Page MenuHomeVyOS Platform
Feed All Stories

Aug 16 2022

Viacheslav changed the status of T4596: "show openconnect-server sessions" command does not work in the openconnect module, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from In progress to Needs testing.
Aug 16 2022, 11:58 AM · VyOS Rolling
Viacheslav changed the status of T4596: "show openconnect-server sessions" command does not work in the openconnect module from In progress to Needs testing.
Aug 16 2022, 11:58 AM · VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEX8f63565add6b: syslog: T4039: Add protocol23format logging for UDP (authored by Viacheslav).
Aug 16 2022, 11:56 AM
GitHub <noreply@github.com> committed rVYOSONEX4d845cc36822: Merge pull request #1473 from dmbaturin/T4039-equ (authored by Viacheslav).
Aug 16 2022, 11:56 AM
Viacheslav added a comment to T4618: Traffic policy not set on virtual interfaces.

PR https://github.com/vyos/vyatta-cfg-qos/pull/14

Aug 16 2022, 11:48 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav changed the status of T4618: Traffic policy not set on virtual interfaces from Open to In progress.
Aug 16 2022, 11:31 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin closed T4592: macsec: can not create two interfaces using the same source-interface as Resolved.
Aug 16 2022, 10:14 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav assigned T4601: dhcp : relay agent IP address issue. to Unknown Object (User).
Aug 16 2022, 9:58 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav changed the status of T4601: dhcp : relay agent IP address issue. from Confirmed to Needs testing.
Aug 16 2022, 9:58 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
daniil created T4618: Traffic policy not set on virtual interfaces.
Aug 16 2022, 9:52 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEX6b3c359ed099: Debian: T4584: remove version number from hostap package requirement.
Aug 16 2022, 8:29 AM
GitHub <noreply@github.com> committed rVYOSONEXa8793122bb22: Merge pull request #1472 from c-po/debian-t4584-equuleus (authored by dmbaturin).
Aug 16 2022, 8:29 AM
Viacheslav committed rVYOSONEX1bd3a9635a5f: ocserv: T4596: Rewrite show openconnect sessions op-mode.
Aug 16 2022, 6:27 AM
GitHub <noreply@github.com> committed rVYOSONEXa21669ee5c87: Merge pull request #1462 from sever-sever/T4596 (authored by c-po).
Aug 16 2022, 6:27 AM
c-po committed rVYOSONEX681bdf2946d1: Debian: T4584: remove version number from hostap package requirement.
Aug 16 2022, 6:23 AM
c-po moved T4584: hostap: create custom package build from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Aug 16 2022, 6:19 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4584: hostap: create custom package build, a subtask of T4537: MACsec not working with cipher gcm-aes-256, as Resolved.
Aug 16 2022, 6:19 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4584: hostap: create custom package build as Resolved.
Aug 16 2022, 6:19 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX160262edaf1b: dhcp-relay: T4601: restart dhcp relay-agent (authored by mkorobeinikov <92354771+mkorobeinikov@users.noreply.github.com>).
Aug 16 2022, 5:02 AM
GitHub <noreply@github.com> committed rVYOSONEX1e81eec1b916: Merge pull request #1471 from mkorobeinikov/current (authored by c-po).
Aug 16 2022, 5:02 AM
Unknown Object (User) changed the status of T4601: dhcp : relay agent IP address issue. from Open to Confirmed.

https://github.com/vyos/vyos-1x/pull/1471

Aug 16 2022, 12:15 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta

Aug 15 2022

aserkin created T4617: VRF specification is needed for telegraf prometheus-client listen-address <address> .
Aug 15 2022, 10:22 PM · VyOS 1.4 Sagitta
c-po added a comment to T4616: openconnect: KeyError: 'local_users'.

PR https://github.com/vyos/vyos-1x/pull/1470

Aug 15 2022, 6:55 PM · VyOS 1.3 Equuleus (1.3.2)
c-po claimed T4616: openconnect: KeyError: 'local_users'.
Aug 15 2022, 6:51 PM · VyOS 1.3 Equuleus (1.3.2)
c-po edited projects for T4616: openconnect: KeyError: 'local_users', added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus.
Aug 15 2022, 6:50 PM · VyOS 1.3 Equuleus (1.3.2)
c-po created T4616: openconnect: KeyError: 'local_users'.
Aug 15 2022, 6:50 PM · VyOS 1.3 Equuleus (1.3.2)
c-po added a comment to T4614: OpenConnect split-dns directive.

PR for VyOS 1.3 https://github.com/vyos/vyos-1x/pull/1470

Aug 15 2022, 6:47 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4614: OpenConnect split-dns directive from Open to Finished on the VyOS 1.4 Sagitta board.
Aug 15 2022, 6:17 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEXe41685a2f56c: ocserv: openconnect: T4614: add support for split-dns.
Aug 15 2022, 6:17 PM
c-po committed rVYOSONEXbd102eac6d0c: smoketest: ocserv: implement config file validation.
Aug 15 2022, 6:17 PM
c-po committed rVYOSONEX6e82d5d87f0f: ocserv: T4333: migrate to new vyos_defined Jinja2 test.
Aug 15 2022, 6:17 PM
c-po closed T4565: vlan aware bridge not working as Resolved.
Aug 15 2022, 5:47 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.2)
c-po moved T4565: vlan aware bridge not working from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Aug 15 2022, 5:47 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.2)
c-po edited projects for T4565: vlan aware bridge not working , added: VyOS 1.3 Equuleus (1.3.2); removed VyOS 1.3 Equuleus (1.3.3).
Aug 15 2022, 5:47 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.2)
c-po committed rVYOSONEX488024e698ac: macsec: T4537: support online ciper and source-interface re-configuration.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEXfd5adb0136aa: macsec: T4537: allow 32-byte keys for gcm-aes-256.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEX66c1fbe7665f: macsec: T2023: fixup systemd unit description.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEXfdc7814f12bc: macsec: T4537: restart wpa_supplicant on error.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEX52b4b47f9e24: macsec: T4537: supply PID path via systemd service file to daemon.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEXdc41d55eba5e: macsec: T4537: remove debug falg "-d" from systemd service file.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEXae139a68883c: smoketest: macsec: T4537: verify macsec_csindex.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEX99777682f8bc: macsec: T4537: add missing macsec_csindex option to support GCM-AES-256.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEX922871b4dc41: macsec: T4592: can not create two interfaces using the same source-interface.
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEX84f96733bb40: smoketest: macsec: T4537: validate macsec_csindex for both AES-GCM-128 and AES….
Aug 15 2022, 5:44 PM
c-po committed rVYOSONEXdf704a7cb884: macsec: T4537: macsec_csindex can be set even without encryption.
Aug 15 2022, 5:44 PM
GitHub <noreply@github.com> committed rVYOSONEX50bdb0e9e450: Merge pull request #1469 from c-po/macsec-equuleus (authored by c-po).
Aug 15 2022, 5:44 PM
aserkin renamed T4615: vpn sessions-columns configuration needed from vpn session-columns configuration needed to vpn sessions-columns configuration needed.
Aug 15 2022, 5:40 PM · VyOS 1.5 Circinus
aserkin created T4615: vpn sessions-columns configuration needed.
Aug 15 2022, 5:38 PM · VyOS 1.5 Circinus
c-po changed the status of T4614: OpenConnect split-dns directive from Open to In progress.
Aug 15 2022, 5:04 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po added a project to T4537: MACsec not working with cipher gcm-aes-256: VyOS 1.4 Sagitta.
Aug 15 2022, 4:02 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
sempervictus assigned T4614: OpenConnect split-dns directive to c-po.
Aug 15 2022, 2:46 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
sempervictus created T4614: OpenConnect split-dns directive.
Aug 15 2022, 2:46 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin added a comment to T4206: Policy Based Routing with DHCP Interface Issue.

Fixed in https://github.com/vyos/vyatta-cfg-quagga/commit/d4097690c40f619bc0e78a0d674985f7880a19a3 according to @Viacheslav

Aug 15 2022, 12:14 PM · VyOS 1.3 Equuleus (1.3.2)
dmbaturin closed T4206: Policy Based Routing with DHCP Interface Issue as Resolved.
Aug 15 2022, 12:13 PM · VyOS 1.3 Equuleus (1.3.2)
Viacheslav edited projects for T4082: Add op mode command to restart ldpd, added: VyOS 1.3 Equuleus; removed VyOS 1.3 Equuleus (1.3.2).
Aug 15 2022, 11:38 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel as Resolved.
Aug 15 2022, 11:33 AM · VyOS 1.4 Sagitta
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.

Nice. Is this syntax supported in vyos or it needs some development?

Aug 15 2022, 11:26 AM · VyOS 1.4 Sagitta
Viacheslav created T4613: UPnP configuration without listen option fail.
Aug 15 2022, 11:21 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4612: Support arbitrary netmasks in firewall rules.

It is possible but with specific syntax
I found some examples:

nft insert rule ip filter VYOS_FW_FORWARD ip 'saddr & 0.255.0.255 != 0.11.0.13' counter
Aug 15 2022, 11:15 AM · VyOS 1.4 Sagitta
Viacheslav closed T4609: Unable to Restart Container VyOS 1.4 as Resolved.
Aug 15 2022, 11:05 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX03e69f280725: container: T4609: Fix restart container.
Aug 15 2022, 11:04 AM
GitHub <noreply@github.com> committed rVYOSONEXbe96aa03a1e4: Merge pull request #1468 from sever-sever/T4609 (authored by c-po).
Aug 15 2022, 11:04 AM
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.

OK. I was trying to migrate from an EdgeRouter and this is a rule I used to have.

Aug 15 2022, 10:29 AM · VyOS 1.4 Sagitta
patrickli added a comment to T4611: UPnP rule IP should be a prefix instead of an address.
set service upnp rule 10 action allow
set service upnp rule 10 external-port-range 1024-65536
set service upnp rule 10 internal-port-range 1024-65536
set service upnp rule 10 ip 10.0.0.1/24
Aug 15 2022, 10:16 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4612: Support arbitrary netmasks in firewall rules.

@patrickli nftables is not engine for iptables. It is programs to work with netfilter
That's why I ask for the real example

root@r1:/home/vyos# nft insert rule ip6 filter INPUT ip6 saddr ::dead:beef/::ffff:ffff counter
Error: syntax error, unexpected string, expecting number
insert rule ip6 filter INPUT ip6 saddr ::dead:beef/::ffff:ffff counter
                                                   ^^^^^^^^^^^
root@r1:/home/vyos#
Aug 15 2022, 10:15 AM · VyOS 1.4 Sagitta
patrickli added a comment to T4612: Support arbitrary netmasks in firewall rules.

Yeah nftables is just the engine for iptables. EdgeOS supports this syntax.

Aug 15 2022, 10:08 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4612: Support arbitrary netmasks in firewall rules.

@patrickli In 1.4 we don't use iptables, we use nftables
LInk to nftables example will be helpful.

Aug 15 2022, 10:03 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4611: UPnP rule IP should be a prefix instead of an address.

@patrickli Could you attach an example of VyOS configuration with set service upnp xxx
If you manually change upnpd.conf does it work correctly?

Aug 15 2022, 10:01 AM · VyOS 1.4 Sagitta
patrickli created T4612: Support arbitrary netmasks in firewall rules.
Aug 15 2022, 9:59 AM · VyOS 1.4 Sagitta
Viacheslav closed T2763: New SNMP resource request - SNMP over TCP as Resolved.
Aug 15 2022, 9:54 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
patrickli created T4611: UPnP rule IP should be a prefix instead of an address.
Aug 15 2022, 9:51 AM · VyOS 1.4 Sagitta
Viacheslav created T4610: Firewall with 20K entries cannot load after reboot.
Aug 15 2022, 9:50 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4609: Unable to Restart Container VyOS 1.4.

PR https://github.com/vyos/vyos-1x/pull/1468

Aug 15 2022, 9:36 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4609: Unable to Restart Container VyOS 1.4 from Open to In progress.
Aug 15 2022, 9:24 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4595: DPD interval and timeout do not work in DMVPN from Open to Needs testing.
Aug 15 2022, 9:05 AM · VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEXc482a5c1ba38: Fix missing dict_search import in interfaces-macsec.py.
Aug 15 2022, 8:49 AM
Viacheslav committed rVYOSONEXfed4cbf9b2f0: dmvpn: T4595: Fix dpd profile options.
Aug 15 2022, 8:49 AM
GitHub <noreply@github.com> committed rVYOSONEX63d572ffa332: Merge pull request #1467 from dmbaturin/macsec-fix (authored by c-po).
Aug 15 2022, 8:49 AM
GitHub <noreply@github.com> committed rVYOSONEX3c4e778d713b: Merge pull request #1465 from sever-sever/T4595 (authored by c-po).
Aug 15 2022, 8:49 AM

Aug 14 2022

florin added a comment to T4466: intel i225-v nic does not detect link after boot.

@dmbaturin, here are the changes I made: https://github.com/vyos/vyos-build/compare/equuleus...fvlaicu:equuleus
I'm using the 1.4 kernel in 1.3.

Aug 14 2022, 7:19 PM · VyOS 1.3 Equuleus
dmbaturin edited projects for T4393: sstp: add support for configuring host-name (SNI), added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:52 PM · VyOS 1.4 Sagitta (1.4.0-GA)
dmbaturin closed T3507: Bond with mode LACP show u/u in show interfaces even if peer is not configured as Resolved.
Aug 14 2022, 6:51 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin closed T3714: Some sysctl custom parameters disappear after reboot as Resolved.
Aug 14 2022, 6:51 PM · VyOS 1.3 Equuleus (1.3.2)
dmbaturin edited projects for T4412: commit archive: reboot not working with sftp, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:50 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
dmbaturin closed T4421: Add support for floating point numbers in the numeric validator as Resolved.
Aug 14 2022, 6:50 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin edited projects for T4455: smp-affinity required by some platforms but doesn't exists in the CLI, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:49 PM · VyOS Rolling
dmbaturin edited projects for T2763: New SNMP resource request - SNMP over TCP, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:49 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin edited projects for T4511: IPv6 DNS lookup, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:48 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dmbaturin edited projects for T4533: Radius clients don’t have simple permissions, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:48 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dmbaturin closed T4579: bridge: can not delete member interface CLI option when VLAN is enabled as Resolved.
Aug 14 2022, 6:47 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin edited projects for T4565: vlan aware bridge not working , added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:46 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.2)
dmbaturin edited projects for T3474: Revisit storing syntax version of interface definitions in XML file, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:46 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
dmbaturin changed the status of T3785: Add unicode support to configtree backend, a subtask of T2941: Using a non-ASCII character in the description field causes UnicodeDecodeError in configsource.py, from Unknown Status to Resolved.
Aug 14 2022, 6:44 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
dmbaturin changed the status of T3785: Add unicode support to configtree backend from Unknown Status to Resolved.
Aug 14 2022, 6:44 PM · VyOS 1.3 Equuleus (1.3.2)
dmbaturin edited projects for T3977: dhcp-relay-agent uses "physical" IP instead of vrrp IP, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:43 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin edited projects for T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:43 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin edited projects for T3987: An error occurs after stopping snmpd in frr, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:41 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin edited projects for T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:40 PM · VyOS 1.4 Sagitta
dmbaturin added a project to T3989: Firewall - Can't delete rule in firewall entry and leave just default-action when firewall entry is in used: Known issue.
Aug 14 2022, 6:39 PM
dmbaturin edited projects for T3989: Firewall - Can't delete rule in firewall entry and leave just default-action when firewall entry is in used, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Aug 14 2022, 6:36 PM