Page MenuHomeVyOS Platform
Feed All Stories

Aug 14 2023

Apachez added a comment to T5440: Restore pre/postconfig scripts if user deleted them.

Verified in VyOS 1.4-rolling-202308140557:

Aug 14 2023, 9:55 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5437: logrotate.service fails to start.

Seems to still be happy in VyOS 1.4-rolling-202308140557:

Aug 14 2023, 9:54 PM · VyOS 1.4 Sagitta
Apachez closed T5436: vyos-preconfig-bootup.script is missing as Resolved.
Aug 14 2023, 9:51 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5436: vyos-preconfig-bootup.script is missing.

Verified in VyOS 1.4-rolling-202308140557:

Aug 14 2023, 9:50 PM · VyOS 1.4 Sagitta
Apachez created T5479: Helper leftovers found in nftables (firewall) even with all helpers disabled.
Aug 14 2023, 9:41 PM · VyOS 1.4 Sagitta
Apachez created T5478: Cannot configure resolver-cache options for firewall.
Aug 14 2023, 9:16 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5160: Firewall refactor.

1:
Shouldnt set firewall global-options resolver-cache have "enable" and "disable" as options?

Aug 14 2023, 9:10 PM · VyOS 1.4 Sagitta
Apachez closed T5461: Improve rootfs directory variable as Resolved.
Aug 14 2023, 8:27 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5461: Improve rootfs directory variable.

Looks like its working as expected in VyOS 1.4-rolling-202308140557:

Aug 14 2023, 8:27 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T5434: Replace remaining calls of vyos.xml library: T5477: op-mode pki.py should use Config for defaults.
Aug 14 2023, 4:18 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T5477: op-mode pki.py should use Config for defaults: T5434: Replace remaining calls of vyos.xml library.
Aug 14 2023, 4:18 PM · VyOS 1.4 Sagitta
jestabro closed T5477: op-mode pki.py should use Config for defaults as Resolved.
Aug 14 2023, 4:02 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEXf67614c66d65: pki: T5477: use Config instead of ConfigTreeQuery for defaults.
Aug 14 2023, 4:01 PM
jestabro created T5477: op-mode pki.py should use Config for defaults.
Aug 14 2023, 3:58 PM · VyOS 1.4 Sagitta
a.hajiyev updated the task description for T5473: Detect what conflicts with POSIX mode.
Aug 14 2023, 1:15 PM · VyOS Rolling, Bugs
zsdc updated the task description for T5473: Detect what conflicts with POSIX mode.
Aug 14 2023, 1:12 PM · VyOS Rolling, Bugs
Viacheslav changed the status of T5461: Improve rootfs directory variable from Open to Needs testing.
Aug 14 2023, 11:24 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5473: Detect what conflicts with POSIX mode from "Task" to "Bug".
Aug 14 2023, 11:17 AM · VyOS Rolling, Bugs
Apachez added a comment to T5473: Detect what conflicts with POSIX mode.

What is the purpose of:

Aug 14 2023, 11:08 AM · VyOS Rolling, Bugs
Viacheslav awarded T5474: Establish common file name pattern for XML conf mode commands a Like token.
Aug 14 2023, 11:00 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort changed the status of T5472: NAT redirect should not require port from Open to Confirmed.
Aug 14 2023, 10:09 AM · VyOS 1.4 Sagitta
c-po added a comment to T2044: RPKI doesn't boot properly.

interesting, as the above diff actually does the same but a bit earlier in the boot process

Aug 14 2023, 6:43 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po updated the task description for T5476: netplug: replace Perl helper scripts with a Python equivalent.
Aug 14 2023, 6:09 AM · VyOS 1.4 Sagitta
c-po claimed T5476: netplug: replace Perl helper scripts with a Python equivalent.
Aug 14 2023, 6:06 AM · VyOS 1.4 Sagitta
c-po created T5476: netplug: replace Perl helper scripts with a Python equivalent.
Aug 14 2023, 6:05 AM · VyOS 1.4 Sagitta
c-po changed Version from - to 1.4-rolling on T5474: Establish common file name pattern for XML conf mode commands.
Aug 14 2023, 6:00 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po triaged T5475: Analyse if forked live-boot package can be dropped as Low priority.
Aug 14 2023, 6:00 AM · VyOS Rolling
c-po claimed T5475: Analyse if forked live-boot package can be dropped.
Aug 14 2023, 5:59 AM · VyOS Rolling
c-po created T5475: Analyse if forked live-boot package can be dropped.
Aug 14 2023, 5:59 AM · VyOS Rolling
c-po changed the status of T5474: Establish common file name pattern for XML conf mode commands from Open to Confirmed.
Aug 14 2023, 5:55 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5474: Establish common file name pattern for XML conf mode commands.
Aug 14 2023, 5:54 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
a.hajiyev created T5473: Detect what conflicts with POSIX mode.
Aug 14 2023, 4:24 AM · VyOS Rolling, Bugs

Aug 13 2023

aderouineau updated the task description for T5472: NAT redirect should not require port.
Aug 13 2023, 8:45 AM · VyOS 1.4 Sagitta
aderouineau created T5472: NAT redirect should not require port.
Aug 13 2023, 8:45 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX50c0bc7b2582: smoketest: T5467: verify OSPF(v3) interface removal in VRF context.
Aug 13 2023, 8:34 AM
c-po committed rVYOSONEX191c8c40023e: smoketest: openvpn: T5270:.
Aug 13 2023, 8:34 AM

Aug 12 2023

syncer triaged T4818: IPv6 NDP not working everytime as Normal priority.
Aug 12 2023, 10:17 PM · VyOS Rolling, Bugs
syncer assigned T5469: Incorrect dependency set in the openvpn-dco package when building VyOS for arm64 to c-po.
Aug 12 2023, 10:15 PM · VyOS 1.4 Sagitta
syncer changed the edit policy for T1869: Install and Boot from RAID Doesn't Work.
Aug 12 2023, 10:13 PM
syncer triaged T5471: Conntrack logging doesnt seem to be working as Low priority.
Aug 12 2023, 10:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
syncer triaged T2044: RPKI doesn't boot properly as Normal priority.
Aug 12 2023, 10:09 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez created T5471: Conntrack logging doesnt seem to be working.
Aug 12 2023, 8:53 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
egoistdream added a comment to T2044: RPKI doesn't boot properly.

I was able to fix by adding the following code in /config/scripts/vyos-postconfig-bootup.script you can edit and save by running:

Aug 12 2023, 7:13 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
egoistdream added a comment to T4818: IPv6 NDP not working everytime.

I can confirm that the issue is still here, something is wrong and usually when you assign ipv6 address to sub-interface like vlan or bridge etc.

Aug 12 2023, 7:09 PM · VyOS Rolling, Bugs
Apachez added a comment to T4818: IPv6 NDP not working everytime.

How is your IPv6 config from the VyOS config?

Aug 12 2023, 5:08 PM · VyOS Rolling, Bugs
c-po committed rVYOSONEX4eaf65c673e4: smoketest: T5465: add config migration test for VLAN interface.
Aug 12 2023, 4:11 PM
zsdc committed rVYOSONEX0ed6aa72e7d2: utils: T5410: Extended supported types in `convert_data()`.
Aug 12 2023, 4:09 PM
GitHub <noreply@github.com> committed rVYOSONEX485585e19e7a: Merge pull request #2117 from zdc/T5410-sagitta (authored by dmbaturin).
Aug 12 2023, 4:09 PM
c-po added a comment to T5325: Moschip MCS9900 fix driver.

Enabled inside VyOS kernel - please check with the next available rolling ISO

Aug 12 2023, 4:08 PM · VyOS 1.4 Sagitta
c-po changed the status of T5325: Moschip MCS9900 fix driver from Open to Needs testing.
Aug 12 2023, 4:07 PM · VyOS 1.4 Sagitta
c-po changed the status of T5470: wlan: can not disable interface if SSID is not configured from Open to In progress.
Aug 12 2023, 3:48 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
c-po created T5470: wlan: can not disable interface if SSID is not configured.
Aug 12 2023, 3:47 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
jestabro committed rVYOSONEX928c78f5b976: T5160: fix merge regression.
Aug 12 2023, 3:06 PM
dsummers added a comment to T4818: IPv6 NDP not working everytime.
  1. Vyos Router <-> Switch <-> Multiple Computers
Aug 12 2023, 2:49 PM · VyOS Rolling, Bugs
tkmr_akhs created T5469: Incorrect dependency set in the openvpn-dco package when building VyOS for arm64.
Aug 12 2023, 8:53 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5090: Add support for disk encryption during installation.

A workaround in the meantime:

Aug 12 2023, 8:24 AM · VyOS 1.5 Circinus
c-po committed rVYOSONEX011697508b1f: T5467: removing ospf(v3) or isis interface in VRF context did not clear FRR….
Aug 12 2023, 7:02 AM
c-po closed T5467: ospf(v3): removing an interface from the OSPF process does not clear FRR configuration as Resolved.
Aug 12 2023, 7:02 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5090: Add support for disk encryption during installation.

And in that case the attacker would just replace your router with their own since they already got physical access to the box.

Aug 12 2023, 6:40 AM · VyOS 1.5 Circinus
Apachez created T5468: Remove unused manpages to free up space.
Aug 12 2023, 6:32 AM · VyOS 1.4 Sagitta
giga1699 added a comment to T5090: Add support for disk encryption during installation.

There are use cases when it would be ideal to force a password at boot to protect the contents of the configuration. For example, a portable router with sensitive keys meant for temporary network connectivity.

Aug 12 2023, 6:22 AM · VyOS 1.5 Circinus
Apachez added a comment to T5090: Add support for disk encryption during installation.

The problem is how to make sure that the router can boot and reboot (for example "set system option reboot-on-panic" is handy) on itself without somebody having to connect to its console before it starts to function again. Really shitty situation for a remote site because then somebody needs to visit it aswell.

Aug 12 2023, 5:30 AM · VyOS 1.5 Circinus
Viacheslav committed rVYOSONEX58a20e42087c: vyos.util: extend process_named_running() signature with cmdline (authored by c-po).
Aug 12 2023, 5:28 AM
GitHub <noreply@github.com> committed rVYOSONEX616bdb5299bf: Merge pull request #2127 from sever-sever/T2298-eq (authored by c-po).
Aug 12 2023, 5:28 AM
Apachez added a comment to T4818: IPv6 NDP not working everytime.
  1. How is the physical topology (can you provide a drawing)?
Aug 12 2023, 5:17 AM · VyOS Rolling, Bugs
dsummers added a comment to T4818: IPv6 NDP not working everytime.

I am having this exact problem and it evidently has been a problem for quite a few years.

Aug 12 2023, 4:31 AM · VyOS Rolling, Bugs
giga1699 added a comment to T5090: Add support for disk encryption during installation.

Can this be accomplished with LUKS?

Aug 12 2023, 4:24 AM · VyOS 1.5 Circinus

Aug 11 2023

n.fort changed the status of T5460: Firewall - remove config-trap from Confirmed to Needs testing.
Aug 11 2023, 10:21 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX073961a5c833: ipv6: T5464: add support for per-interface dad (duplicate address detection)….
Aug 11 2023, 9:02 PM
c-po committed rVYOSONEX63a8d17b8959: ipv6: T5464: use proper XML default for DAD transmits.
Aug 11 2023, 9:02 PM
c-po closed T5464: ipv6: add support for per-interface dad (duplicate address detection) setting as Resolved.
Aug 11 2023, 9:01 PM · VyOS 1.4 Sagitta
c-po added a comment to T5463: Containers allow publish IPv6 address port.

That CLI node ipv6 only implements a minor subset of the entire featureset of port forwarding.

Aug 11 2023, 8:59 PM · VyOS 1.4 Sagitta
c-po changed the status of T5467: ospf(v3): removing an interface from the OSPF process does not clear FRR configuration from Open to In progress.
Aug 11 2023, 8:52 PM · VyOS 1.4 Sagitta
c-po created T5467: ospf(v3): removing an interface from the OSPF process does not clear FRR configuration.
Aug 11 2023, 8:52 PM · VyOS 1.4 Sagitta
n.fort committed rVYOSONEXa8244928af84: T5160: firewall refactor: new cli structure. Update jinja templates, python….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX1c2209c1dc84: T5160: firewall refactor: new cli structure. Update only all xml.
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXac5b9a4630f8: T5160: firewall refactor: new cli structure. Add migration script and update….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXdbf7501d0c75: T5160: firewall refactor: re-add missing code in template.py which was….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX68d14fe80145: T5160: firewall refactor: change firewall ip to firewall ipv4.
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX342db936a02a: T5160: firewall refactor. Update op-mode commands to new syntax..
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXd898739b78f4: T5160: T5250: while refactoring, fix reference column for op-mode command….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX68694d022d8f: T5160: firewal refactor: fix tabulation for geo-ip parsing code. Typo fix in….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX0300bf433d9a: T5160: firewall refactor: move <set firewall ipv6 ipv6-name ...> to <set….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXdbb069151f37: T5160: firewall refactor: fix firewall template for correct rule parsing that….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXa07a46d5d4ac: T5160: firewall refactor: change default value for <default-action> from <drop>….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEXf57ad85b346a: T5160: firewall refactor: fix regexep for connection-status. Create new file….
Aug 11 2023, 8:14 PM
n.fort committed rVYOSONEX4e07fa25f551: T5460: remove config-trap from firewall.
Aug 11 2023, 8:14 PM
GitHub <noreply@github.com> committed rVYOSONEX482f7e352272: Merge pull request #2016 from nicolas-fort/T5160 (authored by c-po).
Aug 11 2023, 8:14 PM
fernando claimed T5466: L3VPN - label allocation mode .
Aug 11 2023, 8:00 PM · VyOS 1.4 Sagitta
fernando created T5466: L3VPN - label allocation mode .
Aug 11 2023, 7:59 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX71148df948b9: T5448: Move zabbix-agent to node monitoring.
Aug 11 2023, 7:57 PM
GitHub <noreply@github.com> committed rVYOSONEX142ace2a16fc: Merge pull request #2148 from sever-sever/T5448 (authored by dmbaturin).
Aug 11 2023, 7:57 PM
fernando added a comment to T5456: Add alias for "show ipv6 bgp".

Adding comments : maybe discontinue show ip bgp gives some issues / problems with automation tools (ansible o some custom script)While thinking out loud, it can be useful for new users create to alias.

Aug 11 2023, 7:49 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5456: Add alias for "show ipv6 bgp".

Its not possible to "symlink" it?

Aug 11 2023, 7:26 PM · VyOS 1.4 Sagitta
c-po closed T5465: adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface, a subtask of T3090: Move 'adjust-mss' firewall options to the interface section., as Resolved.
Aug 11 2023, 7:24 PM · VyOS 1.4 Sagitta
c-po closed T5465: adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface as Resolved.
Aug 11 2023, 7:24 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXf8b60fff531e: interface: T5465: adjust-mss: config migration fails if applied to a VLAN or Q….
Aug 11 2023, 7:24 PM
c-po changed the status of T5465: adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface, a subtask of T3090: Move 'adjust-mss' firewall options to the interface section., from Open to In progress.
Aug 11 2023, 7:21 PM · VyOS 1.4 Sagitta
c-po changed the status of T5465: adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface from Open to In progress.
Aug 11 2023, 7:21 PM · VyOS 1.4 Sagitta
c-po created T5465: adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface.
Aug 11 2023, 7:20 PM · VyOS 1.4 Sagitta