Page MenuHomeVyOS Platform
Feed All Stories

Jun 19 2024

Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX53e628e9b2c9: macsec: T5447: fix error message syntax - there is no tx and rx key, only key (authored by c-po).
Jun 19 2024, 7:25 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8d913f29f52b: macsec: T5447: fix error message syntax - there is no tx and rx key, only key (authored by c-po).
Jun 19 2024, 7:25 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0ef709dc082c: macsec: T5447: fix error message syntax - there is no tx and rx key, only key (authored by c-po).
Jun 19 2024, 7:24 PM
c-po committed rVYOSONEXf29caa824c02: macsec: T5447: fix error message syntax - there is no tx and rx key, only key.
Jun 19 2024, 7:24 PM
GitHub <noreply@github.com> committed rVYOSONEX608ee44be6c6: Merge pull request #3685 from c-po/macsec-error-message (authored by c-po).
Jun 19 2024, 7:24 PM
n.fort added a comment to T6503: Command 'restart ssh' not working.

Command to restart when ssh running on default vrf:

Jun 19 2024, 6:32 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort changed the status of T6503: Command 'restart ssh' not working from Open to Confirmed.
Jun 19 2024, 6:17 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort created T6503: Command 'restart ssh' not working.
Jun 19 2024, 6:16 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
fmertz added a comment to T6458: Extend support for Lanner appliances with serial LCDs.

Tentative first-shot code change here:

Jun 19 2024, 6:10 PM · VyOS Rolling
Viacheslav closed T6502: Load balancer reverse proxy does not allow forwarding SSH port as Invalid.

Works fine:

set load-balancing reverse-proxy backend bk01 server srv01 address '192.168.122.16'
set load-balancing reverse-proxy backend bk01 server srv01 port '22'
set load-balancing reverse-proxy service ssh backend 'bk01'
set load-balancing reverse-proxy service ssh mode 'tcp'
set load-balancing reverse-proxy service ssh port '22'
set service ssh disable-host-validation
set service ssh port '2222'
Jun 19 2024, 2:18 PM · VyOS 1.5 Circinus
c-po moved T6500: openconnect: add support for new multi ca-certificate CLI node from Open to Finished on the VyOS 1.5 Circinus board.
Jun 19 2024, 1:52 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po changed the status of T6500: openconnect: add support for new multi ca-certificate CLI node from Open to In progress.
Jun 19 2024, 1:52 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po added a comment to T6500: openconnect: add support for new multi ca-certificate CLI node.

https://github.com/vyos/vyos-1x/pull/3682

Jun 19 2024, 1:52 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
part1cleth1ef added a comment to T1005: Support for multiple SSID in station mode , WPA-EAP.

The WPA-EAP for wireless station mode is feature is implemented in T6496.

Jun 19 2024, 1:20 PM · VyOS Rolling
a.apostoliuk added a comment to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down.

After deep testing, we saw that if we reset the peer on the initiator side, strongswan does not reinitiate the connection by itself.
Need to add a connection initiation in the reset function on the initiator side.

Jun 19 2024, 12:21 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort added a comment to T6488: Firewall op mode output incomplete.

PR: https://github.com/vyos/vyos-1x/pull/3681

Jun 19 2024, 12:19 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
a.apostoliuk changed the status of T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down from Open to In progress.
Jun 19 2024, 12:18 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk edited projects for T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta.
Jun 19 2024, 12:18 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk moved T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down from In Progress to Open on the VyOS 1.4 Sagitta board.
Jun 19 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk added a project to T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down: VyOS 1.5 Circinus.
Jun 19 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk moved T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down from Finished to In Progress on the VyOS 1.4 Sagitta board.
Jun 19 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
a.apostoliuk reopened T6148: Reset vpn ipsec command breaks tunnel and does not reset SAs that are down as "Open".
Jun 19 2024, 12:10 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort changed the status of T6488: Firewall op mode output incomplete from Confirmed to In progress.
Jun 19 2024, 12:08 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T6502: Load balancer reverse proxy does not allow forwarding SSH port as Normal priority.
Jun 19 2024, 11:38 AM · VyOS 1.5 Circinus
Viacheslav closed T6497: CGNAT conntrack connections should be deleted if address or port range is changed, a subtask of T5169: Add CGNAT Carrier-Grade NAT based on nftables, as Resolved.
Jun 19 2024, 11:33 AM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav closed T6497: CGNAT conntrack connections should be deleted if address or port range is changed as Resolved.
Jun 19 2024, 11:33 AM · VyOS 1.5 Circinus
pr0ton11 created T6502: Load balancer reverse proxy does not allow forwarding SSH port.
Jun 19 2024, 11:22 AM · VyOS 1.5 Circinus
Viacheslav committed rVYOSONEX93cac8a6fdc0: T6497: CGNAT delete conntrack entries if a pool is modified.
Jun 19 2024, 11:15 AM
GitHub <noreply@github.com> committed rVYOSONEX47634378a00c: Merge pull request #3680 from sever-sever/T6497 (authored by c-po).
Jun 19 2024, 11:15 AM
dmbaturin created T6501: Add an op mode command for retrieving kernel module information.
Jun 19 2024, 10:59 AM · VyOS Rolling
natali-rs1985 changed the status of T5710: PPPoE-server add option permit any-login from Open to In progress.
Jun 19 2024, 9:43 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q4), VyOS Rolling, Restricted Project
Viacheslav changed the status of T6497: CGNAT conntrack connections should be deleted if address or port range is changed, a subtask of T5169: Add CGNAT Carrier-Grade NAT based on nftables, from Open to In progress.
Jun 19 2024, 9:42 AM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav changed the status of T6497: CGNAT conntrack connections should be deleted if address or port range is changed from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/3680

Jun 19 2024, 9:42 AM · VyOS 1.5 Circinus
c-po changed the status of T6489: Add/Improve support for CLI config scripts that change the underlying actual configuration and make them work with vyos-configd from In progress to Needs testing.
Jun 19 2024, 7:26 AM · VyOS 1.5 Circinus (2025.11), VyOS 1.4 Sagitta (1.4.4)
natali-rs1985 claimed T5710: PPPoE-server add option permit any-login.
Jun 19 2024, 7:03 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q4), VyOS Rolling, Restricted Project
Viacheslav triaged T6500: openconnect: add support for new multi ca-certificate CLI node as Normal priority.
Jun 19 2024, 3:24 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Jun 18 2024

syncer updated subscribers of T2326: Migrate NHRP(DMVPN) to FRR.

@zsdc @fernando @a.apostoliuk we need retest this

Jun 18 2024, 10:07 PM · VyOS 1.5 Circinus
syncer changed the status of T2326: Migrate NHRP(DMVPN) to FRR from In progress to Needs testing.
Jun 18 2024, 10:06 PM · VyOS 1.5 Circinus
syncer closed T5847: Protocol failover stopped working after suspend + resume as Wontfix.

Suspend/Resume is not supported operation

Jun 18 2024, 10:04 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

Note for myself:

Jun 18 2024, 9:45 PM · VyOS 1.4 Sagitta (1.4.0-GA)
c-po claimed T6500: openconnect: add support for new multi ca-certificate CLI node.
Jun 18 2024, 9:34 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po created T6500: openconnect: add support for new multi ca-certificate CLI node.
Jun 18 2024, 9:31 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

Logs from VM:

Jun 18 2024, 9:12 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

I've modified the protocol ospf settings to check if it will affect static routing or not.
The static routing are not affected (still no route to 0.0.0.0/0):

Jun 18 2024, 9:05 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Harliff added a comment to T5847: Protocol failover stopped working after suspend + resume.

Hi!
Recently I've note that this bug is not affects only protocol failover, but also protocol static routers.

Jun 18 2024, 8:56 PM · VyOS 1.4 Sagitta (1.4.0-GA)
dmbaturin created T6498: Add an option to get tech support reports in a machine-readable format.
Jun 18 2024, 5:36 PM · VyOS Rolling
natali-rs1985 committed rVYOSONEXc18b30dab33f: T6492: Check if all migrators have the executable bit set.
Jun 18 2024, 3:47 PM
GitHub <noreply@github.com> committed rVYOSONEXda5d29aa8366: Merge pull request #3678 from natali-rs1985/T6492-current (authored by c-po).
Jun 18 2024, 3:47 PM
c-po moved T6425: WiFi: Beamformer support for 802.11ac (VHT at 5GHz) is broken from Open to Finished on the VyOS 1.5 Circinus board.
Jun 18 2024, 3:04 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po edited projects for T6425: WiFi: Beamformer support for 802.11ac (VHT at 5GHz) is broken, added: VyOS 1.4 Sagitta (1.4.1); removed VyOS 1.4 Sagitta (1.4.0-GA).
Jun 18 2024, 3:03 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po committed rVYOSONEX578fbe0eb436: wireless: T6425: Add smoketests for VHT beamforming (authored by alainlamar).
Jun 18 2024, 3:03 PM
c-po committed rVYOSONEXf75f0f9c9447: wireless: T6425: Fix broken VHT beamforming (authored by alainlamar).
Jun 18 2024, 3:03 PM
GitHub <noreply@github.com> committed rVYOSONEX7de082dd3b53: Merge pull request #3576 from alainlamar/T6425 (authored by c-po).
Jun 18 2024, 3:03 PM
c-po committed rVYOSONEX312273c9569d: wireless: T6425: adjust to latest country-code changes.
Jun 18 2024, 3:03 PM
volodymyr.huti added a comment to T2326: Migrate NHRP(DMVPN) to FRR.

Thanks to dleroy@labn.net, who has finished my PR, the Nhrp Cisco auth was merged today.
https://github.com/FRRouting/frr/pull/16172

Jun 18 2024, 2:32 PM · VyOS 1.5 Circinus
talmakion added a comment to T5069: BGP large-community-list regex validation is incomplete.

Looking at it, T5816 already attempted to fix this and is probably better for users - doesn't give the full flexibility of regex and doesn't handle '_' at all, but does have a strict format expectation.

Jun 18 2024, 2:29 PM · VyOS 1.4 Sagitta (1.4.4), VyOS 1.5 Circinus (2025.11)
talmakion added a comment to T5069: BGP large-community-list regex validation is incomplete.

Looking at the code in FRR, it just expands '_' to the full match '(^|[,{}()]|$)' and sends that whole match off to regexec().

Jun 18 2024, 2:13 PM · VyOS 1.4 Sagitta (1.4.4), VyOS 1.5 Circinus (2025.11)
talmakion closed T6456: "monitor traffic" incorrectly consumes some arguments as Resolved.
Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6456: "monitor traffic" incorrectly consumes some arguments.

All working nicely in current rolling.

Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6045: show more detail when using lldp.

@Thunderstorm looks like this one made it to the current rolling, if you're able to try it out?

Jun 18 2024, 10:39 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, VyOS Rolling
Viacheslav added a subtask for T5169: Add CGNAT Carrier-Grade NAT based on nftables: T6497: CGNAT conntrack connections should be deleted if address or port range is changed.
Jun 18 2024, 8:53 AM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav added a parent task for T6497: CGNAT conntrack connections should be deleted if address or port range is changed: T5169: Add CGNAT Carrier-Grade NAT based on nftables.
Jun 18 2024, 8:53 AM · VyOS 1.5 Circinus
Viacheslav triaged T6497: CGNAT conntrack connections should be deleted if address or port range is changed as Wishlist priority.
Jun 18 2024, 8:17 AM · VyOS 1.5 Circinus
Viacheslav created T6497: CGNAT conntrack connections should be deleted if address or port range is changed.
Jun 18 2024, 8:17 AM · VyOS 1.5 Circinus
HollyGurza moved T5949: Disable USB autosuspend from Open to In Progress on the VyOS 1.5 Circinus board.
Jun 18 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza changed the status of T5949: Disable USB autosuspend from Open to In progress.
Jun 18 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza claimed T5949: Disable USB autosuspend.
Jun 18 2024, 7:25 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
HollyGurza added a comment to T5949: Disable USB autosuspend.

https://github.com/vyos/vyos-1x/pull/3677

Jun 18 2024, 7:25 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus

Jun 17 2024

GitHub <noreply@github.com> committed rVYOSONEX9ec0d19e472c: Merge pull request #3676 from vyos/mergify/bp/sagitta-stream/pr-3645 (authored by c-po).
Jun 17 2024, 7:09 PM
part1cleth1ef added a comment to T6496: Add support for WPA-Enterprise client-mode.

https://github.com/part1cleth1ef/vyos-1x

Jun 17 2024, 6:01 PM · VyOS 1.5 Circinus
part1cleth1ef created T6496: Add support for WPA-Enterprise client-mode.
Jun 17 2024, 6:00 PM · VyOS 1.5 Circinus
c-po committed rVYOSONEXf0923acffbef: T6489: add vyos_configdir to the dictionary of default directories.
Jun 17 2024, 6:00 PM
c-po committed rVYOSONEXda29c9b3ab7b: login: T6489: add smarter way to interact with the working config instead of….
Jun 17 2024, 6:00 PM
c-po committed rVYOSONEXd7a18a3da949: T6489: add abstraction vyos.utils.configfs to work natively with the config….
Jun 17 2024, 6:00 PM
c-po committed rVYOSONEXe1a34e661d3e: T6489: add abstraction vyos.utils.auth.get_current_user().
Jun 17 2024, 6:00 PM
GitHub <noreply@github.com> committed rVYOSONEX14dd6e5deeb7: Merge pull request #3652 from c-po/T6489-unionfs (authored by c-po).
Jun 17 2024, 6:00 PM
c-po added a comment to T6489: Add/Improve support for CLI config scripts that change the underlying actual configuration and make them work with vyos-configd.

https://github.com/vyos/vyos-1x/pull/3652

Jun 17 2024, 5:58 PM · VyOS 1.5 Circinus (2025.11), VyOS 1.4 Sagitta (1.4.4)
GitHub <noreply@github.com> committed rVYOSONEX985af718bf2c: Merge pull request #3674 from sever-sever/T6415-sag-stm (authored by c-po).
Jun 17 2024, 5:51 PM
Viacheslav committed rVYOSONEX2bb4b06e60ad: T6415: Add action repo-sync for sagitta-stream.
Jun 17 2024, 5:51 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8d3f5d1c69c9: op-mode: T6480: must call pki.py helper as root to work with ACME certificates (authored by c-po).
Jun 17 2024, 5:50 PM
c-po closed T6407: ipsec profile generation error as Resolved.
Jun 17 2024, 5:48 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
c-po closed T6318: vyos-1x: WiFi Regulatory Domain should be set system-wide instead of per-device as Resolved.
Jun 17 2024, 5:48 PM · VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEX4654c35ab445: Merge pull request #3675 from vyos/T6318-wireless-config-tests (authored by c-po).
Jun 17 2024, 5:47 PM
GitHub <noreply@github.com> committed rVYOSONEX23fc0a7a4dee: wireless: T6318: add quotes for console speed in config-tests (authored by c-po).
Jun 17 2024, 5:44 PM
GitHub <noreply@github.com> committed rVYOSONEX74bbcce9b2d2: pki: T6241: remove debug print statement about updated subsystems (#3671) (authored by mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>).
Jun 17 2024, 4:40 PM
GitHub <noreply@github.com> committed rVYOSONEXe0850e5715c4: pki: T6241: remove debug print statement about updated subsystems (#3672) (authored by mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>).
Jun 17 2024, 4:40 PM
GitHub <noreply@github.com> committed rVYOSONEX65772840d16c: pki: T4026: Only emit private keys when available (#3668) (authored by mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>).
Jun 17 2024, 4:27 PM
GitHub <noreply@github.com> committed rVYOSONEXc7313efaf12d: pki: T4026: Only emit private keys when available (#3669) (authored by mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>).
Jun 17 2024, 4:25 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX941e866d359a: pki: T6241: remove debug print statement about updated subsystems (authored by c-po).
Jun 17 2024, 4:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX57ff8481539e: pki: T6241: remove debug print statement about updated subsystems (authored by c-po).
Jun 17 2024, 4:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXe89fe645d550: pki: T6241: remove debug print statement about updated subsystems (authored by c-po).
Jun 17 2024, 4:07 PM
c-po committed rVYOSONEXa4d49a96918c: pki: T6241: remove debug print statement about updated subsystems.
Jun 17 2024, 4:06 PM
GitHub <noreply@github.com> committed rVYOSONEX13c786ca6a4f: Merge pull request #3657 from c-po/pki-T6241-no-debug (authored by c-po).
Jun 17 2024, 4:06 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXb1fead2cedd8: pki: T4026: Only emit private keys when available (authored by Andrew Topp <andrewt@telekinetica.net>).
Jun 17 2024, 3:39 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX9da8c6ce8175: pki: T4026: Only emit private keys when available (authored by Andrew Topp <andrewt@telekinetica.net>).
Jun 17 2024, 3:38 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX7e4f4fd863f0: pki: T4026: Only emit private keys when available (authored by Andrew Topp <andrewt@telekinetica.net>).
Jun 17 2024, 3:38 PM
GitHub <noreply@github.com> committed rVYOSONEX290b51bf7edf: Merge pull request #3655 from talmakion/bugfix/T4026 (authored by dmbaturin).
Jun 17 2024, 3:37 PM
Andrew Topp <andrewt@telekinetica.net> committed rVYOSONEXd2cf8eeee905: pki: T4026: Only emit private keys when available.
Jun 17 2024, 3:37 PM
c-po committed rVYOSONEX9e22ab6b2aee: wireless: T6318: move country-code to a system wide configuration.
Jun 17 2024, 3:32 PM
GitHub <noreply@github.com> committed rVYOSONEX444728ba6256: Merge pull request #3656 from c-po/wireless-regdomain (authored by dmbaturin).
Jun 17 2024, 3:32 PM