Page MenuHomeVyOS Platform
Feed All Stories

Apr 27 2021

sever-sever <v.gletenko@vyos.io> committed rVYOSONEX1572fb3ccd54: ipsec: T3473: Decode byte csa-name for op-mode.
Apr 27 2021, 5:21 PM
GitHub <noreply@github.com> committed rVYOSONEXe5e61c36939d: Merge pull request #820 from sever-sever/T3473 (authored by c-po).
Apr 27 2021, 5:21 PM
sever-sever <v.gletenko@vyos.io> committed rVYOSONEXb141b56e6779: container: T2216: Add binding for ports and volumes.
Apr 27 2021, 5:20 PM
GitHub <noreply@github.com> committed rVYOSONEXaf108d812d15: Merge pull request #818 from sever-sever/T2216-ports (authored by c-po).
Apr 27 2021, 5:20 PM
Viacheslav changed the status of T3425: Scripts from the /config/scripts/ folder do not run on live system from In progress to Needs testing.
Apr 27 2021, 4:52 PM · VyOS 1.3 Equuleus (1.3.0-epa2)
Viacheslav added a comment to T3466: Ping command not working as expected.

@joolli Re-check please it in any Linux system with the option "-I "
Is it different?

ping -I dum0 10.0.12.40
Apr 27 2021, 4:19 PM · VyOS 1.4 Sagitta
Viacheslav moved T3455: system users can not be added in "edit" from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
Apr 27 2021, 4:13 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3455: system users can not be added in "edit".

Works perfect in VyOS 1.4-rolling-202104260417

Apr 27 2021, 4:13 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav assigned T3471: DHCP hook is not able to detect all running DHCP instances to zsdc.
Apr 27 2021, 4:10 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project
Viacheslav claimed T3473: IPSec op-mode show sa error.
Apr 27 2021, 3:51 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3473: IPSec op-mode show sa error.

PR https://github.com/vyos/vyos-1x/pull/820

Apr 27 2021, 3:49 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3473: IPSec op-mode show sa error.

sa_data wrong format

vyos@r6-roll:~$ show vpn ipsec sa
[[b'peer-203.0.113.2-tunnel-vti',
  'up',
  '4m33s',
  '168B/168B',
  '2/2',
  '203.0.113.2',
  'N/A',
  'AES_CBC_256/HMAC_SHA1_96/MODP_1024'],
 ['peer-192.0.2.2-tunnel-vti',
  'down',
  'N/A',
  'N/A',
  'N/A',
  'N/A',
  'N/A',
  'N/A']]
Connection                      State    Uptime    Bytes In/Out    Packets In/Out    Remote address    Remote ID    Proposal
------------------------------  -------  --------  --------------  ----------------  ----------------  -----------  ----------------------------------
b'peer-203.0.113.2-tunnel-vti'  up       4m33s     168B/168B       2/2               203.0.113.2       N/A          AES_CBC_256/HMAC_SHA1_96/MODP_1024
peer-192.0.2.2-tunnel-vti       down     N/A       N/A             N/A               N/A               N/A          N/A
vyos@r6-roll:~$
Apr 27 2021, 3:11 PM · VyOS 1.4 Sagitta
jestabro claimed T2946: Calling 'stty_size' causes show interfaces API to fail.
Apr 27 2021, 2:17 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
tlcarpenter added a comment to T2946: Calling 'stty_size' causes show interfaces API to fail.

This bug is still present in VyOS 1.4-rolling-202104061143.

Apr 27 2021, 1:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3499: Podman is not compatible with nat rules.

https://github.com/containernetworking/plugins/issues/461

Apr 27 2021, 11:54 AM · VyOS 1.4 Sagitta
Yuanandyuan added a comment to T3499: Podman is not compatible with nat rules.

To reproduce the bug, we need to add a source nat rule first.

configure
set nat source rule 100 outbound-interface 'eth0'
set nat source rule 100 source address '192.168.0.0/24'
set nat source rule 100 translation address masquerade
commit
save
exit

Then if we try to list the nat tables with iptables iptables -t nat -L, we will get error like table 'nat' is incompatible, use 'nft' tool.
Next, if we use podman to create a container sudo podman run -d ubuntu:latest, podman will return the error because it will look up nat rules with iptables.

Apr 27 2021, 8:12 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a project to T3494: DHCPv6 leases traceback when PD using: VyOS 1.3 Equuleus.

Work as expected on 1.4-rolling-202104260417

vyos@R1:~$ show dhcpv6 server leases 
IPv6 address        State    Last communication    Lease expiration     Remaining    Type               Pool         IAID_DUID
------------------  -------  --------------------  -------------------  -----------  -----------------  -----------  -----------------------------------------------------
2001:db8:290::/64   active   2021/04/23 14:52:48                                     prefix delegation  VyOS-DHCPv6  00:00:00:00:00:01:00:01:28:15:9b:bd:50:00:00:06:00:00
2001:db8:3456::15b  active   2021/04/27 05:07:51   2021/04/27 17:07:51  10:28:27     non-temporary      VyOS-DHCPv6  00:00:00:00:00:01:00:01:28:15:9b:bd:50:00:00:06:00:00
Apr 27 2021, 6:46 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po claimed T3335: Some OSPFv3 show commands do not work.
Apr 27 2021, 6:16 AM · VyOS 1.4 Sagitta
c-po closed T3489: NUMA has been disabled for the past few years and no-one has noticed as Unknown Status.
Apr 27 2021, 6:14 AM · VyOS 1.4 Sagitta
c-po closed T3458: vyos docs missing gretap from tunnel section as Resolved.
Apr 27 2021, 6:13 AM · VyOS 1.3 Equuleus (1.3.0), Restricted Project, VyOS 1.4 Sagitta

Apr 26 2021

raphielscape created T3501: Allow using more than one tuned profile.
Apr 26 2021, 9:02 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Unknown Object (User) committed rVYOSONEXee4891fe9ad6: dhcpv6-server: T3494: Get address from network to correct sorting.
Apr 26 2021, 5:15 PM
GitHub <noreply@github.com> committed rVYOSONEX41152d41a18f: Merge pull request #819 from DmitriyEshenko/1x-fix-dhcpv6-26042021 (authored by c-po).
Apr 26 2021, 5:15 PM
c-po closed T3487: Specifying an invalid "interface address" like dhcph leads to commit error as Resolved.
Apr 26 2021, 5:13 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T3487: Specifying an invalid "interface address" like dhcph leads to commit error.

Fixed in

Apr 26 2021, 5:13 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
lawrencepan created T3500: feature-request : ip nht resolve-via-default .
Apr 26 2021, 3:34 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3499: Podman is not compatible with nat rules.

@Yuanandyuan Can you reproduce it with vyos cli? Or it raw podman commands?

Apr 26 2021, 3:05 PM · VyOS 1.4 Sagitta
Yuanandyuan created T3499: Podman is not compatible with nat rules.
Apr 26 2021, 2:50 PM · VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T3494: DHCPv6 leases traceback when PD using from Open to Needs testing.

PR https://github.com/vyos/vyos-1x/pull/819

Apr 26 2021, 9:45 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Apr 25 2021

c-po changed the status of T3489: NUMA has been disabled for the past few years and no-one has noticed from Open to Needs testing.
Apr 25 2021, 8:05 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXbac0405f7828: lldp: T1898: add completion helper to list assigned IPs for management-address.
Apr 25 2021, 7:04 PM
c-po committed rVYOSONEXb6301bfd6a6c: lldp: T1898: add completion helper to list assigned IPs for management-address.
Apr 25 2021, 7:03 PM
c-po closed T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210 as Resolved.
Apr 25 2021, 6:58 PM · VyOS 1.4 Sagitta
c-po added a comment to T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210.

Retested this with VyOS 1.3.0-rc3 and the bahavior is the same.

Apr 25 2021, 6:58 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXbafc84f32635: policy: T3490: lower priority to keep up with Policy-Based-Routing (PBR).
Apr 25 2021, 6:55 PM
c-po committed rVYOSONEXae054410e1b2: policy: T3490: lower priority to keep up with Policy-Based_routing (PBR).
Apr 25 2021, 6:54 PM
c-po closed T3490: priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso) as Resolved.
Apr 25 2021, 6:54 PM · VyOS 1.4 Sagitta
dmbaturin created T3498: Prevent automated publication of releases that weren't yet hand-tested.
Apr 25 2021, 5:52 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3497: Prefix list with rule containing only action is not detected as error during parse, a subtask of T2425: Rewrite all policy zebra filters to XML/Python style, as Resolved.
Apr 25 2021, 4:33 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3497: Prefix list with rule containing only action is not detected as error during parse as Resolved.
Apr 25 2021, 4:33 PM · VyOS 1.4 Sagitta
c-po added a subtask for T2425: Rewrite all policy zebra filters to XML/Python style: T3497: Prefix list with rule containing only action is not detected as error during parse.
Apr 25 2021, 4:33 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a parent task for T3497: Prefix list with rule containing only action is not detected as error during parse: T2425: Rewrite all policy zebra filters to XML/Python style.
Apr 25 2021, 4:33 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX9b44fb16ee2a: policy: T3497: add verify() that prefix-lists must carry a defined prefix.
Apr 25 2021, 4:32 PM
c-po committed rVYOSONEX675b473a07f8: frr: T2638: fix error message grammar error and add debug howto.
Apr 25 2021, 4:32 PM
c-po added a comment to T3497: Prefix list with rule containing only action is not detected as error during parse.

Turns out the example config has a typo. Issue is reproducible by:

Apr 25 2021, 3:50 PM · VyOS 1.4 Sagitta
c-po changed the status of T3497: Prefix list with rule containing only action is not detected as error during parse from Open to In progress.
Apr 25 2021, 3:49 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXf44e35d339de: tunnel: T3468: add interfaces to completion helper for bridge.
Apr 25 2021, 3:48 PM
c-po closed T3468: Tunnel interfaces aren't suggested as being available for bridging (regression) as Resolved.
Apr 25 2021, 3:48 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXefa744c63b38: tunnel: T3468: add interfaces to completion helper for bridge.
Apr 25 2021, 3:41 PM
c-po claimed T3468: Tunnel interfaces aren't suggested as being available for bridging (regression).
Apr 25 2021, 9:49 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po claimed T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210.
Apr 25 2021, 9:47 AM · VyOS 1.4 Sagitta
c-po added a comment to T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210.

Analysing the provided configuration file has shown that this is unrelated to the change. The supplied configuration used a non existing route-map/prefix list on the CLI. As this is now properly validated for existence the error was triggered.

Apr 25 2021, 9:47 AM · VyOS 1.4 Sagitta
c-po added a subtask for T2199: Rewrite firewall in new XML/Python style: T3495: Modernising port/protocol definitions.
Apr 25 2021, 9:44 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
c-po added a parent task for T3495: Modernising port/protocol definitions: T2199: Rewrite firewall in new XML/Python style.
Apr 25 2021, 9:44 AM · vyatta-cfg, VyOS 1.4 Sagitta
c-po added a comment to T3497: Prefix list with rule containing only action is not detected as error during parse.

How were you be able to set this on the CLI?

Apr 25 2021, 7:48 AM · VyOS 1.4 Sagitta
c-po moved T1775: Cloud-init not running userdata runcmd from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Apr 25 2021, 7:46 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1802: Wireguard QR code in cli for mobile devices from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Apr 25 2021, 7:46 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T1802: Wireguard QR code in cli for mobile devices from Unknown Status to Resolved.
Apr 25 2021, 7:46 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX4c7bf4768915: wireguard: T1802: add client name to configuration.
Apr 25 2021, 7:32 AM
c-po committed rVYOSONEX92d0262d8d20: wireguard: T1802: generate QR code for clients on CLI.
Apr 25 2021, 7:32 AM
c-po committed rVYOSONEXdaf377aca351: wireguard: T1802: add client name to configuration.
Apr 25 2021, 7:31 AM

Apr 24 2021

c-po committed rVYOSONEXbc9dd9bbfccc: wireguard: T1802: add client name to configuration.
Apr 24 2021, 10:13 PM
owen created T3497: Prefix list with rule containing only action is not detected as error during parse.
Apr 24 2021, 8:44 PM · VyOS 1.4 Sagitta
jestabro claimed T3022: Allow to provide custom TLS certificates for the HTTP virtual hosts.
Apr 24 2021, 7:23 PM · VyOS 1.4 Sagitta (1.4.0)
c-po moved T1802: Wireguard QR code in cli for mobile devices from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 24 2021, 4:14 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T1802: Wireguard QR code in cli for mobile devices as Unknown Status.
Apr 24 2021, 4:14 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T1802: Wireguard QR code in cli for mobile devices.

https://github.com/vyos/vyos-documentation/commit/d24b81bed22231d6efc561604809e3dacf2aa0e5

Apr 24 2021, 4:13 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX92d62740a1dd: wireguard: T1802: generate QR code for clients on CLI.
Apr 24 2021, 2:55 PM
c-po committed rVYOSONEXdee472989751: policy: T2425: verify() must check if a policy is still used.
Apr 24 2021, 2:55 PM
FileGo created T3496: show conntrack-sync statistics shows a warning.
Apr 24 2021, 2:32 PM · VyOS 1.4 Sagitta
FileGo created T3495: Modernising port/protocol definitions.
Apr 24 2021, 2:23 PM · vyatta-cfg, VyOS 1.4 Sagitta
erkin closed T3439: Commit-archive location not working for scp, a subtask of T3356: Script for remote file transfers, as Resolved.
Apr 24 2021, 2:18 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin closed T3439: Commit-archive location not working for scp as Resolved.
Apr 24 2021, 2:18 PM · VyOS 1.4 Sagitta
c-po changed the status of T1802: Wireguard QR code in cli for mobile devices from Open to In progress.
Apr 24 2021, 1:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin updated the task description for T3356: Script for remote file transfers.
Apr 24 2021, 12:02 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin closed T3472: commit-confirm script not found, a subtask of T3285: Schedule reboots through systemd-shutdownd instead of atd, as Resolved.
Apr 24 2021, 12:02 PM · VyOS 1.3 Equuleus (1.3.0)
erkin closed T3472: commit-confirm script not found as Resolved.
Apr 24 2021, 12:02 PM · VyOS 1.4 Sagitta

Apr 23 2021

stepler changed the status of T3395: WAN load-balancing fails with nexthop dhcp from Unknown Status to Resolved.

Looks good on 1.3-rolling-202104220921:

Apr 23 2021, 6:54 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.4 Sagitta
stepler changed the status of T3290: Disabling GRE conntrack module fails from Unknown Status to Resolved.

Looks good on 1.3-rolling-202104220921 (including migration from 1.2.7).

Apr 23 2021, 6:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin committed rVYOSONEXb5eb482ebe25: T3356: Add support for custom source address for connections.
Apr 23 2021, 6:30 PM
GitHub <noreply@github.com> committed rVYOSONEXe5b739e963a2: Merge pull request #817 from erkin/current (authored by c-po).
Apr 23 2021, 6:30 PM
Unknown Object (User) created T3494: DHCPv6 leases traceback when PD using.
Apr 23 2021, 2:25 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) created T3493: DHCPv6 does not have prefix range validation.
Apr 23 2021, 1:55 PM · VyOS 1.4 Sagitta (1.4.0-GA)
owen added a comment to T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210.

Discussed on slack channel (#lobby) with @christian Poessinger. He has the relevant original configuration file in PM.

Apr 23 2021, 6:54 AM · VyOS 1.4 Sagitta
owen created T3492: BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210.
Apr 23 2021, 6:54 AM · VyOS 1.4 Sagitta

Apr 22 2021

xrobau added a comment to T3491: Change Kernel HZ to 1000.

https://github.com/vyos/vyos-build/pull/162

Apr 22 2021, 9:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
xrobau triaged T3491: Change Kernel HZ to 1000 as Low priority.
Apr 22 2021, 9:48 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
hard awarded VyOS Developer Documentation a Like token.
Apr 22 2021, 9:01 PM
hard awarded T1083: Implement persistent/random address and port mapping options for NAT rules a Like token.
Apr 22 2021, 8:58 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
c-po changed the status of T3490: priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso) from Open to Confirmed.
Apr 22 2021, 8:03 PM · VyOS 1.4 Sagitta
c-po added a comment to T3490: priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso).

This is a bug which is introduced by the rewrite of policy from old node.def files to XML and Python.

Apr 22 2021, 8:03 PM · VyOS 1.4 Sagitta
richardcz added a comment to T3485: Add support for building images in MacOS.

Moved to misc as requested https://github.com/vyos/vyos-utils-misc/pull/1

Apr 22 2021, 6:48 PM · vyos-build, build-iso
gelstudios renamed T3490: priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso) from priority inversion on PBR create, breaks default route (live iso) to priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso).
Apr 22 2021, 4:27 PM · VyOS 1.4 Sagitta
gelstudios created T3490: priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso).
Apr 22 2021, 2:32 PM · VyOS 1.4 Sagitta
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.112 / 5.10.30 to Update Linux Kernel to v5.4.114 / 5.10.32.
Apr 22 2021, 6:20 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
xrobau added a comment to T3489: NUMA has been disabled for the past few years and no-one has noticed.

That was generated by running make defconfig, enabling numa, and saving it back. BUILD_BIN2C is related to kexec.

Apr 22 2021, 5:14 AM · VyOS 1.4 Sagitta
xrobau created T3489: NUMA has been disabled for the past few years and no-one has noticed.
Apr 22 2021, 5:10 AM · VyOS 1.4 Sagitta

Apr 21 2021

owen added a comment to T1506: commit-archive scp/sftp public key authentication.

Additionally, I've discovered that CURL uses libssh2 which doesn't support newer host keys (e.g. current default ed25519). Most hosts generate an RSA key as well, but using ssh to log into the remote host will, by default, only place the ed25519 host key in the authorized keys file. The following command:

Apr 21 2021, 9:57 PM · VyOS 1.3 Equuleus (1.3.0)
sever-sever <v.gletenko@vyos.io> committed rVYOSONEXd657e65d66c1: container: T2216: Rewrite op-mode to python.
Apr 21 2021, 6:49 PM
GitHub <noreply@github.com> committed rVYOSONEX821d9e4d36d7: Merge pull request #816 from sever-sever/T2216-op-mode (authored by c-po).
Apr 21 2021, 6:49 PM