Page MenuHomeVyOS Platform
Feed All Stories

Nov 20 2021

Unknown Object (User) added a comment to T4004: IPsec ike-group parameters are not saved correctly (after reboot).

A feature request was made with a change in behavior:
https://phabricator.vyos.net/T4005
(Feature Request: IPsec IKEv1 + IKEv2 for one peer)

Nov 20 2021, 9:39 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) added a comment to T4005: Feature Request: IPsec IKEv1 + IKEv2 for one peer.

pool request:
https://github.com/vyos/vyatta-cfg-vpn/pull/51
Create an Ike-group without a command "key-exchange" (like in VyOS 1.4):

Nov 20 2021, 9:32 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
trae32566 added a comment to T3936: [Feature] - DHCP Option 82 Support.

I think this is what it would look like in service dhcp server. I left some comments to explain my thinking a bit, and I tried to make it as flexible as possible (for example the way match options are strings, so future DHCP options can be supported as soon as ISC supports them):

failover {
    name INT
    remote 192.168.15.4
    source-address 192.168.15.3
    status primary
}
shared-network-name INT {
    description "Internal connection to ir01"
    class CLIENT_MAP {
       rule 10 {
           action permit                                       # This is equivalent to dhcpd's allow/deny members of
           match option "agent.circuit_id" value "Vlan200"     # This could match any option (ex: dhcp-client-identifier)
       }
    }
    class GUEST_MAP {
       rule 10 {
           action permit
           match option "agent.circuit_id" value "Vlan240"
       }
    }
    subnet 192.168.1.0/24 {
        class CLIENT_MAP
        default-router 192.168.1.1
        domain-name int.trae32566.org
        domain-search int.trae32566.org
        domain-search ipa.trae32566.org
        domain-search trae32566.org
        enable-failover
        name-server 192.168.255.1
        name-server 192.168.15.10
        name-server 192.168.31.3
        ntp-server 192.168.255.2
        ntp-server 192.168.15.11
        ntp-server 192.168.31.4
        range CLIENTS {
            start 192.168.1.2
            stop 192.168.1.240
        }
        server-identifier 192.168.15.2
        static-mapping QUEST {
            ip-address 192.168.1.17
            mac-address 80:f3:ef:11:e7:e7
        }
    }
    subnet 192.168.6.0/24 {
        class GUEST_MAP
        default-router 192.168.6.1
        enable-failover
        name-server 1.1.1.1
        name-server 1.0.0.1
        name-server 8.8.8.8
        ntp-server 50.205.57.38
        ntp-server 64.225.34.103
        ntp-server 129.250.35.251
        server-identifier 192.168.15.2
        range GUESTS {
            start 192.168.6.2
            stop 192.168.6.254
        }
    }
    subnet 192.168.15.0/29 {        # This tells it indirectly to use the interface eth2, which is on this subnet (is there a better way?)
        default-router 192.168.15.1
        enable-failover
        range DUMMY {
            start 192.168.15.2
            stop 192.168.15.7
        }
    }
}
Nov 20 2021, 3:54 AM · VyOS Rolling

Nov 19 2021

jestabro moved T4003: API for "show interfaces ethernet" does not include the interface description from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Nov 19 2021, 10:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro changed the status of T4003: API for "show interfaces ethernet" does not include the interface description from Unknown Status to Resolved.
Nov 19 2021, 10:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe7c313770865: http-api: T4003: fix output when no tty attached to stdout, e.g., api.
Nov 19 2021, 10:20 PM
jestabro triaged T4003: API for "show interfaces ethernet" does not include the interface description as Normal priority.
Nov 19 2021, 9:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro closed T4003: API for "show interfaces ethernet" does not include the interface description as Unknown Status.
Nov 19 2021, 9:44 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX82ea3b4f3c12: http-api: T4003: fix output when no tty attached to stdout, e.g., api.
Nov 19 2021, 9:42 PM
c-po added a comment to T3987: An error occurs after stopping snmpd in frr.

I would not call this a bug as this is produced on intention.

Nov 19 2021, 7:10 PM · VyOS 1.3 Equuleus (1.3.6)
SrividyaA committed rVYOSONEX50d45c659485: conf-mode:T3998:bgp route-target completion incorrect description.
Nov 19 2021, 2:51 PM
GitHub <noreply@github.com> committed rVYOSONEXd618bbab8ffb: Merge pull request #1075 from srividya0208/T3998 (authored by c-po).
Nov 19 2021, 2:51 PM
SrividyaA added a comment to T3998: route-target completion incorrect description.

Submitted this PR: https://github.com/vyos/vyos-1x/pull/1075

Nov 19 2021, 2:08 PM · VyOS 1.4 Sagitta
c-po closed T4011: ethernet: deleting interface should place interface in admin down state as Resolved.
Nov 19 2021, 6:40 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T4010: DMVPN generates incorrect configuration life_time for swanctl.conf from Open to Backlog on the VyOS 1.4 Sagitta board.
Nov 19 2021, 6:40 AM · VyOS 1.4 Sagitta
c-po moved T4011: ethernet: deleting interface should place interface in admin down state from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 19 2021, 6:40 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T4011: ethernet: deleting interface should place interface in admin down state from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 19 2021, 6:39 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX783dcc13e22b: ethernet: T4011: deleting interface should place interface in admin down state.
Nov 19 2021, 6:39 AM
c-po committed rVYOSONEX038fb7a4dd7d: wwan: T3620: fix commend in remove().
Nov 19 2021, 6:39 AM
c-po committed rVYOSONEXa14f93adfa63: ethernet: T4011: deleting interface should place interface in admin down state.
Nov 19 2021, 6:38 AM
c-po committed rVYOSONEXd9a19b77a560: wwan: T3620: fix commend in remove().
Nov 19 2021, 6:38 AM
c-po claimed T4011: ethernet: deleting interface should place interface in admin down state.
Nov 19 2021, 6:29 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T4011: ethernet: deleting interface should place interface in admin down state.
Nov 19 2021, 6:29 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po edited projects for T3318: Update Linux Kernel to v5.4.208 / 5.10.142, added: VyOS 1.3 Equuleus (1.3.0); removed VyOS 1.3 Equuleus (1.3.0-epa3).
Nov 19 2021, 6:16 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.155 / 5.10.75 to Update Linux Kernel to v5.4.160 / 5.10.80.
Nov 19 2021, 6:15 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
anthr76 added a comment to T3979: vyos-hostd unable to hostfile-update.

I wish I understood this subsystem better as I'd love to get it fixed. I'm going to take a closer look tomorrow

Nov 19 2021, 2:40 AM · VyOS 1.4 Sagitta

Nov 18 2021

jestabro added a comment to T4003: API for "show interfaces ethernet" does not include the interface description.

One detail towards a resolution: if the vyos-http-api-server is started manually (without systemd) then the output is not truncated. If one wants to try this, one should configure 'set service https api' (to update Nginx config appropriately); then 'systemctl stop vyos-http-api'; then, as root:

Nov 18 2021, 9:16 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T4010: DMVPN generates incorrect configuration life_time for swanctl.conf from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/1074

Nov 18 2021, 8:14 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXdefff5c29765: console-server: T2490: display /etc/issue.net on SSH logins.
Nov 18 2021, 8:05 PM
c-po committed rVYOSONEXc0bf019e9fc6: console-server: T2490: display /etc/issue.net on SSH logins.
Nov 18 2021, 8:05 PM
c-po added a comment to T4010: DMVPN generates incorrect configuration life_time for swanctl.conf.

Shows which options moved to the new name in swanctl

Nov 18 2021, 7:54 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4010: DMVPN generates incorrect configuration life_time for swanctl.conf.
Nov 18 2021, 7:29 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4006: Add additional Linux capabilities to container configuration from Open to Needs testing.
Nov 18 2021, 7:18 PM · VyOS 1.4 Sagitta
Viacheslav created T4010: DMVPN generates incorrect configuration life_time for swanctl.conf.
Nov 18 2021, 7:01 PM · VyOS 1.4 Sagitta
c-po closed T3510: RADIUS usersname is not shown on CLI as Resolved.
Nov 18 2021, 6:55 PM · VyOS 1.4 Sagitta
c-po added a comment to T3510: RADIUS usersname is not shown on CLI.

Re-tested working on

Nov 18 2021, 6:55 PM · VyOS 1.4 Sagitta
anthr76 committed rVYOSONEX236bcd584922: containers: T4006: Add capabilities net-bind-service.
Nov 18 2021, 6:37 PM
GitHub <noreply@github.com> committed rVYOSONEXce28a28b5bda: Merge pull request #1073 from anthr76/container-cap (authored by c-po).
Nov 18 2021, 6:37 PM
Viacheslav closed T4009: DMVPN generates incorrect configuration with hyphens for swanctl.conf as Invalid.
Nov 18 2021, 6:32 PM · VyOS 1.4 Sagitta
Viacheslav created T4009: DMVPN generates incorrect configuration with hyphens for swanctl.conf.
Nov 18 2021, 6:28 PM · VyOS 1.4 Sagitta
c-po moved T3795: WWAN: issues with non connected interface / no signal from Backlog to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 18 2021, 6:14 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po moved T4008: dhcp: change client retry interval form 300 -> 60 seconds from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 18 2021, 6:14 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3962: Image cannot be built without open-vm-tools from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 18 2021, 6:14 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3795: WWAN: issues with non connected interface / no signal from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 18 2021, 6:14 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po moved T4008: dhcp: change client retry interval form 300 -> 60 seconds from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 18 2021, 6:14 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3795: WWAN: issues with non connected interface / no signal as Resolved.
Nov 18 2021, 6:13 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXd588a968f8d8: wwan: T3620: place interface in A/D state when removed.
Nov 18 2021, 6:12 PM
c-po committed rVYOSONEX013da8c0b138: wwan: T3795: periodically check if WWAN connection needs a reconnect.
Nov 18 2021, 6:12 PM
c-po committed rVYOSONEX61e4d75abb11: wwan: T3620: place interface in A/D state when removed.
Nov 18 2021, 6:11 PM
c-po committed rVYOSONEXeb6247e4b464: wwan: T3795: periodically check if WWAN connection needs a reconnect.
Nov 18 2021, 6:11 PM
c-po added a project to T3795: WWAN: issues with non connected interface / no signal: VyOS 1.4 Sagitta.
Nov 18 2021, 5:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po closed T3680: Static routes with dhcp-interface are flaky as Resolved.
Nov 18 2021, 5:02 PM · VyOS 1.4 Sagitta (1.4.4)
c-po committed rVYOSONEX7650052e1725: wwan: T3795: do not fail config-load when signal is missing.
Nov 18 2021, 5:02 PM
c-po committed rVYOSONEX676e0a7b282b: wwan: T3795: make connect and disconnect op-mode commands aware to WWAN….
Nov 18 2021, 5:02 PM
c-po committed rVYOSONEXbe21deb31c3c: dhcp: T4008: change client retry interval form 300 -> 60 seconds.
Nov 18 2021, 5:02 PM
c-po committed rVYOSONEXb6745f513c71: xml: op-mode: improve help for "show ip route vrf".
Nov 18 2021, 5:01 PM
c-po committed rVYOSONEX4747e944233d: wwan: T3795: do not fail config-load when signal is missing.
Nov 18 2021, 4:59 PM
c-po committed rVYOSONEXa032d73f1d40: wwan: T3795: make connect and disconnect op-mode commands aware to WWAN….
Nov 18 2021, 4:59 PM
c-po committed rVYOSONEXe1539b6fffaf: dhcp: T4008: change client retry interval form 300 -> 60 seconds.
Nov 18 2021, 4:59 PM
c-po committed rVYOSONEX24d9a9261fca: xml: op-mode: improve help for "show ip route vrf".
Nov 18 2021, 4:59 PM
c-po closed T4008: dhcp: change client retry interval form 300 -> 60 seconds as Resolved.
Nov 18 2021, 4:55 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T4008: dhcp: change client retry interval form 300 -> 60 seconds.
Nov 18 2021, 4:55 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3995: OpenVPN: do not stop/start service on configuration change as Resolved.
Nov 18 2021, 4:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3995: OpenVPN: do not stop/start service on configuration change from Backlog to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 18 2021, 4:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav created T4007: Ability to use x509 certificates for DMVPN.
Nov 18 2021, 4:37 PM · VyOS Rolling
jestabro changed the status of T4003: API for "show interfaces ethernet" does not include the interface description from Open to Confirmed.

Thanks, I've confirmed the issue; I should have it resolved soon

Nov 18 2021, 4:12 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX57ffa79bbde2: interface-names: T3871: 'migrate' component string syntax as needed.
Nov 18 2021, 4:09 PM
tlcarpenter added a comment to T4003: API for "show interfaces ethernet" does not include the interface description.

I notice my example of the API only focused on one interface (eth0), where the CLI (and the title showed all interfaces). Doesn't change the fact that in either case the API doesn't return data for the description.

Nov 18 2021, 4:03 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX02090ae9927e: ipsec: T3643: Fix for show tunnels with state down.
Nov 18 2021, 2:36 PM
GitHub <noreply@github.com> committed rVYOSONEX28493c64f162: Merge pull request #1052 from sever-sever/T3643-equ (authored by dmbaturin).
Nov 18 2021, 2:36 PM
erkin changed the status of T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T3710: Upgrade the kernel in 1.3 to 5.10, from Needs testing to In progress.
Nov 18 2021, 2:05 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
erkin changed the status of T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T2198: Rewrite NAT in new XML/Python style, from Needs testing to In progress.
Nov 18 2021, 2:05 PM · VyOS 1.3 Equuleus (1.3.0)
erkin changed the status of T1083: Implement persistent/random address and port mapping options for NAT rules from Needs testing to In progress.
Nov 18 2021, 2:05 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
anthr76 updated the task description for T4006: Add additional Linux capabilities to container configuration.
Nov 18 2021, 1:55 PM · VyOS 1.4 Sagitta
anthr76 created T4006: Add additional Linux capabilities to container configuration.
Nov 18 2021, 1:30 PM · VyOS 1.4 Sagitta
SrividyaA claimed T3998: route-target completion incorrect description.
Nov 18 2021, 11:00 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4004: IPsec ike-group parameters are not saved correctly (after reboot).

I don't think that it is a bug.
If you don't set any value, it gets default value ikev1
https://github.com/vyos/vyatta-cfg-vpn/blob/d2d4361bffaa0b99c85c7fbf46ddd760ae6512f0/templates/vpn/ipsec/ike-group/node.tag/key-exchange/node.def#L3

Nov 18 2021, 8:12 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) created T4005: Feature Request: IPsec IKEv1 + IKEv2 for one peer.
Nov 18 2021, 4:30 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) created T4004: IPsec ike-group parameters are not saved correctly (after reboot).
Nov 18 2021, 3:53 AM · VyOS 1.3 Equuleus (1.3.0-epa3)

Nov 17 2021

c-po moved T3996: SNMP service error in log from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 17 2021, 8:54 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3997: Add CAP_NET_RAW capability from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 17 2021, 8:54 PM · VyOS 1.4 Sagitta
c-po moved T3996: SNMP service error in log from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 17 2021, 8:53 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3996: SNMP service error in log as Resolved.
Nov 17 2021, 8:53 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEXa12079f7cb7f: snmp: T3996: fix invalid IPv6 localhost handling when using listen-address.
Nov 17 2021, 8:52 PM
c-po committed rVYOSONEXd13b91462487: snmp: T3996: fix invalid IPv6 localhost handling when using listen-address.
Nov 17 2021, 8:44 PM
dmbaturin renamed T1083: Implement persistent/random address and port mapping options for NAT rules from Implement "--persistent" option to NAT rules to Implement persistent/random address and port mapping options for NAT rules.
Nov 17 2021, 8:10 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
dmbaturin added a comment to T1083: Implement persistent/random address and port mapping options for NAT rules.

Since we had to revert to the old NAT implementation due to kernel issues, this had to be back-back-ported to the old Perl code as well.

Nov 17 2021, 8:09 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
dmbaturin reopened T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T3710: Upgrade the kernel in 1.3 to 5.10, as Needs testing.
Nov 17 2021, 8:05 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
dmbaturin reopened T1083: Implement persistent/random address and port mapping options for NAT rules, a subtask of T2198: Rewrite NAT in new XML/Python style, as Needs testing.
Nov 17 2021, 8:05 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin reopened T1083: Implement persistent/random address and port mapping options for NAT rules as "Needs testing".
Nov 17 2021, 8:05 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0), test, VyOS 1.4 Sagitta
c-po closed T3350: OpenVPN config file generation broken as Resolved.
Nov 17 2021, 7:42 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po moved T3350: OpenVPN config file generation broken from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 17 2021, 7:42 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po moved T3350: OpenVPN config file generation broken from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.0) board.
Nov 17 2021, 7:42 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)
c-po committed rVYOSONEXb618790b9e5a: openvpn: T3995: implement systemd reload support.
Nov 17 2021, 7:41 PM
c-po committed rVYOSONEX50a1b4a11701: OpenVPN: T3350: Changed custom options for OpenVPN processing (authored by zsdc).
Nov 17 2021, 7:41 PM
c-po committed rVYOSONEX0105450e7d10: T3912: add additional newline after "Welcome to VyOS".
Nov 17 2021, 5:57 PM
c-po committed rVYOSONEX77eca49bffed: T3912: add additional newline after "Welcome to VyOS".
Nov 17 2021, 5:54 PM
jestabro claimed T4003: API for "show interfaces ethernet" does not include the interface description.
Nov 17 2021, 4:04 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
tlcarpenter created T4003: API for "show interfaces ethernet" does not include the interface description.
Nov 17 2021, 3:35 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) created T4002: firewall group network-group long names restriction incorrect behavior.
Nov 17 2021, 12:45 PM · VyOS 1.3 Equuleus ( 1.3.1)