Page MenuHomeVyOS Platform
Feed All Stories

Jun 14 2024

c-po changed the status of T6484: Smoketest fails: fastnetmon killed due to OOM from Open to In progress.
Jun 14 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEXa7608991a8b3: Merge pull request #3609 from vyos/mergify/bp/equuleus/pr-3596 (authored by c-po).
Jun 14 2024, 12:08 PM
Vijayakumar created T6487: update central workflow usage branch to current (update vyos-1x).
Jun 14 2024, 11:43 AM · GitHub Infrastructure
Vijayakumar closed T6476: add sonar workflow to vyos-1x current, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6476: add sonar workflow to vyos-1x current as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6469: Remove J2Lint workflow from vyos-1x as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6469: Remove J2Lint workflow from vyos-1x, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Viacheslav triaged T6486: Generate openvpn client-config ignores configured protocol type as Normal priority.
Jun 14 2024, 11:31 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, VyOS Rolling
c-po added a comment to T6407: ipsec profile generation error.

https://github.com/vyos/vyos-1x/pull/3646

Jun 14 2024, 11:31 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a comment to T6407: ipsec profile generation error.

I can now reproduce the issue. The reason I was unable to reproduce this was I missed out that you use an ACME certificate

Jun 14 2024, 11:06 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem from Open to Finished on the VyOS 1.5 Circinus board.
Jun 14 2024, 10:40 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a comment to T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem.

https://github.com/vyos/vyos-1x/pull/3645

Jun 14 2024, 10:39 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a parent task for T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem: T6377: PermissionError on /config/auth/letsencrypt/live/ when running show pki.
Jun 14 2024, 10:32 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a subtask for T6377: PermissionError on /config/auth/letsencrypt/live/ when running show pki: T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem.
Jun 14 2024, 10:32 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
c-po changed the status of T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem from Open to In progress.
Jun 14 2024, 10:32 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
adestis added a comment to T6486: Generate openvpn client-config ignores configured protocol type.

There is another incompatibility:

Jun 14 2024, 10:14 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, VyOS Rolling
c-po added a comment to T6407: ipsec profile generation error.
Jun 14 2024, 10:10 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
adestis created T6486: Generate openvpn client-config ignores configured protocol type.
Jun 14 2024, 10:10 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, VyOS Rolling
Viacheslav changed the status of T6485: Thunderbolt Networking support from Open to In progress.
Jun 14 2024, 9:58 AM · VyOS Rolling
rafaelgaspar updated the task description for T6485: Thunderbolt Networking support.
Jun 14 2024, 9:30 AM · VyOS Rolling
rafaelgaspar added a comment to T6485: Thunderbolt Networking support.

The first step in support this is to build the kernel modules thunderbolt and thunderbolt-net.

Jun 14 2024, 9:29 AM · VyOS Rolling
rafaelgaspar created T6485: Thunderbolt Networking support.
Jun 14 2024, 8:44 AM · VyOS Rolling
pavel-altair added a comment to T6407: ipsec profile generation error.
vyos@vyos:~$ generate ipsec profile windows-remote-access support remote ipsec.somedomain
Traceback (most recent call last):
  File "/usr/libexec/vyos/op_mode/ikev2_profile_generator.py", line 153, in <module>
    cert_data = load_certificate(pki['certificate'][cert_name]['certificate'])
                                 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~^^^^^^^^^^^^^^^
KeyError: 'certificate'
vyos@vyos:~$ show ver | match Version:
Version:          VyOS 1.5-rolling-202406130020
vyos@vyos:~$
Jun 14 2024, 6:56 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Viacheslav assigned T6484: Smoketest fails: fastnetmon killed due to OOM to MattK.
Jun 14 2024, 6:14 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
talmakion added a comment to T6430: Allow larger table ids in policy route.

While I think the mismatch between PBR-addressable RTs and VRF RTs is a bit odd, the PR's been rejected and could be addressed differently in any case. In the meantime, VRFs with RTs 100-200 are targetable by PBR.

Jun 14 2024, 4:38 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
MattK updated the task description for T6484: Smoketest fails: fastnetmon killed due to OOM.
Jun 14 2024, 2:49 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
MattK created T6484: Smoketest fails: fastnetmon killed due to OOM.
Jun 14 2024, 12:39 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Jun 13 2024

fernando added a comment to T6369: Cannot change BGP peer-group local-role.

here we can add some prevention to raise error, to avoid that someone uses in EBGP a profile to IBGP, because, the problem is under FRR which syntax brakes the frr-cli.

Jun 13 2024, 10:06 PM · VyOS 1.5 Circinus
vmakris added a comment to T6369: Cannot change BGP peer-group local-role.

You are correct, it was a misconfiguration, but there is no way to remove the error.
You need to remove the whole BGP in order to correct the mistake.
How did you manage to revert the error?

Jun 13 2024, 8:12 PM · VyOS 1.5 Circinus
c-po added a comment to T6407: ipsec profile generation error.

This is not the latest image. Please use 1.5-rolling-202406130020

Jun 13 2024, 7:14 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po closed T6473: bgp: missing completion helper for peer-groups inside a VRF as Resolved.
Jun 13 2024, 7:12 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6473: bgp: missing completion helper for peer-groups inside a VRF from In Progress to Finished on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 13 2024, 7:12 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a comment to T6481: Auto import Lets Encrypt root CA while using pki certificate acme.

There is no need for set pki letsencrypt or set pki acme as a PEM wil always be provided and we have a common PEM framework.

Jun 13 2024, 6:58 PM · VyOS Rolling, VyOS 1.5 Circinus
fernando closed T6369: Cannot change BGP peer-group local-role as Not Applicable.

I've tested it, the problem here is because you change a wrong local role , in your configuration is a rs-client ( IBGP relationship) but when you move to rs-server ( only works with EBGP , this attribute reflect EBGP routes to bgp router clients ) , so, that it's reason why you are not allowed to change :
VyOS :

vyos@vyos# run show configuration commands | match bgp
set protocols bgp neighbor 10.88.88.255 address-family ipv4-unicast
set protocols bgp neighbor 10.88.88.255 peer-group 'FAST'
set protocols bgp peer-group FAST capability dynamic
set protocols bgp peer-group FAST graceful-restart 'enable'
set protocols bgp peer-group FAST local-role rs-client
set protocols bgp peer-group FAST password 'F@st123!'
set protocols bgp peer-group FAST remote-as '211186'
set protocols bgp peer-group FAST update-source '10.88.88.2'
set protocols bgp system-as '211186'
[edit]
vyos@vyos# delete protocols bgp peer-group FAST local-role rs-client
[edit]
vyos@vyos# commit
[edit]
Jun 13 2024, 6:27 PM · VyOS 1.5 Circinus
syncer triaged T6476: add sonar workflow to vyos-1x current as Normal priority.
Jun 13 2024, 4:25 PM · GitHub Infrastructure
syncer assigned T6481: Auto import Lets Encrypt root CA while using pki certificate acme to c-po.
Jun 13 2024, 4:25 PM · VyOS Rolling, VyOS 1.5 Circinus
syncer triaged T6473: bgp: missing completion helper for peer-groups inside a VRF as Normal priority.
Jun 13 2024, 4:25 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
syncer triaged T6474: docker: Improve docker support for other platforms as Low priority.
Jun 13 2024, 4:24 PM · VyOS Rolling
zsdc closed T6405: Add disk_setup and mounts in vyos cloud-init config under cloud_init_modules as Wontfix.
Jun 13 2024, 4:23 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
natali-rs1985 changed the status of T5810: Add support for RPKI source IP from In progress to On hold.

Have to pospone it untill upgrade FRRouting to version 10.1

Jun 13 2024, 3:10 PM · VyOS 1.5 Circinus (2025.11)
GitHub <noreply@github.com> committed rVYOSONEX64d67529c341: Merge pull request #3643 from HollyGurza/T5725-equuleus (authored by dmbaturin).
Jun 13 2024, 2:58 PM
khramshinr <khramshinr@gmail.com> committed rVYOSONEXaec27085df23: T5725: Improve protocol IS-IS config validation.
Jun 13 2024, 2:58 PM
natali-rs1985 committed rVYOSONEX0f669a22615a: openvpn: T5487: Remove eprecated option --cipher for server and client mode.
Jun 13 2024, 2:56 PM
GitHub <noreply@github.com> committed rVYOSONEX1abf323d378b: Merge pull request #3639 from natali-rs1985/T5487-current (authored by dmbaturin).
Jun 13 2024, 2:56 PM
zsdc moved T6038: Losing default route after first reboot (cloud-init & DHCP) from In Progress to Finished on the VyOS 1.5 Circinus board.
Jun 13 2024, 2:52 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
zsdc closed T6038: Losing default route after first reboot (cloud-init & DHCP), a subtask of T5907: cloud-init root task for 1.5 and 1.4 , as Resolved.
Jun 13 2024, 2:52 PM · VyOS Rolling
zsdc closed T6038: Losing default route after first reboot (cloud-init & DHCP) as Resolved.
Jun 13 2024, 2:52 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Andrew Topp <andrewt@telekinetica.net> committed rVYOSONEXe74859243042: T6456: Convert "monitor traffic" to modern op-mode wrapper.
Jun 13 2024, 2:52 PM
GitHub <noreply@github.com> committed rVYOSONEXe1916a16627f: Merge pull request #3601 from talmakion/bugfix/T6456 (authored by dmbaturin).
Jun 13 2024, 2:52 PM
dmbaturin closed T5742: Define port-group as a oneliner instead of multiline as Wontfix.
Jun 13 2024, 2:50 PM · VyOS 1.5 Circinus
zsdc closed T5351: VyOS deployed with cloud-init improperly saves config.boot, a subtask of T5907: cloud-init root task for 1.5 and 1.4 , as Resolved.
Jun 13 2024, 2:48 PM · VyOS Rolling
zsdc closed T5351: VyOS deployed with cloud-init improperly saves config.boot as Resolved.

The only reason I see why this can happen is that the config.boot format can be unexpected. But this should not happen anymore, because now Cloud-init always runs migrations before doing any work, which should always add required metadata if the original file is a valid VyOS config.

Jun 13 2024, 2:48 PM · VyOS 1.4 Sagitta (1.4.0-GA)
GitHub <noreply@github.com> committed rVYOSONEXc4269a9ddb03: Merge pull request #3590 from talmakion/feature/T6045 (authored by dmbaturin).
Jun 13 2024, 2:39 PM
Andrew Topp <andrewt@telekinetica.net> committed rVYOSONEX83a51a045de5: T6045: Recreate show lldp detail views & improve remote port selection.
Jun 13 2024, 2:39 PM
zsdc added a comment to T6405: Add disk_setup and mounts in vyos cloud-init config under cloud_init_modules .

I tend to say that this is not necessary and very dangerous. These modules can easily destroy the VyOS filesystem when used improperly.

Jun 13 2024, 2:33 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
c-po changed the status of T861: add secure boot support, a subtask of T858: Full UEFI support, from Open to Confirmed.
Jun 13 2024, 2:33 PM · VyOS Rolling, VyOS 1.5 Circinus
c-po changed the status of T861: add secure boot support from Open to Confirmed.
Jun 13 2024, 2:33 PM · VyOS Rolling, VyOS 1.5 Circinus
L0crian placed T5931: Add option to append route-target when adding additional imports up for grabs.
Jun 13 2024, 1:29 PM · Bugs, VyOS Rolling, VyOS 1.5 Circinus
syncer triaged T6483: Please include corresponding source packages for all .deb packages in APT repo as Wishlist priority.
Jun 13 2024, 12:16 PM · VyOS 1.5 Circinus
Viacheslav renamed T6482: LLDP shows description instead of remote port from LLDP shows description instread of remote port to LLDP shows description instead of remote port.
Jun 13 2024, 12:08 PM · Bugs, VyOS Rolling
marekm created T6483: Please include corresponding source packages for all .deb packages in APT repo.
Jun 13 2024, 11:44 AM · VyOS 1.5 Circinus
talmakion added a comment to T6482: LLDP shows description instead of remote port.

I think this one would be fixed by my PR for https://vyos.dev/T6045

Jun 13 2024, 10:45 AM · Bugs, VyOS Rolling
Viacheslav triaged T6482: LLDP shows description instead of remote port as Low priority.
Jun 13 2024, 10:28 AM · Bugs, VyOS Rolling
Viacheslav created T6482: LLDP shows description instead of remote port.
Jun 13 2024, 10:28 AM · Bugs, VyOS Rolling
natali-rs1985 changed the status of T3202: Enable wireguard debug messages by default from Open to In progress.
Jun 13 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
natali-rs1985 changed the status of T6012: Ability to have IPv6 nexthops for IPv4 static routes from In progress to Open.
Jun 13 2024, 9:29 AM
natali-rs1985 changed the status of T6012: Ability to have IPv6 nexthops for IPv4 static routes from Open to In progress.
Jun 13 2024, 9:29 AM
natali-rs1985 committed rVYOSONEX6a00d7fcaab1: op_mode: T6227: Rewrite show conntrack-sync cache internal to use tabulate….
Jun 13 2024, 9:11 AM
GitHub <noreply@github.com> committed rVYOSONEX31f8e5ec6a75: Merge pull request #3644 from natali-rs1985/T6227-current (authored by c-po).
Jun 13 2024, 9:11 AM
GitHub <noreply@github.com> committed rVYOSONEX95b62fbc35b3: Merge pull request #3640 from vyos/mergify/bp/sagitta/pr-3638 (authored by c-po).
Jun 13 2024, 9:11 AM
talmakion added a comment to T6479: PBR into VXLAN VRF does not work, encapsulation loop .

@bernhardschmidt Are you able to share the relevant pieces of your VXLAN and VRF config as well?

Jun 13 2024, 8:32 AM · Bugs, VyOS Rolling
Apachez added a comment to T6481: Auto import Lets Encrypt root CA while using pki certificate acme.

Personally I thing there should be a difference between setting PKI manually like set pki certificate and set pki ca vs whatever the command is to utilize letsencrypt or acme or whatever they might be called automatically through VyOS (lets say set pki letsencrypt and set pki acme etc).

Jun 13 2024, 8:30 AM · VyOS Rolling, VyOS 1.5 Circinus
boevering created T6481: Auto import Lets Encrypt root CA while using pki certificate acme.
Jun 13 2024, 7:34 AM · VyOS Rolling, VyOS 1.5 Circinus
boevering created T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem.
Jun 13 2024, 7:31 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Viacheslav moved T6403: nat64 input validation required from Open to Finished on the VyOS 1.5 Circinus board.
Jun 13 2024, 6:57 AM · VyOS 1.5 Circinus
Viacheslav triaged T6478: Allow OpenVPN to reload clients' configs without service restart as Normal priority.
Jun 13 2024, 6:56 AM · VyOS Rolling
Viacheslav triaged T6479: PBR into VXLAN VRF does not work, encapsulation loop as Normal priority.
Jun 13 2024, 6:54 AM · Bugs, VyOS Rolling

Jun 12 2024

bernhardschmidt created T6479: PBR into VXLAN VRF does not work, encapsulation loop .
Jun 12 2024, 10:44 PM · Bugs, VyOS Rolling
fernando closed T5307: QoS - traffic-class-map services as Resolved.
Jun 12 2024, 8:36 PM · VyOS 1.5 Circinus
fernando added a comment to T5307: QoS - traffic-class-map services .

documentation : https://github.com/vyos/vyos-documentation/pull/1479

Jun 12 2024, 8:36 PM · VyOS 1.5 Circinus
zsdc created T6478: Allow OpenVPN to reload clients' configs without service restart.
Jun 12 2024, 7:51 PM · VyOS Rolling
Giggum added a comment to T5633: op-cmd: Interrupting the "tech-support report" command generates error.

Documenting what I've found regarding Bug #2:

Jun 12 2024, 7:51 PM · Bugs, VyOS 1.4 Sagitta (1.4.0), VyOS Rolling, Restricted Project, VyOS 1.5 Circinus
fatred awarded T6403: nat64 input validation required a Orange Medal token.
Jun 12 2024, 7:46 PM · VyOS 1.5 Circinus
fatred closed T6403: nat64 input validation required as Resolved.
Jun 12 2024, 7:46 PM · VyOS 1.5 Circinus
fatred added a comment to T6403: nat64 input validation required.

confirmed working

Jun 12 2024, 7:46 PM · VyOS 1.5 Circinus
fatred added a comment to T2769: Add VRF support for syslog.

please excuse the comment. i ended up on the wrong issue due to a fat finger

Jun 12 2024, 7:45 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
fatred awarded T2769: Add VRF support for syslog a Orange Medal token.
Jun 12 2024, 7:43 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
fatred added a comment to T2769: Add VRF support for syslog.
Jun 12 2024, 7:43 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po added projects to T5725: protocol IS-IS configuration is empty if a tunnel does not have remote address: VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus.
Jun 12 2024, 7:18 PM · VyOS 1.3 Equuleus (1.3.8)
GitHub <noreply@github.com> committed rVYOSONEXa01eaf1d59ad: Merge pull request #3642 from vyos/T6476-sonar-cloud-workflow (authored by c-po).
Jun 12 2024, 7:11 PM
lclements0 added a comment to T6470: Deleting a Firewall addrerss-group object that is tied to a NAT rule or other resources doesn't error out, it hangs..

Sure thing!

Jun 12 2024, 6:10 PM
nvollmar added a comment to T6477: Adding Loki plugin to Telegraf.

I would have put it on my list. @Fabse if you get stuck or need some support just slack me.

Jun 12 2024, 4:45 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
Fabse added a comment to T6477: Adding Loki plugin to Telegraf.

Sure @Viacheslav! I'll try to add the PR. Also thanks for the documentation @nvollmar :)

Jun 12 2024, 3:41 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
Viacheslav added a comment to T6477: Adding Loki plugin to Telegraf.

@nvollmar Do you want to claim the task?

Jun 12 2024, 3:39 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
nvollmar added a comment to T6477: Adding Loki plugin to Telegraf.

Relevant telegraf documentation: https://github.com/influxdata/telegraf/blob/release-1.31/plugins/outputs/loki/README.md

Jun 12 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
HollyGurza moved T5725: protocol IS-IS configuration is empty if a tunnel does not have remote address from Need Triage to In Progress on the VyOS 1.3 Equuleus (1.3.8) board.
Jun 12 2024, 2:03 PM · VyOS 1.3 Equuleus (1.3.8)
zsdc moved T6475: WALinuxAgent crashes in Azure from Open to In Progress on the VyOS 1.4 Sagitta board.
Jun 12 2024, 2:03 PM · VyOS 1.4 Sagitta (1.4.1), Bugs, VyOS 1.5 Circinus
HollyGurza changed the status of T5725: protocol IS-IS configuration is empty if a tunnel does not have remote address from Open to In progress.
Jun 12 2024, 2:03 PM · VyOS 1.3 Equuleus (1.3.8)
HollyGurza claimed T5725: protocol IS-IS configuration is empty if a tunnel does not have remote address.
Jun 12 2024, 2:02 PM · VyOS 1.3 Equuleus (1.3.8)
zsdc moved T6475: WALinuxAgent crashes in Azure from Open to In Progress on the VyOS 1.5 Circinus board.

PR for 1.5: https://github.com/vyos/vyos-build/pull/654

Jun 12 2024, 2:02 PM · VyOS 1.4 Sagitta (1.4.1), Bugs, VyOS 1.5 Circinus