Page MenuHomeVyOS Platform
Feed All Stories

Sep 9 2021

Viacheslav closed T3809: Not possible to add existing ca? as Invalid.
Sep 9 2021, 7:48 AM · VyOS 1.4 Sagitta
danielpo added a comment to T3809: Not possible to add existing ca?.

Thanks, I got it working now.

Sep 9 2021, 7:30 AM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 9 2021, 7:28 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po committed rVYOSONEXc593bf7f5977: openvpn: T3805: drop privileges using systemd - required for rtnetlink.
Sep 9 2021, 7:17 AM
c-po committed rVYOSONEX451a7d6d97ee: openvpn: T3805: use vyos.util.makedir() to create system directories.
Sep 9 2021, 7:17 AM
c-po closed T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface as Resolved.
Sep 9 2021, 7:16 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 9 2021, 7:16 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface from Need Triage to 1.3.0-epa1 on the VyOS 1.3 Equuleus board.
Sep 9 2021, 7:16 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 9 2021, 7:11 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T3814: wireguard: commit error showing incorrect peer name from the configured name from Open to In Progress on the VyOS 1.4 Sagitta board.
Sep 9 2021, 5:58 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po claimed T3814: wireguard: commit error showing incorrect peer name from the configured name.
Sep 9 2021, 5:55 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3809: Not possible to add existing ca?.

Your problem is that this is not a CA certificate, it's the servers certificate.

Sep 9 2021, 5:53 AM · VyOS 1.4 Sagitta

Sep 8 2021

danielpo added a comment to T3809: Not possible to add existing ca?.
Sep 8 2021, 6:27 PM · VyOS 1.4 Sagitta
c-po added a comment to T3809: Not possible to add existing ca?.

Can you share your CAs public cert for testing?

Sep 8 2021, 6:21 PM · VyOS 1.4 Sagitta
danielpo added a comment to T3809: Not possible to add existing ca?.

Hello, Sorry, but I tried this I get "Invalid certificate on CA certificate "test"

Sep 8 2021, 5:32 PM · VyOS 1.4 Sagitta
SrividyaA created T3814: wireguard: commit error showing incorrect peer name from the configured name.
Sep 8 2021, 5:14 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface.

A new ISO 1.4-rolling-202109081242 is currently build - you may check in 30 minutes and try if this works for you - it did in my example config.

Sep 8 2021, 12:43 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3813: Some custom sysctl parameters can't be applied bug.

That would only work if accept_local will be added as proper CLI node on the tunnel interface, or use set system sysctl parameter net.ipv4.conf.default.accept_local value '1'

Sep 8 2021, 12:40 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
c-po committed rVYOSONEX588cc03a6141: openvpn: T3805: fix bool logic in verify_pki() for client mode.
Sep 8 2021, 12:39 PM
c-po committed rVYOSONEX2647edc30f1e: openvpn: T3805: drop privileges using systemd - required for rtnetlink.
Sep 8 2021, 12:39 PM
c-po committed rVYOSONEX84e912ab2f58: openvpn: T3805: use vyos.util.makedir() to create system directories.
Sep 8 2021, 12:39 PM
c-po committed rVYOSONEX63fbd8c663c8: openvpn: T3805: use vyos.util.write_file() to store certificates.
Sep 8 2021, 12:39 PM
c-po moved T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 8 2021, 12:38 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po changed the status of T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface from Confirmed to Needs testing.
Sep 8 2021, 12:37 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po changed the status of T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface from Open to Confirmed.
Sep 8 2021, 12:28 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3813: Some custom sysctl parameters can't be applied bug.
Sep 8 2021, 11:59 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav added a project to T3813: Some custom sysctl parameters can't be applied bug: VyOS 1.3 Equuleus (1.3.0-epa1).
Sep 8 2021, 11:59 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav created T3813: Some custom sysctl parameters can't be applied bug.
Sep 8 2021, 11:52 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav moved T3786: GRE tunnel source address 0.0.0.0 error from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 8 2021, 10:50 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.4 Sagitta
ernstjo created T3812: Vyos and frr route-map config out of sync.
Sep 8 2021, 8:31 AM · VyOS 1.4 Sagitta
kroy created T3811: NAT (op_mode): NAT op_mode command fails..
Sep 8 2021, 4:49 AM · VyOS 1.4 Sagitta
amxj9 added a comment to T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface.

Certainly, here it is:

openvpn vtun0 {                                                  
    authentication {                                             
        password ******                                          
        username ******                                          
    }                                                                                            
    encryption {                                                 
        cipher aes256                                            
    }                                                            
    hash sha512                                                  
    mode client                                                  
    openvpn-option fast-io                                       
    openvpn-option "remote-cert-tls server"                      
    openvpn-option "resolv-retry infinite"                       
    openvpn-option "pull-filter ignore redirect-gateway"         
    openvpn-option "tun-mtu 1500"                                
    openvpn-option "tun-mtu-extra 32"                            
    openvpn-option "mssfix 1450"                                 
    openvpn-option "comp-lzo no"                                 
    openvpn-option "ping-restart 0"                              
    openvpn-option ping-timer-rem                                
    openvpn-option "ping 15"                                     
    openvpn-option "reneg-sec 0"                                 
    persistent-tunnel                                            
    protocol udp                                                 
    remote-host xxx.xxx.xx.xxx                                   
    remote-port 1194                                             
    tls {                                                        
        auth-key ****************                                
        ca-certificate ***************                          
        tls-version-min 1.2                                      
    }                                                            
}
Sep 8 2021, 3:06 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta

Sep 7 2021

c-po edited projects for T3796: Wireguard interfaces are not shown in op-mode, added: VyOS 1.2 Crux (VyOS 1.2.9); removed VyOS 1.2 Crux.
Sep 7 2021, 8:54 PM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po added a comment to T3796: Wireguard interfaces are not shown in op-mode.

@absolutesantaja this is definately a bug in the 1.2.9 op-mode commands

Sep 7 2021, 8:53 PM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po added a comment to T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface.

Can you please share a version of your anonymized client configuration?

Sep 7 2021, 8:35 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav reopened T3275: Disable conntrack helpers by default as "Open".
Sep 7 2021, 6:34 PM · VyOS 1.5 Circinus
absolutesantaja added a comment to T3796: Wireguard interfaces are not shown in op-mode.

Are you saying "show interfaces wireguard" is being back-ported to crux 1.2.9 or something? If not then the crux documentation is still wrong.

Sep 7 2021, 6:25 PM · VyOS 1.2 Crux (VyOS 1.2.9)
stepler added a comment to T3275: Disable conntrack helpers by default.

Note also that nothing here has been backported to 1.3 yet.

Sep 7 2021, 6:18 PM · VyOS 1.5 Circinus
SrividyaA added a comment to T3796: Wireguard interfaces are not shown in op-mode.

The operational command "show interfaces <interface-type> " has been fixed in the latest rolling and equuleus release.

Sep 7 2021, 6:17 PM · VyOS 1.2 Crux (VyOS 1.2.9)
stepler added a comment to T3275: Disable conntrack helpers by default.

PR https://github.com/vyos/vyos-build/pull/185

Sep 7 2021, 6:16 PM · VyOS 1.5 Circinus
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 7 2021, 5:23 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 7 2021, 5:23 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 7 2021, 4:32 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po claimed T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface.
Sep 7 2021, 3:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 7 2021, 3:14 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav created T3810: webproxy squidguard rules don't work properly after rewriting to python. .
Sep 7 2021, 3:13 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
amxj9 added a comment to T3805: OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface.

Unfortunately not. I reverted my changes and then added:

cap_dac_override,cap_setgid,cap_setuid,cap_net_bind_service,cap_net_admin,cap_net_raw,cap_ipc_lock,cap_sys_chroot,cap_audit_write   @openvpn

to /etc/security/capability.conf but got the same errors as before (I rebooted to make sure).

Sep 7 2021, 1:18 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
dmbaturin closed T3808: ipsec is mistakenly restarted after delete as Resolved.
Sep 7 2021, 12:18 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
dmbaturin added a project to T3808: ipsec is mistakenly restarted after delete: VyOS 1.2 Crux (VyOS 1.2.9).
Sep 7 2021, 12:18 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po edited a custom field on T3807: Op Command "show interfaces wireguard" does not show the output.
Sep 7 2021, 9:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po closed T3807: Op Command "show interfaces wireguard" does not show the output as Resolved.
Sep 7 2021, 9:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3807: Op Command "show interfaces wireguard" does not show the output from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 7 2021, 9:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3807: Op Command "show interfaces wireguard" does not show the output from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 7 2021, 9:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3807: Op Command "show interfaces wireguard" does not show the output from Need Triage to 1.3.0-epa1 on the VyOS 1.3 Equuleus board.
Sep 7 2021, 9:52 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po committed rVYOSONEXadca504a2c5c: scripts: op-mode: T3807: bugfix node.def generator.
Sep 7 2021, 9:52 AM
c-po committed rVYOSONEXff25cb35c93e: op-mode: xml: improve "show interfaces <type>" help text.
Sep 7 2021, 9:52 AM
c-po committed rVYOSONEX7623e37c918c: scripts: op-mode: T3807: bugfix node.def generator.
Sep 7 2021, 9:42 AM
c-po committed rVYOSONEXbd2c79ebb8ab: op-mode: xml: improve "show interfaces <type>" help text.
Sep 7 2021, 9:40 AM
Viacheslav added a comment to T922: OSPF - Process Crash after peer reboot.

@mbailey Can you check it in 1.3.0-rc6?

Sep 7 2021, 9:06 AM · VyOS 1.3 Equuleus (1.3.6)
c-po added a comment to T3807: Op Command "show interfaces wireguard" does not show the output.

Same happens to other op-mode commands:

Sep 7 2021, 9:06 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav moved T1894: FRR config not loaded after daemons segfault or restart from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sep 7 2021, 8:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T1894: FRR config not loaded after daemons segfault or restart, a subtask of T3217: Save FRR configuration on each commit, as Resolved.
Sep 7 2021, 8:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T1894: FRR config not loaded after daemons segfault or restart as Resolved.

Fixed in T3217

Sep 7 2021, 8:53 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav moved T3217: Save FRR configuration on each commit from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sep 7 2021, 8:51 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav moved T3217: Save FRR configuration on each commit from In Progress to Finished on the VyOS 1.4 Sagitta board.
Sep 7 2021, 8:51 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T2322: CLI [op-mode] bugs. Root task as Resolved.
Sep 7 2021, 8:34 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T3809: Not possible to add existing ca?.

please refer to the PKI documentation at https://docs.vyos.io/en/latest/configuration/pki/index.html or https://blog.vyos.io/pki-and-ipsec-ikev2-remote-access-vpn about how the PKI feature is used.

Sep 7 2021, 8:00 AM · VyOS 1.4 Sagitta
c-po reassigned T2541: Openvpn Radius authentication support from c-po to UnicronNL.
Sep 7 2021, 7:40 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0)
c-po committed rVYOSONEXd9f20383323a: login: T971 allow quoting in public-keys options (authored by plett).
Sep 7 2021, 7:38 AM
Viacheslav added a comment to T3809: Not possible to add existing ca?.

You don't need line like "begin|end"
For example

set pki ca openvpn_vtun10 certificate 'MIIDSzCCAjOgAwIBAgIUEtkjCVKmZCwUeYLenoznpkxMeZswQ=='
Sep 7 2021, 6:28 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3809: Not possible to add existing ca? from "Task" to "Bug".
Sep 7 2021, 6:26 AM · VyOS 1.4 Sagitta
danielpo updated the task description for T3809: Not possible to add existing ca?.
Sep 7 2021, 6:24 AM · VyOS 1.4 Sagitta
c-po added a comment to T3794: MACsec interfaces in down state after create .

I tested it on ESXi

Sep 7 2021, 6:19 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
danielpo created T3809: Not possible to add existing ca?.
Sep 7 2021, 6:18 AM · VyOS 1.4 Sagitta
zoenan7 added a comment to T3791: vyos router 3.13( version 1.17) snmpd crash.

May I ask whether the vulnerability report should be made public here or submitted to which mailbox? Will a PGP public key be provided to encrypt sensitive information?

Sep 7 2021, 2:49 AM · VyOS 1.2 Crux

Sep 6 2021

Viacheslav added a comment to T3794: MACsec interfaces in down state after create .

It seems some bug in KVM.
I still see this bug
VyOS 1.3.0-rc6 config

vyos@r4-1.3# run show conf com | match mac
set interfaces macsec macsec1 address '10.0.0.2/30'
set interfaces macsec macsec1 security cipher 'gcm-aes-128'
set interfaces macsec macsec1 security encrypt
set interfaces macsec macsec1 security mka cak 'f42e15acecc0c1634582bdd32429efdf'
set interfaces macsec macsec1 security mka ckn '0ef5ebf77ba031e45ad270e9f80c804d500a2649789db1c87b751114f329e032'
set interfaces macsec macsec1 source-interface 'eth1'
Sep 6 2021, 8:36 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav moved T2920: Commit crash when adding the second mGRE tunnel with the same key from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 6 2021, 8:27 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
Viacheslav closed T2920: Commit crash when adding the second mGRE tunnel with the same key as Resolved.
Sep 6 2021, 8:27 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
jestabro moved T3808: ipsec is mistakenly restarted after delete from Need Triage to In Progress on the VyOS 1.3 Equuleus (1.3.0-epa1) board.

https://github.com/vyos/vyatta-cfg-vpn/pull/48

Sep 6 2021, 8:21 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav committed rVYOSONEXa5093308eab2: tunnel: T2920: Add checks tun with same source addr and keys.
Sep 6 2021, 8:07 PM
GitHub <noreply@github.com> committed rVYOSONEXe1422069475d: Merge pull request #999 from sever-sever/T2920-equ (authored by c-po).
Sep 6 2021, 8:07 PM
jestabro changed the status of T3808: ipsec is mistakenly restarted after delete from Open to Confirmed.
Sep 6 2021, 8:04 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po added a comment to T3796: Wireguard interfaces are not shown in op-mode.
Sep 6 2021, 7:41 PM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po closed T3794: MACsec interfaces in down state after create as Invalid.
Sep 6 2021, 7:34 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3794: MACsec interfaces in down state after create .

Works as designed. Note that the MACSec interface will only change its state to u/u after a successful key-exchange.

Sep 6 2021, 7:32 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po committed rVYOSONEXc6039b9a82fe: ifconfig: T3806: "ipv6 address no_default_link_local" required for MTU < 1280.
Sep 6 2021, 7:28 PM
c-po claimed T3794: MACsec interfaces in down state after create .
Sep 6 2021, 7:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3800: DHCPv6 client get incorrect mask /128 from Open to In Progress on the VyOS 1.4 Sagitta board.
Sep 6 2021, 7:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po closed T3803: Add source-address option to the ping CLI as Resolved.
Sep 6 2021, 7:26 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3803: Add source-address option to the ping CLI from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 6 2021, 7:26 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3803: Add source-address option to the ping CLI from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 6 2021, 7:26 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po closed T3806: Don't set link local ipv6 address if MTU less then 1280 as Resolved.
Sep 6 2021, 7:25 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3806: Don't set link local ipv6 address if MTU less then 1280 from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 6 2021, 7:25 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3806: Don't set link local ipv6 address if MTU less then 1280 from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 6 2021, 7:25 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEX3cd598794515: pki: eapol: T3642: only add "pki" key to interface dict if pki is configured.
Sep 6 2021, 7:24 PM
c-po committed rVYOSONEXb45cef9185cc: pki: eapol: T3642: use write_file() to store certificates.
Sep 6 2021, 7:24 PM
c-po committed rVYOSONEX84a429b41175: ifconfig: T3806: "ipv6 address no_default_link_local" required for MTU < 1280.
Sep 6 2021, 7:24 PM
Viacheslav added a comment to T3070: Firewall going OOM, possible related to nftables migration.

@kroy Did you get it with any other rc versions?

Sep 6 2021, 6:40 PM · VyOS 1.3 Equuleus (1.3.4)
c-po changed the status of T3806: Don't set link local ipv6 address if MTU less then 1280 from Open to In progress.
Sep 6 2021, 6:33 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T2920: Commit crash when adding the second mGRE tunnel with the same key.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/999

Sep 6 2021, 6:14 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta