Page MenuHomeVyOS Platform
Feed Advanced Search

Nov 12 2023

c-po added a comment to T5733: pim(6): rewrite FRR PIM daemon configuration to get_config_dict() and add missing IGMP features.

This also implements https://github.com/vyos/vyos-1x/pull/2411

Nov 12 2023, 12:05 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po changed the status of T5733: pim(6): rewrite FRR PIM daemon configuration to get_config_dict() and add missing IGMP features from Open to In progress.
Nov 12 2023, 9:26 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5733: pim(6): rewrite FRR PIM daemon configuration to get_config_dict() and add missing IGMP features.
Nov 12 2023, 9:26 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 11 2023

Viacheslav changed the status of T5724: About dhcp client hooks from In progress to Needs testing.
Nov 11 2023, 12:04 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a project to T4990: Commit results may not be properly saved if power is cut immediately after a successful commit: VyOS 1.3 Equuleus (1.3.5).
Nov 11 2023, 10:55 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav changed the status of T5724: About dhcp client hooks from Open to In progress.
Nov 11 2023, 10:26 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
giuavo added a comment to T5724: About dhcp client hooks.

That is my first PR; please, let me know if you need something else.

Nov 11 2023, 10:19 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 10 2023

jestabro updated the task description for T5731: Add ability to call config dependencies by canonical function instead of whole script.
Nov 10 2023, 5:50 PM · VyOS Rolling
jestabro added a subtask for T5660: Remove redundant calls to config dependency scripts: T5731: Add ability to call config dependencies by canonical function instead of whole script.
Nov 10 2023, 5:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a subtask for T5666: Provide list of config-mode scripts scheduled for proposed commit: T5731: Add ability to call config dependencies by canonical function instead of whole script.
Nov 10 2023, 5:25 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
jestabro added parent tasks for T5731: Add ability to call config dependencies by canonical function instead of whole script: T5666: Provide list of config-mode scripts scheduled for proposed commit, T5660: Remove redundant calls to config dependency scripts.
Nov 10 2023, 5:25 PM · VyOS Rolling
jestabro created T5731: Add ability to call config dependencies by canonical function instead of whole script.
Nov 10 2023, 5:25 PM · VyOS Rolling
Viacheslav added a comment to T5708: Additional dynamic dns improvements to align with ddclient 3.11.1 release.

@indrajitr could you recheck smoketests?

 DEBUG - ----------------------------------------------------------------------
DEBUG - Ran 3 tests in 7.616s
DEBUG - 
DEBUG - OK
DEBUG - Running Testcase: /usr/libexec/vyos/tests/smoke/cli/test_service_dns_dynamic.py
DEBUG - test_01_dyndns_service_standard (__main__.TestServiceDDNS.test_01_dyndns_service_standard) ... ok
DEBUG - test_02_dyndns_service_ipv6 (__main__.TestServiceDDNS.test_02_dyndns_service_ipv6) ... ok
DEBUG - test_03_dyndns_service_dual_stack (__main__.TestServiceDDNS.test_03_dyndns_service_dual_stack) ... ok
DEBUG - test_04_dyndns_rfc2136 (__main__.TestServiceDDNS.test_04_dyndns_rfc2136) ... ok
DEBUG - test_05_dyndns_hostname (__main__.TestServiceDDNS.test_05_dyndns_hostname) ... ok
DEBUG - test_06_dyndns_web_options (__main__.TestServiceDDNS.test_06_dyndns_web_options) ... ok
DEBUG - test_07_dyndns_vrf (__main__.TestServiceDDNS.test_07_dyndns_vrf) ... ERROR
DEBUG - test_07_dyndns_vrf (__main__.TestServiceDDNS.test_07_dyndns_vrf) ... FAIL
DEBUG - 
DEBUG - ======================================================================
DEBUG - ERROR: test_07_dyndns_vrf (__main__.TestServiceDDNS.test_07_dyndns_vrf)
DEBUG - ----------------------------------------------------------------------
DEBUG - Traceback (most recent call last):
DEBUG -   File "/usr/libexec/vyos/tests/smoke/cli/test_service_dns_dynamic.py", line 304, in test_07_dyndns_vrf
DEBUG -     self.cli_set(['vrf', 'name', vrf_name, 'table', vrf_table])
DEBUG -   File "/usr/libexec/vyos/tests/smoke/cli/base_vyostest_shim.py", line 68, in cli_set
DEBUG -     self._session.set(config)
DEBUG -   File "/usr/lib/python3/dist-packages/vyos/configsession.py", line 150, in set
DEBUG -     self.__run_command([SET] + path + value)
DEBUG -   File "/usr/lib/python3/dist-packages/vyos/configsession.py", line 139, in __run_command
DEBUG -     raise ConfigSessionError(output)
DEBUG - vyos.configsession.ConfigSessionError: Number is not in any of allowed ranges
DEBUG - 
DEBUG - 
DEBUG - 
DEBUG - VRF routing table must be in range from 100 to 65535
DEBUG - Value validation failed
DEBUG - Set failed
DEBUG - 
DEBUG - 
DEBUG - ======================================================================
DEBUG - FAIL: test_07_dyndns_vrf (__main__.TestServiceDDNS.test_07_dyndns_vrf)
DEBUG - ----------------------------------------------------------------------
DEBUG - Traceback (most recent call last):
DEBUG -   File "/usr/libexec/vyos/tests/smoke/cli/test_service_dns_dynamic.py", line 50, in tearDown
DEBUG -     self.assertTrue(process_running(DDCLIENT_PID))
DEBUG - AssertionError: False is not true
DEBUG - 
DEBUG - ----------------------------------------------------------------------
Nov 10 2023, 2:02 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort changed the status of T5729: Firewall, nat and policy route - Switch to valueless from Open to In progress.
Nov 10 2023, 11:47 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort created T5729: Firewall, nat and policy route - Switch to valueless.
Nov 10 2023, 11:47 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav updated the task description for T4712: Collaborative Protection Profile cPP for Network Devices root task.
Nov 10 2023, 10:55 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T5425: enable VRF for conntrack-sync.

Yes I mean sudo ip vrf exec FOO /usr/sbin/conntrackd -C /run/conntrackd/conntrackd.conf

Nov 10 2023, 8:21 AM · VyOS Rolling
Restricted Repository Identity closed T5727: validator: Use native URL validator instead of regex-based validator as Resolved by committing rVYOSONEX1fcb8637f864: Merge pull request #2467 from indrajitr/validation-fix.
Nov 10 2023, 7:04 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
I-n-d-y added a comment to T5425: enable VRF for conntrack-sync.

It has been a while since I had setup the HA VRF. I attached the interfaces on both routers to use this VRF but then conntrack-sync wasn't woking anymore. Do you mean if I had also tried to manually start the service and configure it to use this VRF?

Nov 10 2023, 6:46 AM · VyOS Rolling
Viacheslav added a comment to T5167: Add a simple file server.

PR https://github.com/vyos/vyos-1x/pull/2469

set service file-server listen-address 0.0.0.0
set service file-server port 8000
set service file-server directory '/tmp'
Nov 10 2023, 1:36 AM

Nov 9 2023

indrajitr claimed T5727: validator: Use native URL validator instead of regex-based validator.
Nov 9 2023, 10:01 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr created T5727: validator: Use native URL validator instead of regex-based validator.
Nov 9 2023, 10:01 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5167: Add a simple file server from Open to In progress.
Nov 9 2023, 9:59 PM
jestabro claimed T5726: HTTPS API image cannot be updated.
Nov 9 2023, 8:14 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav updated the task description for T5726: HTTPS API image cannot be updated.
Nov 9 2023, 8:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5726: HTTPS API image cannot be updated.
Nov 9 2023, 8:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
giuavo added a comment to T5724: About dhcp client hooks.

OK, I will.

Nov 9 2023, 9:55 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5425: enable VRF for conntrack-sync.

Did you try to start this service in VRF?

Nov 9 2023, 7:43 AM · VyOS Rolling
Viacheslav moved T5648: ldpd neighbour template errors from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 9 2023, 7:41 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5648: ldpd neighbour template errors from Open to Finished on the VyOS 1.5 Circinus board.
Nov 9 2023, 7:41 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5724: About dhcp client hooks.

Create please a PR if it works for you.

Nov 9 2023, 7:41 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 8 2023

qdrddr added a comment to T5493: Add capability to use local and external dynamic-lists for firewall rules but also for various policies such as access-list, route-maps etc..

++

Nov 8 2023, 7:57 PM · VyOS Rolling
qdrddr added a comment to T5388: Something is fishy with commit and boot times when more than a few hundred static routes are being used.

++

Nov 8 2023, 7:57 PM · VyOS Rolling, Restricted Project
qdrddr added a comment to T5425: enable VRF for conntrack-sync.
Nov 8 2023, 7:56 PM · VyOS Rolling
qdrddr added a comment to T5044: High Availability in DHCPv6 -ISC DHCP Failover/Kea.

++

Nov 8 2023, 7:55 PM · VyOS 1.5 Circinus
fernando changed the status of T5563: container: Container environment variable cannot be set from Open to Needs testing.

I've tested this flag in both version 1.4 / 1.5 , it seems to work as expected :

Nov 8 2023, 7:52 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
fernando added a project to T5563: container: Container environment variable cannot be set: VyOS 1.5 Circinus.
Nov 8 2023, 7:50 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
qdrddr added a comment to T5425: enable VRF for conntrack-sync.

Make sure conntrack-sync works with active-active HA configuration with BGP environment & IPv6

Nov 8 2023, 7:43 PM · VyOS Rolling
n.fort closed T4864: `show firewall` command errors as Resolved.

Command show zone-policy is no longer available in 1.4, and neither in 1.5
I'm closing this task.

Nov 8 2023, 7:26 PM · VyOS 1.4 Sagitta
n.fort closed T5513: Anomalies in show firewall command after refactoring as Resolved.
Nov 8 2023, 7:08 PM · VyOS 1.4 Sagitta
fernando closed T5648: ldpd neighbour template errors as Resolved.
Nov 8 2023, 7:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando added a comment to T5648: ldpd neighbour template errors.

tested on 1.4-rolling-202311080309

Nov 8 2023, 7:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort closed T5541: Zone-Based Firewalling in VyOS Sagitta 1.4 as Resolved.

I'm marking this one as resolved since ZBF was already re-introduced.

Nov 8 2023, 7:07 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a comment to T5550: Source validation on interface does not work properly.

Can we mark this one as resolved for 1.5? Seems it wasn't back-ported yet to Saggita @sdev

Nov 8 2023, 7:04 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort closed T5564: Both show firewall group and show firewall summary fails as Resolved.
Nov 8 2023, 6:58 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a project to T5724: About dhcp client hooks: VyOS 1.5 Circinus.
Nov 8 2023, 4:47 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
giuavo created T5724: About dhcp client hooks.
Nov 8 2023, 3:46 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
tjjh89017 added a comment to T5668: Disable VXLAN bridge learning and enable neigh_suppress when using EVPN.

@c-po It seems you only implement the "type bridge_slave neigh_suppress on"
And "type bridge_slave learning on" is not implemented in this PR.
Will you add this also?
Thank you

Nov 8 2023, 9:16 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5716: PPPoE-server shaper template bug down-limiter option does not rely on fwmark from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:33 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a project to T5716: PPPoE-server shaper template bug down-limiter option does not rely on fwmark: VyOS 1.4 Sagitta.
Nov 8 2023, 8:33 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT as Resolved.
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5559: Selective proxy-arp/proxy-ndp when doing SNAT/DNAT.
set protocols static neighbor-proxy arp 192.0.2.1 interface eth1

check

vyos@r4# sudo ip nei show proxy
192.0.2.1 dev eth1 proxy 
[edit]
vyos@r4#
Nov 8 2023, 8:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:29 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP as Resolved.
Nov 8 2023, 8:29 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5720: PPPoE-server adding new interface does not work from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 8 2023, 8:23 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5720: PPPoE-server adding new interface does not work as Resolved.
Nov 8 2023, 8:23 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Nov 7 2023

indrajitr added a project to T5723: mdns repeater: Always reload systemd daemon before applying changes: VyOS 1.5 Circinus.
Nov 7 2023, 9:03 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr triaged T5723: mdns repeater: Always reload systemd daemon before applying changes as Normal priority.
Nov 7 2023, 9:01 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces from In progress to Needs testing.
Nov 7 2023, 7:41 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
JeffWDH added a comment to T5681: Interface match - Simplified and unified cli.

According to firewall-version.xml.i, the firewall config version was not updated to 12. Was this intentional?

Nov 7 2023, 12:58 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
giuavo updated the task description for T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.
Nov 7 2023, 11:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
giuavo added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

@Viacheslav My addition of the onlink option is really brute-force, applied blindly to everything just to see if that was a solution and give you more information. I do not think my "fix" is really ready for a PR.

Nov 7 2023, 11:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network: VyOS 1.5 Circinus.
Nov 7 2023, 11:37 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

@giuavo I didn't test "default route", only regular routes for some prefixes, and it worked.
Could you create a PR?

Nov 7 2023, 11:36 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5720: PPPoE-server adding new interface does not work.

PR https://github.com/vyos/vyos-1x/pull/2453

Nov 7 2023, 11:11 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk closed T5586: Disable by default SNMP for Keepalived VRRP as Resolved.
Nov 7 2023, 11:02 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk added a comment to T5586: Disable by default SNMP for Keepalived VRRP.

Tested in 1.3. Everything works

Nov 7 2023, 11:00 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
giuavo created T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.
Nov 7 2023, 10:06 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk added a comment to T5402: VRRP router with rfc3768-compatibility sends multiple ARP replies .

Tested in 1.5

Nov 7 2023, 9:21 AM · VyOS 1.5 Circinus, VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav added a project to T5720: PPPoE-server adding new interface does not work: VyOS 1.4 Sagitta.
Nov 7 2023, 7:34 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5648: ldpd neighbour template errors.

Backport to 1.4 https://github.com/vyos/vyos-1x/pull/2449

Nov 7 2023, 7:09 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
devon added a comment to T5648: ldpd neighbour template errors.

It's fixed in 1.5-rolling-202311060023 but the bug is still present in 1.4.

Nov 7 2023, 5:55 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
indrajitr triaged T5719: mdns repeater: Add op-mode commands as Normal priority.
Nov 7 2023, 1:18 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 6 2023

Apachez added a comment to T5471: Conntrack logging doesnt seem to be working.

I would mainly want to log new conntrack entries for various reasons.

Nov 6 2023, 9:27 PM · VyOS Rolling, Restricted Project
c-po changed the status of T4269: node.def generator should automatically add default values from Unknown Status to Resolved.
Nov 6 2023, 8:23 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po closed T5707: Wireguard peer public key update leaves redundant peers and breaks connectivity as Resolved.
Nov 6 2023, 8:17 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando added a comment to T5648: ldpd neighbour template errors.

@devon

Nov 6 2023, 7:50 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fernando added a comment to T5648: ldpd neighbour template errors.

after merge this ldp bug fixed , I saw that now it's already working . Could you check it ? I've tested on a lab and it seems to work :

Nov 6 2023, 7:49 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
marc_s added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

That looks better:

        chain VZONE_LOCAL_OUT {
                oifname "lo" counter packets 387 bytes 33672 return
                oifname "bond0.40" counter packets 14 bytes 496 jump NAME_LOCAL_TO_ALL
                oifname "bond0.40" counter packets 0 bytes 0 return
                oifname "bond0.70" counter packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname "bond0.70" counter packets 0 bytes 0 return
r packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname { "bond0.7", "bond0.30", "bond0.90", "bond0.88" } counter packets 0 bytes 0 return
                oifname { "eth0", "pppoe0", "eth1.281" } counter packets 3 bytes 180 jump NAME_LOCAL_TO_ALL
                oifname { "eth0", "pppoe0", "eth1.281" } counter packets 0 bytes 0 return
                oifname "bond0.80" counter packets 2 bytes 80 jump NAME_LOCAL_TO_ALL
                oifname "bond0.80" counter packets 0 bytes 0 return
                oifname { "bond0.1", "podman-cntr-net" } counter packets 2 bytes 128 jump NAME_LOCAL_TO_ALL
                oifname { "bond0.1", "podman-cntr-net" } counter packets 0 bytes 0 return
                oifname { "wg0", "vti0", "vtun0", "podman-ts-net" } counter packets 0 bytes 0 jump NAME_LOCAL_TO_ALL
                oifname { "wg0", "vti0", "vtun0", "podman-ts-net" } counter packets 0 bytes 0 return
                counter packets 0 bytes 0 drop comment "zone_LOCAL default-action drop"
        }
Nov 6 2023, 7:16 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
fernando closed T5705: rsyslog - Not working when using facility=all as Resolved.
Nov 6 2023, 7:13 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
fernando added a comment to T5705: rsyslog - Not working when using facility=all.

tested /resolved

Nov 6 2023, 7:13 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a comment to T5471: Conntrack logging doesnt seem to be working.

Does anyone knows real scenario where permanently storing/saving this logs are required?
Yes, this feature is not working on 1.4, neither on 1.5
But I can't think on a real case where this logs are needed. I know that keeping information of NAT for certain ISP is mandatory due lo legal requirements. But writing a log entry for every conntrack status change seems like it will flood logs, and may consume more resources than expected.
With usage of netflow/slflow, maybe this required information can be obtained in the netflow collector, and do not increase load on vyos router.

Nov 6 2023, 5:56 PM · VyOS Rolling, Restricted Project
marc_s added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

Thanks, I'll wait for the merge and test the new iso ASAP.

Nov 6 2023, 4:04 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

PR: https://github.com/vyos/vyos-1x/pull/2441

Nov 6 2023, 3:34 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

Working on it! Thanks for the details!

Nov 6 2023, 9:39 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5704: PPPoE-server add max-starting option from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 6 2023, 9:34 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5704: PPPoE-server add max-starting option as Resolved.
Nov 6 2023, 9:34 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
bbabich changed the status of T5657: Add VRF support for zabbix-agent from Open to In progress.
Nov 6 2023, 4:52 AM · VyOS Rolling

Nov 5 2023

Viacheslav closed T4020: Add ability to control FRR daemons options as Resolved.
Nov 5 2023, 12:25 AM · VyOS 1.4 Sagitta

Nov 4 2023

indrajitr renamed T5708: Additional dynamic dns improvements to align with ddclient 3.11.1 release from Upgrade ddclient to 3.11.1 release to Additional dynamic dns improvements to align with ddclient 3.11.1 release.
Nov 4 2023, 11:13 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez added a comment to T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces .

In that PR, shouldnt also ifb* be included?

Nov 4 2023, 1:37 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces .

PR https://github.com/vyos/vyos-1x/pull/2436

Nov 4 2023, 12:28 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
marc_s added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

@n.fort Unfortunately, I'm hitting an issue with traffic sent from the router itself.
Running 1.4-rolling-202311021131.
Interfaces eth0 and pppoe0 are WAN. Interfaces bond0* are LAN.
For example, running dig google.nl @9.9.9.9 from the VyOS CLI will fail. The kernel log says:

Nov 4 2023, 12:08 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5658: Add VRF support for mtr from Open to In progress.
Nov 4 2023, 11:51 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces from Open to In progress.
Nov 4 2023, 11:49 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
bbabich added a comment to T5658: Add VRF support for mtr.

PR added...
https://github.com/vyos/vyos-1x/pull/2435

Nov 4 2023, 11:43 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP.

PR https://github.com/vyos/vyos-1x/pull/2434

set service snmp community public client '127.0.0.1'
set service snmp mib interface-max '25'
set service snmp mib interface 'eth'
set service snmp mib interface 'bond'
Nov 4 2023, 11:19 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a comment to T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces .

+1 for the other "virtual interfaces like lo, dummy, sstp. If such an interface is created - vyos.ifconfig library sets (or should set) all the appropriate sysctl stuff

Nov 4 2023, 9:32 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav changed the status of T5702: Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP from Open to In progress.
Nov 4 2023, 9:26 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus