Page MenuHomeVyOS Platform
Feed All Stories

Sep 26 2021

c-po committed rVYOSONEXe4812d266ea8: vyos.ifconfig: T3860: bugfix in get_mac_synthetic().
Sep 26 2021, 10:49 AM
c-po committed rVYOSONEX8d6861290f39: vyos.ifconfig: T3860: bugfix in get_mac_synthetic().
Sep 26 2021, 10:36 AM
c-po changed the status of T3860: Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses from Open to In progress.
Sep 26 2021, 10:34 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po updated the task description for T3860: Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses.
Sep 26 2021, 10:30 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po closed T3859: Add "log-adjacency-changes" to ospfv3 process as Resolved.
Sep 26 2021, 9:09 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEX289a495c8f45: ospfv3: T3859: add "log-adjacency-changes" CLI command.
Sep 26 2021, 9:09 AM
c-po claimed T3859: Add "log-adjacency-changes" to ospfv3 process.
Sep 26 2021, 9:07 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3859: Add "log-adjacency-changes" to ospfv3 process from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 26 2021, 9:07 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3859: Add "log-adjacency-changes" to ospfv3 process from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 26 2021, 9:07 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T3859: Add "log-adjacency-changes" to ospfv3 process from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.9) board.
Sep 26 2021, 9:07 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEX0ee26592772a: op-mode: reboot/poweroff: T3857: send wall message to all users.
Sep 26 2021, 8:59 AM
c-po committed rVYOSONEXbfe59076f807: op-mode: reboot/poweroff: T3857: send wall message to all users.
Sep 26 2021, 8:59 AM
c-po closed T3857: reboot: send wall message to all users for information as Resolved.
Sep 26 2021, 8:59 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3857: reboot: send wall message to all users for information from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 26 2021, 8:59 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3857: reboot: send wall message to all users for information from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 26 2021, 8:59 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3857: reboot: send wall message to all users for information from Need Triage to 1.3.0-epa1 on the VyOS 1.3 Equuleus board.
Sep 26 2021, 8:59 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po renamed T3862: "reboot at" command together with date does not work / weird error message on wrong input from "reboot at" command together with date does not work / weird error message to "reboot at" command together with date does not work / weird error message on wrong input.
Sep 26 2021, 8:55 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po renamed T3862: "reboot at" command together with date does not work / weird error message on wrong input from "reboot at" command together with date does not work to "reboot at" command together with date does not work / weird error message.
Sep 26 2021, 8:54 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po placed T3862: "reboot at" command together with date does not work / weird error message on wrong input up for grabs.
Sep 26 2021, 8:48 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po assigned T3862: "reboot at" command together with date does not work / weird error message on wrong input to erkin.
Sep 26 2021, 8:48 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po created T3862: "reboot at" command together with date does not work / weird error message on wrong input.
Sep 26 2021, 8:48 AM · VyOS 1.2 Crux (VyOS 1.2.9)
dmbaturin added a comment to T3835: vyos router 1.2.7 snmp Dos bug.

@zoenan7 Thanks for your research! You can send the PoC to daniil@vyos.io

Sep 26 2021, 8:30 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po changed the status of T3861: PKI: changing certificates, keys, crls does not "regenerate" the on-disk certificates from Open to Confirmed.
Sep 26 2021, 8:04 AM · Bugs, VyOS 1.4 Sagitta (1.4.0-GA)
c-po created T3861: PKI: changing certificates, keys, crls does not "regenerate" the on-disk certificates.
Sep 26 2021, 8:03 AM · Bugs, VyOS 1.4 Sagitta (1.4.0-GA)
syncer assigned T3835: vyos router 1.2.7 snmp Dos bug to dmbaturin.
Sep 26 2021, 8:01 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po updated the task description for T3860: Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses.
Sep 26 2021, 8:01 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po triaged T3860: Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses as Urgent! priority.
Sep 26 2021, 7:55 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po created T3860: Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses.
Sep 26 2021, 7:54 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po created T3859: Add "log-adjacency-changes" to ospfv3 process.
Sep 26 2021, 7:45 AM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
c-po created T3858: Deleting OSPFv3 process yields: Unknown command: no router-id.
Sep 26 2021, 7:34 AM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa1)
zoenan7 added a comment to T3835: vyos router 1.2.7 snmp Dos bug.

May I ask where I can submit poC? Do you provide an email address or upload files here?

Sep 26 2021, 5:59 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Sep 25 2021

c-po closed T3856: op command: " generate tech-support archive file" option is not working as Invalid.
Sep 25 2021, 6:08 PM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.8)
c-po added a comment to T3856: op command: " generate tech-support archive file" option is not working.

The command mentions that the file is saved to: /opt/vyatta/etc/config/support/file.vyos.tech-support-archive.2021-09-25-150643.tgz thus ls from the home directory will not reveal a file.

Sep 25 2021, 6:08 PM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.8)
c-po claimed T3857: reboot: send wall message to all users for information.
Sep 25 2021, 6:06 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po created T3857: reboot: send wall message to all users for information.
Sep 25 2021, 6:06 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
SrividyaA created T3856: op command: " generate tech-support archive file" option is not working.
Sep 25 2021, 4:07 PM · VyOS 1.4 Sagitta, VyOS 1.2 Crux (VyOS 1.2.8)
c-po changed Is it a breaking change? from validation to compatible on T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.
Sep 25 2021, 2:57 PM · VyOS 1.4 Sagitta
c-po closed T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses as Resolved.
Sep 25 2021, 2:57 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX993daec92965: bgp: T3657: add "neighbor fe80::202 interface source-interface 'eth1'" command.
Sep 25 2021, 2:57 PM
c-po committed rVYOSONEX4b287511af74: bgp: xml: T2387: use "generic-description" building block over BGP specific one.
Sep 25 2021, 2:57 PM
c-po added a comment to T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.

The next rolling will also have support for the set protocols bgp neighbor fe80::202 interface source-interface 'eth1' CLI command

Sep 25 2021, 2:57 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX7a5e3fecaf53: op-mode: bgp: "show bgp ipv4|ipv6" should display routing table.
Sep 25 2021, 2:37 PM
c-po committed rVYOSONEX801123eff1bf: op-mode: bgp: "show bgp ipv4|ipv6" should display routing table.
Sep 25 2021, 2:35 PM
c-po added a comment to T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.

Actually the VyOS syntax is a bit different - you do not need to establish a "relationship" with a link-local address - multiple links could indeed share the same link local address causing conflicts and non-uniqueness in the config.

Sep 25 2021, 2:30 PM · VyOS 1.4 Sagitta
c-po closed T3710: Upgrade the kernel in 1.3 to 5.10 as Invalid.
Sep 25 2021, 1:35 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po added a comment to T3710: Upgrade the kernel in 1.3 to 5.10.

Nat implementation for 1.3 has been reverted back to iptables - closing this.

Sep 25 2021, 1:35 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po committed rVYOSONEXb34b8a8fe3bc: vyos.ifconfig: dhcpv6: re-use systemd_service definition variable.
Sep 25 2021, 11:11 AM
c-po committed rVYOSONEX823b03417aa6: vyos.ifconfig: dhcp: T3300: always re-start dhcp client instead of start.
Sep 25 2021, 11:11 AM
c-po committed rVYOSONEXbcf7a9bb38c5: ipsec: T2816: ipsec-dhclient-hook should only run if swanctl.conf exists.
Sep 25 2021, 8:12 AM
c-po committed rVYOSONEXd3b951f24175: ipsec: T2816: ipsec-dhclient-hook should use exit(0).
Sep 25 2021, 8:12 AM
c-po committed rVYOSONEXd1c58addd881: vyos.ifconfig: dhcpv6: re-use systemd_service definition variable.
Sep 25 2021, 8:12 AM
c-po committed rVYOSONEXda45720bf5d5: ipsec: T2816: ipsec-dhclient-hook should use vyos.util.read_file() / write_file….
Sep 25 2021, 8:12 AM
c-po committed rVYOSONEX8ba8f0e09752: vyos.ifconfig: dhcp: T3300: always re-start dhcp client instead of start.
Sep 25 2021, 8:12 AM
c-po assigned T3852: DHCP client issue - interface has two dhclient processes when link is unpluged and then plug again to zsdc.
Sep 25 2021, 6:46 AM · VyOS 1.3 Equuleus (1.3.3)

Sep 24 2021

c-po changed the status of T3115: Add support for firewall on L3 VIF bridge interface from Open to Needs testing.
Sep 24 2021, 5:24 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav edited projects for T3855: Bgp peer-group and neighbor specific confiugration bugs, added: VyOS 1.3 Equuleus (1.3.0-epa1); removed VyOS 1.3 Equuleus.
Sep 24 2021, 1:56 PM · Bugs, VyOS 1.3 Equuleus (1.3.9)
n.fort added a comment to T3435: NAT rules show corruption.

Bug still present.

Sep 24 2021, 12:35 PM · VyOS 1.4 Sagitta
Viacheslav reopened T3435: NAT rules show corruption as "Open".
Sep 24 2021, 12:33 PM · VyOS 1.4 Sagitta
vfreex added a comment to T3115: Add support for firewall on L3 VIF bridge interface.

I met the same issue. Currently bridge vifs are missing firewall options.

Sep 24 2021, 12:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3855: Bgp peer-group and neighbor specific confiugration bugs.
Sep 24 2021, 12:01 PM · Bugs, VyOS 1.3 Equuleus (1.3.9)
Viacheslav created T3855: Bgp peer-group and neighbor specific confiugration bugs.
Sep 24 2021, 11:50 AM · Bugs, VyOS 1.3 Equuleus (1.3.9)
sarthurdev created T3854: Missing op-mode commands for conntrack-sync.
Sep 24 2021, 10:31 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav added a comment to T3853: nat66 rules gets deleted on reboot in 1.4-rolling-202109240217.

Additional logs:

Sep 24 12:32:23 r1-roll systemd[1]: Starting NDP Proxy Daemon...
Sep 24 12:32:23 r1-roll ndppd[2150]: (notice) ndppd (NDP Proxy Daemon) version 0.2.4
Sep 24 12:32:23 r1-roll ndppd[2150]: (notice) Using configuration file '/run/ndppd/ndppd.conf'
Sep 24 12:32:23 r1-roll ndppd[2150]: (warning) Low prefix length (80 <= 120) when using 'static' method
Sep 24 12:32:23 r1-roll ndppd[2150]: (warning) Low prefix length (80 <= 120) when using 'static' method
Sep 24 12:32:23 r1-roll systemd[1]: ndppd.service: Can't open PID file /run/ndppd/ndppd.pid (yet?) after start: Operation not permitted
Sep 24 12:32:23 r1-roll kernel: [  131.465473] NET: Registered protocol family 17
Sep 24 12:32:23 r1-roll isisd[1006]: circuit already connected
Sep 24 2021, 9:37 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3853: nat66 rules gets deleted on reboot in 1.4-rolling-202109240217.
[  OK  ] Finished Update UTMP about System Runlevel Changes.
[  117.227867] vyos-router[751]: Starting VyOS router: migrate firewall configure
[  117.228588] vyos-router[2121]:  failed!
[  117.482910] vyos-config[1646]: Configuration error
Sep 24 2021, 9:34 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3853: nat66 rules gets deleted on reboot in 1.4-rolling-202109240217 from Open to Confirmed.
Sep 24 2021, 9:32 AM · VyOS 1.4 Sagitta
danielpo created T3853: nat66 rules gets deleted on reboot in 1.4-rolling-202109240217.
Sep 24 2021, 6:02 AM · VyOS 1.4 Sagitta
u-xc created T3852: DHCP client issue - interface has two dhclient processes when link is unpluged and then plug again.
Sep 24 2021, 5:40 AM · VyOS 1.3 Equuleus (1.3.3)

Sep 23 2021

c-po changed the status of T3851: Missing ospf and rip options for bridge vifs from Open to Needs testing.
Sep 23 2021, 7:15 PM · VyOS 1.3 Equuleus (1.3.0)
emes added a comment to T3850: Dots are no longer allowed in SSH public key names.

Thanks!

Sep 23 2021, 7:04 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
vfreex added a comment to T3851: Missing ospf and rip options for bridge vifs.

I created a PR to add those options to the config system, but I am not sure if anything else needs to be changed to support them: https://github.com/vyos/vyatta-cfg-quagga/pull/88

Sep 23 2021, 6:12 PM · VyOS 1.3 Equuleus (1.3.0)
vfreex created T3851: Missing ospf and rip options for bridge vifs.
Sep 23 2021, 6:08 PM · VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXc0d5c2a5bc28: smoketest: T3850: use as complicated as possible public-key name.
Sep 23 2021, 4:45 PM
c-po committed rVYOSONEX6187ce264a39: smoketest: T3850: use as complicated as possible public-key name.
Sep 23 2021, 4:45 PM
jestabro raised the priority of T3785: Add unicode support to configtree backend from Low to Normal.
Sep 23 2021, 2:54 PM · VyOS 1.3 Equuleus (1.3.2)
c-po edited a custom field on T3850: Dots are no longer allowed in SSH public key names.
Sep 23 2021, 2:15 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po closed T3850: Dots are no longer allowed in SSH public key names as Resolved.
Sep 23 2021, 2:15 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3850: Dots are no longer allowed in SSH public key names from Open to Finished on the VyOS 1.4 Sagitta board.
Sep 23 2021, 2:15 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3850: Dots are no longer allowed in SSH public key names from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0-epa1) board.
Sep 23 2021, 2:14 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a reverting change for rVYOSONEX38e02c12a50d: login: T1948: add missing ssh-public key name regex: rVYOSONEX875086bac61e: T3850: Revert "login: T1948: add missing ssh-public key name regex".
Sep 23 2021, 2:14 PM
c-po committed rVYOSONEX875086bac61e: T3850: Revert "login: T1948: add missing ssh-public key name regex".
Sep 23 2021, 2:14 PM
c-po added a reverting change for rVYOSONEX514da7381736: login: T1948: add missing ssh-public key name regex: rVYOSONEX46ecdd015185: T3850: Revert "login: T1948: add missing ssh-public key name regex".
Sep 23 2021, 2:14 PM
c-po committed rVYOSONEX46ecdd015185: T3850: Revert "login: T1948: add missing ssh-public key name regex".
Sep 23 2021, 2:14 PM
c-po added a comment to T3850: Dots are no longer allowed in SSH public key names.

https://github.com/vyos/vyos-1x/commit/514da738173696c70440c959b9d7ec9afd77fbae

Sep 23 2021, 2:05 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po added a comment to T3850: Dots are no longer allowed in SSH public key names.

https://github.com/vyos/vyos-1x/commit/688f9810fde3947db66ff7e4c0ea21bf9708feec

Sep 23 2021, 2:03 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
dmbaturin triaged T3850: Dots are no longer allowed in SSH public key names as Urgent! priority.
Sep 23 2021, 1:49 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
dmbaturin created T3850: Dots are no longer allowed in SSH public key names.
Sep 23 2021, 1:49 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3849: Update Linux Kernel to v4.19.212 from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.9) board.
Sep 23 2021, 7:49 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po closed T3849: Update Linux Kernel to v4.19.212 as Resolved.
Sep 23 2021, 7:48 AM · VyOS 1.2 Crux (VyOS 1.2.9)
c-po created T3849: Update Linux Kernel to v4.19.212.
Sep 23 2021, 7:44 AM · VyOS 1.2 Crux (VyOS 1.2.9)
GitHub <noreply@github.com> committed rVYOSONEX579a08f88958: smoketest: ospf: debug output only syslog and FRR (authored by c-po).
Sep 23 2021, 7:42 AM
nagua committed rVYOSONEXd1a2124559eb: openvpn: T3642: Add option for TLS 1.3.
Sep 23 2021, 7:15 AM
nagua committed rVYOSONEX4084046987ab: openvpn: T3642: Fix password_protected check.
Sep 23 2021, 7:15 AM
nagua committed rVYOSONEXb4926009b15d: openvpn: T3642: Openvpn does not work without dh parameter in EC mode.
Sep 23 2021, 7:15 AM
GitHub <noreply@github.com> committed rVYOSONEX1982211d2a32: Merge pull request #1014 from nagua/fix_smaller_openvpn_issues (authored by c-po).
Sep 23 2021, 7:15 AM

Sep 22 2021

nagua added a comment to T3642: PKI configuration.

I have created a PR for the bugs that I found above. I hope that is is acceptable to solve these within this ticket:
https://github.com/vyos/vyos-1x/pull/1014

Sep 22 2021, 11:39 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
nagua added a comment to T3642: PKI configuration.

I think I found my problem. I haven't known the difference between PKCS#1 and PKCS#8.
If I give the key in PKCS#8 format I can finally commit the changes without problems.

Sep 22 2021, 9:45 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav changed the subtype of T3848: Abbility to set local/remote id for dmvpn from "Bug" to "Feature Request".
Sep 22 2021, 10:35 AM · VyOS Rolling
Viacheslav created T3848: Abbility to set local/remote id for dmvpn.
Sep 22 2021, 10:35 AM · VyOS Rolling
nagua added a comment to T3642: PKI configuration.

Hey everyone,

Sep 22 2021, 8:12 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
c-po committed rVYOSONEX493773257f0a: smoketest: vrrp: delete interface vifs after test.
Sep 22 2021, 6:34 AM