Page MenuHomeVyOS Platform
Feed All Stories

Apr 21 2022

c-po created T4384: pppoe: replace default-route CLI option with common CLI nodes already present for DHCP.
Apr 21 2022, 5:35 PM · VyOS 1.4 Sagitta
jestabro added a comment to T3785: Add unicode support to configtree backend.

Backported to equuleus branch of vyos1x-config:
https://github.com/vyos/vyos1x-config/commit/8ad21f6c7e6f37edeca137b2a7dc7c3f7ffc6a20

Apr 21 2022, 4:40 PM · VyOS 1.3 Equuleus (1.3.2)
Unknown Object (User) added a comment to T4380: Feature Request: ocserv: 2FA OTP key generator in VyOS CLI.

PR:
https://github.com/vyos/vyos-1x/pull/1294

Apr 21 2022, 12:30 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4365: NAT - Error on setting up tables.

PR: https://github.com/vyos/vyos-1x/pull/1289

Apr 21 2022, 12:10 PM · VyOS 1.4 Sagitta
ajgnet updated the task description for T4383: Flow Accounting returns permission error and fails to start.
Apr 21 2022, 12:46 AM · VyOS 1.4 Sagitta
ajgnet created T4383: Flow Accounting returns permission error and fails to start.
Apr 21 2022, 12:32 AM · VyOS 1.4 Sagitta

Apr 20 2022

jestabro updated the task description for T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors.
Apr 20 2022, 9:26 PM · VyOS 1.4 Sagitta
jestabro updated the task description for T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors.
Apr 20 2022, 9:24 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py: T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors.
Apr 20 2022, 8:28 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors: T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py.
Apr 20 2022, 8:28 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors from Open to Confirmed.
Apr 20 2022, 8:25 PM · VyOS 1.4 Sagitta
SrividyaA changed the status of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command from Open to In progress.
Apr 20 2022, 5:52 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
ajgnet added a comment to T4362: Wan Load Balancing - Can't create routing tables.

Confirming the same.

Apr 20 2022, 12:54 PM · VyOS 1.4 Sagitta
sarthurdev closed T4345: New firewall code does not accept "rate/time interval" syntax used in old config as Resolved.
Apr 20 2022, 11:58 AM · VyOS 1.4 Sagitta
v.huti added a comment to T4028: FRR 8.1 routes not being applied to routing table after reboot if an interface has 2 ip addresses.

Pull https://github.com/FRRouting/frr/pull/11004 was merged. This needs retesting on the latest FRR

Apr 20 2022, 10:48 AM · VyOS 1.4 Sagitta
c-po added a comment to T4357: Allow free-form setting of DHCPv6 server options.

Not a super expert in ISC DHCPd but it feels like the vendor specific options are hardcoded

Apr 20 2022, 6:53 AM · VyOS 1.4 Sagitta
KenCrandall added a watcher for VyOS 1.3 Equuleus: KenCrandall.
Apr 20 2022, 4:24 AM
KenCrandall added a watcher for VyOS 1.4 Sagitta: KenCrandall.
Apr 20 2022, 4:23 AM
Unknown Object (User) created T4380: Feature Request: ocserv: 2FA OTP key generator in VyOS CLI.
Apr 20 2022, 2:20 AM · VyOS 1.4 Sagitta
Unknown Object (User) closed T4231: Feature Request: ocserv: 2FA (password+OTP) support in Openconnect as Resolved.

Tested in VyOS 1.4-rolling-202204130521
Works

Apr 20 2022, 1:58 AM · VyOS 1.4 Sagitta

Apr 19 2022

Viacheslav added a comment to T4357: Allow free-form setting of DHCPv6 server options.

PR https://github.com/vyos/vyos-1x/pull/1293

Apr 19 2022, 11:29 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4350: DMVPN opennhrp spokes dont work behind NAT.

Script for testing which fix some bugs with DMVPN

Apr 19 2022, 9:05 PM · VyOS 1.3 Equuleus (1.3.2)
c-po closed T4379: PPPoE: default-route lost after applying additional static routes as Resolved.
Apr 19 2022, 7:51 PM · VyOS 1.4 Sagitta
Viacheslav moved T4268: Elevated LA while using VyOS monitoring feature from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Apr 19 2022, 6:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T4268: Elevated LA while using VyOS monitoring feature as Resolved.
Apr 19 2022, 6:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po renamed T4379: PPPoE: default-route lost after applying additional static routes from PPPoE: default-route lost after applying additional startic routes to PPPoE: default-route lost after applying additional static routes.
Apr 19 2022, 5:58 PM · VyOS 1.4 Sagitta
c-po claimed T4379: PPPoE: default-route lost after applying additional static routes.
Apr 19 2022, 5:49 PM · VyOS 1.4 Sagitta
c-po created T4379: PPPoE: default-route lost after applying additional static routes.
Apr 19 2022, 5:49 PM · VyOS 1.4 Sagitta
ajgnet updated the task description for T4378: Unable to submit wildcard ("*.example.com") A or AAAA records in dns forwarder.
Apr 19 2022, 5:01 PM · VyOS 1.4 Sagitta
ajgnet created T4378: Unable to submit wildcard ("*.example.com") A or AAAA records in dns forwarder.
Apr 19 2022, 4:59 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4357: Allow free-form setting of DHCPv6 server options.

Proposed CLI:

set service dhcpv6-server global-parameters cisco-voip width 2 
set service dhcpv6-server global-parameters cisco-voip length-width 2 
set service dhcpv6-server global-parameters cisco-voip tftp-servers 
set service dhcpv6-server shared-network-name Lan-v6-02 subnet 2001:db8:23::/64 cisco-voip tftp-server xx:xx:xx
Apr 19 2022, 4:40 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4375: hairpin nat (nat reflector) "hijacks" all outgoing traffic on specified port to any destination.

Related to task T2196
Also there can be an issue if you get by DHCP non external addresses which behind nat.
So you need some external scripts which will give you your external address, like

curl ifconfig.me
Apr 19 2022, 3:40 PM · VyOS 1.4 Sagitta (1.4.1)
Viacheslav assigned T4268: Elevated LA while using VyOS monitoring feature to unity.
Apr 19 2022, 2:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
unity changed the status of T4268: Elevated LA while using VyOS monitoring feature from Open to In progress.

https://github.com/vyos/vyos-1x/pull/1291
https://github.com/vyos/vyos-1x/pull/1292

Apr 19 2022, 2:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
ajgnet added a comment to T4376: DNAT with multiwan and policy routing, incoming connections only work on primary interface.

Tested, does not work. Even with all firewall rules removed.

Apr 19 2022, 2:14 PM · VyOS 1.4 Sagitta
ajgnet added a comment to T4375: hairpin nat (nat reflector) "hijacks" all outgoing traffic on specified port to any destination.

Is there a way to get this to work with a dhcp assigned WAN address?

Apr 19 2022, 2:05 PM · VyOS 1.4 Sagitta (1.4.1)
unity updated subscribers of T4268: Elevated LA while using VyOS monitoring feature.

The answer was found https://github.com/influxdata/telegraf/issues/3465
Thanks @jestabro

Apr 19 2022, 1:53 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T4377: generate tech-support archive includes previous archives.

It should exclude it https://github.com/vyos/vyatta-op/blob/dfbfeafb1362a2c6934575a984a78fd2524d5720/scripts/tech-support-archive#L54

Apr 19 2022, 1:24 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav added a comment to T4375: hairpin nat (nat reflector) "hijacks" all outgoing traffic on specified port to any destination.

Set destination external address, it is required. In other case you set all traffic to local server.

Apr 19 2022, 12:59 PM · VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a comment to T4376: DNAT with multiwan and policy routing, incoming connections only work on primary interface.

I didn't test it, but you need something like this or combinations..

set policy route MARK-80-eth0 rule 10 destination port '80'
set policy route MARK-80-eth0 rule 10 protocol 'tcp'
set policy route MARK-80-eth0 rule 10 set mark '100'
set policy route MARK-80-eth0 rule 10 set table '100'
Apr 19 2022, 12:53 PM · VyOS 1.4 Sagitta
Unknown Object (User) created T4377: generate tech-support archive includes previous archives.
Apr 19 2022, 12:39 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav closed T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash as Resolved.

Fixed

vyos@vyos:~$ show conf com | match dhcp
set service dhcp-server shared-network-name NET_01 authoritative
set service dhcp-server shared-network-name NET_01 name-server '1.1.1.1'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 start '192.0.2.21'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 stop '192.0.2.254'
vyos@vyos:~$ 
vyos@vyos:~$ show dhcp server leases 
IP address    Hardware address    State    Lease start          Lease expiration     Remaining    Pool    Hostname
------------  ------------------  -------  -------------------  -------------------  -----------  ------  ----------
192.0.2.27    50:08:00:06:00:02   active   2022/04/19 12:04:19  2022/04/20 12:04:19  23:59:27     NET_01  vyos
vyos@vyos:~$ 
vyos@vyos:~$ show dhcp server statistics 
Pool      Size    Leases    Available  Usage
------  ------  --------  -----------  -------
NET_01     234         1          233  0%
vyos@vyos:~$
Apr 19 2022, 12:05 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
ajgnet created T4376: DNAT with multiwan and policy routing, incoming connections only work on primary interface.
Apr 19 2022, 11:27 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4373: PPPoE-server add multiplier option for shaper.

PR https://github.com/vyos/vyos-1x/pull/1290

Apr 19 2022, 11:09 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
ajgnet created T4375: hairpin nat (nat reflector) "hijacks" all outgoing traffic on specified port to any destination.
Apr 19 2022, 9:53 AM · VyOS 1.4 Sagitta (1.4.1)
ajgnet updated the task description for T4374: ipv6 address drops from interface, but network still active.
Apr 19 2022, 9:45 AM · VyOS 1.4 Sagitta
ajgnet created T4374: ipv6 address drops from interface, but network still active.
Apr 19 2022, 9:21 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4373: PPPoE-server add multiplier option for shaper from Open to In progress.
Apr 19 2022, 5:31 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav created T4373: PPPoE-server add multiplier option for shaper.
Apr 19 2022, 5:28 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Apr 18 2022

higebu moved T4371: Copy contribution guideline from vyos-1x from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 18 2022, 11:50 PM · Restricted Project
higebu created T4372: Change working directory to "./build" as same as vyos-build.
Apr 18 2022, 11:49 PM · Restricted Project
higebu triaged T4371: Copy contribution guideline from vyos-1x as High priority.
Apr 18 2022, 11:42 PM · Restricted Project
higebu closed T4278: vyos-vm-images: fix vagrant libvirt box as Resolved.
Apr 18 2022, 11:39 PM · Restricted Project, VyOS 1.4 Sagitta
svd135 added a comment to T4327: Ethernet interface configuration fails on Hyper-V due to speed/duplex/autoneg ethtool command error.

1.4-rolling-20220418
Issue is still not fixed

Apr 18 2022, 9:23 PM · VyOS 1.4 Sagitta
c-po closed T4370: vxlan: geneve: support configuration of df bit option as Resolved.
Apr 18 2022, 5:55 PM · VyOS 1.4 Sagitta
c-po changed the status of T4370: vxlan: geneve: support configuration of df bit option from Open to In progress.
Apr 18 2022, 5:52 PM · VyOS 1.4 Sagitta
c-po created T4370: vxlan: geneve: support configuration of df bit option.
Apr 18 2022, 5:51 PM · VyOS 1.4 Sagitta
billsimon added a comment to T4356: DHCP v6 client only supports single interface configuration.

Adding logs. dhcpv6 configured for interfaces eth0 and eth3. Depending which starts first, the other one fails and gives "unexpected interface":

Apr 18 2022, 3:26 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4356: DHCP v6 client only supports single interface configuration.

At least dhcpv6 address assign correctly, VyOS 1.4-rolling-202204162001

set interfaces ethernet eth2 address 'dhcp'
set interfaces ethernet eth2 address 'dhcpv6'
set interfaces ethernet eth3 address 'dhcp'
set interfaces ethernet eth3 address 'dhcpv6'

Show interfaces:

vyos@vyos:~$ show int
Codes: S - State, L - Link, u - Up, D - Down, A - Admin Down
Interface        IP Address                        S/L  Description
---------        ----------                        ---  -----------
eth0             -                                 u/u  
eth1             -                                 u/u  
eth2             100.64.20.21/24                   u/u  WAN01
                 2001:db8:23::934f/128                  
eth3             100.64.30.21/24                   u/u  WAN02
                 2001:db8::934f/128
Apr 18 2022, 3:03 PM · VyOS 1.4 Sagitta
billsimon added a comment to T4357: Allow free-form setting of DHCPv6 server options.

In dhcpdv6.conf I have added the following to support Cisco VoIP phone provisioning over IPv6:

Apr 18 2022, 2:38 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4357: Allow free-form setting of DHCPv6 server options.

It was a lot of issues with it in openvpn.
So we decide to avoid to use raw options
Let us know which options do you need?

Apr 18 2022, 2:33 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4362: Wan Load Balancing - Can't create routing tables.
Apr 18 2022, 12:57 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

udpate PR for 1.3 https://github.com/vyos/vyos-1x/pull/1288

Apr 18 2022, 11:09 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T4369: OpenVPN: daemon not restarted on changes to "openvpn-option" CLI node.

PR for 1.3: https://github.com/vyos/vyos-1x/pull/1308

Apr 18 2022, 10:31 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4351: Openvpn conf-mode "openvpn-option" is not respected as Resolved.
Apr 18 2022, 10:11 AM · VyOS 1.4 Sagitta
c-po claimed T4369: OpenVPN: daemon not restarted on changes to "openvpn-option" CLI node.
Apr 18 2022, 9:53 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po created T4369: OpenVPN: daemon not restarted on changes to "openvpn-option" CLI node.
Apr 18 2022, 9:53 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po added a comment to T4366: geneve: interface is removed on changes to e.g. description.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1286

Apr 18 2022, 9:31 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po claimed T4351: Openvpn conf-mode "openvpn-option" is not respected.
Apr 18 2022, 9:16 AM · VyOS 1.4 Sagitta
c-po moved T4366: geneve: interface is removed on changes to e.g. description from Need Triage to In Progress on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 18 2022, 9:12 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po changed Is it a breaking change? from compatible to syntax on T4257: Discussion on changing BGP autonomous system number syntax.
Apr 18 2022, 8:55 AM · VyOS 1.4 Sagitta
c-po claimed T4257: Discussion on changing BGP autonomous system number syntax.
Apr 18 2022, 8:54 AM · VyOS 1.4 Sagitta
c-po added a comment to T4257: Discussion on changing BGP autonomous system number syntax.

I would like to call it system-as(n)

Apr 18 2022, 8:54 AM · VyOS 1.4 Sagitta
c-po closed T4368: bgp: AS specified for local as is the same as the remote as and this is not allowed. as Resolved.
Apr 18 2022, 8:48 AM · VyOS 1.4 Sagitta
c-po changed the status of T4368: bgp: AS specified for local as is the same as the remote as and this is not allowed. from Open to In progress.
Apr 18 2022, 8:23 AM · VyOS 1.4 Sagitta
c-po created T4368: bgp: AS specified for local as is the same as the remote as and this is not allowed..
Apr 18 2022, 8:23 AM · VyOS 1.4 Sagitta

Apr 17 2022

Unknown Object (User) added a comment to T4348: Site access denied.

Of course. This restriction comes from the communication providers. Through (VPN) - everything works well.

Apr 17 2022, 9:50 PM
n.fort created T4367: NAT - Config tmp file not available.
Apr 17 2022, 1:17 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4365: NAT - Error on setting up tables.

Review code: https://github.com/vyos/vyos-1x/blob/current/data/templates/firewall/nftables-nat.tmpl#L141-L142

Apr 17 2022, 12:53 PM · VyOS 1.4 Sagitta

Apr 16 2022

c-po moved T4366: geneve: interface is removed on changes to e.g. description from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Apr 16 2022, 9:43 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po edited projects for T4366: geneve: interface is removed on changes to e.g. description, added: VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.
Apr 16 2022, 9:18 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po claimed T4366: geneve: interface is removed on changes to e.g. description.
Apr 16 2022, 9:18 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po created T4366: geneve: interface is removed on changes to e.g. description.
Apr 16 2022, 9:18 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
n.fort claimed T4365: NAT - Error on setting up tables.
Apr 16 2022, 6:07 PM · VyOS 1.4 Sagitta
n.fort updated the task description for T4365: NAT - Error on setting up tables.
Apr 16 2022, 5:46 PM · VyOS 1.4 Sagitta
n.fort created T4365: NAT - Error on setting up tables.
Apr 16 2022, 5:43 PM · VyOS 1.4 Sagitta

Apr 15 2022

c-po closed T4364: salt-minion: Upgrade to 3004 and migrate to get_config_dict() as Resolved.
Apr 15 2022, 7:42 PM · VyOS 1.4 Sagitta
c-po renamed T4364: salt-minion: Upgrade to 3004 and migrate to get_config_dict() from salt-minion: migrate to get_config_dict() to salt-minion: Upgrade to 3004 and migrate to get_config_dict().
Apr 15 2022, 7:36 PM · VyOS 1.4 Sagitta
c-po updated the task description for T4364: salt-minion: Upgrade to 3004 and migrate to get_config_dict().
Apr 15 2022, 6:56 PM · VyOS 1.4 Sagitta
c-po claimed T4364: salt-minion: Upgrade to 3004 and migrate to get_config_dict().
Apr 15 2022, 6:03 PM · VyOS 1.4 Sagitta
c-po created T4364: salt-minion: Upgrade to 3004 and migrate to get_config_dict().
Apr 15 2022, 6:03 PM · VyOS 1.4 Sagitta
c-po moved T4363: salt-minion: default mine_interval option is not set from Need Triage to In Progress on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 15 2022, 6:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po moved T4363: salt-minion: default mine_interval option is not set from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Apr 15 2022, 6:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po added a comment to T4363: salt-minion: default mine_interval option is not set.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1284

Apr 15 2022, 6:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po lowered the priority of T4363: salt-minion: default mine_interval option is not set from Normal to Low.
Apr 15 2022, 5:55 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po renamed T4363: salt-minion: default mine_interval option is not set from salt-minion: mine_interval option is not set to salt-minion: default mine_interval option is not set.
Apr 15 2022, 5:55 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po changed the status of T4363: salt-minion: default mine_interval option is not set from Open to In progress.
Apr 15 2022, 5:46 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po created T4363: salt-minion: default mine_interval option is not set.
Apr 15 2022, 5:45 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav added a comment to T4362: Wan Load Balancing - Can't create routing tables.
Apr 15 2022, 2:34 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4361: `vyos.config.exists()` does not work for nodes with multiple values from Open to Backport candidate.
Apr 15 2022, 10:57 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta