Page MenuHomeVyOS Platform
Feed All Stories

Aug 12 2021

Viacheslav added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: T3745: op-mode IPSec show vpn ipse sa sorting.
Aug 12 2021, 9:54 AM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3745: op-mode IPSec show vpn ipse sa sorting: T2816: Rewrite IPsec scripts with the new XML/Python approach.
Aug 12 2021, 9:54 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
Viacheslav created T3745: op-mode IPSec show vpn ipse sa sorting.
Aug 12 2021, 9:42 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
FileGo claimed T3744: Dns forwarding statistics formatting missing a new line.
Aug 12 2021, 9:06 AM · VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
FileGo triaged T3744: Dns forwarding statistics formatting missing a new line as Wishlist priority.
Aug 12 2021, 9:06 AM · VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
Viacheslav created T3743: l2tp doesn't work after reboot if outside-address not 0.0.0.0.
Aug 12 2021, 8:59 AM · VyOS 1.4 Sagitta
Viacheslav created T3742: Add l2tp force-encapsulation option.
Aug 12 2021, 8:09 AM · VyOS 1.4 Sagitta
c-po changed the status of T3734: Move EVPN VRF up in FRR config from Open to Confirmed.
Aug 12 2021, 8:01 AM · VyOS 1.4 Sagitta
c-po closed T3731: verify_accel_ppp_base_service return wrong config error for SSP as Resolved.
Aug 12 2021, 8:00 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3737: openvpn-option needs to be able to support quotes as since openvpn 2.4..

We have this problem in more then one case. The solution so gar is to use " as quote which we later on render in Jinja2

Aug 12 2021, 7:45 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
c-po added a comment to T3738: openvpn fails if server and authentication are configured.

Sounds like a missing validator. Wo should prevent users from doing such things ;)

Aug 12 2021, 7:33 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3741: [BGP] default no-ipv4-unicast - by default.

@Viacheslav, when we use a migrator we should enable the ipv4 afi for each and every ipv4 neighbor if its not configured explicitly. What do you think? If a peer group is configured for that neighbour, too - that will be no issue.

Aug 12 2021, 7:04 AM · VyOS 1.4 Sagitta

Aug 11 2021

jestabro moved T3732: override-default helper should support adding defaultValues to default less nodes from Open to Finished on the VyOS 1.4 Sagitta board.
Aug 11 2021, 11:33 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
jestabro closed T3732: override-default helper should support adding defaultValues to default less nodes as Unknown Status.
Aug 11 2021, 11:33 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe7c69ead85af: xml: T3732: simplifications for merging defaultValue and default-less nodes.
Aug 11 2021, 11:29 PM
jestabro committed rVYOSONEXec6dc94a5144: xml: T3732: merge leafNode with defaultValue with leafNode(s) of same path.
Aug 11 2021, 11:29 PM
GitHub <noreply@github.com> committed rVYOSONEXe7e0247ce2b1: Merge pull request #962 from jestabro/T3732 (authored by jestabro).
Aug 11 2021, 11:29 PM
fernando added a comment to T3741: [BGP] default no-ipv4-unicast - by default.

Thanks for you comment ! it's good consider that options

Aug 11 2021, 9:46 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3741: [BGP] default no-ipv4-unicast - by default.

Similar task T2315, also there is bug related T1976, etc.
It should be a migration script that determines ip/ipv6 neighbor and set neighbor to properly afi.
So there is one question, how to determine which afi we should to use if we see "peer-group" in configuration?
I don't think that we can implement it in 1.3 as it uses an old codebase.

Aug 11 2021, 8:10 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXb95403a7b4a6: bgp: T3739: add common route-distinguisher XML building block.
Aug 11 2021, 7:13 PM
c-po updated the task description for T3739: policy: route-map: add EVPN match support.
Aug 11 2021, 7:12 PM · VyOS 1.4 Sagitta
jestabro added a project to T3732: override-default helper should support adding defaultValues to default less nodes: VyOS 1.3 Equuleus.
Aug 11 2021, 7:06 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEXbff7f7f4e56b: GitHub: fix typo in PR template (authored by c-po).
Aug 11 2021, 7:03 PM
fernando created T3741: [BGP] default no-ipv4-unicast - by default.
Aug 11 2021, 7:02 PM · VyOS 1.4 Sagitta
jestabro claimed T3740: HTTPs API breaks when the address is IPv6.
Aug 11 2021, 6:46 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
kroy created T3740: HTTPs API breaks when the address is IPv6.
Aug 11 2021, 6:41 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po claimed T3739: policy: route-map: add EVPN match support.
Aug 11 2021, 5:55 PM · VyOS 1.4 Sagitta
c-po created T3739: policy: route-map: add EVPN match support.
Aug 11 2021, 5:54 PM · VyOS 1.4 Sagitta
jestabro changed the status of T3732: override-default helper should support adding defaultValues to default less nodes from Open to Needs testing.

This will be merged, pending discussion on pros/cons of preprocessing vs. relaxing schema restriction.

Aug 11 2021, 5:14 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
paunadeu added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

Gotcha. Thanks. Will wait.

Aug 11 2021, 4:22 PM · VyOS 1.4 Sagitta
c-po claimed T3728: FRR not respect configured RD and RT for L3VNI.
Aug 11 2021, 4:21 PM · VyOS 1.4 Sagitta
c-po added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

Hi @paunadeu yeah that is an open issue (https://github.com/vyos/vyos-1x/commit/d77709252de54757d3f3e76ce6c52492ba967488) it got disabled recently.

Aug 11 2021, 4:20 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX82fbacd13f85: smoketest: ospf: add logger to passive-interface test.
Aug 11 2021, 4:08 PM
nyamada added a comment to T3735: Configuration with multiple network addresses of firewall network-group via colud-init fails.

Thank you for the quick fix!

Aug 11 2021, 3:14 PM · VyOS 1.3 Equuleus (1.3.0)
paunadeu added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

OK. Seeing VyOS output now:

Aug 11 2021, 2:53 PM · VyOS 1.4 Sagitta
paunadeu added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

I think wasn't a problem. Not defined VNI in VRF, in L3 respects config in L2 don't, asked for the behavior in FRR Slack.

Aug 11 2021, 2:34 PM · VyOS 1.4 Sagitta
jack9603301 added a comment to T3648: op-mode: nat rules broken.

@raphielscape Are there still problems after updating PR? Please provide the configuration and I'll take the time to check it

Aug 11 2021, 2:16 PM · VyOS 1.4 Sagitta
SrividyaA added a comment to T3437: BGP Confederation Addition Causes Error.

I added a new neighbor belonging to the sub-AS 65031 to the existing bgp configuration:

Aug 11 2021, 1:56 PM · VyOS 1.3 Equuleus (1.3.7)
c-po moved T1817: BGP next-hop-self not working. from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.9) board.
Aug 11 2021, 1:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)
c-po added a project to T1817: BGP next-hop-self not working.: VyOS 1.2 Crux (VyOS 1.2.9).
Aug 11 2021, 1:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)
zsdc changed the status of T3735: Configuration with multiple network addresses of firewall network-group via colud-init fails from Open to Needs testing.

Hello, @nyamada!
Really appreciated for such a detailed problem analysis! The regex is fixed in the 1.4 version now.
Could you test it, so we can backport changes safely to 1.2 and 1.3?

Aug 11 2021, 1:31 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEX29463355e6ec: accel-ppp: T3731: eliminate service name from error message.
Aug 11 2021, 12:59 PM
c-po committed rVYOSONEX3f6e5bc3fcac: accel-ppp: T3731: eliminate service name from error message.
Aug 11 2021, 12:59 PM
Viacheslav added a project to T3708: isisd and gre-bridge commit error: VyOS 1.4 Sagitta.
Aug 11 2021, 12:07 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav added a comment to T3708: isisd and gre-bridge commit error.

To reproduce in 1.4:

Aug 11 2021, 12:07 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav added a comment to T3737: openvpn-option needs to be able to support quotes as since openvpn 2.4..

As Workaround in T3350 set raw option "config /path/to/config/file"

Aug 11 2021, 10:14 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
UnicronNL triaged T3738: openvpn fails if server and authentication are configured as Normal priority.
Aug 11 2021, 9:16 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
UnicronNL added projects to T3736: openvpn-option keeps and adds double dashes ''--": test, VyOS 1.3 Equuleus.
Aug 11 2021, 8:51 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
UnicronNL created T3737: openvpn-option needs to be able to support quotes as since openvpn 2.4..
Aug 11 2021, 8:13 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
UnicronNL triaged T3736: openvpn-option keeps and adds double dashes ''--" as Normal priority.
Aug 11 2021, 8:03 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable, a subtask of T3706: Add proper priorities for systemd daemons, as Resolved.
Aug 11 2021, 6:26 AM · Bugs, VyOS Rolling
Viacheslav closed T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable as Resolved.

@fernando Thanks.

Aug 11 2021, 6:26 AM · VyOS 1.4 Sagitta

Aug 10 2021

fernando added a comment to T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.

i've been testing this new feature in our last release and it works well :

Aug 10 2021, 9:16 PM · VyOS 1.4 Sagitta
jestabro added a comment to T3732: override-default helper should support adding defaultValues to default less nodes.

A bit of background: the error here is is a result of the Relax-NG schema requiring a leaf node to have a 'properties' entry; that is considered a sanity check by the schema author, but emerges as an issue when we moved to a modular structure for the *.xml.i include files. Leaving that restriction as-is, the solution of merging leaf nodes in the lxml script should be straightforward (the general case more intricate), so I will look at amending the override-default script.

Aug 10 2021, 5:40 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
sarthurdev <965089+sarthurdev@users.noreply.github.com> committed rVYOSONEX4b4080a9fd38: ipsec: T3727: Fix ESP proposals not being set from tunnel esp-group.
Aug 10 2021, 4:49 PM
GitHub <noreply@github.com> committed rVYOSONEXb6427a12cc79: Merge pull request #961 from sarthurdev/T3727 (authored by c-po).
Aug 10 2021, 4:49 PM
dmbaturin reopened T770: Bonded interfaces get updated with incorrect hw-id in config. as "Open".
Aug 10 2021, 2:13 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
nyamada created T3735: Configuration with multiple network addresses of firewall network-group via colud-init fails.
Aug 10 2021, 1:31 PM · VyOS 1.3 Equuleus (1.3.0)
m.cremers updated the task description for T3734: Move EVPN VRF up in FRR config.
Aug 10 2021, 1:26 PM · VyOS 1.4 Sagitta
m.cremers created T3734: Move EVPN VRF up in FRR config.
Aug 10 2021, 1:26 PM · VyOS 1.4 Sagitta
fernando added a comment to T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.

Sure ! i'll test this feature and let you know !

Aug 10 2021, 12:31 PM · VyOS 1.4 Sagitta
Viacheslav claimed T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.
Aug 10 2021, 12:23 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable, a subtask of T3706: Add proper priorities for systemd daemons, from Open to Needs testing.
Aug 10 2021, 12:14 PM · Bugs, VyOS Rolling
Viacheslav changed the status of T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable from Open to Needs testing.

@fernando Can you check this feature in the next rolling release?

set service snmp community public client 127.0.0.1
set service snmp oid-enable route-table
Aug 10 2021, 12:14 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3727: VPN IPsec ESP proposal and ESP presented in config missmatch.

PR: https://github.com/vyos/vyos-1x/pull/961

Aug 10 2021, 11:57 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXc87d3c277c4a: snmp: T3709: Allow enable oid ipCidrRouteTable.
Aug 10 2021, 11:51 AM
GitHub <noreply@github.com> committed rVYOSONEX349b5ede105c: Merge pull request #960 from sever-sever/T3709 (authored by c-po).
Aug 10 2021, 11:50 AM
Viacheslav added a comment to T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.

PR https://github.com/vyos/vyos-1x/pull/960

Aug 10 2021, 10:02 AM · VyOS 1.4 Sagitta
Viacheslav closed T3730: op-mode conntrack-sync miss some functions as Resolved.
Aug 10 2021, 9:25 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEX0b37de6ba978: pki: wireguard: T3642: strip private key.
Aug 10 2021, 7:17 AM
c-po assigned T3732: override-default helper should support adding defaultValues to default less nodes to jestabro.
Aug 10 2021, 6:55 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po created T3732: override-default helper should support adding defaultValues to default less nodes.
Aug 10 2021, 6:55 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta

Aug 9 2021

Unknown Object (User) added a comment to T3731: verify_accel_ppp_base_service return wrong config error for SSP.

PR for Equuleus https://github.com/vyos/vyos-1x/pull/959

Aug 9 2021, 9:08 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T3731: verify_accel_ppp_base_service return wrong config error for SSP from Open to In progress.
Aug 9 2021, 8:55 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Unknown Object (User) created T3731: verify_accel_ppp_base_service return wrong config error for SSP.
Aug 9 2021, 8:54 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po assigned T3727: VPN IPsec ESP proposal and ESP presented in config missmatch to sarthurdev.
Aug 9 2021, 7:17 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T3730: op-mode conntrack-sync miss some functions: test.
Aug 9 2021, 7:08 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav changed the status of T3730: op-mode conntrack-sync miss some functions from Open to Needs testing.
Aug 9 2021, 7:07 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po edited a custom field on T3720: IPSec set vti secondary address cause interface disable.
Aug 9 2021, 7:06 PM · VyOS 1.4 Sagitta
c-po closed T3720: IPSec set vti secondary address cause interface disable, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Aug 9 2021, 7:06 PM · VyOS 1.4 Sagitta
c-po closed T3720: IPSec set vti secondary address cause interface disable as Resolved.
Aug 9 2021, 7:06 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX96049e6fdad0: ipsec: T3720: assigning vti secondary address caused interface in A/D state.
Aug 9 2021, 7:04 PM
GitHub <noreply@github.com> committed rVYOSONEX3203f2a6d495: Merge pull request #958 from sever-sever/T3730 (authored by jestabro).
Aug 9 2021, 6:56 PM
Viacheslav committed rVYOSONEX852d056fbd6a: template: T3730: Add bracketize_ipv6 filter.
Aug 9 2021, 6:56 PM
Viacheslav added a comment to T3730: op-mode conntrack-sync miss some functions.

PR https://github.com/vyos/vyos-1x/pull/958

Aug 9 2021, 6:45 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav claimed T3730: op-mode conntrack-sync miss some functions.
Aug 9 2021, 6:34 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T3730: op-mode conntrack-sync miss some functions.
  • Backport configquerry.py [Done]

https://github.com/vyos/vyos-1x/commit/2aa75521a829712256c3c34685e60a9d36b33791

Aug 9 2021, 6:21 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
paunadeu added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

Need to implement in customer, if I can help in something, please don't hesitate to ask.

Aug 9 2021, 6:15 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

Maybe with FRR 8.1
In any case, we'll do more tests.

Aug 9 2021, 6:13 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEX2aa75521a829: configquery: T3402: add library for querying config values from op mode.
Aug 9 2021, 5:11 PM
jestabro added a project to T3402: Add VyOS programming library for operational level commands: VyOS 1.3 Equuleus.
Aug 9 2021, 5:03 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav created T3730: op-mode conntrack-sync miss some functions.
Aug 9 2021, 4:38 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
paunadeu added a comment to T3728: FRR not respect configured RD and RT for L3VNI.

It's upgrade on FRR planned?

Aug 9 2021, 2:48 PM · VyOS 1.4 Sagitta
UnicronNL closed T1501: VPN Commit Errors, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Aug 9 2021, 2:09 PM · VyOS 1.4 Sagitta
UnicronNL closed T1501: VPN Commit Errors as Resolved.

https://github.com/vyos/vyatta-cfg-vpn/commit/2cec760601a6e85ca8e0b6a30c173196a97a777a
Back-ported the dhcp ip check loop to 1.3

Aug 9 2021, 2:09 PM · VyOS 1.3 Equuleus (1.3.0), test
dmbaturin renamed T3729: Split the image build and config load smoke test into separate jobs from Separate the image build and config load smoke test into separate jobs to Split the image build and config load smoke test into separate jobs.
Aug 9 2021, 1:46 PM
dmbaturin added projects to T3729: Split the image build and config load smoke test into separate jobs: VyOS 1.3 Equuleus, VyOS 1.4 Sagitta.
Aug 9 2021, 1:45 PM
dmbaturin created T3729: Split the image build and config load smoke test into separate jobs.
Aug 9 2021, 1:45 PM
Viacheslav edited a custom field on T3728: FRR not respect configured RD and RT for L3VNI.
Aug 9 2021, 1:18 PM · VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEXe737bac9fc8c: dhcp-server: T2432: Run dhcpd in group vyattacfg to allow recreate lease files (authored by Unknown Object (User)).
Aug 9 2021, 1:04 PM