Page MenuHomeVyOS Platform
Feed All Stories

Nov 16 2022

fernando created T4825: interfaces veth/veth-pairs -standalone used.
Nov 16 2022, 3:47 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
c-po committed rVYOSONEX00639f6c8445: bridge: T4673: remove "sudo" as there is no need to elevate permissions.
Nov 16 2022, 3:42 PM
c-po committed rVYOSONEX612005604d14: Revert "Revert "dns: T4799: fix bug with not reloading powerdns config"".
Nov 16 2022, 2:41 PM
c-po added a reverting change for rVYOSONEX44df1cea1ebc: Revert "dns: T4799: fix bug with not reloading powerdns config": rVYOSONEX612005604d14: Revert "Revert "dns: T4799: fix bug with not reloading powerdns config"".
Nov 16 2022, 2:41 PM
c-po committed rVYOSONEXe3d6284ec9b7: Revert "smoketest: T4652: adjust PowerDNS process name for 4.8 version".
Nov 16 2022, 2:41 PM
c-po added a reverting change for rVYOSONEX726cdf8bfd27: smoketest: T4652: adjust PowerDNS process name for 4.8 version: rVYOSONEXe3d6284ec9b7: Revert "smoketest: T4652: adjust PowerDNS process name for 4.8 version".
Nov 16 2022, 2:41 PM
fernando created T4824: PBR/FW rulesets are ignored in rfc3768-compatibility VRRP setups.
Nov 16 2022, 12:42 PM · VyOS 1.3 Equuleus (1.3.6)
chesskuo added a comment to T4118: IPsec syntax overhaul.

Hello sir,

Nov 16 2022, 10:03 AM · VyOS 1.4 Sagitta
chesskuo created T4823: swanctl.conf is broken when ipsec site-to-site peer set..
Nov 16 2022, 9:57 AM · VyOS 1.4 Sagitta

Nov 15 2022

mcbridematt added a comment to T4822: vyatta-cfg-system: install correct version of GRUB for architecture (arm64).

Pull request: https://github.com/vyos/vyatta-cfg-system/pull/189

Nov 15 2022, 11:31 PM
mcbridematt created T4822: vyatta-cfg-system: install correct version of GRUB for architecture (arm64).
Nov 15 2022, 11:24 PM
Cheeze_It added a comment to T4739: ISIS and OSPF segment routing being refactored.

We figured out the problem. So for OSPF segment routing to work we need to enable opaque LSA capabilities. So by default VyOS doesn't have opaque LSAs (type 9, type 10, type 11) enabled. So after checking the configuration for the OSPF FRR template I noticed that the actual command to enable opaque LSAs is broken because it's not in the OSPF FRR template. Once we fix that, we'll have working OSPF segment routing.

Nov 15 2022, 10:37 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T4821: Correct calling of config mode script dependencies from firewall.py: T4820: Support for inter-config-mode script dependencies.
Nov 15 2022, 10:13 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4820: Support for inter-config-mode script dependencies: T4821: Correct calling of config mode script dependencies from firewall.py.
Nov 15 2022, 10:13 PM · VyOS 1.4 Sagitta
jestabro triaged T4821: Correct calling of config mode script dependencies from firewall.py as Normal priority.
Nov 15 2022, 10:13 PM · VyOS 1.4 Sagitta
jestabro triaged T4820: Support for inter-config-mode script dependencies as Normal priority.
Nov 15 2022, 10:07 PM · VyOS 1.4 Sagitta
a.apostoliuk renamed T4819: Allow printing Warning messages in multiple lines with \n from Allow printing Warning and Critical messages in multiple lines with \n to Allow printing Warning messages in multiple lines with \n.
Nov 15 2022, 2:43 PM · VyOS 1.4 Sagitta
jestabro closed T4808: Add details of configtree operations to migration log as Resolved.
Nov 15 2022, 2:37 PM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4720: Ability to configure SSH HostKeyAlgorithms.

First of all, sorry for my late reply. I was on vacation and stayed away from IT for a bit ;)

Nov 15 2022, 2:32 PM · VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4819: Allow printing Warning messages in multiple lines with \n from Open to In progress.
Nov 15 2022, 1:59 PM · VyOS 1.4 Sagitta
a.apostoliuk claimed T4819: Allow printing Warning messages in multiple lines with \n.
Nov 15 2022, 1:58 PM · VyOS 1.4 Sagitta
a.apostoliuk created T4819: Allow printing Warning messages in multiple lines with \n.
Nov 15 2022, 1:58 PM · VyOS 1.4 Sagitta
vfreex committed rVYOSONEXff901a52bb9a: backport: T4815: Fix various name server config issues.
Nov 15 2022, 1:12 PM
GitHub <noreply@github.com> committed rVYOSONEX6d90375db4dd: Merge pull request #1659 from vfreex/fix-ns-config-equuleus (authored by c-po).
Nov 15 2022, 1:12 PM
e-zann added a watcher for VyOS 1.4 Sagitta: e-zann.
Nov 15 2022, 11:59 AM
e-zann removed a watcher for VyOS 1.4 Sagitta: e-zann.
Nov 15 2022, 11:59 AM
vfreex committed rVYOSONEXb8a4442c8987: T4815: ip-up/down scripts needs the executable bit.
Nov 15 2022, 6:04 AM
GitHub <noreply@github.com> committed rVYOSONEX69cfd14b1a68: Merge pull request #1658 from vfreex/fix-ns-config2 (authored by c-po).
Nov 15 2022, 6:04 AM

Nov 14 2022

egoistdream updated the task description for T4818: IPv6 NDP not working everytime.
Nov 14 2022, 7:08 PM · VyOS Rolling, Bugs
egoistdream edited projects for T4818: IPv6 NDP not working everytime, added: VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.4).
Nov 14 2022, 7:05 PM · VyOS Rolling, Bugs
egoistdream created T4818: IPv6 NDP not working everytime.
Nov 14 2022, 6:34 PM · VyOS Rolling, Bugs
jestabro committed rVYOSONEXb8412e90380b: migration: T4808: replace custom logging with standard Python logging.
Nov 14 2022, 5:30 PM
jestabro committed rVYOSONEX7216a8fc8f6a: migration: T4808: print configtree operations during migration.
Nov 14 2022, 5:30 PM
GitHub <noreply@github.com> committed rVYOSONEXb00c2179f4d7: Merge pull request #1653 from jestabro/trace-migration (authored by jestabro).
Nov 14 2022, 5:30 PM
Viacheslav added a comment to T4812: IPsec ability to show all configured connections.

PR https://github.com/vyos/vyos-1x/pull/1657

vyos@r14:~$ show vpn ipsec connections 
Connection         State        Type    Remote address    Local TS        Remote TS    Proposal
-----------------  -----------  ------  ----------------  --------------  -----------  ---------------------------------------
OFFICE-B           established  IKEv1   192.0.2.2         -               -            AES_CBC/256/HMAC_SHA2_256_128/MODP_1024
OFFICE-B-tunnel-0  up           IPsec   192.0.2.2         192.168.0.0/24  10.0.0.0/21  AES_CBC/256/HMAC_SHA2_256_128/MODP_1024
OFFICE-B-tunnel-1  down         IPsec   192.0.2.2         192.168.1.0/24  10.0.0.0/21  -
OFFICE-B-tunnel-2  down         IPsec   192.0.2.2         192.168.2.0/24  10.0.0.0/21  -
OFFICE-C           down         IKEv1   192.0.2.2         -               -            -
OFFICE-C-tunnel-0  down         IPsec   192.0.2.2         192.168.5.0/24  10.0.0.0/21  -
vyos@r14:~$
Nov 14 2022, 5:03 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dmbaturin added a comment to T4816: IPv4-mapped and IPv4-compatible IPv6 addresses not valid anymore.

@rcit I can assure you were never planned to explicitly disallow embedded IPv4 notation. Moreover, I thought the current validator supports it, even though we didn't have tests for it. I'll take a look!

Nov 14 2022, 4:00 PM · VyOS Rolling
rherold created T4817: Please add support for RFC 9234.
Nov 14 2022, 3:13 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4789: Ability to get L2TP/PPTP/SSTP sessions info in a machine readable format, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from In progress to Needs testing.
Nov 14 2022, 3:09 PM · VyOS Rolling
Viacheslav changed the status of T4789: Ability to get L2TP/PPTP/SSTP sessions info in a machine readable format from In progress to Needs testing.
Nov 14 2022, 3:09 PM · VyOS 1.4 Sagitta
Viacheslav edited projects for T4816: IPv4-mapped and IPv4-compatible IPv6 addresses not valid anymore, added: VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.
Nov 14 2022, 2:58 PM · VyOS Rolling
fernando changed the status of T4813: L3VPN over GRE Tunnels from In progress to Needs testing.
Nov 14 2022, 11:37 AM · VyOS 1.4 Sagitta
rcit created T4816: IPv4-mapped and IPv4-compatible IPv6 addresses not valid anymore.
Nov 14 2022, 11:00 AM · VyOS Rolling
fett0 <fernando.gmaidana@gmail.com> committed rVYOSONEXa8daba954966: l3VPN : T4182: add l3vpn over gre option from route-map.
Nov 14 2022, 6:01 AM
fett0 <fernando.gmaidana@gmail.com> committed rVYOSONEX2a203e816f7c: T4813: add l3vpn over gre option from route-map.
Nov 14 2022, 6:01 AM
GitHub <noreply@github.com> committed rVYOSONEX4b8534e2f67f: Merge pull request #1655 from fett0/T4813 (authored by c-po).
Nov 14 2022, 6:01 AM
vfreex committed rVYOSONEX00ec49687745: T4815: Fix various name server config issues.
Nov 14 2022, 6:00 AM
GitHub <noreply@github.com> committed rVYOSONEX92b828154497: Merge pull request #1656 from vfreex/fix-ns-config (authored by c-po).
Nov 14 2022, 6:00 AM
vfreex added a comment to T4815: Fix various name server config issues.

Created PR to fix this: https://github.com/vyos/vyos-1x/pull/1656
This issue also exists in 1.3 though I didn't backport it.

Nov 14 2022, 3:07 AM · VyOS 1.4 Sagitta
vfreex created T4815: Fix various name server config issues.
Nov 14 2022, 3:03 AM · VyOS 1.4 Sagitta

Nov 13 2022

syncer triaged T4813: L3VPN over GRE Tunnels as Normal priority.
Nov 13 2022, 7:23 PM · VyOS 1.4 Sagitta
fernando added a comment to T4813: L3VPN over GRE Tunnels .

https://github.com/vyos/vyos-1x/pull/1655

Nov 13 2022, 5:16 PM · VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEXed0570b31eac: Version update for 1.2.9.
Nov 13 2022, 4:46 PM
Viacheslav updated subscribers of T4502: Consider implementing (NAT/other) flow table offload.
Nov 13 2022, 4:37 PM · VyOS 1.4 Sagitta
fernando changed the status of T4813: L3VPN over GRE Tunnels from Open to In progress.
Nov 13 2022, 2:08 PM · VyOS 1.4 Sagitta

Nov 12 2022

initramfs closed T4814: Regression in bundled powerdns version as Resolved.

I seem to have jumped the gun a bit as the issue seems to have been resolved via:

Nov 12 2022, 5:24 PM · VyOS 1.4 Sagitta
initramfs added a comment to T4799: PowerDNS >= 4.7 does not get reloaded by vyos-hostsd.

@c-po I think the reason you're seeing the old name of 'pdns-r/worker' is due to a packaging regression described in T4814. All the latest builds of vyos 1.4 seem to be providing powerdns 4.4 instead of the expected 4.8. Since this issue and corresponding bugfix only pertains to powerdns >= 4.8, the issue would not be visible if powerdns is downgraded to 4.4.

Nov 12 2022, 4:50 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
initramfs created T4814: Regression in bundled powerdns version.
Nov 12 2022, 4:47 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4812: IPsec ability to show all configured connections, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Nov 12 2022, 5:30 AM · VyOS Rolling
Viacheslav changed the status of T4812: IPsec ability to show all configured connections from Open to In progress.
Nov 12 2022, 5:30 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
initramfs added a comment to T4799: PowerDNS >= 4.7 does not get reloaded by vyos-hostsd.

Just as a point of additional reference, I've bisected the PowerDNS source code to see where the change from 'pdns-r/worker' to something else occurred and successfully found that commit 69b39198 in the repository changes the thread names away from the prefix of 'pdns-r'. Since that change, the string pdns-r/ no longer exists in the source code. The aforementioned commit is included in the following tags:

Nov 12 2022, 3:12 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Nov 11 2022

sarthurdev added a comment to T4605: Firewall change default table names.

PR for policy route refactor updates to vyos_mangle: https://github.com/vyos/vyos-1x/pull/1654

Nov 11 2022, 4:49 PM · VyOS 1.4 Sagitta
fernando claimed T4813: L3VPN over GRE Tunnels .
Nov 11 2022, 4:46 PM · VyOS 1.4 Sagitta
fernando created T4813: L3VPN over GRE Tunnels .
Nov 11 2022, 4:45 PM · VyOS 1.4 Sagitta
hard added a comment to T4502: Consider implementing (NAT/other) flow table offload.

or maybe better add this subsection in firewall section?

Nov 11 2022, 9:27 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4807: Need to fix traceroute help completion, a subtask of T4496: ping vrf help does not list VRFs, from In progress to Needs testing.
Nov 11 2022, 8:18 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4807: Need to fix traceroute help completion from In progress to Needs testing.
Nov 11 2022, 8:18 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4810: Op-mode show/monitor log pppoe interface does not show any logs from Open to Needs testing.
Nov 11 2022, 8:17 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX61574eaf2d70: smoketest: T4284: add basic QoS config to be loaded for migration.
Nov 11 2022, 7:09 AM
c-po committed rVYOSONEXd201732229d8: smoketest: dns: T738: add test for default value of port.
Nov 11 2022, 6:56 AM

Nov 10 2022

syncer committed rVYOSONEXb49d3a9e90b1: Update reviewers.yml.
Nov 10 2022, 9:21 PM
Viacheslav added a parent task for T4812: IPsec ability to show all configured connections: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Nov 10 2022, 7:41 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4812: IPsec ability to show all configured connections.
Nov 10 2022, 7:41 PM · VyOS Rolling
Viacheslav created T4812: IPsec ability to show all configured connections.
Nov 10 2022, 7:40 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
initramfs committed rVYOSONEXf60706b4a9bf: op-mode: T4810: fix show/monitor log of pppoe interface.
Nov 10 2022, 6:14 PM
GitHub <noreply@github.com> committed rVYOSONEXc6fbf37ea16d: Merge pull request #1651 from initramfs/current-fix-pppoe-log (authored by c-po).
Nov 10 2022, 6:14 PM
GitHub <noreply@github.com> committed rVYOSONEX4b3ab8de8561: Merge pull request #1652 from aapostoliuk/T4496-sagitta (authored by c-po).
Nov 10 2022, 6:13 PM
a.apostoliuk committed rVYOSONEXa34d189f3218: T4496: Refactoring vrf_list function in ping command.
Nov 10 2022, 6:13 PM
Viacheslav committed rVYOSONEXef365493aef6: T4789: Ability to get op-mode raw data for PPPoE L2TP SSTP IPoE.
Nov 10 2022, 6:13 PM
GitHub <noreply@github.com> committed rVYOSONEX991d92e60c50: Merge pull request #1643 from sever-sever/T4789 (authored by c-po).
Nov 10 2022, 6:13 PM
n.fort edited projects for T4153: Monitor bandwidth-test initiate not working, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Nov 10 2022, 2:19 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort edited projects for T4153: Monitor bandwidth-test initiate not working, added: VyOS 1.3 Equuleus (1.3.2); removed VyOS 1.3 Equuleus (1.3.0).
Nov 10 2022, 12:34 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort changed the status of T4153: Monitor bandwidth-test initiate not working from Resolved to Unknown Status.
Nov 10 2022, 12:30 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
sajiby3k updated the task description for T4811: Webproxy bypassing CLI whitelist command is missing.
Nov 10 2022, 12:26 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
sajiby3k created T4811: Webproxy bypassing CLI whitelist command is missing.
Nov 10 2022, 12:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Zen3515 committed rVYOSONEX2f105b1b22de: dns: T738: add CLI option for PowerDNS local-port.
Nov 10 2022, 9:59 AM
GitHub <noreply@github.com> committed rVYOSONEXaabfb09e4207: Merge pull request #1650 from Zen3515/current-add-pdns-local-port (authored by c-po).
Nov 10 2022, 9:59 AM
initramfs added a comment to T4810: Op-mode show/monitor log pppoe interface does not show any logs.

Relevant PR:

Nov 10 2022, 7:52 AM · VyOS 1.4 Sagitta
initramfs created T4810: Op-mode show/monitor log pppoe interface does not show any logs.
Nov 10 2022, 7:46 AM · VyOS 1.4 Sagitta
initramfs added a comment to T4799: PowerDNS >= 4.7 does not get reloaded by vyos-hostsd.

Hmm, I can't seem to reproduce that name with "pdns-recursor/now 4.8.0~beta1-1pdns.bullseye amd64" or "pdns-recursor/now 4.8.0~beta2-1pdns.bullseye amd64" both in a live bare-metal system or in a VM. Both versions return pdns_recursor for me when printed from p.name(). The worker thread names (as listed from ps or htop) also don't match: "rec/web+stat" and "rec/taskThread", not that either of these are returned by p.name().

Nov 10 2022, 7:31 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
c-po added a comment to T4799: PowerDNS >= 4.7 does not get reloaded by vyos-hostsd.

We use p.name from process_iter and it returns pdns-r/worker. That‘s why I have reverted the commits as in the latest 1.4 VyOS iso with PDNS 4.8 beta it‘s how they names the worker thread

Nov 10 2022, 6:49 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Nov 9 2022

TheSin- added a comment to T4797: External address/network lists for firewall (Local and remote).

list/lists in config and op-mode now moved to external-list

Nov 9 2022, 9:48 PM · VyOS Rolling
TheSin- updated the task description for T4797: External address/network lists for firewall (Local and remote).
Nov 9 2022, 9:48 PM · VyOS Rolling
Restricted Repository Identity closed T4800: undefined var includes_chroot_dir in build-vyos-image as Resolved by committing Restricted Diffusion Commit.
Nov 9 2022, 7:46 PM · VyOS 1.4 Sagitta
a.apostoliuk committed rVYOSONEXa76c46ab0cdc: T4807: Fixed traceroute help completion.
Nov 9 2022, 7:00 PM
GitHub <noreply@github.com> committed rVYOSONEX6b574943d77a: Merge pull request #1647 from aapostoliuk/T4807-sagitta (authored by c-po).
Nov 9 2022, 7:00 PM
c-po committed rVYOSONEXa51cb88c4373: GitHub: bump auto-assign-reviewer-by-files workflow to 1.1.4.
Nov 9 2022, 6:41 PM
TheSin- renamed T4797: External address/network lists for firewall (Local and remote) from Blocklists (Local and remote) to External address/network lists for firewall (Local and remote).
Nov 9 2022, 5:56 PM · VyOS Rolling
GitHub <noreply@github.com> committed rVYOSONEX489ceaca304e: Remove cpp scan (authored by syncer).
Nov 9 2022, 3:46 PM
GitHub <noreply@github.com> committed rVYOSONEXcd841214020e: code scanning test (authored by syncer).
Nov 9 2022, 3:39 PM
TheSin- added a comment to T4797: External address/network lists for firewall (Local and remote).

task-scheduler logic was moved into vyos.task_scheduler so it can be imported properly and used by other modules

Nov 9 2022, 3:36 PM · VyOS Rolling