documentation.

Nov 27 2017, 1:38 PM · VyOS 1.3 Equuleus, VyOS 1.2 Crux
aopdal added a comment to Q116: Howto perform IGMP memebership management?.

This is a drawing of my current lab environment.

Nov 27 2017, 1:20 PM · VyOS 1.2 Crux, VyOS 1.1.x
aopdal asked Q116: Howto perform IGMP memebership management?.
Nov 27 2017, 1:18 PM · VyOS 1.2 Crux, VyOS 1.1.x
Caesar305 added a comment to T143: Add support for Large BGP Community.

Any updates to this?

Nov 27 2017, 4:57 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc3)
syncer added a comment to V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.

@Asteroza thanks for feedback!

Nov 27 2017, 12:58 AM · VyOS 1.3 Equuleus, VyOS 1.2 Crux
Asteroza created T478: Firewall address group (multi and nesting).
Nov 27 2017, 12:48 AM · VyOS 1.4 Sagitta
Asteroza added a comment to V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.

I do use squid in production, but without the hardcoded blacklists, rather my own local list only, and as an explicit proxy with a rejection message locally hosted as HTTP on the inbuilt lighttpd instance (can't serve HTTPS rejections because of certificate trust issues).

Nov 27 2017, 12:45 AM · VyOS 1.3 Equuleus, VyOS 1.2 Crux

Nov 26 2017

syncer triaged T477: Strongswan issue #1220 (packet loss on AWS) as High priority.
Nov 26 2017, 7:53 PM · VyOS 1.2 Crux (VyOS 1.2.0-GA)
syncer added a comment to T477: Strongswan issue #1220 (packet loss on AWS).

Thanks @Line2 !

Nov 26 2017, 7:53 PM · VyOS 1.2 Crux (VyOS 1.2.0-GA)
Line2 created T477: Strongswan issue #1220 (packet loss on AWS).
Nov 26 2017, 7:44 PM · VyOS 1.2 Crux (VyOS 1.2.0-GA)
syncer updated the task description for T462: Make sure automatically run scripts are executed with vyattacfg GID.
Nov 26 2017, 6:23 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer assigned T462: Make sure automatically run scripts are executed with vyattacfg GID to dmbaturin.
Nov 26 2017, 6:23 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer triaged T465: ZeroTier integration as Wishlist priority.
Nov 26 2017, 6:21 PM · Rejected
syncer assigned T473: missing source packages, git submodule init to UnicronNL.
Nov 26 2017, 6:17 PM
syncer closed Q6: UI if do it, how it should look like? as obsolete.
Nov 26 2017, 6:11 PM · VyOS 1.2 Crux, VyOS 2.0.x
syncer closed Q78: L2TPv3 over IPSEC configuration where one of the sites is using a Dynamic IP address as resolved.
Nov 26 2017, 6:04 PM · VyOS 1.1.x, VyOS 1.2 Crux
syncer closed Q107: Suggestion for adding functionality global group as resolved.
Nov 26 2017, 5:57 PM · VyOS 1.2 Crux
syncer created V5: Should we keep web proxy functionality in base 1.2/1.3/2.0?.
Nov 26 2017, 5:50 PM · VyOS 1.3 Equuleus, VyOS 1.2 Crux
syncer assigned T475: IPSec set log-mode broken to c-po.

hey @c-po
can you check this one.

Nov 26 2017, 2:31 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Line2 created T475: IPSec set log-mode broken.
Nov 26 2017, 11:13 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 25 2017

syncer triaged T474: Monitoring of plain-ipsec tunnels as Wishlist priority.
Nov 25 2017, 5:11 PM · Restricted Project, VyOS Rolling
syncer created T474: Monitoring of plain-ipsec tunnels.
Nov 25 2017, 5:10 PM · Restricted Project, VyOS Rolling

Nov 23 2017

c-po closed T470: vyatta-op branch current, fails to build from source as Resolved.
Nov 23 2017, 11:15 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po updated subscribers of T470: vyatta-op branch current, fails to build from source.

Thank you @carl.byington, Pull Request generate for @UnicronNL or @dmbaturin https://github.com/vyos/vyatta-op/pull/13

Nov 23 2017, 8:10 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 22 2017

carl.byington added a comment to T463: Nightly builds on jessie64 host hang at cloning the git repo.

The nightly builds started working again on the 16th, so this task should be moved to 'finished'.

Nov 22 2017, 6:18 PM · Infrastructure
carl.byington added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

I have a script that builds all (well, almost all) the vyos packages from source, including the kernel, and then builds an iso with those rebuilt packages.

Nov 22 2017, 6:07 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
carl.byington created T473: missing source packages, git submodule init.
Nov 22 2017, 5:36 PM
alainlamar added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@c-po Thanks for sharing your Kernel build steps. My question however was about building a custom Kernel _into_ a new ISO, so includung a successful run of "make iso".

Nov 22 2017, 4:55 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T281: Add https support to the load command..

@afics is this implementation as expected? If so, this feature request is completed @syncer.

Nov 22 2017, 6:10 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 21 2017

carl.byington added a comment to T453: Qos/Match.pm shaper max-length.

patch attached{F27881}

Nov 21 2017, 11:57 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
carl.byington created T470: vyatta-op branch current, fails to build from source.
Nov 21 2017, 5:35 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 20 2017

syncer added a comment to T373: incorporate cloud-init development into main project.

cloud init will be available in 1.2 and up
not included in 1.1.8

Nov 20 2017, 5:01 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
rem5 added a comment to T373: incorporate cloud-init development into main project.

Started testing in 1.1.8. It doesn't show as a command.

Nov 20 2017, 4:59 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer added a comment to T14: Provide VMware OVF and OVA.

@higebu here is latest ovf that i used for official ova -


basically i stick with debian6 as OS and HW9 version of virtual hardware
1 vCPU and 512mb of RAM but hotplug enabled for both.
i also set 10gb of disk (safe enough for all cases)
2 nics (VMXNET3)
ssh enabled by default
serial console removed (generating noise in logs and console)

Nov 20 2017, 2:35 PM · VyOS 1.2 Crux (VyOS 1.2.1)
c-po added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@alainlamar Unfortunately I have some problems with APT building my ISO but I added the steps for you here: https://wiki.vyos.net/wiki/Rebuild_VyOS_kernel_Step#VyOS_1.2.x

Nov 20 2017, 9:45 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 19 2017

alainlamar added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@c-po Yes, I happily would!
BTW: How did you manage to build 1.2.x with a custom Kernel? I continuously fail on the attempt when the build process tries to build the initrd for the custom Kernel. Would you mind to share your build steps?

Nov 19 2017, 9:02 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
Line2 added a comment to T440: VTI/IPSec with dynamic peer.

Thanks Brandon for your findings. IPSec with dynamic peer is no problem in VyOS. We use some of that with x.509 auth. Only VTI with dynamic peer is not allowed by VyOS. Do you know more about VTI and dynamic peer with strongswan on other linux installations (not VyOS)? Is it possible there?

Nov 19 2017, 3:39 PM · VyOS 1.3 Equuleus (1.3.6)
c-po added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

@alainlamar would you be willing to test a special image with all your required changes inside (Kernel, hostapd, firmware-atheros)? Only extension of vyatta-wireless is missing, but looks you could do this "on the fly"?

Nov 19 2017, 1:56 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T452: WiFi: Enable support for 5GHz AccesPoints with DFS.

I can confirm that by using this approach we can have hostapd 2.4 from debian stretch

Nov 19 2017, 1:43 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Nov 18 2017

c-po added a comment to T380: Add system service fail2ban.

Closed b/c I wanted to rewrite it using vyos-1x command package.

Nov 18 2017, 8:06 AM · Invalid
syncer updated subscribers of T285: Add flag for DNSmasq to query all dns servers.

me neither
@dmbaturin can you move it to finished?

Nov 18 2017, 12:19 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
UnicronNL added a comment to T285: Add flag for DNSmasq to query all dns servers.

@syncer This tasked can be moved to finished, i do not have the rights.

Nov 18 2017, 12:18 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
UnicronNL added a comment to T380: Add system service fail2ban.

What to so with this task, requests were closed.

Nov 18 2017, 12:12 AM · Invalid

Nov 17 2017

Michael created T465: ZeroTier integration.
Nov 17 2017, 8:21 AM · Rejected