Page MenuHomeVyOS Platform
Feed Advanced Search

Dec 6 2021

Unknown Object (User) added a comment to T4033: VRRP - Error security when setting scripts.

PR:
https://github.com/vyos/vyos-1x/pull/1098

Dec 6 2021, 11:54 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Nov 25 2021

Unknown Object (User) closed T4005: Feature Request: IPsec IKEv1 + IKEv2 for one peer as Resolved.
Nov 25 2021, 2:58 AM · VyOS 1.3 Equuleus (1.3.0-epa3)

Nov 20 2021

Unknown Object (User) closed T4004: IPsec ike-group parameters are not saved correctly (after reboot) as Resolved.
Nov 20 2021, 9:39 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) added a comment to T4004: IPsec ike-group parameters are not saved correctly (after reboot).

A feature request was made with a change in behavior:
https://phabricator.vyos.net/T4005
(Feature Request: IPsec IKEv1 + IKEv2 for one peer)

Nov 20 2021, 9:39 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) added a comment to T4005: Feature Request: IPsec IKEv1 + IKEv2 for one peer.

pool request:
https://github.com/vyos/vyatta-cfg-vpn/pull/51
Create an Ike-group without a command "key-exchange" (like in VyOS 1.4):

Nov 20 2021, 9:32 AM · VyOS 1.3 Equuleus (1.3.0-epa3)

Nov 18 2021

Unknown Object (User) created T4005: Feature Request: IPsec IKEv1 + IKEv2 for one peer.
Nov 18 2021, 4:30 AM · VyOS 1.3 Equuleus (1.3.0-epa3)
Unknown Object (User) created T4004: IPsec ike-group parameters are not saved correctly (after reboot).
Nov 18 2021, 3:53 AM · VyOS 1.3 Equuleus (1.3.0-epa3)

Nov 17 2021

Unknown Object (User) created T4002: firewall group network-group long names restriction incorrect behavior.
Nov 17 2021, 12:45 PM · VyOS 1.3 Equuleus ( 1.3.1)
Unknown Object (User) created T4001: Feature Request: IPsec transport mode. VyOS can not use local-subnet or remote-subnet when using transport mode.
Nov 17 2021, 11:39 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus

Nov 13 2021

Unknown Object (User) renamed T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel from Feature Request: IPsec Multiple local prefix for the tunnel to Feature Request: IPsec Multiple local/remote prefix for the tunnel.
Nov 13 2021, 6:33 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T3988: Feature Request: IPsec Multiple local/remote prefix for the tunnel.
Nov 13 2021, 6:27 AM · VyOS 1.4 Sagitta

Nov 6 2021

Unknown Object (User) created T3973: Feature Request: Multicast ping. Change TTL in Echo-reply from VyOS.
Nov 6 2021, 3:38 AM · VyOS 1.5 Circinus

Nov 4 2021

Unknown Object (User) created T3967: Feature Request: BGP conditional advertisement.
Nov 4 2021, 5:34 AM

Nov 2 2021

Unknown Object (User) added a comment to T3959: MPLS L3VPN IPv6 address-family over IPv4 MPLS backbone.

Mentioned here (FRRouting):
BGP vpnv6 next hop address maybe error?

Nov 2 2021, 8:23 AM · VyOS 1.5 Circinus
Unknown Object (User) created T3959: MPLS L3VPN IPv6 address-family over IPv4 MPLS backbone.
Nov 2 2021, 8:07 AM · VyOS 1.5 Circinus

Oct 30 2021

Unknown Object (User) changed the status of T3952: Add sh bgp ipv4/ipv6 vpn command from In progress to Needs testing.
Oct 30 2021, 9:34 AM · VyOS 1.4 Sagitta

Oct 29 2021

Unknown Object (User) changed the status of T3952: Add sh bgp ipv4/ipv6 vpn command from Open to In progress.
Oct 29 2021, 7:01 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T3952: Add sh bgp ipv4/ipv6 vpn command.

PR https://github.com/vyos/vyos-1x/pull/1051

Oct 29 2021, 6:49 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T3952: Add sh bgp ipv4/ipv6 vpn command.
Oct 29 2021, 6:31 AM · VyOS 1.4 Sagitta

Oct 26 2021

Unknown Object (User) added a comment to T3944: VRRP fails over when adding new group to master.

It seems to be because of the keepalived reloading at "commit".

Oct 26 2021, 1:36 PM · VyOS 1.3 Equuleus (1.3.0-epa3), VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T3944: VRRP fails over when adding new group to master from Open to Confirmed.
Oct 26 2021, 1:32 PM · VyOS 1.3 Equuleus (1.3.0-epa3), VyOS 1.4 Sagitta

Oct 25 2021

Unknown Object (User) changed the status of T3924: VRRP stops working with VRF from Open to Confirmed.
Oct 25 2021, 10:44 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Oct 21 2021

Unknown Object (User) created T3924: VRRP stops working with VRF.
Oct 21 2021, 12:12 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Oct 19 2021

Unknown Object (User) added a comment to T3910: Hairpin NAT Not Functioning Correctly.

Of course, external services with the same port is not available
This is what you should expect from NAT rules (110)
Works exactly as configured

Oct 19 2021, 12:59 AM · Rejected

Oct 17 2021

Unknown Object (User) added a comment to T3910: Hairpin NAT Not Functioning Correctly.

WAN interface is eth2. It set to DHCP
LAN interface is eth3. It set to static address

Oct 17 2021, 12:31 PM · Rejected
Unknown Object (User) added a comment to T3910: Hairpin NAT Not Functioning Correctly.

Tested on VyOS 1.3.0-epa1

Oct 17 2021, 6:08 AM · Rejected

Oct 16 2021

Unknown Object (User) added a comment to T2787: OSPF auto-cost reference-bandwidth bandwidth command support.

Tested in VyOS 1.2.8, VyOS 1.3.0-epa1, VyOS 1.4-rolling-202109190558

Oct 16 2021, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3851: Missing ospf and rip options for bridge vifs.

Tested in VyOS 1.3.0-epa1 & VyOS 1.4-rolling-202109190558

Oct 16 2021, 9:18 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

Tested on VyOS 1.3.0-epa1.
Confirm IBGP reflection to non-RR-Client
Lab Topology:

image.png (441×771 px, 89 KB)

RR1 & RR2 -route reflectors
P 3 - RR-Client for RR1 & RR2
P1 - IBGP peering with RR1 only
OSPF-core router - only for core network
Result: P1 gets P 3 routes fron RR1:
vyos@VyOS-P1:~$ sh ip bgp neighbors 10.0.0.1 received-routes
*> 10.0.0.201/32 10.0.0.3 0 100 100 i
*> 10.0.0.202/32 10.0.0.3 0 100 100 i
*> 192.168.3.0/24 10.0.0.3 0 100 100 i

Oct 16 2021, 3:02 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta

Oct 15 2021

Unknown Object (User) added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

@francis Sorry, I don't understand the problem.
Agree that route received from one IBGP peer should not be forwarded to another IBGP peer. Except for the RR client.

Oct 15 2021, 2:58 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

If Cluster ID is not used, full IBGP mesh must be used. Exception is RR client, they should only have peering with RR.
Router 10.0.0.21 has no peering with 10.0.0.3.
This is incorrect IBGP design.

Oct 15 2021, 1:42 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta

Oct 8 2021

Unknown Object (User) added a comment to T3090: Move 'adjust-mss' firewall options to the interface section..

Perhaps the command should be changed a bit
MSS is a property of the TCP protocol, not IP:

Oct 8 2021, 12:23 PM · VyOS 1.4 Sagitta

Oct 4 2021

Unknown Object (User) added a comment to T3887: Removal of IPv6 BGP-peer with peer-group may trigger problems.

Acknowledged. Tested on 1.3.0-epa1

Oct 4 2021, 1:02 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux

Sep 19 2021

Unknown Object (User) added a comment to T3831: External traffic stops routing when IPSEC tunnel comes up with interface vti0.

Tested in vyos-1.4-rolling-202109190558,
works

Sep 19 2021, 12:58 PM · VyOS 1.4 Sagitta

Sep 15 2021

Unknown Object (User) updated the task description for T3831: External traffic stops routing when IPSEC tunnel comes up with interface vti0.
Sep 15 2021, 9:13 AM · VyOS 1.4 Sagitta
Unknown Object (User) updated the task description for T3831: External traffic stops routing when IPSEC tunnel comes up with interface vti0.
Sep 15 2021, 9:12 AM · VyOS 1.4 Sagitta
Unknown Object (User) created T3831: External traffic stops routing when IPSEC tunnel comes up with interface vti0.
Sep 15 2021, 8:43 AM · VyOS 1.4 Sagitta

Sep 9 2021

Unknown Object (User) added a comment to T2326: Migrate NHRP(DMVPN) to FRR.

Cisco Auth is a necessity for those who want to migrate from this vendor's hardware to VyOS. You can easily add a VyOS node to an existing DMVPN.

Sep 9 2021, 8:57 AM · VyOS 1.5 Circinus