Page MenuHomeVyOS Platform
Feed All Stories

Jun 18 2024

c-po claimed T6500: openconnect: add support for new multi ca-certificate CLI node.
Jun 18 2024, 9:34 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po created T6500: openconnect: add support for new multi ca-certificate CLI node.
Jun 18 2024, 9:31 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

Logs from VM:

Jun 18 2024, 9:12 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

I've modified the protocol ospf settings to check if it will affect static routing or not.
The static routing are not affected (still no route to 0.0.0.0/0):

Jun 18 2024, 9:05 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

Hi!
Recently I've note that this bug is not affects only protocol failover, but also protocol static routers.

Jun 18 2024, 8:56 PM · VyOS 1.4 Sagitta (1.4.0-GA)
dmbaturin created T6498: Add an option to get tech support reports in a machine-readable format.
Jun 18 2024, 5:36 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
c-po moved T6425: WiFi: Beamformer support for 802.11ac (VHT at 5GHz) is broken from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 18 2024, 3:04 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po edited projects for T6425: WiFi: Beamformer support for 802.11ac (VHT at 5GHz) is broken, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta (1.4.0-GA).
Jun 18 2024, 3:03 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
volodymyr.huti added a comment to T2326: Migrate NHRP(DMVPN) to FRR.

Thanks to [email protected], who has finished my PR, the Nhrp Cisco auth was merged today.
https://github.com/FRRouting/frr/pull/16172

Jun 18 2024, 2:32 PM · VyOS 1.5 Circinus
talmakion added a comment to T5069: bgp large-community-list regex validation incomplete.

Looking at it, T5816 already attempted to fix this and is probably better for users - doesn't give the full flexibility of regex and doesn't handle '_' at all, but does have a strict format expectation.

Jun 18 2024, 2:29 PM · Restricted Project, VyOS 1.5 Circinus
talmakion added a comment to T5069: bgp large-community-list regex validation incomplete.

Looking at the code in FRR, it just expands '_' to the full match '(^|[,{}()]|$)' and sends that whole match off to regexec().

Jun 18 2024, 2:13 PM · Restricted Project, VyOS 1.5 Circinus
talmakion closed T6456: "monitor traffic" incorrectly consumes some arguments as Resolved.
Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6456: "monitor traffic" incorrectly consumes some arguments.

All working nicely in current rolling.

Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6045: show more detail when using lldp.

@Thunderstorm looks like this one made it to the current rolling, if you're able to try it out?

Jun 18 2024, 10:39 AM · VyOS 1.5 Circinus
Viacheslav added a subtask for T5169: Add CGNAT Carrier-Grade NAT based on nftables: T6497: CGNAT conntrack connections should be deleted if address or port range is changed.
Jun 18 2024, 8:53 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav added a parent task for T6497: CGNAT conntrack connections should be deleted if address or port range is changed: T5169: Add CGNAT Carrier-Grade NAT based on nftables.
Jun 18 2024, 8:53 AM · VyOS 1.5 Circinus
Viacheslav triaged T6497: CGNAT conntrack connections should be deleted if address or port range is changed as Wishlist priority.
Jun 18 2024, 8:17 AM · VyOS 1.5 Circinus
Viacheslav created T6497: CGNAT conntrack connections should be deleted if address or port range is changed.
Jun 18 2024, 8:17 AM · VyOS 1.5 Circinus
HollyGurza moved T5949: Disable USB autosuspend from Need Triage to In Progress on the VyOS 1.5 Circinus board.
Jun 18 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza changed the status of T5949: Disable USB autosuspend from Open to In progress.
Jun 18 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza claimed T5949: Disable USB autosuspend.
Jun 18 2024, 7:25 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza added a comment to T5949: Disable USB autosuspend.

https://github.com/vyos/vyos-1x/pull/3677

Jun 18 2024, 7:25 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Jun 17 2024

part1cleth1ef added a comment to T6496: Add support for WPA-Enterprise client-mode.

https://github.com/part1cleth1ef/vyos-1x

Jun 17 2024, 6:01 PM · VyOS 1.5 Circinus
part1cleth1ef created T6496: Add support for WPA-Enterprise client-mode.
Jun 17 2024, 6:00 PM · VyOS 1.5 Circinus
c-po added a comment to T6489: Add/Improve support for CLI config scripts that change the underlayin actual configuration and make them work with vyos-configd.

https://github.com/vyos/vyos-1x/pull/3652

Jun 17 2024, 5:58 PM · VyOS 1.5 Circinus
c-po closed T6407: Generate ipsec profile error as Resolved.
Jun 17 2024, 5:48 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
c-po closed T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device as Resolved.
Jun 17 2024, 5:48 PM · VyOS 1.5 Circinus
pavel-altair added a comment to T6407: Generate ipsec profile error.

all work!
Thank you

Jun 17 2024, 2:58 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
natali-rs1985 changed the status of T6492: Check if all migrators have the executable bit set from Open to In progress.
Jun 17 2024, 7:25 AM · Restricted Project, VyOS 1.5 Circinus
c-po changed the status of T6407: Generate ipsec profile error from Open to Needs testing.
Jun 17 2024, 6:45 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
c-po added a comment to T6407: Generate ipsec profile error.

@pavel-altair can you please re-test with VyOS 1.5-rolling-202406170021

Jun 17 2024, 6:45 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

Jun 16 2024

Vijayakumar renamed T6487: update central workflow usage branch to current (update vyos-1x) from update central workflow usage branch to current to update central workflow usage branch to current (update vyos-1x).
Jun 16 2024, 7:12 PM · GitHub Infrastructure
Vijayakumar closed T6449: PR title/commit message check workfow to add comment to PR incase of title is not compliant, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 16 2024, 7:05 PM · GitHub Infrastructure
Vijayakumar closed T6449: PR title/commit message check workfow to add comment to PR incase of title is not compliant as Resolved.
Jun 16 2024, 7:05 PM · GitHub Infrastructure
Vijayakumar closed T6491: codeql workflow update py version, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 16 2024, 7:05 PM · GitHub Infrastructure
Vijayakumar closed T6491: codeql workflow update py version as Resolved.
Jun 16 2024, 7:05 PM · GitHub Infrastructure
Vijayakumar closed T6487: update central workflow usage branch to current (update vyos-1x), a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 16 2024, 6:58 PM · GitHub Infrastructure
Vijayakumar closed T6487: update central workflow usage branch to current (update vyos-1x) as Resolved.
Jun 16 2024, 6:58 PM · GitHub Infrastructure
syncer changed the status of T6494: Add branches of vyos-1x project from Open to In progress.
Jun 16 2024, 6:34 PM · Restricted Project, VyOS 1.5 Circinus
syncer changed the status of T6494: Add branches of vyos-1x project, a subtask of T6493: GitHub integration with SonarCloud root task, from Open to In progress.
Jun 16 2024, 6:34 PM · Restricted Project, VyOS 1.5 Circinus
syncer triaged T6495: vyos-1x: replicate worflows to all stream branches from current as Normal priority.
Jun 16 2024, 5:14 PM · GitHub Infrastructure
syncer assigned T6495: vyos-1x: replicate worflows to all stream branches from current to Vijayakumar.
Jun 16 2024, 5:14 PM · GitHub Infrastructure
syncer created T6495: vyos-1x: replicate worflows to all stream branches from current.
Jun 16 2024, 5:14 PM · GitHub Infrastructure
giuavo awarded T5647: Extend failover route functionality to use dynamically assigned interface next hops a Like token.
Jun 16 2024, 5:06 PM · VyOS 1.5 Circinus
syncer created T6494: Add branches of vyos-1x project.
Jun 16 2024, 3:25 PM · Restricted Project, VyOS 1.5 Circinus
syncer updated the task description for T6493: GitHub integration with SonarCloud root task.
Jun 16 2024, 3:23 PM · Restricted Project, VyOS 1.5 Circinus
syncer created T6493: GitHub integration with SonarCloud root task.
Jun 16 2024, 3:22 PM · Restricted Project, VyOS 1.5 Circinus
syncer renamed T6309: Check code quality with CodeQL from Git integration CodeQL root task to GitHub integration CodeQL root task.
Jun 16 2024, 3:22 PM · GitHub Infrastructure
syncer lowered the priority of T3410: Unsafe processing of special characters in CLI autocomplete from Urgent! to Normal.
Jun 16 2024, 2:53 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-GA)
syncer changed the status of T6491: codeql workflow update py version from Open to In progress.
Jun 16 2024, 2:51 PM · GitHub Infrastructure
syncer changed the status of T6491: codeql workflow update py version, a subtask of T6309: Check code quality with CodeQL, from Open to In progress.
Jun 16 2024, 2:51 PM · GitHub Infrastructure
syncer triaged T6492: Check if all migrators have the executable bit set as Normal priority.
Jun 16 2024, 2:50 PM · Restricted Project, VyOS 1.5 Circinus
syncer changed the status of T4667: DMVPN IPSec allows cleartext GRE over the internet when reconnecting from Open to In progress.
Jun 16 2024, 2:50 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer changed the status of T4694: Allow VyOS Firewall to Match Outbound IPSec Traffic from Open to In progress.
Jun 16 2024, 2:49 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
syncer assigned T4667: DMVPN IPSec allows cleartext GRE over the internet when reconnecting to talmakion.
Jun 16 2024, 2:49 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer set Forum thread to https://forum.vyos.io/t/outbound-ipsec-filtering-by-firewall-would-like-some-dev-opinions/14710 on T4667: DMVPN IPSec allows cleartext GRE over the internet when reconnecting.
Jun 16 2024, 2:48 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer set Forum thread to https://forum.vyos.io/t/outbound-ipsec-filtering-by-firewall-would-like-some-dev-opinions/14710 on T4694: Allow VyOS Firewall to Match Outbound IPSec Traffic.
Jun 16 2024, 2:48 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
natali-rs1985 created T6492: Check if all migrators have the executable bit set.
Jun 16 2024, 12:23 PM · Restricted Project, VyOS 1.5 Circinus
Vijayakumar created T6491: codeql workflow update py version.
Jun 16 2024, 10:39 AM · GitHub Infrastructure
Alfa80 created T6490: Allow creation of wireguard interfaces without requiring peers.
Jun 16 2024, 7:01 AM · VyOS 1.5 Circinus

Jun 15 2024

syncer assigned T694: netboot PXE/gPXE/iPXE support to zsdc.

@zsdc if that completed, please close this task

Jun 15 2024, 9:20 PM · Restricted Project, VyOS 1.5 Circinus
syncer assigned T3204: Performance system option destroy defined sysctl custom params to c-po.

@c-po, can you see if it's still actual, and if not, close it
Thanks!

Jun 15 2024, 9:19 PM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
syncer triaged T6487: update central workflow usage branch to current (update vyos-1x) as Normal priority.
Jun 15 2024, 9:18 PM · GitHub Infrastructure
syncer reassigned T1125: GPG signature warning, default 'no' still goes ahead and starts installing from kroy to dmbaturin.

@dmbaturin can you take a look and close if it's obsolete?

Jun 15 2024, 9:17 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.8), Restricted Project, test
syncer changed the status of T4462: FRR operational-data pagination from Open to On hold.
Jun 15 2024, 9:00 PM · VyOS 1.5 Circinus
marc_s added a comment to T5647: Extend failover route functionality to use dynamically assigned interface next hops.

Forum thread with a nice workaround by giuppo77: https://forum.vyos.io/t/wan-failover-with-dhcp/
Not a generic solution but maybe an inspiration for implementation.

Jun 15 2024, 8:49 PM · VyOS 1.5 Circinus
marc_s added a comment to T5942: Failover Route using DHCP provided gateway.

Forum thread with a nice workaround by giuppo77: https://forum.vyos.io/t/wan-failover-with-dhcp/
Not a generic solution but maybe an inspiration for implementation.

Jun 15 2024, 8:49 PM · VyOS 1.5 Circinus
marc_s awarded T5647: Extend failover route functionality to use dynamically assigned interface next hops a Like token.
Jun 15 2024, 8:44 PM · VyOS 1.5 Circinus
c-po moved T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device from Need Triage to In Progress on the VyOS 1.5 Circinus board.
Jun 15 2024, 7:49 PM · VyOS 1.5 Circinus
c-po changed the status of T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device from Open to In progress.
Jun 15 2024, 7:49 PM · VyOS 1.5 Circinus
c-po added a comment to T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device.

https://github.com/vyos/vyos-1x/pull/3656

Jun 15 2024, 7:45 PM · VyOS 1.5 Circinus
syncer closed T5593: Further shrink VyOS imagesize as Resolved.

Closing this. Further shrinking is not priority now
we can comeback to this later if there will be proper business case

Jun 15 2024, 7:05 PM · VyOS 2.0.x
syncer changed the status of T461: Central user/key management through JumpCloud from Open to On hold.
Jun 15 2024, 6:38 PM · Restricted Project, VyOS 1.5 Circinus
syncer changed the status of T5494: Add SSSD IPA and Kerberos support from Needs reporter action to On hold.
Jun 15 2024, 6:37 PM · VyOS 1.5 Circinus
c-po added a project to T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device: VyOS 1.5 Circinus.
Jun 15 2024, 6:27 PM · VyOS 1.5 Circinus
talmakion added a comment to T4026: PKI: generate pki certificate sign <ca-name> is not working.

I've created a PR for this: https://github.com/vyos/vyos-1x/pull/3655

Jun 15 2024, 4:31 PM · VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T5514: Improve error handling when/if config.boot is deleted or missing .

I've created a PR with a very simple fix: https://github.com/vyos/vyos-1x/pull/3654

Jun 15 2024, 3:39 PM · VyOS 1.4 Sagitta (1.4.1)
c-po changed the status of T6489: Add/Improve support for CLI config scripts that change the underlayin actual configuration and make them work with vyos-configd from Open to In progress.
Jun 15 2024, 6:01 AM · VyOS 1.5 Circinus
c-po created T6489: Add/Improve support for CLI config scripts that change the underlayin actual configuration and make them work with vyos-configd.
Jun 15 2024, 6:01 AM · VyOS 1.5 Circinus
c-po moved T6484: Smoketest fails: fastnetmon killed due to OOM from Finished to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 15 2024, 5:56 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem from In Progress to Finished on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 15 2024, 5:56 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6484: Smoketest fails: fastnetmon killed due to OOM from In Progress to Finished on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 15 2024, 5:56 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Jun 14 2024

anlancs added a comment to T915: MPLS Support.
One thing I did notice that did not work (and I think this would more or less be due to other options that can be enabled that FRR currently doesn't have yet) was that LSP pings from the Junipers directly connected to the Vyos VM failed but that's due to a specific corner case. FRR currently doesn't support explicit null in LDP, and Vyos doesn't have it implemented. However that shouldn't cause a problem in the current role that Vyos has. As an MPLS P Vyos works absolutely how it needs to. This seems to have a fix in FRR 7.4 as well per note "Ingress packets coming through broken LSP are no longer dropped." 

I would say that for what it's worth....I think we're good here. I think that the new additions are working as expected. So I am unsure if the ordered label allocation will be added later when things are moved to FRR 7.4, or if you'll put in that now @Viacheslav. But for what it is, MPLS support with LDP is verifiably working as it should be per the implementation in FRR 7.3.1. Thank you sir :)
Jun 14 2024, 11:20 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
n.fort changed the status of T6488: Firewall op mode output incomplete from Open to Confirmed.
Jun 14 2024, 7:08 PM · VyOS 1.5 Circinus
n.fort created T6488: Firewall op mode output incomplete.
Jun 14 2024, 7:08 PM · VyOS 1.5 Circinus
n.fort closed T6394: Migrate conntrack timeout sysctl parameter to firewall as Resolved.
Jun 14 2024, 7:04 PM · VyOS 1.5 Circinus
n.fort closed T3900: Add support for raw tables to firewall as Resolved.
Jun 14 2024, 7:04 PM · VyOS 1.5 Circinus
Apachez added a comment to T6475: WALinuxAgent crashes in Azure.

I sure hope this custom waagent build will be removed once the upstream (debian packages) have been updated with this fix.

Jun 14 2024, 5:40 PM · Restricted Project, VyOS 1.4 Sagitta, VyOS 1.5 Circinus
syncer added a comment to T6450: Use http instead of https for rolling apt repo access.

You are right @blueish, better to spend time on something more meaningful

Jun 14 2024, 12:39 PM
blueish added a comment to T6450: Use http instead of https for rolling apt repo access.

@syncer I could try. I'm just not sure what the motivation/use-case would be? I can think only of very specific cases where someone would want to do mirror thus I'm not sure if it justifies the existence in the docs. Someone may want to have local mirror if they do a lot of reruns of the image build process but that's seems like very much edge-case.

Jun 14 2024, 12:34 PM
c-po moved T6480: PermissionError: [Errno 13] Permission denied: '/config/auth/letsencrypt/live/..../cert.pem from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 14 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6484: Smoketest fails: fastnetmon killed due to OOM from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.1) board.
Jun 14 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po moved T6484: Smoketest fails: fastnetmon killed due to OOM from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 14 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po changed the status of T6484: Smoketest fails: fastnetmon killed due to OOM from Open to In progress.
Jun 14 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Vijayakumar created T6487: update central workflow usage branch to current (update vyos-1x).
Jun 14 2024, 11:43 AM · GitHub Infrastructure
Vijayakumar closed T6476: add sonar workflow to vyos-1x current, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6476: add sonar workflow to vyos-1x current as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6469: Remove J2Lint workflow from vyos-1x as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Vijayakumar closed T6469: Remove J2Lint workflow from vyos-1x, a subtask of T6309: Check code quality with CodeQL, as Resolved.
Jun 14 2024, 11:42 AM · GitHub Infrastructure
Viacheslav triaged T6486: Generate openvpn client-config ignores configured protocol type as Normal priority.
Jun 14 2024, 11:31 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, Restricted Project