Page MenuHomeVyOS Platform
Feed All Stories

Oct 2 2023

c-po claimed T5628: op-mode: login: DeprecationWarning: 'spwd'.
Oct 2 2023, 6:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po created T5628: op-mode: login: DeprecationWarning: 'spwd'.
Oct 2 2023, 6:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5627: Multicast - PIM prune state timers expire with time longer to remove a mroute.

The easiest way is to add a Patch for FRR 7.5.1 if possible.
We can't migrate to FRR 9.1 for 1.3.x

Oct 2 2023, 5:24 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.9)
c-po moved T5626: Only select required Kernel CGROUP controllers from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Oct 2 2023, 3:01 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po moved T5626: Only select required Kernel CGROUP controllers from Need Triage to Finished on the VyOS 1.5 Circinus board.
Oct 2 2023, 3:01 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando created T5627: Multicast - PIM prune state timers expire with time longer to remove a mroute.
Oct 2 2023, 2:55 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.9)
c-po claimed T5626: Only select required Kernel CGROUP controllers.
Oct 2 2023, 2:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po created T5626: Only select required Kernel CGROUP controllers.
Oct 2 2023, 2:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk added a comment to T5618: Flow-accounting crushes when IMT is enabled.

I have tested. It works
Daemon does not crush.
There is information in local database.

Oct 2 2023, 11:59 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
zsdc changed the status of T5618: Flow-accounting crushes when IMT is enabled from In progress to Needs testing.
Oct 2 2023, 8:48 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Oct 1 2023

erkin closed T936: Reimplementation of tech-support diagnostic file generation, a subtask of T3355: Remove all remaining legacy Vyatta code, as Resolved.
Oct 1 2023, 1:18 PM · VyOS 1.5 Circinus
erkin closed T936: Reimplementation of tech-support diagnostic file generation as Resolved.

show tech-support report was rewritten in PR 1961 and the last vestiges of the original was removed earlier in PR 2260. See T5137.

Oct 1 2023, 1:18 PM · test, VyOS 1.4 Sagitta

Sep 30 2023

Apachez reopened T5436: vyos-preconfig-bootup.script is missing as "Open".
Sep 30 2023, 8:31 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5436: vyos-preconfig-bootup.script is missing.

PR created: https://github.com/vyos/vyos-1x/pull/2326

Sep 30 2023, 8:31 PM · VyOS 1.4 Sagitta
yun added a comment to T2405: commit archive to GIT.

Is there anything I can do to improve this PR? I also noticed that there is no more example commit-archive output since vyos 1.4:

Sep 30 2023, 9:10 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
vfreex added a comment to T5518: Add MLD protocol support.

@Viacheslav This doesn't seem to be related. This PR is merged to 1.5 instead of 1.4.

Sep 30 2023, 9:04 AM · VyOS 1.4 Sagitta
Apachez renamed T5622: Command 'add system upgrade' uses local script instead of updated script provided by ISO from Add system upgrade uses local script instead of updated script provided by ISO to Command 'add system upgrade' uses local script instead of updated script provided by ISO.
Sep 30 2023, 7:11 AM · Restricted Project, VyOS 2.0.x
c-po closed T4989: QoS Policy Limiter - classes for marked traffic do not work, a subtask of T5048: QoS doesn't work correctly root task, as Resolved.
Sep 30 2023, 6:37 AM · VyOS 1.4 Sagitta
c-po closed T4989: QoS Policy Limiter - classes for marked traffic do not work as Resolved.
Sep 30 2023, 6:36 AM · vyatta-cfg-qos, VyOS 1.4 Sagitta
c-po closed T5048: QoS doesn't work correctly root task as Resolved.
Sep 30 2023, 6:36 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5624: Remove /etc/debian_version from the image.

PR created (for current): https://github.com/vyos/vyos-build/pull/432

Sep 30 2023, 2:41 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.5)

Sep 29 2023

dmbaturin created T5625: "restart vpn" does not work if ipsec-interfaces is not set.
Sep 29 2023, 4:44 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a comment to T5518: Add MLD protocol support.

Could be a cause of this bug https://forum.vyos.io/t/igmp-proxy-not-working-in-1-4-since-around-7-sept

Sep 29 2023, 4:21 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5621: Show uncommited "commands" (compare | commands) from Resolved to Invalid.
Sep 29 2023, 4:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5165: Policy local-route ability set protocol and port.

PR migration https://github.com/vyos/vyos-1x/pull/2325

Sep 29 2023, 4:05 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez added a comment to T5624: Remove /etc/debian_version from the image.

Please revert that commit (remove that hook) and use the excludes-file instead.

Sep 29 2023, 3:10 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.5)
aga closed T5621: Show uncommited "commands" (compare | commands) as Resolved.
Sep 29 2023, 2:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
aga added a comment to T5621: Show uncommited "commands" (compare | commands).

@n.fort Ahh yes.. I'm sorry, thats embarassing now.. I've probably always overlooked it since it's before the "<Enter>" which I usually always expect as the first option (from other OSs aswell).. And probably because I'm used to the command being after the pipe aswell.. Still good to know now that the feature exists..

Sep 29 2023, 2:28 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
dmbaturin created T5624: Remove /etc/debian_version from the image.
Sep 29 2023, 1:19 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.5)
n.fort added a comment to T5621: Show uncommited "commands" (compare | commands).

You mean this existing option, or I am missing something?

vyos@vyos-suri:~$ conf
[edit]
vyos@vyos-suri# set int eth eth0 description TEST
[edit]
vyos@vyos-suri# set serv ssh port 8877
[edit]
vyos@vyos-suri# set system host-name foo
[edit]
vyos@vyos-suri# compare 
[interfaces ethernet eth0]
+ description "TEST"
[service ssh]
+ port "8877"
[system]
- host-name "vyos-suri"
+ host-name "foo"
Sep 29 2023, 10:43 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav updated the task description for T5623: Add tunnel over Socks5 proxy .
Sep 29 2023, 8:41 AM · VyOS 1.5 Circinus
Viacheslav created T5623: Add tunnel over Socks5 proxy .
Sep 29 2023, 8:40 AM · VyOS 1.5 Circinus
Viacheslav changed the status of T5261: Add AWS gateway load-balanceing tunnel handler (gwlbtun) from In progress to Needs testing.
Sep 29 2023, 7:53 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5620: "Deactivate" certain config snippets from "Task" to "Feature Request".
Sep 29 2023, 7:26 AM · VyOS 1.5 Circinus
Apachez added a comment to T5622: Command 'add system upgrade' uses local script instead of updated script provided by ISO.

I suppose the maintainers already considered the below but I got a suggestion on how to resolve this issue:

Sep 29 2023, 5:47 AM · Restricted Project, VyOS 2.0.x
Apachez added a comment to T5593: Further shrink VyOS imagesize.

Created https://vyos.dev/T5622 which must first be resolved before T5593 can get successfully merged.

Sep 29 2023, 12:29 AM · VyOS 2.0.x
Apachez created T5622: Command 'add system upgrade' uses local script instead of updated script provided by ISO.
Sep 29 2023, 12:28 AM · Restricted Project, VyOS 2.0.x
Apachez added a comment to T5593: Further shrink VyOS imagesize.

PR updated for part 1/2 (vyatta-cfg-system): https://github.com/vyos/vyatta-cfg-system/pull/209

Sep 29 2023, 12:12 AM · VyOS 2.0.x
aga triaged T5621: Show uncommited "commands" (compare | commands) as Wishlist priority.
Sep 29 2023, 12:02 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Sep 28 2023

aga triaged T5620: "Deactivate" certain config snippets as Wishlist priority.
Sep 28 2023, 11:47 PM · VyOS 1.5 Circinus
syncer triaged T5576: Add bgp remove-private-as all option as Normal priority.
Sep 28 2023, 10:44 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez added a comment to T5593: Further shrink VyOS imagesize.

PR updated for part 2/2 (vyos-build): https://github.com/vyos/vyos-build/pull/427

Sep 28 2023, 8:46 PM · VyOS 2.0.x
c-po closed T5596: bgp: add new features from FRR 9 as Resolved.
Sep 28 2023, 6:55 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
zsdc changed the status of T5618: Flow-accounting crushes when IMT is enabled from Open to In progress.

This should fix the problem: https://github.com/vyos/vyos-build/pull/428

Sep 28 2023, 4:57 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Unknown Object (User) raised the priority of T5619: Update the Intel ixgbe driver due to issues with Intel X533 from Normal to Requires assessment.
Sep 28 2023, 2:32 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Unknown Object (User) triaged T5619: Update the Intel ixgbe driver due to issues with Intel X533 as Normal priority.
Sep 28 2023, 2:32 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro closed T5412: Add support for extending config-mode dependencies in supplemental package, a subtask of T4820: Support for inter-config-mode script dependencies, as Resolved.
Sep 28 2023, 2:07 PM · VyOS 1.4 Sagitta
jestabro closed T5412: Add support for extending config-mode dependencies in supplemental package, a subtask of T5403: Add support for extending xml cache , as Resolved.
Sep 28 2023, 2:07 PM · VyOS 1.4 Sagitta
jestabro closed T5412: Add support for extending config-mode dependencies in supplemental package as Resolved.
Sep 28 2023, 2:07 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
erkin added a comment to T4038: Rewrite `vyatta-image-tools.pl` in Python.

show-dhcp-leases.pl under vyatta-op remains the only extant deadweight Vyatta script and needs to be removed.

Sep 28 2023, 2:07 PM · Restricted Project, VyOS 1.4 Sagitta
JeffWDH added a comment to T5497: Add ability to resequence rule numbers for firewall.

https://github.com/vyos/vyos-1x/pull/2323

Sep 28 2023, 11:26 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
diodep updated subscribers of T5049: Configure GRE over IPsec tunnel when source port is in VRF, OSPF causes GRE tunnel broken..

It seems this problem is not caused by IPsec, but it was caused by GRE implementation.

Sep 28 2023, 8:29 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA)

Sep 27 2023

jestabro moved T5412: Add support for extending config-mode dependencies in supplemental package from Need Triage to Backport Candidates on the VyOS 1.4 Sagitta board.
Sep 27 2023, 5:55 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a comment to T5412: Add support for extending config-mode dependencies in supplemental package.

PR for sagitta:
https://github.com/vyos/vyos-1x/pull/2315

Sep 27 2023, 5:54 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort renamed T5616: Firewall mark - Add capabilities for matching firewall mark from Firewall marl - Add capabilities for matching firewall mark to Firewall mark - Add capabilities for matching firewall mark.
Sep 27 2023, 5:48 PM · VyOS 1.5 Circinus
n.fort added a comment to T5616: Firewall mark - Add capabilities for matching firewall mark.

PR: https://github.com/vyos/vyos-1x/pull/2314

Sep 27 2023, 5:48 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T5165: Policy local-route ability set protocol and port.

Add option protocol, PR https://github.com/vyos/vyos-1x/pull/2313

set policy local-route rule 100 destination '192.0.2.12'
set policy local-route rule 100 protocol 'tcp'
set policy local-route rule 100 set table '100'
Sep 27 2023, 2:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a comment to T5403: Add support for extending xml cache .

Adding use outline from PR for future reference; the dir vyos-1x-current below refers to a local copy of the vyos-1x source:

Sep 27 2023, 1:56 PM · VyOS 1.4 Sagitta
a.apostoliuk created T5618: Flow-accounting crushes when IMT is enabled.
Sep 27 2023, 1:21 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez added a comment to T5593: Further shrink VyOS imagesize.

PR created for part 1/2 (vyatta-cfg-system): https://github.com/vyos/vyatta-cfg-system/pull/209

Sep 27 2023, 8:52 AM · VyOS 2.0.x
Viacheslav closed T5197: Conntrack-sync external cache commit error as Resolved N/A.

Fixed

Sep 27 2023, 7:54 AM · VyOS 1.4 Sagitta
Viacheslav placed T5203: load-balancing wan add systemd unit instead of old vyatta-wanloadbalance.init up for grabs.
Sep 27 2023, 7:28 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5593: Further shrink VyOS imagesize.
Sep 27 2023, 12:16 AM · VyOS 2.0.x
Apachez added a comment to T5593: Further shrink VyOS imagesize.

Build was successful and smoketests are currently in progress.

Sep 27 2023, 12:07 AM · VyOS 2.0.x

Sep 26 2023

Apachez added a comment to T5593: Further shrink VyOS imagesize.

If build and smoketests are successful a commit will arrive later today.

Sep 26 2023, 11:15 PM · VyOS 2.0.x
jestabro added a comment to T5593: Further shrink VyOS imagesize.

... of course, feel free to experiment; I have not yet considered the proposed idea.

Sep 26 2023, 10:55 PM · VyOS 2.0.x
jestabro added a comment to T5593: Further shrink VyOS imagesize.

@Apachez note that those legacy image install scripts will be removed following
https://vyos.dev/T4516
Work on completing that is active this week and should be finished soon. You may want to hold off on this investigation until then.

Sep 26 2023, 10:54 PM · VyOS 2.0.x
Apachez claimed T5593: Further shrink VyOS imagesize.
Sep 26 2023, 9:50 PM · VyOS 2.0.x
Apachez added a comment to T5593: Further shrink VyOS imagesize.

Point 1 might be solved by using a hooks/live-script for the binary part which is the part after the chroot have been created.

Sep 26 2023, 9:49 PM · VyOS 2.0.x
Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

PR created: https://github.com/vyos/vyos-build/pull/426

Sep 26 2023, 8:58 PM · VyOS 1.5 Circinus
Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

Turned out to be little of a challenge do "just" strip all binaries (and libraries, modules etc).

Sep 26 2023, 6:12 PM · VyOS 1.5 Circinus
syncer assigned T5497: Add ability to resequence rule numbers for firewall to n.fort.
Sep 26 2023, 6:10 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
JeffWDH added a comment to T5497: Add ability to resequence rule numbers for firewall.

Also added flowtable as nothing needs to be sequenced in there either:
https://github.com/JeffWDH/vyos-1x/commit/ac22cc054d9c15af010c824ac9a05f5cc71fc954

Sep 26 2023, 6:10 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
JeffWDH added a comment to T5497: Add ability to resequence rule numbers for firewall.

I have not contributed code to this project before so let me know if I've missed conventions...

Sep 26 2023, 5:52 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
b- added a comment to T4915: Minisign verification failure == pass??.

Just to be clear, the build I'm going from is just my own build of current to my own build of current -- it says 1.4 because I only changed the version string to 1.5 after this build went through since i'm the only one using my build :)

Sep 26 2023, 5:48 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
b- triaged T4915: Minisign verification failure == pass?? as High priority.

I just noticed that this still is a problem. Excerpt below from downloading an upgrade:

Sep 26 2023, 5:42 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
dmbaturin created T5617: Add an option to exclude single values to the numeric validator.
Sep 26 2023, 5:40 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5586: Disable by default SNMP for Keepalived VRRP.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/2310

Sep 26 2023, 3:00 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5497: Add ability to resequence rule numbers for firewall.

1.5-rolling-202309250022

Is there a reason why some global options and some address groups (not all) are included in the output? Seems unintentional to me.

Sep 26 2023, 2:41 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
JeffWDH added a comment to T5497: Add ability to resequence rule numbers for firewall.

Is there a reason why some global options and some address groups (not all) are included in the output? Seems unintentional to me.

Sep 26 2023, 2:24 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav closed T5480: Ability to disable SNMP for VRRP keepalived service as Resolved.
Sep 26 2023, 1:26 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5616: Firewall mark - Add capabilities for matching firewall mark.

We have fwmark for policy local-route
But it is only for match mark and routing decision

vyos@vyos-lns# set policy local-route rule 100 
Possible completions:
+  destination          Destination address or prefix
   fwmark               Match fwmark value
   inbound-interface    Inbound Interface
 > set                  Packet modifications
+  source               Source address or prefix
Sep 26 2023, 12:47 PM · VyOS 1.5 Circinus
n.fort changed the status of T5616: Firewall mark - Add capabilities for matching firewall mark from Open to Confirmed.
Sep 26 2023, 12:11 PM · VyOS 1.5 Circinus
n.fort created T5616: Firewall mark - Add capabilities for matching firewall mark.
Sep 26 2023, 12:11 PM · VyOS 1.5 Circinus

Sep 25 2023

Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

Have to add Debian package "binutils" to make "strip" work within the chroot of livebuild.

Sep 25 2023, 7:05 PM · VyOS 1.5 Circinus
jestabro added a comment to T5611: Difference in config file after interface MAC changed.

This is an artifact of the remaining use in 1.3 of the legacy XorpConfigParser: the last use of that legacy piece was removed from 1.4 in Sep 2021, but is still called by 'vyatta_interface_rescan' in 1.3, so will be seen after changing MAC addresses if the config is not saved. A quick summary of the history is here and quoted below:

Sep 25 2023, 4:51 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.9)
Apachez claimed T5589: Nonstripped binaries exists in VyOS.
Sep 25 2023, 4:34 PM · VyOS 1.5 Circinus
Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

Implement hooks-script for livebuild that recursively go through following directories using "strip --strip-all" (syntax to be verified):

Sep 25 2023, 4:30 PM · VyOS 1.5 Circinus
Apachez added a comment to T5522: Add logging for which mksquashfs syntax is being used.

Shouldnt that be default for lb then in the vyos buildscripts and how does --debug affect things other than logging during build?

Sep 25 2023, 4:00 PM · VyOS 1.5 Circinus
Apachez added a comment to T5379: show system updates doesnt seem to be working.

What is the "system update-check url" supposed to be once its implemented?

Sep 25 2023, 3:54 PM · VyOS 1.4 Sagitta
dmbaturin edited the content of 1.3.4.
Sep 25 2023, 3:42 PM
dmbaturin merged T3144: Support op-mode command to release DHCP leases into T1375: Add clear dhcp server lease function.
Sep 25 2023, 2:13 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dmbaturin merged task T3144: Support op-mode command to release DHCP leases into T1375: Add clear dhcp server lease function.
Sep 25 2023, 2:12 PM · VyOS 1.3 Equuleus (1.3.4)
dmbaturin edited projects for T2640: Running VyOS inside Docker containers, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.4).
Sep 25 2023, 2:08 PM · VyOS 1.3 Equuleus (1.3.3)
dmbaturin changed Issue type from feature to bug on T3070: Firewall going OOM, possible related to nftables migration.
Sep 25 2023, 1:52 PM · VyOS 1.3 Equuleus (1.3.4)
dmbaturin changed Issue type from feature to internal on T4874: Add Warning message to Equuleus.
Sep 25 2023, 1:46 PM · VyOS 1.3 Equuleus (1.3.4)
dmbaturin changed Issue type from unspecified to bug on T5524: Add config directory to liveCD.
Sep 25 2023, 1:41 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
dmbaturin changed Issue type from unspecified to feature on T5354: Add sshguard to protect against brut-forces for 1.3.
Sep 25 2023, 1:40 PM · VyOS 1.3 Equuleus (1.3.4)
dmbaturin changed Issue type from unspecified to improvement on T5315: vrrp: add support for version 3.
Sep 25 2023, 1:39 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
dmbaturin changed the status of T4479: generate wireguard client command prompt has some error from Resolved N/A to Invalid.
Sep 25 2023, 1:38 PM · VyOS 1.3 Equuleus (1.3.4)