Page MenuHomeVyOS Platform
Feed All Stories

Apr 11 2022

c-po committed rVYOSONEX679415a515d1: Revert "https: T4333: migrate to new vyos_defined Jinja2 test".
Apr 11 2022, 12:27 PM
Viacheslav added a comment to T4285: Add integration with Teleport.

teleport Linux 64-bit DEB - 94 Mb
https://goteleport.com/teleport/download/

Apr 11 2022, 11:48 AM · VyOS Rolling
dmbaturin renamed T4327: Ethernet interface configuration fails on Hyper-V due to speed/duplex/autoneg ethtool command error from no ability to configure interfaces at all on Hyper-V to Ethernet interface configuration fails on Hyper-V due to speed/duplex/autoneg ethtool command error.
Apr 11 2022, 8:46 AM · VyOS 1.4 Sagitta
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

@n.fort I have upgraded following the path 1.2.6-S1 --> 1.3-S1 --> 1.4 Following the tips of not using port names for bootps and ssmtp and not using "set system ipv6 disable" and everything went fine.

Apr 11 2022, 6:19 AM · VyOS 1.3 Equuleus (1.3.6)
Unknown Object (User) added a comment to T4301: The "arp-monitor" option in bonding interface settings does not work.

VyOS 1.4-rolling-202204090217 works well.

Apr 11 2022, 1:25 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4348: Site access denied.

image.png (661×1 px, 58 KB)

From my ISP access is closed for more than a month.

Apr 11 2022, 12:33 AM

Apr 10 2022

higebu moved T4279: vyos-vm-images: add vagrant virtualbox box from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 10 2022, 11:51 PM · Restricted Project, VyOS 1.4 Sagitta
higebu moved T4278: vyos-vm-images: fix vagrant libvirt box from Restricted Project Column to Restricted Project Column on the Restricted Project board.
Apr 10 2022, 11:51 PM · Restricted Project, VyOS 1.4 Sagitta
higebu added a project to T4279: vyos-vm-images: add vagrant virtualbox box: Restricted Project.
Apr 10 2022, 11:49 PM · Restricted Project, VyOS 1.4 Sagitta
higebu added a project to T4278: vyos-vm-images: fix vagrant libvirt box: Restricted Project.
Apr 10 2022, 11:48 PM · Restricted Project, VyOS 1.4 Sagitta
higebu added a watcher for vyos-build: higebu.
Apr 10 2022, 11:46 PM
Unknown Object (User) changed the status of T4288: IPsec tunnel will break when ESP timeout from In progress to Needs testing.

I've tested the scenario using VyOS 1.4-rolling-202204090217 and (esp lifetime '30'). Attached is the config.
After turning on the right and left routers, IPsec creates two tunnels that are updated every 10 seconds. (Tunnels are updated using strange intervals, the first 1-10 seconds, the second 10-20 seconds).

Apr 10 2022, 10:30 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX4dc4bbc6ce6a: tftp-server: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 7:14 PM
c-po committed rVYOSONEX5eed0cba04ce: vrf: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 7:14 PM
c-po committed rVYOSONEX3e272460a2d9: smoketest: ids: add initial testcase.
Apr 10 2022, 7:14 PM
c-po committed rVYOSONEXa7ccf0a9543f: ids: T4333: bugfix - threshold loop.
Apr 10 2022, 7:14 PM
c-po committed rVYOSONEX264f86db9b7a: wifi: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 7:14 PM
c-po committed rVYOSONEX653d2fbce855: igmp-proxy: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:02 PM
c-po committed rVYOSONEXb90a3133468c: vrrp: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEX66dd2792a800: ids: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEX77bbf766e802: https: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEXde407ab8971d: firewall: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEX7d75e4a37727: policy: route: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEX2dca0f04dc24: nat: T2199: bugfix dry-run newly generated config before install.
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEXcb8306cb2efd: smoketest: nat: use setUpClass() over setUp().
Apr 10 2022, 6:01 PM
c-po committed rVYOSONEX869c34b9c2c2: nat(66): T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 6:01 PM
higebu added a comment to T4278: vyos-vm-images: fix vagrant libvirt box.

@hakwerk I'm sorry for the delay of the response. It seems that this PR(https://github.com/vyos/vyos-vm-images/pull/28) fixes the enable_dhcp issue.
I can't reproduce the install-grub issue for now. If I get the warning, I will try to fix it.

Apr 10 2022, 12:39 PM · Restricted Project, VyOS 1.4 Sagitta
c-po added a comment to T4288: IPsec tunnel will break when ESP timeout.

VyOS 1.3 and 1.2 use the legacy Perl based IPSec implementation. A test would still be good just to be sure!

Apr 10 2022, 9:38 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX85e4bae1ef9e: eapol: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 8:08 AM
c-po committed rVYOSONEXaa4cb50bdf99: dns: T4333: migrate to new vyos_defined Jinja2 test.
Apr 10 2022, 8:08 AM
c-po committed rVYOSONEX17586e0f0698: ocserv: T4231: increment config version 1 -> 2.
Apr 10 2022, 7:31 AM
Viacheslav moved T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 10 2022, 5:56 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T4288: IPsec tunnel will break when ESP timeout from Needs testing to In progress.

I tested it with VyOS 1.4-rolling-202204090217 and it works well for a while.

Apr 10 2022, 2:26 AM · VyOS 1.4 Sagitta

Apr 9 2022

nagua updated the task description for T4351: Openvpn conf-mode "openvpn-option" is not respected.
Apr 9 2022, 2:49 PM · VyOS 1.4 Sagitta
nagua created T4351: Openvpn conf-mode "openvpn-option" is not respected.
Apr 9 2022, 2:40 PM · VyOS 1.4 Sagitta
goodNETnick <pknet@ya.ru> committed rVYOSONEXb776003cf55e: ocserv: T4231: Added OTP support for Openconnect 2FA.
Apr 9 2022, 11:42 AM
GitHub <noreply@github.com> committed rVYOSONEXaa5b35b68c11: Merge branch 'vyos:current' into ocserv_local_otp (authored by goodNETnick <33053932+goodNETnick@users.noreply.github.com>).
Apr 9 2022, 11:42 AM
goodNETnick <pknet@ya.ru> committed rVYOSONEX1da9cc02d7c8: ocserv: T4231: Added OTP support for Openconnect 2FA (authored by goodNETnick <33053932+goodNETnick@users.noreply.github.com>).
Apr 9 2022, 11:42 AM
GitHub <noreply@github.com> committed rVYOSONEX139ab8164660: Merge pull request #1242 from goodNETnick/ocserv_local_otp (authored by c-po).
Apr 9 2022, 11:42 AM
hexes added a comment to T4348: Site access denied.

I have normal access!

Apr 9 2022, 2:58 AM

Apr 8 2022

Viacheslav added a comment to T4312: Telegraf configuration doesn't accept IPs for URL.

@fortinj1354 you can do changes in xml, build .deb pkg and install it on the instance
https://docs.vyos.io/en/equuleus/contributing/build-vyos.html#id4

Apr 8 2022, 11:14 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav renamed T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from DHCP statistics not matching, conf-mode generates incorrect poll name with dash to DHCP statistics not matching, conf-mode generates incorrect pool name with dash.
Apr 8 2022, 11:04 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1280

Apr 8 2022, 10:42 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX00f546f0504a: dhcp-server: T4344: Fix underscores for shared network name.
Apr 8 2022, 10:26 PM
Viacheslav closed T4349: Vlan-range vlan_mon not working for ipoe service as Invalid.

I missed option network vlan:

set service ipoe-server interface eth2 network 'vlan'

configs looks good:

[ipoe]
verbose=1
interface=re:eth2\.\d+,shared=0,mode=L2,ifcfg=1,range=192.168.0.0/24,start=dhcpv4,ipv6=1
username=ifname
password=csid
proxy-arp=1
Apr 8 2022, 9:27 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav changed Version from VyOS 1.3.1-S1 to VyOS 1.3.1-S1, VyOS 1.4-rolling-202204080957 on T4349: Vlan-range vlan_mon not working for ipoe service.
Apr 8 2022, 9:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav added a project to T4349: Vlan-range vlan_mon not working for ipoe service: VyOS 1.4 Sagitta.
Apr 8 2022, 8:59 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav created T4350: DMVPN opennhrp spokes dont work behind NAT.
Apr 8 2022, 8:53 PM · VyOS 1.3 Equuleus (1.3.2)
Viacheslav created T4349: Vlan-range vlan_mon not working for ipoe service.
Apr 8 2022, 8:28 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
Viacheslav committed rVYOSONEXb75b351b7dd2: dhcp-server: T4344: Fix underscores for shared network name.
Apr 8 2022, 5:52 PM
GitHub <noreply@github.com> committed rVYOSONEXf43031ec4591: Merge branch 'current' into T4344 (authored by Viacheslav).
Apr 8 2022, 5:52 PM
GitHub <noreply@github.com> committed rVYOSONEXf9ebccd2ef0b: Merge pull request #1278 from sever-sever/T4344 (authored by c-po).
Apr 8 2022, 5:52 PM
Unknown Object (User) added a comment to T3427: Show prefix received via IA_PD in interface info.

I would like to see this too, with Ethernet interfaces.

Apr 8 2022, 4:18 PM
c-po closed T4324: wwan: check alive script should only be run via cron if a wwan interface is configured at all as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po closed T4338: wwan: changing interface description should not trigger reconnect as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po closed T4339: wwan: tab-completion results in "No such file or directory" if there is no WWAN interface as Resolved.
Apr 8 2022, 3:30 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po closed T4331: IPv6 link local addresses are not configured when an interface is in a VRF as Resolved.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4331: IPv6 link local addresses are not configured when an interface is in a VRF from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T4339: wwan: tab-completion results in "No such file or directory" if there is no WWAN interface from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po moved T4338: wwan: changing interface description should not trigger reconnect from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.2)
c-po moved T4324: wwan: check alive script should only be run via cron if a wwan interface is configured at all from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Apr 8 2022, 3:29 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
tacerus committed rVYOSONEX15461be0cd7b: T4156: Add bootfile-size option (authored by teadur).
Apr 8 2022, 3:01 PM
GitHub <noreply@github.com> committed rVYOSONEX630945291c9a: Merge branch 'current' into dhcpd (authored by teadur).
Apr 8 2022, 3:01 PM
GitHub <noreply@github.com> committed rVYOSONEX2bf7589e926b: Merge pull request #1148 from tacerus/dhcpd (authored by dmbaturin).
Apr 8 2022, 3:01 PM
c-po committed rVYOSONEX07c3bb021d77: wwan: T4324: is_wwan_connected() must verify if ModemManager is running.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEX7091d0b54f21: wwan: T4324: cronjob is setup via interfaces-wwan.py - drop dedicated cron file.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEX8d310eb3f83b: wwan: T4324: properly start/stop ModemManager and cron helper on interface….
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXf728e321d1fb: wwan: T4338: changing interface description should not trigger reconnect.
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXce4a1eb35a91: wwan: T4339: tab-completion results in "No such file or directory".
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXe5f1df1988a1: wifi: T4339: tab-completion results in "No such file or directory".
Apr 8 2022, 2:51 PM
GitHub <noreply@github.com> committed rVYOSONEXbd50d51f1e49: Merge pull request #1263 from c-po/wwan-t4324-equuleus (authored by dmbaturin).
Apr 8 2022, 2:51 PM
c-po committed rVYOSONEXaf2563589b79: smoketest: vrf: T4331: IPv6 link-local addresses not configured for interface….
Apr 8 2022, 2:49 PM
c-po committed rVYOSONEX409a2e1239e6: interfaces: T4331: Fix assign link-local static IPv6 addr to vrf (authored by Viacheslav).
Apr 8 2022, 2:49 PM
GitHub <noreply@github.com> committed rVYOSONEX298ce87e8fc4: Merge pull request #1273 from c-po/t4331-equuleus (authored by dmbaturin).
Apr 8 2022, 2:48 PM
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

PR https://github.com/vyos/vyos-1x/pull/1278

Apr 8 2022, 2:11 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po committed rVYOSONEX654dbc9aa3b0: dhcp(v6): T4333: migrate to new vyos_defined Jinja2 test.
Apr 8 2022, 12:48 PM
c-po committed rVYOSONEXd8f778456761: container: T4333: migrate to new vyos_defined Jinja2 test.
Apr 8 2022, 12:48 PM
Viacheslav added a project to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash: VyOS 1.4 Sagitta.
Apr 8 2022, 12:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav renamed T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from DHCP statistics not matching to DHCP statistics not matching, conf-mode generates incorrect poll name with dash.
Apr 8 2022, 12:07 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash.

The root cause it generates incorrect pool name (conf mode) with a dash instead of an underscore

vyos@vyos:~$ show conf com | match dhcp
set service dhcp-server shared-network-name NET_01 authoritative
set service dhcp-server shared-network-name NET_01 name-server '1.1.1.1'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 start '192.0.2.21'
set service dhcp-server shared-network-name NET_01 subnet 192.0.2.0/24 range R1 stop '192.0.2.254'
vyos@vyos:~$

dhcp.conf

...
    on commit {
        set shared-networkname = "NET-01";
    }
Apr 8 2022, 12:05 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T4344: DHCP statistics not matching, conf-mode generates incorrect pool name with dash from Open to In progress.
Apr 8 2022, 11:54 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
n.fort added a comment to T4348: Site access denied.

I have normal access!

Apr 8 2022, 10:49 AM
c-po committed rVYOSONEX57c0789f47e0: smoketest: vrf: T4346: IPv6 address family can no longer be disabled in the….
Apr 8 2022, 9:27 AM
jestabro closed T4347: Return complete and consistent error codes from HTTP API as Resolved.
Apr 8 2022, 8:16 AM · VyOS 1.4 Sagitta
cgb added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

Not sure if this works but there is an upload button in the toolbar:

Apr 8 2022, 7:09 AM · VyOS 1.3 Equuleus (1.3.6)
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

@n.fort the config i would like to upload to this ticket has 43727 lines.. Its a text file of 1.3 Mbps. Its it possible to attach the file instead of paste it on the comments?

Apr 8 2022, 6:59 AM · VyOS 1.3 Equuleus (1.3.6)
jestabro committed rVYOSONEX4c89134c632d: http api: T4347: return complete and consistent error codes.
Apr 8 2022, 5:11 AM
jestabro committed rVYOSONEX143621114e71: smoketest: http: bind http api to unix domain socket.
Apr 8 2022, 5:11 AM
jestabro committed rVYOSONEX84bfac85a711: smoketest: http: add check for missing key.
Apr 8 2022, 5:11 AM
GitHub <noreply@github.com> committed rVYOSONEX5399a8f75b5a: Merge pull request #1277 from jestabro/api-smoketest (authored by c-po).
Apr 8 2022, 5:11 AM
hexes triaged T4348: Site access denied as High priority.
Apr 8 2022, 3:33 AM

Apr 7 2022

jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from Needs testing to In progress.
Apr 7 2022, 11:58 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4347: Return complete and consistent error codes from HTTP API.

PR:
https://github.com/vyos/vyos-1x/pull/1277

Apr 7 2022, 11:57 PM · VyOS 1.4 Sagitta
ajgnet added a comment to T2943: Wireguard allow use of hostname as endpoint.

Trying to configure a wireguard peer with a dns name as remote endpoint. I understand this is not supported, but I see many references to creating a post-boot script to do this. Any working examples? Thank you

Apr 7 2022, 10:21 PM · VyOS 1.2 Crux
daniel.arconada added a comment to T1230: Improving Boot Time for Large Firewall Configurations.

Hi, I'm sorry for the confusion but the configuration I uploaded is not from a production machine. It's just an example of a small configuration of a pre-production vyos that I was having trouble upgrading.
Tomorrow if I will upload one of the ones that take 25-30 minutes to boot on modern CPUs (xeon gold).

Apr 7 2022, 9:31 PM · VyOS 1.3 Equuleus (1.3.6)
jestabro added a comment to T4347: Return complete and consistent error codes from HTTP API.

Changes and fixes to smoketest at link; in testing before PR:
https://github.com/vyos/vyos-1x/compare/current...jestabro:api-smoketest

Apr 7 2022, 9:21 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from In progress to Needs testing.
Apr 7 2022, 9:13 PM · VyOS 1.4 Sagitta
jestabro changed the status of T4347: Return complete and consistent error codes from HTTP API from Open to In progress.
Apr 7 2022, 9:05 PM · VyOS 1.4 Sagitta
c-po closed T4346: Deprecate "system ipv6 disable" option to disable address family within OS kernel as Resolved.
Apr 7 2022, 6:55 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEX44c67e54ef6e: policy: T4194: simplify prefix-list duplication checks.
Apr 7 2022, 6:48 PM