Page MenuHomeVyOS Platform
Feed All Stories

May 3 2024

a.apostoliuk moved T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names from Need Triage to Finished on the VyOS 1.5 Circinus board.
May 3 2024, 6:44 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk closed T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names as Resolved.
May 3 2024, 6:44 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6250: "policy route-map set table" cannot be deleted from the rule.

The same bug as in T6283

May 3 2024, 6:37 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po changed Difficulty level from unknown to normal on T6283: Cannot delete as-path prepend from policy when it contains more than one AS.
May 3 2024, 5:10 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
e.pc.yuan added a comment to T6288: policy route ipv4 rule order behaviour.

Thanks for the heads up, first time reporting an issue, keep up the great work! Here is output of show configuration commands | strip-private

May 3 2024, 2:12 AM · VyOS 1.5 Circinus

May 2 2024

c-po changed the status of T6283: Cannot delete as-path prepend from policy when it contains more than one AS from Open to In progress.
May 2 2024, 7:41 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6283: Cannot delete as-path prepend from policy when it contains more than one AS.

Upstream bug https://github.com/FRRouting/frr/issues/15912

May 2 2024, 7:41 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po updated the task description for T6283: Cannot delete as-path prepend from policy when it contains more than one AS.
May 2 2024, 7:30 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6190: DNS based adblock on VyOS .

something native would be more powerful

May 2 2024, 7:29 PM · VyOS 1.5 Circinus
c-po moved T6189: BGP L3VPN connectivity is broken after re-enabling VRF from Need Triage to Finished on the VyOS 1.5 Circinus board.
May 2 2024, 7:27 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po changed Why the issue appeared? from none to design-mistake on T6189: BGP L3VPN connectivity is broken after re-enabling VRF.
May 2 2024, 7:27 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po changed the status of T6189: BGP L3VPN connectivity is broken after re-enabling VRF from Open to Needs testing.
May 2 2024, 7:27 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6295: netns: disable incomplete support in VyOS 1.4 sagitta.

https://github.com/vyos/vyos-1x/pull/3403

May 2 2024, 7:12 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po changed the status of T6295: netns: disable incomplete support in VyOS 1.4 sagitta from Open to In progress.
May 2 2024, 6:58 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po created T6295: netns: disable incomplete support in VyOS 1.4 sagitta.
May 2 2024, 6:57 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6294: Service dns forwarding add the ability to configure ZonetoCache as Wishlist priority.
May 2 2024, 5:57 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav created T6294: Service dns forwarding add the ability to configure ZonetoCache.
May 2 2024, 5:57 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav moved T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.7) board.
May 2 2024, 3:49 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav closed T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart as Resolved.
May 2 2024, 3:49 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav assigned T6293: add Mediatek MT7921 to defconfig to SaulGoodman1337.
May 2 2024, 3:45 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
syncer moved T6293: add Mediatek MT7921 to defconfig from Need Triage to In Progress on the VyOS 1.5 Circinus board.
May 2 2024, 2:41 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
syncer changed the status of T6293: add Mediatek MT7921 to defconfig from Open to In progress.
May 2 2024, 2:41 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
SaulGoodman1337 created T6293: add Mediatek MT7921 to defconfig.
May 2 2024, 2:23 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
a.apostoliuk added a project to T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names: VyOS 1.5 Circinus.
May 2 2024, 2:13 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names from In progress to Needs testing.
May 2 2024, 2:12 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6272: PPPoE configuration does not load after deleting a PPPoE interface from the system from In progress to Needs testing.
May 2 2024, 2:09 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
HollyGurza added a comment to T6225: Unhandled exception when configuring random-detect QoS policy.

also dsmark qdisc was removed

May 2 2024, 1:43 PM · VyOS 1.4 Sagitta (1.4.0-GA)
0xThiebaut added a comment to T751: IDS and IPS (suricata).

PR: https://github.com/vyos/vyos-1x/pull/3399

May 2 2024, 11:55 AM · VyOS 1.5 Circinus
Viacheslav renamed T4811: Webproxy bypassing CLI whitelist command is missing from Webproxy bypassing cli command missing to Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 10:23 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav added a comment to T4811: Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 10:22 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav renamed T6292: Unable to update webproxy blacklist as they use captcha from Unable to update webproxy blacklist to Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:43 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav updated the task description for T6292: Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:41 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav renamed T6292: Unable to update webproxy blacklist as they use captcha from Unabme update webproxy blacklist to Unable to update webproxy blacklist.
May 2 2024, 9:37 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav triaged T6292: Unable to update webproxy blacklist as they use captcha as Normal priority.
May 2 2024, 9:36 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav created T6292: Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:36 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav updated the task description for T4811: Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 9:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav changed the status of T6141: Trying to set PADO delay in PPPoE server without also configuring the session options causes a commit failure from In progress to Needs testing.
May 2 2024, 9:05 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a comment to T6141: Trying to set PADO delay in PPPoE server without also configuring the session options causes a commit failure.

@natali-rs1985 Can you check and close it?

May 2 2024, 9:05 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav moved T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 2 2024, 9:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path as Resolved.
May 2 2024, 9:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart from Open to Backport candidate.
May 2 2024, 8:56 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav moved T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart from Need Triage to Finished on the VyOS 1.5 Circinus board.
May 2 2024, 8:56 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav added a comment to T6288: policy route ipv4 rule order behaviour.

@e.pc.yuan Read please https://blog.vyos.io/feature-requests-and-bug-reports-guidelines

A sequence of configuration commands or a complete configuration file is required to recreate a setup where the bug occurs. Please avoid partial configs: a sequence of commands is easy to paste into the console, a complete config is easy to load in a VM, and a partial config is neither! At least not until we implement a "merge from the CLI" feature that allows pasting config file chunks into a session.
May 2 2024, 6:03 AM · VyOS 1.5 Circinus
Viacheslav closed T5278: custome firewall network-group and update CIDR from a file as Invalid.

You can ask on the forum
Close the task as duplicate

May 2 2024, 4:44 AM · VyOS 1.5 Circinus

May 1 2024

e.pc.yuan added a comment to T5278: custome firewall network-group and update CIDR from a file.

Something like set policy route PBR rule 1 destination group network-group us such that PBR is able to route towards a GEOIP network group will be awesome. I believe it is available in firewall already.

May 1 2024, 11:08 PM · VyOS 1.5 Circinus
e.pc.yuan updated the task description for T6288: policy route ipv4 rule order behaviour.
May 1 2024, 9:57 PM · VyOS 1.5 Circinus
e.pc.yuan updated the task description for T6288: policy route ipv4 rule order behaviour.
May 1 2024, 9:56 PM · VyOS 1.5 Circinus
c-po added a comment to T6189: BGP L3VPN connectivity is broken after re-enabling VRF.

https://github.com/vyos/vyos-1x/pull/3392

May 1 2024, 7:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 5:37 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default: VyOS 1.4 Sagitta (1.4.0-epa3).
May 1 2024, 5:36 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Embezzle closed T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default as Resolved.

Tested as working in: VyOS 1.5-rolling-202405010020

May 1 2024, 5:31 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian added a comment to T6291: Add op mode commands for displaying LACP information for bonding interfaces.

Added PR: https://github.com/vyos/vyos-1x/pull/3389

May 1 2024, 4:36 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6291: Add op mode commands for displaying LACP information for bonding interfaces as Normal priority.
May 1 2024, 4:32 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian updated the task description for T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 4:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6281: Wireguard does not pass traffic if VRFs are used.

Well looks like you hit a WireGuard limitation here (route-leaking the default nexthop to another VRF)

May 1 2024, 3:50 PM · VyOS 1.5 Circinus
c-po closed T6257: Add op mode commands for dynamic firewall address groups as Resolved.
May 1 2024, 3:48 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po moved T6257: Add op mode commands for dynamic firewall address groups from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 3:48 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po closed T6162: ixgbe: Add 1000BASE-BX support as Resolved.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po moved T6162: ixgbe: Add 1000BASE-BX support from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po moved T6257: Add op mode commands for dynamic firewall address groups from In Progress to Finished on the VyOS 1.5 Circinus board.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian claimed T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 2:54 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian created T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 2:35 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart.

PR https://github.com/vyos/vyos-1x/pull/3386

May 1 2024, 1:50 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav triaged T6290: SNMPD show logs systemstats_linux: unexpected header length as Normal priority.
May 1 2024, 12:18 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav updated the task description for T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:12 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav updated the task description for T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:11 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav created T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
rchrist added a comment to T6281: Wireguard does not pass traffic if VRFs are used.
In T6281#185620, @c-po wrote:

You probably should get the wireguard interface running in your default VRF first and see if traffic properly passes - once that's working for oyu you can move it into a VRF. Please not only the decrypted side of the WireGuard interface will reside in the VRF. The side passing encrypted packets ALWAYS is in the default VRF (Linux Kernel)

May 1 2024, 9:28 AM · VyOS 1.5 Circinus
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

Thanks for the hints, that makes sense. Let's see how that can be implemented :)

May 1 2024, 9:26 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Apachez added a comment to T2468: Passwords with special characters fail in commit-archive.

For added service when typing just:

May 1 2024, 9:16 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
c-po added a comment to T6281: Wireguard does not pass traffic if VRFs are used.

You probably should get the wireguard interface running in your default VRF first and see if traffic properly passes - once that's working for oyu you can move it into a VRF. Please not only the decrypted side of the WireGuard interface will reside in the VRF. The side passing encrypted packets ALWAYS is in the default VRF (Linux Kernel)

May 1 2024, 9:16 AM · VyOS 1.5 Circinus
Apachez added a comment to T2468: Passwords with special characters fail in commit-archive.

You would still be limited to not be able to use " as part of your password.

May 1 2024, 9:15 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a comment to T2468: Passwords with special characters fail in commit-archive.

There should also be migration scripts, as CLI will be changed.

May 1 2024, 9:13 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

Proposal:

set system config-management commit-archive uri "stor01z-cs.int.trae32566.org/cr01b-vyos"
set system config-management commit-archive scheme "sftp"
set system config-management commit-archive username "cr01b"
set system config-management commit-archive password "$T3$TP@$$W0^%"
May 1 2024, 8:15 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

We could improve it by breaking up configuration, having the user providing a URI, Protocol and optional username/password as separate values.
Then we can properly encode username/password. This would also give more flexibility how username/password are handled and passed on.

May 1 2024, 8:06 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

In both cases it is kind of an user error, the password would have to be properly url encoded if provided in one (@ should be %40 in an URI, a ! should be %21).

May 1 2024, 8:04 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Viacheslav edited projects for T6287: Add API destination port number for secondary firewall in config sync, added: VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3); removed VyOS 1.4 Sagitta.
May 1 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path: VyOS 1.4 Sagitta (1.4.0-epa3).
May 1 2024, 7:16 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path from Open to Needs testing.
May 1 2024, 7:16 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6287: Add API destination port number for secondary firewall in config sync from Open to In progress.
May 1 2024, 7:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6287: Add API destination port number for secondary firewall in config sync.

PR https://github.com/vyos/vyos-1x/pull/3384

set service config-sync secondary address '192.168.122.11'
set service config-sync secondary port '8443'
May 1 2024, 7:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T6267: Improve commit failure messages for wireless interface configuration from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 5:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6267: Improve commit failure messages for wireless interface configuration as Resolved.
May 1 2024, 5:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T6169: DNS forwarding configuration rejects underscores in SRV records from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 5:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6169: DNS forwarding configuration rejects underscores in SRV records as Resolved.
May 1 2024, 5:41 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6287: Add API destination port number for secondary firewall in config sync as Wishlist priority.
May 1 2024, 5:35 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6288: policy route ipv4 rule order behaviour as Normal priority.
May 1 2024, 5:31 AM · VyOS 1.5 Circinus
Viacheslav closed T6289: config-sync: create documentation as Resolved.

Documentation does not require a task on the phabricator.
Thanks.

May 1 2024, 5:23 AM · VyOS 1.4 Sagitta
Giggum created T6289: config-sync: create documentation.
May 1 2024, 3:51 AM · VyOS 1.4 Sagitta
e.pc.yuan created T6288: policy route ipv4 rule order behaviour.
May 1 2024, 3:07 AM · VyOS 1.5 Circinus
Viacheslav triaged T6286: Enable Generic Hyper-V UIO driver in kernel config as Normal priority.
May 1 2024, 1:20 AM · Restricted Project, VyOS 1.5 Circinus
syncer assigned T6287: Add API destination port number for secondary firewall in config sync to Viacheslav.
May 1 2024, 1:05 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
syncer assigned T6285: Listen-address in DHCP-server when going VyOS 1.4 to 1.5 will cause problems to Viacheslav.

Migration needed for listen-address when upgrading from isc-dhcp to kea dhcp (1.4 to 1.5)

May 1 2024, 1:05 AM · Restricted Project, VyOS 1.5 Circinus
haakon.nore created T6287: Add API destination port number for secondary firewall in config sync.
May 1 2024, 12:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 30 2024

zsdc added a comment to T6286: Enable Generic Hyper-V UIO driver in kernel config.

PR for 1.5: https://github.com/vyos/vyos-build/pull/579

Apr 30 2024, 7:57 PM · Restricted Project, VyOS 1.5 Circinus
zsdc changed the status of T6286: Enable Generic Hyper-V UIO driver in kernel config from Confirmed to In progress.
Apr 30 2024, 7:48 PM · Restricted Project, VyOS 1.5 Circinus
zsdc changed the status of T6286: Enable Generic Hyper-V UIO driver in kernel config from Open to Confirmed.
Apr 30 2024, 7:48 PM · Restricted Project, VyOS 1.5 Circinus
zsdc created T6286: Enable Generic Hyper-V UIO driver in kernel config.
Apr 30 2024, 7:48 PM · Restricted Project, VyOS 1.5 Circinus
natali-rs1985 claimed T6284: IPoE server op mode commands do not show IPv6 addresses.
Apr 30 2024, 7:30 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6169: DNS forwarding configuration rejects underscores in SRV records.

PR https://github.com/vyos/vyos-1x/pull/3379

Apr 30 2024, 3:00 PM · VyOS 1.4 Sagitta (1.4.0-epa3)