Page MenuHomeVyOS Platform
Feed All Stories

Dec 12 2022

GitHub <noreply@github.com> committed rVYOSONEX89100cee64d4: Merge pull request #1704 from aapostoliuk/T4874-equuleus (authored by Viacheslav).
Dec 12 2022, 10:11 PM
fernando updated the task description for T4876: mpls - LSP broken on FRR 8.4.1.
Dec 12 2022, 9:12 PM · VyOS 1.4 Sagitta
fernando added a parent task for T4876: mpls - LSP broken on FRR 8.4.1: T4846: L3VPN- network command doesn't install direct connected prefix.
Dec 12 2022, 9:07 PM · VyOS 1.4 Sagitta
fernando added a subtask for T4846: L3VPN- network command doesn't install direct connected prefix: T4876: mpls - LSP broken on FRR 8.4.1.
Dec 12 2022, 9:07 PM · VyOS 1.4 Sagitta
fernando created T4876: mpls - LSP broken on FRR 8.4.1.
Dec 12 2022, 9:06 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4795: Cleanup custom python validators: T4875: Replace Python validator 'interface-name' to avoid Python startup cost.
Dec 12 2022, 6:54 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
jestabro added a parent task for T4875: Replace Python validator 'interface-name' to avoid Python startup cost: T4795: Cleanup custom python validators.
Dec 12 2022, 6:54 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro triaged T4875: Replace Python validator 'interface-name' to avoid Python startup cost as Normal priority.
Dec 12 2022, 6:53 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX336576bf58a4: vyos.util: T4770: add precision arg, fix typo in bytes_to_human.
Dec 12 2022, 4:33 PM
jestabro committed rVYOSONEX6a6493b11a33: openvpn: T4770: add openvpn.py with standardized show command.
Dec 12 2022, 4:33 PM
jestabro committed rVYOSONEXe65fd4853996: opmode: T4770: add CommitInProgess error.
Dec 12 2022, 4:33 PM
jestabro committed rVYOSONEX9af23d814aa3: openvpn: T4770: add reset function to openvpn.py.
Dec 12 2022, 4:33 PM
jestabro committed rVYOSONEX1c763b600c61: openvpn: T4770: update op-mode definition openvpn.xml.in for show/reset.
Dec 12 2022, 4:33 PM
jestabro committed rVYOSONEX6fb7c09670a8: openvpn: T4770: add openvpn.py to op-mode-standardized.json.
Dec 12 2022, 4:33 PM
GitHub <noreply@github.com> committed rVYOSONEX0c5416e9e629: Merge pull request #1699 from jestabro/op-mode-openvpn (authored by jestabro).
Dec 12 2022, 4:33 PM
zsdc changed Issue type from improvement to bug on T4857: SNMP - Implement FRR SNMP recommendations.
Dec 12 2022, 1:46 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4873: Option to define source IP for rsyslog.

As I understand it is impossible directly with config option but possible with module omudpspoof

Dec 12 2022, 9:16 AM · VyOS 1.4 Sagitta (1.4.2), VyOS 1.5 Circinus, VyOS Rolling
Viacheslav closed T4861: Openconnect restart on adding users - Aborts all active connections as Resolved.
Dec 12 2022, 8:58 AM · VyOS 1.4 Sagitta
klase added a comment to T4861: Openconnect restart on adding users - Aborts all active connections.

It works. The user connections persist over a reload and configuration changes causes a reload instead of a restart!
Thank you.

Dec 12 2022, 7:26 AM · VyOS 1.4 Sagitta

Dec 11 2022

c-po moved T4671: linux-firmware package is missing symlinks defined in WHENCE file from Need Triage to Backlog on the VyOS 1.3 Equuleus (1.3.3) board.
Dec 11 2022, 7:37 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
c-po moved T4709: TCP MSS clamping broken in equuleus from Need Triage to Backlog on the VyOS 1.3 Equuleus (1.3.3) board.
Dec 11 2022, 7:37 PM · VyOS 1.3 Equuleus (1.3.3)
c-po moved T4734: Feature Request: openvpn: add OTP 2FA support from Need Triage to Backlog on the VyOS 1.3 Equuleus (1.3.3) board.
Dec 11 2022, 7:37 PM · VyOS 1.4 Sagitta
c-po added a comment to T4709: TCP MSS clamping broken in equuleus.

@initramfs can we close this?

Dec 11 2022, 7:37 PM · VyOS 1.3 Equuleus (1.3.3)
c-po added a comment to T4792: Add SSTP VPN client.
vyos@vyos# show interfaces sstpc
 sstpc sstpc10 {
     authentication {
         password vyos
         user vyos
     }
     server sstp.vyos.net
     ssl {
         ca-certificate VyOS-CA
     }
 }
Dec 11 2022, 7:29 PM · VyOS 1.4 Sagitta
c-po changed the status of T4792: Add SSTP VPN client from Open to Needs testing.
Dec 11 2022, 7:28 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX4df8182dfb2e: Merge branch 't4792-sstpc' into current.
Dec 11 2022, 7:28 PM
c-po committed rVYOSONEXff56aeefddaa: sstp: T4384: initial implementation of SSTP client CLI.
Dec 11 2022, 7:28 PM
c-po committed rVYOSONEX3296a10dc27d: pppoe: T4384: remove unused import of leaf_node_changed.
Dec 11 2022, 7:28 PM
c-po committed rVYOSONEX9fe2353ee85f: pppoe: xml: T4792: split "no-peer-dns" CLI node into building block.
Dec 11 2022, 7:28 PM
c-po committed rVYOSONEXa52a52c433d4: xml: ddns: T4792: split "server" CLI node into building block.
Dec 11 2022, 7:28 PM
Matwolf added a comment to T2044: RPKI doesn't boot properly.

Hi,
same issue on VyOS 1.4-rolling-202212090319

Dec 11 2022, 2:14 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po committed rVYOSONEX15828b9e86f4: sstp: T4792: add sstp-client package dependency.
Dec 11 2022, 8:05 AM

Dec 10 2022

jestabro closed T4872: Op-mode show openvpn misses a case when parsing for tunnel IP, a subtask of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command, as Unknown Status.
Dec 10 2022, 11:13 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro closed T4872: Op-mode show openvpn misses a case when parsing for tunnel IP as Unknown Status.
Dec 10 2022, 11:13 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX779f4001a482: openvpn: T4872: fix parsing of tunnel IP in 'show openvpn server'.
Dec 10 2022, 11:12 PM
GitHub <noreply@github.com> committed rVYOSONEXfb6ceae548ec: Merge pull request #1703 from jestabro/bug-tunnel-ip (authored by jestabro).
Dec 10 2022, 11:12 PM
jestabro updated the task description for T4872: Op-mode show openvpn misses a case when parsing for tunnel IP.
Dec 10 2022, 10:08 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro updated the task description for T4872: Op-mode show openvpn misses a case when parsing for tunnel IP.
Dec 10 2022, 9:43 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4874: Add Warning message to Equuleus from Open to In progress.
Dec 10 2022, 6:38 AM · VyOS 1.3 Equuleus (1.3.4)
a.apostoliuk created T4874: Add Warning message to Equuleus.
Dec 10 2022, 6:38 AM · VyOS 1.3 Equuleus (1.3.4)
Unknown Object (User) updated the task description for T4873: Option to define source IP for rsyslog.
Dec 10 2022, 12:37 AM · VyOS 1.4 Sagitta (1.4.2), VyOS 1.5 Circinus, VyOS Rolling
Unknown Object (User) created T4873: Option to define source IP for rsyslog.
Dec 10 2022, 12:36 AM · VyOS 1.4 Sagitta (1.4.2), VyOS 1.5 Circinus, VyOS Rolling

Dec 9 2022

jestabro added a comment to T4872: Op-mode show openvpn misses a case when parsing for tunnel IP.

PR:
https://github.com/vyos/vyos-1x/pull/1703

Dec 9 2022, 10:46 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro added a subtask for T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command: T4872: Op-mode show openvpn misses a case when parsing for tunnel IP.
Dec 9 2022, 9:23 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro added a parent task for T4872: Op-mode show openvpn misses a case when parsing for tunnel IP: T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command.
Dec 9 2022, 9:22 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro changed Version from vyos-1.4, vyos-1.3.3 to vyos-1.4, vyos-1.3.2 on T4872: Op-mode show openvpn misses a case when parsing for tunnel IP.
Dec 9 2022, 9:22 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro triaged T4872: Op-mode show openvpn misses a case when parsing for tunnel IP as Normal priority.
Dec 9 2022, 9:22 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav created T4871: show pki output indentation issues.
Dec 9 2022, 7:30 PM · VyOS 1.4 Sagitta (1.4.1)
Viacheslav renamed T4870: Containers switch to using overlay driver for podman storage from Switch to using overlay driver for docker storage to Containers switch to using overlay driver for podman storage.
Dec 9 2022, 7:20 PM · VyOS 1.4 Sagitta
tgnthump added a comment to T4870: Containers switch to using overlay driver for podman storage.

Started a PR for this: https://github.com/vyos/vyos-1x/pull/1702

Dec 9 2022, 6:55 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T4870: Containers switch to using overlay driver for podman storage: VyOS 1.4 Sagitta.
Dec 9 2022, 6:51 PM · VyOS 1.4 Sagitta
tgnthump created T4870: Containers switch to using overlay driver for podman storage.
Dec 9 2022, 6:45 PM · VyOS 1.4 Sagitta
Viacheslav closed T4865: container impossible to generate local image from a file if it requires install some pkgs as Resolved.
Dec 9 2022, 5:16 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX7c414a7c9971: T4865: Fix to generate container image from the file.
Dec 9 2022, 4:44 PM
GitHub <noreply@github.com> committed rVYOSONEX810be56a7c74: Merge pull request #1701 from sever-sever/T4865 (authored by c-po).
Dec 9 2022, 4:44 PM
Viacheslav added a comment to T4865: container impossible to generate local image from a file if it requires install some pkgs.

PR https://github.com/vyos/vyos-1x/pull/1701

Dec 9 2022, 3:41 PM · VyOS 1.4 Sagitta
zsdc changed the status of T4869: A network with `/32` or `/128` mask cannot be removed from a network-group from Open to In progress.

PR with fix is here: https://github.com/vyos/vyatta-cfg-firewall/pull/35

Dec 9 2022, 3:21 PM · VyOS 1.3 Equuleus (1.3.4)
Viacheslav changed the status of T4865: container impossible to generate local image from a file if it requires install some pkgs from Open to In progress.
Dec 9 2022, 1:13 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX056746bbbdc0: T4868: Fix l2tp ppp IPv6 options in template and config get dict.
Dec 9 2022, 1:07 PM
GitHub <noreply@github.com> committed rVYOSONEXb67f7c85b72b: Merge pull request #1700 from sever-sever/T4868 (authored by c-po).
Dec 9 2022, 1:07 PM
Viacheslav added a comment to T4861: Openconnect restart on adding users - Aborts all active connections.

@klase It is already in the latest rolling release. Could you re-check?

Dec 9 2022, 12:26 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4867: "show bgp neighbors ... advertised-routes" and some other commands fail for IPv4 neighbors.
Dec 9 2022, 12:09 PM · VyOS Rolling
Viacheslav added a parent task for T4867: "show bgp neighbors ... advertised-routes" and some other commands fail for IPv4 neighbors: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Dec 9 2022, 12:09 PM · VyOS 1.4 Sagitta
zsdc created T4869: A network with `/32` or `/128` mask cannot be removed from a network-group.
Dec 9 2022, 12:04 PM · VyOS 1.3 Equuleus (1.3.4)
Viacheslav added a comment to T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should.

PR https://github.com/vyos/vyos-1x/pull/1700

Dec 9 2022, 10:17 AM · VyOS 1.4 Sagitta
ssasso added a comment to T4838: Vagrant auth failure on new vagrant images?.

https://github.com/vyos/vyos-vm-images/pull/35

Dec 9 2022, 10:10 AM
Viacheslav renamed T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should from L2TP ppp-oprions ipv6 does not work without ipv6 pool but should to L2TP ppp-options ipv6 does not work without ipv6 pool but should.
Dec 9 2022, 10:05 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4867: "show bgp neighbors ... advertised-routes" and some other commands fail for IPv4 neighbors.

This works,
but if this is the new syntax the cli needs some cleanup.

Dec 9 2022, 9:56 AM · VyOS 1.4 Sagitta
Viacheslav claimed T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should.
Dec 9 2022, 9:51 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should from Open to In progress.
Dec 9 2022, 9:51 AM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should.
Dec 9 2022, 9:15 AM · VyOS 1.4 Sagitta
Viacheslav created T4868: L2TP ppp-options ipv6 does not work without ipv6 pool but should.
Dec 9 2022, 9:14 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4117: Does not possible to configure PoD/CoA for L2TP vpn from In progress to Needs testing.
Dec 9 2022, 8:51 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
ssasso added a comment to T4838: Vagrant auth failure on new vagrant images?.

According to this https://forum.vyos.io/t/vagrant-auth-failure-on-new-vagrant-images/9871/2
This issue is due to T874.
My understanding is that is not changeable, so my proposal is to add the "vagrant insecure key" for the vyos user during the vagrant box creation.

Dec 9 2022, 8:34 AM
Viacheslav added a comment to T4867: "show bgp neighbors ... advertised-routes" and some other commands fail for IPv4 neighbors.

use the next syntax

show bgp ipv4 neighbors x.x.x.x advertised-routes
Dec 9 2022, 6:53 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T4867: "show bgp neighbors ... advertised-routes" and some other commands fail for IPv4 neighbors.
Dec 9 2022, 1:17 AM · VyOS 1.4 Sagitta

Dec 8 2022

jestabro renamed T4866: Rewrite show_interfaces to standardized form from Rewrite show_interfaces to standardized format to Rewrite show_interfaces to standardized form.
Dec 8 2022, 7:53 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4564: Root task for rewriting [op-mode] to vyos.opmode format: T4866: Rewrite show_interfaces to standardized form.
Dec 8 2022, 7:52 PM · VyOS Rolling
jestabro added a parent task for T4866: Rewrite show_interfaces to standardized form: T4564: Root task for rewriting [op-mode] to vyos.opmode format.
Dec 8 2022, 7:52 PM · VyOS 1.4 Sagitta
jestabro triaged T4866: Rewrite show_interfaces to standardized form as Normal priority.
Dec 8 2022, 7:52 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4770: Rewrite OpenVPN op-mode to vyos.opmode format.

PR for show/reset functions:
https://github.com/vyos/vyos-1x/pull/1699

Dec 8 2022, 6:12 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4865: container impossible to generate local image from a file if it requires install some pkgs.
Dec 8 2022, 3:14 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T4865: container impossible to generate local image from a file if it requires install some pkgs.
Dec 8 2022, 3:11 PM · VyOS 1.4 Sagitta
Viacheslav created T4865: container impossible to generate local image from a file if it requires install some pkgs.
Dec 8 2022, 3:10 PM · VyOS 1.4 Sagitta
Viacheslav updated subscribers of T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).
Dec 8 2022, 2:52 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX9fa4b761d027: T4117: Fix for L2TP DAE CoA server configuration.
Dec 8 2022, 1:28 PM
GitHub <noreply@github.com> committed rVYOSONEX7e449725bf90: Merge pull request #1698 from sever-sever/T4117 (authored by c-po).
Dec 8 2022, 1:28 PM
Viacheslav added a comment to T4117: Does not possible to configure PoD/CoA for L2TP vpn.

fix for 1.4 PR https://github.com/vyos/vyos-1x/pull/1698

vyos@r14# cat /run/accel-pppd/l2tp.conf | grep dae-s
dae-server=127.0.0.1:1700,testing123
[edit]
vyos@r14#
Dec 8 2022, 1:23 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a project to T4117: Does not possible to configure PoD/CoA for L2TP vpn: VyOS 1.4 Sagitta.
Dec 8 2022, 12:17 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav changed the status of T4117: Does not possible to configure PoD/CoA for L2TP vpn from Needs testing to In progress.
Dec 8 2022, 11:38 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
a.apostoliuk committed rVYOSONEXd846f0004245: T4862: Added the generation config for webproxy domain-block.
Dec 8 2022, 11:24 AM
GitHub <noreply@github.com> committed rVYOSONEXd37387dd4510: Merge pull request #1695 from aapostoliuk/T4862-sagitta (authored by c-po).
Dec 8 2022, 11:24 AM
Viacheslav changed the status of T4861: Openconnect restart on adding users - Aborts all active connections from In progress to Needs testing.
Dec 8 2022, 3:53 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXecb245f13f8f: T4861: Openconnect replace restart to reload-or-restart.
Dec 8 2022, 3:53 AM
GitHub <noreply@github.com> committed rVYOSONEX1669f59f2a97: Merge pull request #1696 from sever-sever/T4861 (authored by Viacheslav).
Dec 8 2022, 3:53 AM

Dec 7 2022

dcplaya added a comment to T4864: `show firewall` command errors.

I can confirm the firewall errors are fixed in the newest rolling VyOS 1.4-rolling-202212070318

Dec 7 2022, 12:48 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4861: Openconnect restart on adding users - Aborts all active connections.

PR https://github.com/vyos/vyos-1x/pull/1696

Dec 7 2022, 12:41 PM · VyOS 1.4 Sagitta
aserkin added a comment to T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).

Yes they are. 192.168.101.10 - is an ip of vpn remote access subscriber. He's connected to interface l2tp0 (accel-ppp). And i'm just trying to open tcp connection to port 80 on client from peer node.

Dec 7 2022, 11:17 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).

@aserkin Thanks
Do l2tp clients in the network 192.168.101.x ? And you are trying to connect to some web resource behind l2tp?

Dec 7 2022, 10:58 AM · VyOS 1.4 Sagitta
aserkin added a comment to T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).

The firewall settings does not seem to catch the traffic going out of l2tp* interfaces.

admin@vyos-lns-1:~$ show config commands |grep firewall
set firewall interface l2tp* out name 'nodefw'
set firewall log-martians 'disable'
set firewall name nodefw rule 100 action 'accept'
set firewall name nodefw rule 100 protocol 'tcp'
set firewall name nodefw rule 100 tcp flags syn
set firewall name nodefw rule 100 tcp mss '1300'
Dec 7 2022, 10:44 AM · VyOS 1.4 Sagitta