no_tag_node_value_mangle=True does not exist on VyOS 1.3, thus a backport is currently not possible. @jestabro can we backport this?
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Feed Search
Jun 10 2021
Jun 10 2021
c-po changed the status of T3611: WWAN interface (MC7710) no longer works on Kernel 5.10 from Open to In progress.
Jun 9 2021
Jun 9 2021
c-po moved T2916: A state of VTI interface in a configuration does not being processing properly from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po moved T2855: disabled vti interfaces still working from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po moved T2855: disabled vti interfaces still working from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.8) board.
Jun 8 2021
Jun 8 2021
c-po updated the task description for T2816: Rewrite IPsec scripts with the new XML/Python approach.
c-po moved T3605: Allow to set prefer-global for ipv6-next-hop from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po moved T3605: Allow to set prefer-global for ipv6-next-hop from Open to Finished on the VyOS 1.4 Sagitta board.
c-po added projects to T3605: Allow to set prefer-global for ipv6-next-hop: VyOS 1.3 Equuleus, VyOS 1.4 Sagitta.
c-po moved T3607: [route-map] set ipv6 next-hop prefer-global from Open to Finished on the VyOS 1.4 Sagitta board.
c-po moved T3607: [route-map] set ipv6 next-hop prefer-global from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po changed the status of T3289: No description for node "service" conf-mode from Confirmed to In progress.
Jun 7 2021
Jun 7 2021
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 6 2021
Jun 6 2021
c-po closed T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 5 2021
Jun 5 2021
Jun 4 2021
Jun 4 2021
Hi @francis the latest FRR version lacks support for Cisco authentication https://github.com/FRRouting/frr/blob/master/nhrpd/nhrp_peer.c#L1212
c-po closed T3595: Cannot create new VTI interface, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
c-po updated the task description for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.123 / 5.10.41 to Update Linux Kernel to v5.4.124 / 5.10.42.
c-po moved T3195: Add support for cisco style GRE keepalives from Open to Backlog on the VyOS 1.4 Sagitta board.
c-po changed the status of T3195: Add support for cisco style GRE keepalives from Open to Needs testing.
c-po moved T3195: Add support for cisco style GRE keepalives from Need Triage to Backlog on the VyOS 1.3 Equuleus board.
c-po moved T3592: Set default TTL 64 for tunnels from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po moved T3592: Set default TTL 64 for tunnels from Open to Finished on the VyOS 1.4 Sagitta board.
c-po moved T3594: Disable by default service strongswan-starter from Open to Finished on the VyOS 1.4 Sagitta board.
c-po committed rVYOSONEX5a029892e97a: tunnels: T3592: Set default TTL to 64 (authored by sever-sever <v.gletenko@vyos.io>).
c-po moved T3132: Enable egress flow accounting from Need Triage to Finished on the VyOS 1.3 Equuleus board.
c-po committed rVYOSONEX77866ccb1619: flow-accounting: T3132: fix egress iptables chain (authored by jpbede).
Jun 3 2021
Jun 3 2021
Yes, also this part will be migrated in the next couple of weeks as we plan to get rid of all legacy code in the 1.4 release cycle.
c-po changed the status of T3595: Cannot create new VTI interface, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, from Open to Confirmed.
Jun 1 2021
Jun 1 2021
Why not use the mentioned method of sysctl`
@shaferstockton can you please post your entire generated openvpn.conf file?
c-po closed T3594: Disable by default service strongswan-starter, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
I can not reproduce the issue using the following command sequence using VyOS 1.4-rolling-202106010417:
May 31 2021
May 31 2021
May 30 2021
May 30 2021
c-po moved T3524: Please implement bgp graceful-shutdown from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.8) board.
c-po moved T3524: Please implement bgp graceful-shutdown from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Turns out this was actually a very small change in the old framework - implemented also on 1.3 and backported to 1.2.8
c-po moved T3524: Please implement bgp graceful-shutdown from Open to Finished on the VyOS 1.4 Sagitta board.
c-po moved T2641: Rewrite vpn ipsec OP commands in new style XML syntax from Open to Finished on the VyOS 1.4 Sagitta board.
c-po moved T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer from Open to Finished on the VyOS 1.4 Sagitta board.
c-po updated the task description for T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer.
c-po closed T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer, a subtask of T2174: Rewrite protocol BGP to new XML/Python style, as Resolved.
c-po closed T2641: Rewrite vpn ipsec OP commands in new style XML syntax, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
c-po edited projects for T3093: Add xml for vpn ipsec, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.