Page MenuHomeVyOS Platform
Feed All Stories

Apr 10 2022

c-po committed rVYOSONEX85e4bae1ef9e: eapol: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 8:08 AM
c-po committed rVYOSONEXaa4cb50bdf99: dns: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 8:08 AM
c-po committed rVYOSONEX17586e0f0698: ocserv: T4231: increment config version 1 -> 2.
Apr 10 2022, 7:31 AM
Viacheslav moved T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 10 2022, 5:56 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T4288: IPsec tunnel will break when ESP timeout from Needs testing to In progress.

I tested it with VyOS 1.4-rolling-202204090217 and it works well for a while.

Apr 10 2022, 2:26 AM · VyOS 1.4 Sagitta

Apr 9 2022

nagua updated the task description for T4351: Openvpn conf-mode "openvpn-option" is not respected.
Apr 9 2022, 2:49 PM · VyOS 1.4 Sagitta
nagua created T4351: Openvpn conf-mode "openvpn-option" is not respected.
Apr 9 2022, 2:40 PM · VyOS 1.4 Sagitta
goodNETnick <pknet@ya.ru> committed rVYOSONEXb776003cf55e: ocserv: T4231: Added OTP support for Openconnect 2FA.
Apr 9 2022, 11:42 AM
GitHub <noreply@github.com> committed rVYOSONEXaa5b35b68c11: Merge branch 'vyos:current' into ocserv_local_otp (authored by goodNETnick <33053932+goodNETnick@users.noreply.github.com>).
Apr 9 2022, 11:42 AM
goodNETnick <pknet@ya.ru> committed rVYOSONEX1da9cc02d7c8: ocserv: T4231: Added OTP support for Openconnect 2FA (authored by goodNETnick <33053932+goodNETnick@users.noreply.github.com>).
Apr 9 2022, 11:42 AM
GitHub <noreply@github.com> committed rVYOSONEX139ab8164660: Merge pull request #1242 from goodNETnick/ocserv_local_otp (authored by c-po).
Apr 9 2022, 11:42 AM
hexes added a comment to T4348: Site access denied.

I have normal access!

Apr 9 2022, 2:58 AM

Apr 8 2022

Viacheslav added a comment to T4312: Telegraf configuration doesn't accept IPs for URL.

@fortinj1354 you can do changes in xml, build .deb pkg and install it on the instance
https://docs.vyos.io/en/equuleus/contributing/build-vyos.html#id4

Apr 8 2022, 11:14 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav renamed T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from DHCP statistics not matching, conf-mode generates incorrect poll name with dash to DHCP statistics not matching, conf-mode generates incorrect pool name with dash.
Apr 8 2022, 11:04 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1280

Apr 8 2022, 10:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX00f546f0504a: dhcp-server: T4344: Fix underscores for shared network name.
Apr 8 2022, 10:26 PM
Viacheslav closed T4349: Vlan-range vlan_mon not working for ipoe service as Invalid.

I missed option network vlan:

set service ipoe-server interface eth2 network 'vlan'

configs looks good:

[ipoe]
verbose=1
interface=re:eth2\.\d+,shared=0,mode=L2,ifcfg=1,range=192.168.0.0/24,start=dhcpv4,ipv6=1
username=ifname
password=csid
proxy-arp=1
Apr 8 2022, 9:27 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav changed Version from VyOS 1.3.1-S1 to VyOS 1.3.1-S1, VyOS 1.4-rolling-202204080957 on T4349: Vlan-range vlan_mon not working for ipoe service.
Apr 8 2022, 9:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav added a project to T4349: Vlan-range vlan_mon not working for ipoe service: VyOS 1.4 Sagitta.
Apr 8 2022, 8:59 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav created T4350: DMVPN opennhrp spokes dont work behind NAT.
Apr 8 2022, 8:53 PM · VyOS 1.3 Equuleus (1.3.2)
Viacheslav created T4349: Vlan-range vlan_mon not working for ipoe service.
Apr 8 2022, 8:28 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav committed rVYOSONEXb75b351b7dd2: dhcp-server: T4344: Fix underscores for shared network name.
Apr 8 2022, 5:52 PM
GitHub <noreply@github.com> committed rVYOSONEXf43031ec4591: Merge branch 'current' into T4344 (authored by Viacheslav).
Apr 8 2022, 5:52 PM
GitHub <noreply@github.com> committed rVYOSONEXf9ebccd2ef0b: Merge pull request #1278 from sever-sever/T4344 (authored by c-po).
Apr 8 2022, 5:52 PM
Unknown Object (User) added a comment to T3427: Show prefix received via IA_PD in interface info.

I would like to see this too, with Ethernet interfaces.

Apr 8 2022, 4:18 PM
c-po closed T4324: wwan: check alive script should only be run via cron if a wwan interface is configured at all as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4338: wwan: changing interface description should not trigger reconnect as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po closed T4339: wwan: tab-completion results in "No such file or directory" if there is no WWAN interface as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po closed T4331: IPv6 link local addresses are not configured when an interface is in a VRF as Resolved.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4331: IPv6 link local addresses are not configured when an interface is in a VRF from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4339: wwan: tab-completion results in "No such file or directory" if there is no WWAN interface from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po moved T4338: wwan: changing interface description should not trigger reconnect from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po moved T4324: wwan: check alive script should only be run via cron if a wwan interface is configured at all from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
tacerus committed rVYOSONEX15461be0cd7b: T4156: Add bootfile-size option (authored by teadur).
Apr 8 2022, 3:01 PM
GitHub <noreply@github.com> committed rVYOSONEX630945291c9a: Merge branch 'current' into dhcpd (authored by teadur).
Apr 8 2022, 3:01 PM
GitHub <noreply@github.com> committed rVYOSONEX2bf7589e926b: Merge pull request #1148 from tacerus/dhcpd (authored by dmbaturin).
Apr 8 2022, 3:01 PM
c-po committed rVYOSONEX07c3bb021d77: wwan: T4324: is_wwan_connected() must verify if ModemManager is running.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEX7091d0b54f21: wwan: T4324: cronjob is setup via interfaces-wwan.py - drop dedicated cron file.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEX8d310eb3f83b: wwan: T4324: properly start/stop ModemManager and cron helper on interface….
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXf728e321d1fb: wwan: T4338: changing interface description should not trigger reconnect.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXce4a1eb35a91: wwan: T4339: tab-completion results in "No such file or directory".
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXe5f1df1988a1: wifi: T4339: tab-completion results in "No such file or directory".
Apr 8 2022, 2:51 PM
GitHub <noreply@github.com> committed rVYOSONEXbd50d51f1e49: Merge pull request #1263 from c-po/wwan-t4324-equuleus (authored by dmbaturin).
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXaf2563589b79: smoketest: vrf: T4331: IPv6 link-local addresses not configured for interface….
Apr 8 2022, 2:49 PM
c-po committed rVYOSONEX409a2e1239e6: interfaces: T4331: Fix assign link-local static IPv6 addr to vrf (authored by Viacheslav).
Apr 8 2022, 2:49 PM
GitHub <noreply@github.com> committed rVYOSONEX298ce87e8fc4: Merge pull request #1273 from c-po/t4331-equuleus (authored by dmbaturin).
Apr 8 2022, 2:48 PM
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

PR https://github.com/vyos/vyos-1x/pull/1278

Apr 8 2022, 2:11 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX654dbc9aa3b0: dhcp(v6): T4333: migrate to new vyos_defined Jinja2 test.
Apr 8 2022, 12:48 PM
c-po committed rVYOSONEXd8f778456761: container: T4333: migrate to new vyos_defined Jinja2 test.
Apr 8 2022, 12:48 PM
Viacheslav added a project to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash: VyOS 1.4 Sagitta.
Apr 8 2022, 12:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav renamed T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from DHCP statistics not matching to DHCP statistics not matching, conf-mode generates incorrect poll name with dash.
Apr 8 2022, 12:07 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

The root cause it generates incorrect pool name (conf mode) with a dash instead of an underscore

vyos@vyos:~$ show conf com | match dhcp
set service dhcp-server shared-network-name NET_01 authoritative
set service dhcp-server shared-network-name NET_01 name-server '1.1.1.1'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 start '192.0.2.21'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 stop '192.0.2.254'
vyos@vyos:~$

dhcp.conf

...
    on commit {
        set shared-networkname = "NET-01";
    }
Apr 8 2022, 12:05 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from Open to In progress.
Apr 8 2022, 11:54 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
n.fort added a comment to T4348: Site access denied.

I have normal access!

Apr 8 2022, 10:49 AM
c-po committed rVYOSONEX57c0789f47e0: smoketest: vrf: T4346: IPv6 address family can no longer be disabled in the….
Apr 8 2022, 9:27 AM
jestabro closed T4347: Return complete and consistent error codes from HTTP API as Resolved.
Apr 8 2022, 8:16 AM · VyOS 1.4 Sagitta
cgb added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

Not sure if this works but there is an upload button in the toolbar:

Apr 8 2022, 7:09 AM · VyOS 1.3 Equuleus (1.3.6)
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

@n.fort the config i would like to upload to this ticket has 43727 lines.. Its a text file of 1.3 Mbps. Its it possible to attach the file instead of paste it on the comments?

Apr 8 2022, 6:59 AM · VyOS 1.3 Equuleus (1.3.6)
jestabro committed rVYOSONEX4c89134c632d: http api: T4347: return complete and consistent error codes.
Apr 8 2022, 5:11 AM
jestabro committed rVYOSONEX143621114e71: smoketest: http: bind http api to unix domain socket.
Apr 8 2022, 5:11 AM
jestabro committed rVYOSONEX84bfac85a711: smoketest: http: add check for missing key.
Apr 8 2022, 5:11 AM
GitHub <noreply@github.com> committed rVYOSONEX5399a8f75b5a: Merge pull request #1277 from jestabro/api-smoketest (authored by c-po).
Apr 8 2022, 5:11 AM
hexes triaged T4348: Site access denied as High priority.
Apr 8 2022, 3:33 AM

Apr 7 2022

jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from Needs testing to In progress.
Apr 7 2022, 11:58 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4347: Return complete and consistent error codes from HTTP API.

PR:
https://github.com/vyos/vyos-1x/pull/1277

Apr 7 2022, 11:57 PM · VyOS 1.4 Sagitta
ajgnet added a comment to T2943: Wireguard allow use of hostname as endpoint.

Trying to configure a wireguard peer with a dns name as remote endpoint. I understand this is not supported, but I see many references to creating a post-boot script to do this. Any working examples? Thank you

Apr 7 2022, 10:21 PM · VyOS 1.2 Crux
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

Hi, I'm sorry for the confusion but the configuration I uploaded is not from a production machine. It's just an example of a small configuration of a pre-production vyos that I was having trouble upgrading.
Tomorrow if I will upload one of the ones that take 25-30 minutes to boot on modern CPUs (xeon gold).

Apr 7 2022, 9:31 PM · VyOS 1.3 Equuleus (1.3.6)
jestabro added a comment to T4347: Return complete and consistent error codes from HTTP API.

Changes and fixes to smoketest at link; in testing before PR:
https://github.com/vyos/vyos-1x/compare/current...jestabro:api-smoketest

Apr 7 2022, 9:21 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from In progress to Needs testing.
Apr 7 2022, 9:13 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from Open to In progress.
Apr 7 2022, 9:05 PM · VyOS 1.4 Sagitta
c-po closed T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel as Resolved.
Apr 7 2022, 6:55 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEX44c67e54ef6e: policy: T4194: simplify prefix-list duplication checks.
Apr 7 2022, 6:48 PM
c-po committed rVYOSONEX440a7a1c965b: ipv6: T4346: delete (migrate) CLI command to disable IPv6 address family.
Apr 7 2022, 6:48 PM
n.fort added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

With shared config, I'm not getting high times while loading config (at least not that high as exposed in this task)

Apr 7 2022, 6:46 PM · VyOS 1.3 Equuleus (1.3.6)
c-po committed rVYOSONEXcae4d9c959a1: vyos.base: T4346: add common DeprecationWarning() class.
Apr 7 2022, 5:59 PM
c-po committed rVYOSONEXed976b809d2a: ipv6: T4346: deprecate CLI command to disable IPv6 address family.
Apr 7 2022, 5:59 PM
GitHub <noreply@github.com> committed rVYOSONEX25d65249bd81: Merge pull request #1276 from c-po/t4346-deprecate-ipv6-disable (authored by c-po).
Apr 7 2022, 5:59 PM
c-po moved T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 7 2022, 5:34 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po added a comment to T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel.

VyOS 1.3 (equuleus) PR https://github.com/vyos/vyos-1x/pull/1276

Apr 7 2022, 5:15 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 7 2022, 5:15 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEX0f7e5371e702: ipv6: T4346: deprecate CLI command to disable IPv6 address family.
Apr 7 2022, 4:35 PM
c-po committed rVYOSONEX957f73ed8c2c: vyos.base: T4346: add common DeprecationWarning() class.
Apr 7 2022, 4:35 PM
c-po updated the task description for T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel.
Apr 7 2022, 4:34 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po changed the status of T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel from Open to In progress.
Apr 7 2022, 3:24 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po created T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel.
Apr 7 2022, 3:24 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4319: The command "set system ipv6 disable" doesn't work as expected. as Resolved.
Apr 7 2022, 3:21 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po closed T4330: MTU settings cannot be applied when IPv6 is disabled as Resolved.
Apr 7 2022, 3:20 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4330: MTU settings cannot be applied when IPv6 is disabled from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 7 2022, 3:20 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4336: isis: add support for MD5 authentication password on a circuit as Resolved.
Apr 7 2022, 3:20 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4336: isis: add support for MD5 authentication password on a circuit from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 7 2022, 3:20 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4341: login: disable user-account prior to deletion and wait until deletion is complete as Resolved.
Apr 7 2022, 3:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4341: login: disable user-account prior to deletion and wait until deletion is complete from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 7 2022, 3:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4341: login: disable user-account prior to deletion and wait until deletion is complete from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 7 2022, 3:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

@n.fort Sorry yes this AC-1 vyos was on 1.2.1 I will a test tomorrow with a version 1.2.6-S1 to have the path i was mention..

Apr 7 2022, 3:04 PM · VyOS 1.3 Equuleus (1.3.6)
c-po committed rVYOSONEX982cb6768f8b: isis: T4336: add support for MD5 authentication password on a circuit.
Apr 7 2022, 2:27 PM
c-po committed rVYOSONEXb8b336aeaaff: smoketest: isis: extend testcase to verify 'is-type level-2-only' can be set.
Apr 7 2022, 2:27 PM
GitHub <noreply@github.com> committed rVYOSONEX7bd5a1c76ed3: Merge pull request #1264 from c-po/t4336-isis-equuleus (authored by dmbaturin).
Apr 7 2022, 2:27 PM
c-po committed rVYOSONEX7b4a9a871ad8: smoketest: ssh: verify login of valid and invalid test user.
Apr 7 2022, 2:26 PM
c-po committed rVYOSONEXce1073f08d24: smoketest: ssh: verify SSH service is stopped on removal.
Apr 7 2022, 2:26 PM
c-po committed rVYOSONEX187ae2cdb841: login: T4341: disable user account prior to deletion.
Apr 7 2022, 2:26 PM