Page MenuHomeVyOS Platform
Feed All Stories

May 22 2023

zsdc created T5235: SSH keys with special characters cannot be applied via Cloud-init.
May 22 2023, 2:06 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po moved T5234: Add bash identifier for given VRF instance from Open to Finished on the VyOS 1.4 Sagitta board.
May 22 2023, 7:19 AM · VyOS 1.4 Sagitta

May 21 2023

jestabro closed T5218: Revise vyos xml lib for bug fixes and extensions, a subtask of T2665: vyos.xml.defaults for tag nodes, as Resolved.
May 21 2023, 11:31 PM · VyOS 1.4 Sagitta
jestabro closed T5218: Revise vyos xml lib for bug fixes and extensions as Resolved.
May 21 2023, 11:31 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXd2681ea5929e: T5234: add op-mode command "force vrf" to change shell into any given VRF.
May 21 2023, 9:16 PM
c-po committed rVYOSONEX959b0b111d04: T5234: add bash prompt identifier for given VRF instance.
May 21 2023, 9:16 PM
c-po closed T5234: Add bash identifier for given VRF instance, a subtask of T31: Add VRF support, as Unknown Status.
May 21 2023, 9:16 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po closed T5234: Add bash identifier for given VRF instance as Unknown Status.
May 21 2023, 9:15 PM · VyOS 1.4 Sagitta
c-po updated the task description for T5234: Add bash identifier for given VRF instance.
May 21 2023, 9:07 PM · VyOS 1.4 Sagitta
c-po updated the task description for T5234: Add bash identifier for given VRF instance.
May 21 2023, 9:06 PM · VyOS 1.4 Sagitta
c-po claimed T5234: Add bash identifier for given VRF instance.
May 21 2023, 7:10 PM · VyOS 1.4 Sagitta
c-po created T5234: Add bash identifier for given VRF instance.
May 21 2023, 7:10 PM · VyOS 1.4 Sagitta
c-po closed T4675: telegraf do not start at boot when configured in VRF as Invalid.
May 21 2023, 7:05 PM · VyOS 1.4 Sagitta
c-po added a comment to T2251: VRF communication breaks when utilizing zone-based firewalling.

Please re-test with latest 1.4 release as the firewall was moved from iptables -> nftables

May 21 2023, 7:05 PM · VyOS Rolling, Restricted Project
c-po closed T4733: Feature Request: dhcp server: add VRF support as Resolved.
May 21 2023, 7:04 PM · VyOS 1.4 Sagitta
c-po added a comment to T4733: Feature Request: dhcp server: add VRF support.

Hi @daniil and @NikolayP,

May 21 2023, 7:04 PM · VyOS 1.4 Sagitta
Viacheslav renamed T5233: Op-mode flow-accounting netflow with disable-imt errors from Op-mode flow-accounting with disable-imt errors to Op-mode flow-accounting netflow with disable-imt errors.
May 21 2023, 8:45 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5233: Op-mode flow-accounting netflow with disable-imt errors.
May 21 2023, 8:45 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5232: Flow-accounting uacctd.service cannot restart correctly.
May 21 2023, 8:40 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe8bfd3c7dcf5: configtree: T5194: add function reference_tree_to_json.
May 21 2023, 4:29 AM
jestabro committed rVYOSONEX222f459d82ec: xml: T5218: add operations on xml cache.
May 21 2023, 4:29 AM
jestabro committed rVYOSONEXec4f1851058c: xml: T5218: generate xml cache from reference_tree.
May 21 2023, 4:29 AM
jestabro committed rVYOSONEXd958f00dda8b: xml: T5218: return defaults only for child leaf-nodes, unless recursive.
May 21 2023, 4:29 AM
GitHub <[email protected]> committed rVYOSONEXa32792a6fb92: Merge pull request #1997 from jestabro/reference-tree (authored by Viacheslav).
May 21 2023, 4:29 AM

May 20 2023

c-po added a comment to T4853: OpenVPN: unable to commit changes when the interface is down/unknown state.

Does it fail on the client or on the server? I am unable to reproduce this given the instructions above.

May 20 2023, 7:14 PM · VyOS Rolling, Restricted Project
c-po added a comment to T5192: RNDIS Missing from Kernel.

Could you write and test an udev rule which renames the RNDIS usb0 device to wwan*?

May 20 2023, 6:47 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav updated the task description for T5231: Add op-mode for load-balancing reverse-proxy.
May 20 2023, 9:11 AM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5231: Add op-mode for load-balancing reverse-proxy.
May 20 2023, 9:10 AM · VyOS 1.4 Sagitta
Viacheslav renamed T5222: Add load-balancing reverse-proxy based on haproxy from Add load-balancing based on haproxy to Add load-balancing reverse-proxy based on haproxy .
May 20 2023, 8:20 AM · VyOS 1.4 Sagitta
Viacheslav renamed T5231: Add op-mode for load-balancing reverse-proxy from Add op-mode for load-belancing reverse-proxy to Add op-mode for load-balancing reverse-proxy.
May 20 2023, 8:20 AM · VyOS 1.4 Sagitta
Viacheslav created T5231: Add op-mode for load-balancing reverse-proxy.
May 20 2023, 8:20 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5222: Add load-balancing reverse-proxy based on haproxy from Open to Needs testing.
May 20 2023, 7:32 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5230: 1.4 Missing enforce-first-as for bgp peers from Open to Needs testing.
May 20 2023, 7:21 AM
jestabro committed rVYOSONEX654b38da3ec2: T5230: remove trailing tabs causing j2lint error.
May 20 2023, 1:47 AM

May 19 2023

dmbaturin edited the content of 1.3.3.
May 19 2023, 7:12 PM
ServerForge committed rVYOSONEXc9497253cb40: T5230: Added missing enforce-first-as option to bgp protocol common config and….
May 19 2023, 6:52 PM
GitHub <[email protected]> committed rVYOSONEX841797229920: Merge pull request #2014 from ServerForge/current (authored by c-po).
May 19 2023, 6:52 PM
Viacheslav committed rVYOSONEX9ffbc8d8f9a2: T5222: reverse-proxy fix template for listen-address.
May 19 2023, 6:52 PM
Viacheslav committed rVYOSONEX62ce80bd0cb4: T5222: reverse-proxy add send-proxy option for backend server.
May 19 2023, 6:52 PM
Viacheslav committed rVYOSONEXe9dce894eec2: T5222: load-balancing reverse-proxy add smoketest domains.
May 19 2023, 6:52 PM
GitHub <[email protected]> committed rVYOSONEX63380de9b57e: Merge pull request #2013 from sever-sever/T5222 (authored by c-po).
May 19 2023, 6:52 PM
c-po closed T5186: QoS test cannot pass for 1.3 as Resolved.
May 19 2023, 6:42 PM · VyOS 1.3 Equuleus (1.3.3)
ServerForge created T5230: 1.4 Missing enforce-first-as for bgp peers.
May 19 2023, 5:56 PM
Viacheslav added a comment to T5229: CGN -- external ports limitting.

There is the task T5169

May 19 2023, 4:32 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5222: Add load-balancing reverse-proxy based on haproxy .

PR listen-address fixes https://github.com/vyos/vyos-1x/pull/2013

May 19 2023, 4:29 PM · VyOS 1.4 Sagitta
dmbaturin edited the content of 1.3.3.
May 19 2023, 1:04 PM
m1nus created T5229: CGN -- external ports limitting.
May 19 2023, 11:12 AM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXe201bd35511e: T5222: Refactoring load-balancing reverse-proxy.
May 19 2023, 10:21 AM
GitHub <[email protected]> committed rVYOSONEXa66648596dc1: Merge pull request #2012 from sever-sever/T5222-mod (authored by c-po).
May 19 2023, 10:21 AM
Viacheslav added a comment to T5222: Add load-balancing reverse-proxy based on haproxy .

PR refactoring https://github.com/vyos/vyos-1x/pull/2012

May 19 2023, 10:15 AM · VyOS 1.4 Sagitta

May 18 2023

c-po added a comment to T5186: QoS test cannot pass for 1.3.
In T5186#148559, @c-po wrote:

Reverted Kernel back to 5.4.234 for upcoming 1.3.3. release.

Is it the same bug as T5048 ?

May 18 2023, 8:53 PM · VyOS 1.3 Equuleus (1.3.3)
c-po committed rVYOSONEX881e7e5710d5: wwan: op-mode: T5196: fix interface type when calling python backend.
May 18 2023, 3:05 PM
indrajitr committed rVYOSONEX6f35d234e9d0: mdns: T5227: Relax 'allow-service' pattern.
May 18 2023, 8:06 AM
GitHub <[email protected]> committed rVYOSONEXe164b6e4654e: Merge pull request #2011 from indrajitr/mdns-improvements-2 (authored by c-po).
May 18 2023, 8:06 AM

May 17 2023

jestabro added a comment to T5228: Simplify get_config_dict and add argument with_defaults.

Draft until the dependency PR is merged:
https://github.com/vyos/vyos-1x/pull/1997

May 17 2023, 9:10 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T5218: Revise vyos xml lib for bug fixes and extensions: T5228: Simplify get_config_dict and add argument with_defaults.
May 17 2023, 6:29 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T5228: Simplify get_config_dict and add argument with_defaults: T5218: Revise vyos xml lib for bug fixes and extensions.
May 17 2023, 6:29 PM · VyOS 1.4 Sagitta
jestabro changed the status of T5228: Simplify get_config_dict and add argument with_defaults from Open to In progress.
May 17 2023, 6:29 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX23118d7b4e1c: reverse-proxy: T5222: improve help strings.
May 17 2023, 5:04 PM
c-po committed rVYOSONEXd1edf6850823: reverse-proxy: T5222: combine ipv4/ipv6-address validators.
May 17 2023, 5:04 PM
c-po committed rVYOSONEXf06fdc347c85: reverse-proxy: T5222: use common XML building blocks for alpha numeric….
May 17 2023, 4:48 PM
Viacheslav committed rVYOSONEX6d0325190fce: T5222: Add load-balancing for web traffic.
May 17 2023, 4:46 PM
GitHub <[email protected]> committed rVYOSONEX9e9794a763e7: Merge pull request #2004 from sever-sever/T5222 (authored by c-po).
May 17 2023, 4:46 PM
fernando added a comment to T3655: NAT doesn't work correctly with VRF.

I've done test , regarding the original issues that it was nat+route-leaking (default + foo) , which is working on the last rolling (VyOS 1.4-rolling-202305140317). however, I've tried some test using two vrf+route-leaking and NAT , I can replicated the issue:

May 17 2023, 3:19 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po closed T5208: Failed to start nvmf-autoconnect.service during the boot as Resolved.
May 17 2023, 1:56 PM · VyOS 1.4 Sagitta
indrajitr committed rVYOSONEX96d846d27ac8: T5226: Combine ipv4-address and ipv6-address validators.
May 17 2023, 1:46 PM
Restricted Repository Identity closed T5226: Deduplicate and standardize validators and constraints for hostname and IP address as Resolved by committing rVYOSONEX0c91c356183b: Merge pull request #2008 from indrajitr/misc-conf-mode-fixes.
May 17 2023, 1:46 PM · VyOS 1.4 Sagitta
indrajitr committed rVYOSONEXb6e780e05893: T5226: Fix typo in XML include headers.
May 17 2023, 1:46 PM
indrajitr committed rVYOSONEX97f8933e7bf8: T5226: Make host-name constraints to consistent everywhere.
May 17 2023, 1:46 PM
GitHub <[email protected]> committed rVYOSONEX0c91c356183b: Merge pull request #2008 from indrajitr/misc-conf-mode-fixes (authored by c-po).
May 17 2023, 1:46 PM
indrajitr committed rVYOSONEXbbd4bcb4c972: mdns: T5227: Add support for browse domains and service filters.
May 17 2023, 1:37 PM
GitHub <[email protected]> committed rVYOSONEXd9c495144d1b: Merge pull request #2009 from indrajitr/mdns-improvements (authored by c-po).
May 17 2023, 1:37 PM
ddominet closed T5225: BGP allowas-in unusable as Resolved.
May 17 2023, 11:49 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5227: mDNS reflector should allow additional domains to browse and allow filtering services from "Task" to "Feature Request".
May 17 2023, 8:07 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5225: BGP allowas-in unusable.

@ddominet the correct syntax

set protocols bgp neighbor 192.0.2.11 address-family ipv6-unicast allowas-in number 1
May 17 2023, 8:05 AM · VyOS 1.4 Sagitta
indrajitr created T5227: mDNS reflector should allow additional domains to browse and allow filtering services.
May 17 2023, 6:11 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5225: BGP allowas-in unusable from "Task" to "Bug".
May 17 2023, 5:02 AM · VyOS 1.4 Sagitta
indrajitr changed the status of T5226: Deduplicate and standardize validators and constraints for hostname and IP address from Open to In progress.
May 17 2023, 4:02 AM · VyOS 1.4 Sagitta

May 16 2023

jestabro closed T5194: Add reference tree to vyos1x-config as Resolved.
May 16 2023, 6:31 PM · VyOS 1.4 Sagitta
mborodin added a comment to T3598: DMVPN/IPSec does not work with upstream Strongswan 5.9.

I've managed to adapt Alpine Linux patches to build Debian 11 StrongSwan 5.9.1 package, feel free to use it

May 16 2023, 11:24 AM · VyOS 1.4 Sagitta (1.4.0-GA)
ddominet added a project to T5225: BGP allowas-in unusable: VyOS 1.4 Sagitta.
May 16 2023, 10:41 AM · VyOS 1.4 Sagitta
ddominet created T5225: BGP allowas-in unusable.
May 16 2023, 9:50 AM · VyOS 1.4 Sagitta
diodep added a comment to T3655: NAT doesn't work correctly with VRF.

I have NAT working with vrf in VyOS 1.4-rolling-202208290458 + custom nat offload

set interfaces ethernet eth0 address '192.168.122.14/24'
set interfaces ethernet eth1 address '192.0.2.1/24'
set interfaces ethernet eth1 vrf 'foo'
set protocols static route 192.0.2.0/24 interface eth1 vrf 'foo'
set system conntrack
set vrf name foo protocols static route 0.0.0.0/0 next-hop 192.168.122.1 interface 'eth0'
set vrf name foo protocols static route 0.0.0.0/0 next-hop 192.168.122.1 vrf 'default'
set vrf name foo table '1010'

Nftables

root@r14:/home/vyos# cat nat.nft 
flush ruleset

table ip filter {
	flowtable fastnat {
		hook ingress priority filter
		devices = { eth0, eth1 }
	}

	chain forward {
		type filter hook forward priority filter; policy accept;
		ip protocol { tcp, udp } flow add @fastnat
	}
}
table ip nat {
	chain POSTROUTING {
		type nat hook postrouting priority srcnat; policy accept;
		ip saddr 192.0.2.0/24 oif "eth0" snat to 192.168.122.14 persistent
	}

	chain PREROUTING {
		type nat hook prerouting priority dstnat; policy accept;
	}
}

Conntrack table

vyos@r14:~$ sudo conntrack -F
conntrack v1.4.6 (conntrack-tools): connection tracking table has been emptied.
vyos@r14:~$ 
vyos@r14:~$ sudo conntrack -L
tcp      6 431999 ESTABLISHED src=192.168.122.14 dst=192.168.122.1 sport=22 dport=44462 src=192.168.122.1 dst=192.168.122.14 sport=44462 dport=22 [ASSURED] mark=0 use=1
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=33018 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=33018 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=37517 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=37517 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=59794 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=59794 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=39288 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=39288 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=39616 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=39616 [OFFLOAD] mark=0 use=2
icmp     1 29 src=192.0.2.2 dst=1.1.1.1 type=8 code=0 id=12387 src=1.1.1.1 dst=192.168.122.14 type=0 code=0 id=12387 mark=0 use=1
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=41155 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=41155 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=39829 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=39829 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=33655 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=33655 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=44835 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=44835 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=40213 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=40213 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=33729 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=33729 [OFFLOAD] mark=0 use=2
udp      17 src=192.0.2.2 dst=1.1.1.1 sport=48344 dport=53 src=1.1.1.1 dst=192.168.122.14 sport=53 dport=48344 [OFFLOAD] mark=0 use=2
conntrack v1.4.6 (conntrack-tools): 14 flow entries have been shown.
vyos@r14:~$

This works for me too on current rolling releases from Jan-2023 to now.

May 16 2023, 6:57 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
indrajitr changed the status of T5144: Modernize dynamic dns operation from Needs testing to In progress.

More PRs
https://github.com/vyos/vyos-1x/pull/2005
https://github.com/vyos/vyos-build/pull/349
https://github.com/vyos/vyatta-cfg-system/pull/202

May 16 2023, 5:10 AM · VyOS 1.4 Sagitta

May 15 2023

a.apostoliuk added a comment to T4031: Ability to configure DMVPN in vrf.

I reproduced the problem.
I received the next logs

May 15 2023, 3:45 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5197: Conntrack-sync external cache commit error from Open to Needs testing.
May 15 2023, 3:03 PM · VyOS 1.4 Sagitta
daniil added a comment to T5197: Conntrack-sync external cache commit error.

Version 1.4-rolling-202305150317 does not have the problem.

May 15 2023, 1:42 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5222: Add load-balancing reverse-proxy based on haproxy .
May 15 2023, 12:29 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5222: Add load-balancing reverse-proxy based on haproxy .
May 15 2023, 12:02 PM · VyOS 1.4 Sagitta
Viacheslav closed T3896: Extend ocserv support to allow for per-group configs as Resolved.
May 15 2023, 8:21 AM · VyOS 1.4 Sagitta
PeppyH added a comment to T3896: Extend ocserv support to allow for per-group configs.

This can be closed now. I've submitted a Documentation PR

May 15 2023, 6:04 AM · VyOS 1.4 Sagitta

May 14 2023

frebib committed rVYOSONEX151f851502c8: T5224: Fix `del system syslog`.
May 14 2023, 2:14 PM
frebib committed rVYOSONEX85b7b4fea9a5: T5224: Stop syslog.socket alongside syslog.service.
May 14 2023, 2:14 PM
GitHub <[email protected]> committed rVYOSONEXe02a722a3e95: Merge pull request #2006 from frebib/frebib/T5224 (authored by c-po).
May 14 2023, 2:14 PM
frebib committed rVYOSONEXb9c438a6758b: Revert "veth: T3829: Allow moving veth into netns".
May 14 2023, 2:14 PM
frebib added a reverting change for rVYOSONEXf5cc84538605: veth: T3829: Allow moving veth into netns: rVYOSONEXb9c438a6758b: Revert "veth: T3829: Allow moving veth into netns".
May 14 2023, 2:14 PM
GitHub <[email protected]> committed rVYOSONEX9e287778e073: Merge pull request #2007 from frebib/veth-netns-revert (authored by c-po).
May 14 2023, 2:14 PM
frebib added a comment to T5224: del system syslog fails.

Fixing that causes this to also be logged. We should probably stop the socket too

frebib@vyos# commit
[ system syslog ]
DEBUG/COMMAND returned (err):
Warning: Stopping syslog.service, but it can still be activated by:
  syslog.socket
DEBUG/COMMAND cmd 'systemctl stop syslog.service'
May 14 2023, 11:41 AM
frebib created T5224: del system syslog fails.
May 14 2023, 11:40 AM
Unknown Object (User) created T5223: tunnel key doesn't clear .
May 14 2023, 3:01 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta