Page MenuHomeVyOS Platform
Feed All Stories

May 26 2022

Viacheslav committed rVYOSONEX45f460a20c0b: http-api: T4442: Add action reset.
May 26 2022, 12:39 AM
GitHub <noreply@github.com> committed rVYOSONEXe25afbf4a589: Merge pull request #1333 from sever-sever/T4442 (authored by jestabro).
May 26 2022, 12:39 AM

May 25 2022

masterit updated the task description for T4443: Wan Load Balancing Multiple Regressions.
May 25 2022, 11:36 PM · VyOS Rolling, Bugs
masterit updated the task description for T4443: Wan Load Balancing Multiple Regressions.
May 25 2022, 11:30 PM · VyOS Rolling, Bugs
masterit triaged T4443: Wan Load Balancing Multiple Regressions as High priority.
May 25 2022, 11:27 PM · VyOS Rolling, Bugs
Viacheslav added a project to T4442: HTTP API add action "reset": VyOS 1.3 Equuleus (1.3.2).
May 25 2022, 11:17 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
masterit changed the status of T305: loadbalancing does not work with one pppoe connection and another connection of either dhcp or static from On hold to Open.
May 25 2022, 10:57 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, test
Viacheslav moved T2763: New SNMP resource request - SNMP over TCP from Open to Finished on the VyOS 1.4 Sagitta board.
May 25 2022, 9:58 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T4442: HTTP API add action "reset".

PR https://github.com/vyos/vyos-1x/pull/1333

May 25 2022, 8:50 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav claimed T4442: HTTP API add action "reset".
May 25 2022, 8:39 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav created T4442: HTTP API add action "reset".
May 25 2022, 8:39 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
jestabro closed T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors, a subtask of T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py, as Resolved.
May 25 2022, 8:34 PM · VyOS 1.4 Sagitta
jestabro closed T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors as Resolved.
May 25 2022, 8:34 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEX12baed897cb3: configtest: T4382: fix missing delete of 'ipsec-interfaces' node.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEX64a92e802a75: configtest: T4382: bgp migration scripts need to follow quagga scripts.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEXb2d06425d89e: configtest: T4382: remove typo.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEXd19a5876ed14: configtest: T4382: system@20 cannot have 'user level' (16-to-17).
May 25 2022, 8:33 PM
jestabro committed rVYOSONEX9340afe48cb2: configtest: T4382: 'nat ... log' takes no 'enable' argument.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEXd78fd7452e5f: configtest: T4382: bgp_small_as has a nonsensical entry.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEX90cdf726b8c9: configtest: T4382: inconsistent ipsec component version.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEX9375ded103b4: configtest: T4382: missing 'ipv4-options' in 'interfaces openvpn'.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEXd8ce60dd8467: configtest: T4382: missing block in migration script vrf/0-to-1.
May 25 2022, 8:33 PM
jestabro committed rVYOSONEXac9d01365a9f: configtest: T4382: no migration to 'bgp local-as' under vrf.
May 25 2022, 8:33 PM
GitHub <noreply@github.com> committed rVYOSONEX7c1cb045ebbf: Merge pull request #1331 from jestabro/configtest-errors (authored by jestabro).
May 25 2022, 8:33 PM
c-po moved T4441: wwan: connection not possible after a change added after 1.3.1-S1 release from Need Triage to In Progress on the VyOS 1.3 Equuleus (1.3.2) board.
May 25 2022, 8:19 PM · VyOS 1.3 Equuleus (1.3.2)
c-po added a comment to T4441: wwan: connection not possible after a change added after 1.3.1-S1 release.

PR pending approval https://github.com/vyos/vyos-1x/pull/1332

May 25 2022, 8:19 PM · VyOS 1.3 Equuleus (1.3.2)
c-po claimed T4441: wwan: connection not possible after a change added after 1.3.1-S1 release.
May 25 2022, 7:47 PM · VyOS 1.3 Equuleus (1.3.2)
c-po created T4441: wwan: connection not possible after a change added after 1.3.1-S1 release.
May 25 2022, 7:46 PM · VyOS 1.3 Equuleus (1.3.2)
jestabro added a comment to T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors.

PR fixing exposed errors:
https://github.com/vyos/vyos-1x/pull/1331

May 25 2022, 5:01 PM · VyOS 1.4 Sagitta
jestabro renamed T4382: Replacing legacy loadFile exposes missing steps in migration scripts and other errors from Replacing legacy loadFile exposes missing steps in migration scripts to Replacing legacy loadFile exposes missing steps in migration scripts and other errors.
May 25 2022, 4:46 PM · VyOS 1.4 Sagitta
Unknown Object (User) awarded T751: IDS and IPS (suricata) a 100 token.
May 25 2022, 1:52 PM · VyOS 1.5 Circinus
goodNETnick <pknet@ya.ru> committed rVYOSONEXea83ba23b998: ocserv: T4420: show configured 2FA OTP key.
May 25 2022, 1:46 PM
GitHub <noreply@github.com> committed rVYOSONEXec3a05d3dfda: Merge pull request #1319 from goodNETnick/ocserv_sh_otp_key (authored by Viacheslav).
May 25 2022, 1:46 PM
Viacheslav closed T4410: Telegraf - Output to Splunk as Resolved.
May 25 2022, 1:11 PM · VyOS 1.4 Sagitta
Viacheslav closed T2194: "show firewall" garbled output, a subtask of T2199: Rewrite firewall in new XML/Python style, as Resolved.
May 25 2022, 1:08 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav closed T2194: "show firewall" garbled output as Resolved.
May 25 2022, 1:08 PM · VyOS 1.3 Equuleus (1.3.2), test
zsdc committed rVYOSONEX76ac6e9885d5: FRR: T4020: Added CLI options for FRR daemons.
May 25 2022, 12:37 PM
zsdc committed rVYOSONEX1af618103f28: FRR: T4020: Updated CLI options processing for FRR daemons.
May 25 2022, 12:37 PM
zsdc committed rVYOSONEX373132a899cd: FRR: T4020: Updated CLI options processing for FRR daemons.
May 25 2022, 12:37 PM
GitHub <noreply@github.com> committed rVYOSONEXa943c7f36ffd: Merge pull request #1088 from zdc/T4020-sagitta (authored by dmbaturin).
May 25 2022, 12:37 PM

May 24 2022

jtcarnes changed the status of T4440: Add OCI compliant image labels to vyos-build and vyos containers from Open to In progress.
May 24 2022, 9:05 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
dmbaturin created T4439: Operational command handling daemon.
May 24 2022, 2:27 PM · VyOS Rolling
showipintbri added a comment to T4374: ipv6 address drops from interface, but network still active.

I removed my comment as my issue was not a bug AFAIK, but rather a miss-configuration and operation.

May 24 2022, 10:11 AM · VyOS 1.4 Sagitta
showipintbri added a comment to T4374: ipv6 address drops from interface, but network still active.
May 24 2022, 2:27 AM · VyOS 1.4 Sagitta

May 23 2022

jestabro claimed T4438: vyos-http-api doesn't start after router reboot if vrf is defined.
May 23 2022, 1:30 PM · VyOS 1.4 Sagitta
daniil created T4438: vyos-http-api doesn't start after router reboot if vrf is defined.
May 23 2022, 12:27 PM · VyOS 1.4 Sagitta
cgb added a comment to T4147: New Firewall Implementation - proposed changes on group implementation.

Yeah I discovered the same in forums:

May 23 2022, 7:37 AM · VyOS 1.4 Sagitta
adestis added a comment to T4147: New Firewall Implementation - proposed changes on group implementation.

I was not aware that the nft implementation changes the kind of how groups are used.
We have implemented a blacklisting approach which heavily relates on using ipset because no one wants to have hundred thousand of addresses in the config file.
So I think this is essential, at least for us.

May 23 2022, 7:17 AM · VyOS 1.4 Sagitta

May 21 2022

c-po committed rVYOSONEX0640a863255e: smoketest: flow-accounting: T4437: adjust smoketest to new generated config….
May 21 2022, 7:54 PM
c-po committed rVYOSONEXdc678bdfa06e: flow-accounting: T4099: "source-address" must exist locally.
May 21 2022, 7:54 PM
c-po committed rVYOSONEX06b72d9c2f47: xml: flow-accounting: T4437: fix node help.
May 21 2022, 7:54 PM
c-po committed rVYOSONEXfcb3d5cacd9c: xml: nhrp: fix CLI description.
May 21 2022, 7:54 PM
c-po committed rVYOSONEX2663a891ed46: nhrp: T4353: use ".service" suffix on systemd name.
May 21 2022, 7:54 PM
c-po committed rVYOSONEX3ee8e128702d: op-mode: T4390: add nhrp and flow-accounting logging.
May 21 2022, 7:54 PM
c-po committed rVYOSONEXe9669ec5c8ca: flow-accounting: T4437: also install rule to IPv6 VYOS_CT_PREROUTING_HOOK.
May 21 2022, 5:40 PM
c-po closed T4437: flow-accounting: support IPv6 flow collectors as Resolved.
May 21 2022, 5:14 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX2bdcd7000566: flow-accounting: T4437: bugfix IPv6 flow collector address.
May 21 2022, 5:13 PM
c-po changed the status of T4437: flow-accounting: support IPv6 flow collectors from Open to In progress.
May 21 2022, 4:53 PM · VyOS 1.4 Sagitta
c-po created T4437: flow-accounting: support IPv6 flow collectors.
May 21 2022, 4:53 PM · VyOS 1.4 Sagitta

May 20 2022

c-po changed the status of T4350: DMVPN opennhrp spokes dont work behind NAT from Open to Needs testing.
May 20 2022, 7:57 PM · VyOS 1.3 Equuleus (1.3.2)
fernando closed T4436: BGP/VRF - not enable peer on address-family as Not Applicable.
May 20 2022, 7:05 PM · VyOS 1.4 Sagitta
fernando created T4436: BGP/VRF - not enable peer on address-family .
May 20 2022, 6:40 PM · VyOS 1.4 Sagitta
Viacheslav renamed T4435: Policy route and firewall - error when using undefined group from Policy route without definded port-group erros to Policy route without defined port-group error.
May 20 2022, 4:16 PM · VyOS 1.4 Sagitta
Viacheslav created T4435: Policy route and firewall - error when using undefined group.
May 20 2022, 4:16 PM · VyOS 1.4 Sagitta
Viacheslav reopened T3522: policy based routing not working, a subtask of T3505: Commits do not respect changes in FRR that are not stored in a config, as Open.
May 20 2022, 3:58 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav reopened T3522: policy based routing not working as "Open".
May 20 2022, 3:58 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project
Viacheslav closed T3522: policy based routing not working, a subtask of T3505: Commits do not respect changes in FRR that are not stored in a config, as Resolved.
May 20 2022, 3:56 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav closed T3522: policy based routing not working as Resolved.
May 20 2022, 3:56 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project
Viacheslav closed T4418: Telegraf - output Plugin azure-data-explorer as Resolved.
May 20 2022, 3:34 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXdd2b753fb7c6: monitoring: T4418: Add output plugin azure-data-explorer.
May 20 2022, 3:19 PM
GitHub <noreply@github.com> committed rVYOSONEX8dc416ade4fc: Merge pull request #1317 from sever-sever/T4418 (authored by c-po).
May 20 2022, 3:19 PM
Viacheslav added a comment to T4431: route-map with match ip + ipv6 in same rule results in no advertisement of either.

FRR match always mean logical AND

May 20 2022, 2:06 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4350: DMVPN opennhrp spokes dont work behind NAT.
In T4350#123620, @c-po wrote:

Is the fix for DMVPN hub or spoke?

May 20 2022, 10:26 AM · VyOS 1.3 Equuleus (1.3.2)

May 19 2022

Viacheslav added a comment to T3933: The firewall does not filter incoming traffic on the interface with vrf..

There is an issue with vrf device for LOCAL direction
Imagine if you have 50 interfaces in one VRF and you want to drop all traffic from one interface for example - eth2 and don't touch other interfaces
You set firewall on eth2 Local - drop all traffic for device vrf and it will be affected to another 49 interfaces as iifname VRF_DEVICE the same

May 19 2022, 9:49 PM · Bugs, VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
c-po committed rVYOSONEX55b075df8260: ipsec: T2816: add completion help for IP addresses to local-address node.
May 19 2022, 7:43 PM
c-po committed rVYOSONEX6f818ee9033e: dmvpn: nhrp: T4434: secret length can not exceed 8 characters.
May 19 2022, 7:43 PM
c-po closed T4434: DMVPN: cisco-authentication password length is 8 characters as Resolved.
May 19 2022, 7:43 PM · VyOS 1.4 Sagitta
c-po added a comment to T4350: DMVPN opennhrp spokes dont work behind NAT.

Is the fix for DMVPN hub or spoke?

May 19 2022, 7:02 PM · VyOS 1.3 Equuleus (1.3.2)
c-po claimed T4434: DMVPN: cisco-authentication password length is 8 characters.
May 19 2022, 6:52 PM · VyOS 1.4 Sagitta
c-po created T4434: DMVPN: cisco-authentication password length is 8 characters.
May 19 2022, 6:49 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3933: The firewall does not filter incoming traffic on the interface with vrf..

PR https://github.com/vyos/vyos-1x/pull/1330

set firewall name FOO default-action 'accept'
set firewall name FOO description 'desc'
set firewall name FOO rule 10 action 'drop'
set firewall name FOO rule 10 source address '8.8.8.8'
set interfaces ethernet eth0 firewall local name 'FOO'
set interfaces ethernet eth0 vrf 'ONE'
set vrf name ONE table '150'

Check:

table ip filter {
	chain VYOS_FW_LOCAL {
		type filter hook input priority filter; policy accept;
		iifname "ONE" counter packets 63 bytes 6024 jump NAME_FOO
		jump VYOS_POST_FW
	}
...
	chain NAME_FOO {
		ip saddr 8.8.8.8 counter packets 79 bytes 6636 drop comment "FOO-10"
		counter packets 3 bytes 984 return comment "FOO default-action accept"
	}
}
May 19 2022, 6:33 PM · Bugs, VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
c-po assigned T4433: XML: make node validator mandatory to dmbaturin.
May 19 2022, 6:04 PM · VyOS Rolling
c-po created T4433: XML: make node validator mandatory.
May 19 2022, 6:04 PM · VyOS Rolling
dmbaturin committed rVYOSONEX25419d3ef1c2: T4432: display load averages normalized for the number of CPU cores.
May 19 2022, 4:18 PM
GitHub <noreply@github.com> committed rVYOSONEX05e952a5111f: Merge pull request #1329 from dmbaturin/T4432 (authored by jestabro).
May 19 2022, 4:18 PM
Viacheslav committed rVYOSONEX749c69b1c8fc: monitoring: T4315: Add telegraf output plugin prometheus-client.
May 19 2022, 2:06 PM
GitHub <noreply@github.com> committed rVYOSONEXd458ded452d9: Merge pull request #1315 from sever-sever/T4315-equ (authored by dmbaturin).
May 19 2022, 2:06 PM
dmbaturin added a comment to T4421: Add support for floating point numbers in the numeric validator.

https://github.com/vyos/vyos-utils/commit/5bbda46493d0c11c8a90e50a68c9788a7488345e
https://github.com/vyos/vyos-utils/commit/4aa302a05fad95f3d13eb2ff20bbfee88c32e7ff

May 19 2022, 1:18 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin closed T4334: Make the config lexer reentrant as Resolved.
May 19 2022, 1:17 PM · VyOS 1.4 Sagitta
dmbaturin created T4432: Display load average normalized according to the number of CPU cores.
May 19 2022, 10:46 AM · VyOS 1.4 Sagitta
dmbaturin closed T3938: Rewrite the uptime script in Python to allow using it as a library as Resolved.
May 19 2022, 10:01 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T2194: "show firewall" garbled output, a subtask of T2199: Rewrite firewall in new XML/Python style, from Open to Needs testing.
May 19 2022, 2:28 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav changed the status of T2194: "show firewall" garbled output from Open to Needs testing.

@jjakob could you re-check it with new fix?

May 19 2022, 2:28 AM · VyOS 1.3 Equuleus (1.3.2), test
Viacheslav closed T4430: Show firewall output with visual shift default rule as Resolved.
May 19 2022, 2:25 AM · VyOS 1.3 Equuleus (1.3.2)

May 18 2022

jestabro added a comment to T4316: Update save-config/load-config.

Draft PR here:
https://github.com/vyos/vyos-1x/pull/1328

May 18 2022, 8:51 PM · VyOS Rolling
Viacheslav added a comment to T4430: Show firewall output with visual shift default rule.

PR https://github.com/vyos/vyatta-op-firewall/pull/3

May 18 2022, 2:53 PM · VyOS 1.3 Equuleus (1.3.2)
Viacheslav added a comment to T2194: "show firewall" garbled output.

PR https://github.com/vyos/vyatta-op-firewall/pull/3

May 18 2022, 2:52 PM · VyOS 1.3 Equuleus (1.3.2), test
Viacheslav changed the status of T4430: Show firewall output with visual shift default rule from Open to In progress.
May 18 2022, 1:53 PM · VyOS 1.3 Equuleus (1.3.2)
bbabich created T4431: route-map with match ip + ipv6 in same rule results in no advertisement of either.
May 18 2022, 8:12 AM · VyOS 1.4 Sagitta
Viacheslav created T4430: Show firewall output with visual shift default rule.
May 18 2022, 7:11 AM · VyOS 1.3 Equuleus (1.3.2)