Page MenuHomeVyOS Platform
Feed All Stories

Feb 28 2023

GitHub <noreply@github.com> committed rVYOSONEX1aeddb187dff: Merge pull request #1853 from sever-sever/T5033 (authored by c-po).
Feb 28 2023, 6:30 AM
jestabro committed rVYOSONEX07d25556de4d: openvpn: T4770: fix tabulate output in _format_openvpn.
Feb 28 2023, 6:23 AM
GitHub <noreply@github.com> committed rVYOSONEXcfed824d7279: Merge pull request #1858 from jestabro/typo-openvpn (authored by c-po).
Feb 28 2023, 6:23 AM

Feb 27 2023

n.fort changed the status of T5037: Firewall - Add queue action from Open to In progress.
Feb 27 2023, 8:10 PM · VyOS 1.4 Sagitta
n.fort created T5037: Firewall - Add queue action.
Feb 27 2023, 8:09 PM · VyOS 1.4 Sagitta
b- triaged T4917: Commit hooks as Low priority.
In T4917#140239, @b- wrote:

Thanks! That’ll help me with what I’m working on :)From where does this limitation originate, anyway? Is there a way to at least add . to the acceptable characters list, so as to allow for foo.sh?  Would that break something that expects to skip over filenames with dots and other characters?

Not sure exactly but it seems this part of code https://github.com/vyos/vyatta-cfg/blob/ec568ce7b432acda01f9639afb509287a0e3d760/src/commit/commit-algorithm.cpp#L846

Feb 27 2023, 7:57 PM · Bugs
c-po claimed T4989: QoS Policy Limiter - classes for marked traffic do not work.
Feb 27 2023, 7:30 PM · vyatta-cfg-qos, VyOS 1.4 Sagitta
c-po moved T4997: Add DHCP client user hooks dir from Open to In Progress on the VyOS 1.4 Sagitta board.
Feb 27 2023, 7:30 PM · VyOS 1.4 Sagitta
c-po claimed T5018: Redirect to IFB removed after change in qos policy.
Feb 27 2023, 7:30 PM · VyOS 1.4 Sagitta
c-po moved T5025: Time-zone validation failed from Open to In Progress on the VyOS 1.4 Sagitta board.
Feb 27 2023, 7:29 PM · VyOS 1.4 Sagitta
c-po closed T5028: Add package exfatprogs to VyOS as Resolved.
Feb 27 2023, 7:29 PM · VyOS 1.4 Sagitta
c-po moved T5029: Nginx change default root directory and fix regex from Open to In Progress on the VyOS 1.4 Sagitta board.
Feb 27 2023, 7:28 PM · VyOS 1.4 Sagitta
b- added a comment to T2196: Dynamic ipv4 interface list hairpin.

@lue30499 T4997 was merged, so the script I put above (which adds/updates a firewall group for the DHCP IP of any DHCP-enabled interfaces) can now be installed on an official build of 1.4-rolling!

Feb 27 2023, 6:37 PM · VyOS Rolling
jestabro committed rVYOSONEXa483281e5fd9: op-mode: T4952: use list_interfaces from vyos-utils.
Feb 27 2023, 6:31 PM
GitHub <noreply@github.com> committed rVYOSONEXdfd88d01a7ed: Merge pull request #1856 from jestabro/list-interfaces (authored by c-po).
Feb 27 2023, 6:31 PM
jestabro added a comment to T4952: Improve interface completion helper CLI experience.

PR using list_interfaces from vyos-utils:

Feb 27 2023, 5:58 PM · VyOS 1.4 Sagitta
a.apostoliuk committed rVYOSONEXeaba3bdfb3f8: openconnect: T4955: Renamed function and changed error messages.
Feb 27 2023, 5:11 PM
GitHub <noreply@github.com> committed rVYOSONEX4621cfc37a60: Merge pull request #1855 from aapostoliuk/T4955-2-sagitta (authored by c-po).
Feb 27 2023, 5:11 PM
Viacheslav added a comment to T5026: Python3 modules crypt and spwd are deprecated.

Openconnect

[edit]
vyos@r14# set vpn openconnect network-settings push-route 100.64.22.0/24
[edit]
vyos@r14# commit
[ vpn openconnect ]
/usr/libexec/vyos/conf_mode/vpn_openconnect.py:32: DeprecationWarning: 'crypt' is deprecated and slated for removal in Python 3.13
  from crypt import crypt, mksalt, METHOD_SHA512
Feb 27 2023, 4:06 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5026: Python3 modules crypt and spwd are deprecated.
Feb 27 2023, 4:05 PM · VyOS 1.4 Sagitta
marekm added a comment to T4600: Closing IPV6CP by client closes PPPoE link completely, even if IPv6 is optional.

As a temporary workaround, I use the script below. For some reason /etc/rc.local no longer runs automatically on VyOS 1.3.2, so I run it manually after each reboot for now. Until it is run, Phicomm routers keep disconnecting due to failed IPV6CP negotiation incorrectly triggering complete PPPoE session termination. I have two PPPoE servers at different locations for redundancy, both rebooting at the same time is very unlikely, so I can live with it for now.

Feb 27 2023, 3:38 PM
Viacheslav closed T5036: show nat source translations - fails to function as Invalid.
Feb 27 2023, 1:26 PM · VyOS 1.4 Sagitta
Hazza06 added a comment to T5036: show nat source translations - fails to function.

thank you, yes updating to latest 1.4 rolling has resolved the issue, pls feel free to close this task as duplicate to https://vyos.dev/T4907

Feb 27 2023, 1:20 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5036: show nat source translations - fails to function.

@Hazza06 https://github.com/vyos/vyos-1x/commit/09be3e86f2171e8b090fd3270ce05ae67ade58ec T4907

Feb 27 2023, 12:45 PM · VyOS 1.4 Sagitta
panachoi added a comment to T4797: External address/network lists for firewall (Local and remote).

I'd be happy to test anything that implements this. Previously, I (judging from the forum, I'm not the only one) using this EdgeOS-BL-Mgmt with 1.3.x.

Feb 27 2023, 12:19 PM · VyOS Rolling
Hazza06 added a comment to T5036: show nat source translations - fails to function.

are you saying this has been fixed in just the last 2 months ? i reported this on 1.4-rolling-202212280917

Feb 27 2023, 12:13 PM · VyOS 1.4 Sagitta
Viacheslav updated subscribers of T5018: Redirect to IFB removed after change in qos policy.

There is missed the command tc qdisc add dev eth0 handle ffff: ingress

vyos@r14# tc qdisc show dev eth0
qdisc pfifo_fast 0: root refcnt 2 bands 3 priomap 1 2 2 2 1 2 0 0 1 1 1 1 1 1 1 1
[edit]
vyos@r14# 
[edit]
vyos@r14# tc filter add dev eth0 parent ffff: protocol all prio 10 u32 match u32 0 0 flowid 1:1 action mirred egress redirect dev ifb0
Error: Parent Qdisc doesn't exists.
We have an error talking to the kernel
[edit]
vyos@r14#
Feb 27 2023, 12:06 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5018: Redirect to IFB removed after change in qos policy from Open to Confirmed.
Feb 27 2023, 11:51 AM · VyOS 1.4 Sagitta
a.apostoliuk closed T4985: reset vpn ipsec-peer command with peer name does not work as Resolved.
Feb 27 2023, 10:20 AM · VyOS 1.4 Sagitta
a.apostoliuk moved T4985: reset vpn ipsec-peer command with peer name does not work from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 27 2023, 10:20 AM · VyOS 1.4 Sagitta
a.apostoliuk moved T5008: MACsec CKN of 32 chars is not allowed in CLI, but works fine from Open to Finished on the VyOS 1.4 Sagitta board.
Feb 27 2023, 10:08 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T5036: show nat source translations - fails to function.

Try the latest rolling release

Feb 27 2023, 9:14 AM · VyOS 1.4 Sagitta
Viacheslav added a project to T3191: PAM RADIUS freezing when accounting does not configured on RADIUS server: VyOS 1.4 Sagitta.
Feb 27 2023, 8:22 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
a.apostoliuk committed rVYOSONEX1bde9ebee681: T4790: Added check of the sum of radius timeouts.
Feb 27 2023, 7:56 AM
GitHub <noreply@github.com> committed rVYOSONEX1cc8d7c89459: Merge pull request #1644 from aapostoliuk/T4790-sagitta (authored by Viacheslav).
Feb 27 2023, 7:56 AM
Hazza06 created T5036: show nat source translations - fails to function.
Feb 27 2023, 2:18 AM · VyOS 1.4 Sagitta

Feb 26 2023

jestabro closed T4979: Add API request 'show_user_info' for UI as Resolved.
Feb 26 2023, 9:31 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEX6d29c4c76b5a: graphql: T4979: add user info to token request.
Feb 26 2023, 9:30 PM
c-po changed the status of T4997: Add DHCP client user hooks dir from In progress to Needs testing.
Feb 26 2023, 8:09 PM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX40e0cb294e03: T4997: add dhcp client user hooks (authored by b-).
Feb 26 2023, 8:06 PM
Viacheslav changed the status of T5035: Add more actions to policy route rule from Open to In progress.
Feb 26 2023, 4:53 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T5035: Add more actions to policy route rule: VyOS 1.4 Sagitta.
Feb 26 2023, 4:52 PM · VyOS 1.4 Sagitta
Yuanandyuan created T5035: Add more actions to policy route rule.
Feb 26 2023, 12:47 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXa721e8b5067d: smoketest: tunnel: T5034: adjust to new multicast CLI syntax.
Feb 26 2023, 10:57 AM
c-po committed rVYOSONEX4afcc690151a: smoketest: tunnel: T5034: adjust to new multicast CLI syntax.
Feb 26 2023, 7:12 AM

Feb 25 2023

Viacheslav changed the status of T5033: generate-public-key command fails for address with multiple public keys like GitHub from Open to In progress.
Feb 25 2023, 10:49 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T5033: generate-public-key command fails for address with multiple public keys like GitHub.

PR https://github.com/vyos/vyos-1x/pull/1853

vyos@r14:~$ generate public-key-command user foo path https://github.com/xxxxx.keys
# To add this key as an embedded key, run the following commands:
configure
set system login user foo authentication public-keys github@39e9c9ba-408d-4b4b-9aa6-d07f531285bf key xxxxx
set system login user foo authentication public-keys github@39e9c9ba-408d-4b4b-9aa6-d07f531285bf type ssh-rsa
set system login user foo authentication public-keys github@4732d9b0-4bc5-47d1-9028-0e68348a932f key xxxxx
set system login user foo authentication public-keys github@4732d9b0-4bc5-47d1-9028-0e68348a932f type ssh-rsa
set system login user foo authentication public-keys github@a93a85ba-5b63-4c3a-a589-2e82da7c8f1f key xxxxx
set system login user foo authentication public-keys github@a93a85ba-5b63-4c3a-a589-2e82da7c8f1f type ssh-rsa
commit
save
exit
vyos@r14:~$
Feb 25 2023, 10:47 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
c-po committed rVYOSONEX54c36e435049: tunnel: T5034: migrate "multicast enable" CLI node to enable-multicast.
Feb 25 2023, 9:41 PM
c-po closed T5034: Migrate multicast CLI node to valueLess, a subtask of T5007: Interface multicast setting is invalid, as Resolved.
Feb 25 2023, 9:41 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po closed T5034: Migrate multicast CLI node to valueLess as Resolved.
Feb 25 2023, 9:41 PM · VyOS 1.4 Sagitta
c-po updated the task description for T5034: Migrate multicast CLI node to valueLess.
Feb 25 2023, 9:41 PM · VyOS 1.4 Sagitta
c-po changed the status of T5034: Migrate multicast CLI node to valueLess, a subtask of T5007: Interface multicast setting is invalid, from Open to In progress.
Feb 25 2023, 9:15 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po changed the status of T5034: Migrate multicast CLI node to valueLess from Open to In progress.
Feb 25 2023, 9:15 PM · VyOS 1.4 Sagitta
c-po created T5034: Migrate multicast CLI node to valueLess.
Feb 25 2023, 9:15 PM · VyOS 1.4 Sagitta
c-po closed T4948: pppoe: add CLI option to allow definition of host-uniq flag as Resolved.
Feb 25 2023, 9:12 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T4948: pppoe: add CLI option to allow definition of host-uniq flag from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:12 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po closed T4992: Incorrect check is_local_address for bgp neighbor with option ip_nonlocal_bind set as Resolved.
Feb 25 2023, 9:12 PM · VyOS 1.3 Equuleus (1.3.3)
c-po moved T4992: Incorrect check is_local_address for bgp neighbor with option ip_nonlocal_bind set from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:11 PM · VyOS 1.3 Equuleus (1.3.3)
c-po removed a project from T4997: Add DHCP client user hooks dir: VyOS 1.3 Equuleus (1.3.3).
Feb 25 2023, 9:11 PM · VyOS 1.4 Sagitta
c-po closed T5007: Interface multicast setting is invalid as Resolved.
Feb 25 2023, 9:11 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T5007: Interface multicast setting is invalid from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:10 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po closed T5008: MACsec CKN of 32 chars is not allowed in CLI, but works fine as Resolved.
Feb 25 2023, 9:10 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T5008: MACsec CKN of 32 chars is not allowed in CLI, but works fine from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:10 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po closed T4978: KeyError: 'memory' container_config['memory'] on upgrading to 1.4-rolling-202302041536 as Resolved.
Feb 25 2023, 9:10 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T4978: KeyError: 'memory' container_config['memory'] on upgrading to 1.4-rolling-202302041536 from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:10 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po closed T5017: Bug with validator interface-name as Resolved.
Feb 25 2023, 9:09 PM · VyOS 1.3 Equuleus (1.3.3)
c-po moved T5017: Bug with validator interface-name from In Progress to Finished on the VyOS 1.3 Equuleus (1.3.3) board.
Feb 25 2023, 9:09 PM · VyOS 1.3 Equuleus (1.3.3)
c-po committed rVYOSONEX3bad1d0adb1c: python: T5026: Replace deprecated Python modules crypt, spwd (authored by sarthurdev).
Feb 25 2023, 9:07 PM
doctorpangloss added a comment to T5033: generate-public-key command fails for address with multiple public keys like GitHub.

Yes, apparently so from GitHub.

Feb 25 2023, 8:12 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav edited projects for T5033: generate-public-key command fails for address with multiple public keys like GitHub, added: VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.4).

Do those keys always without an "identifier"?
I mean foo@localhost

ssh-rsa AAA....
Feb 25 2023, 8:11 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav closed T5027: OpenVPN options and site-to-site cannot pass smoketest as Resolved.
Feb 25 2023, 6:56 PM · VyOS 1.4 Sagitta
Coopercentral added a comment to T4943: Radius SSH login displays "permission denied" on 1.4 rolling release.

Hello - I upgraded to the latest rolling release (1.4-rolling-202302250317), and it appears to be working. I am able to login with a radius account successfully. Thank you for your efforts! I see in you PR's above, the second link is to change the shell from "bash" to "vbash". It appears once I login with a radius privileged account, the shell continues to default to "bash":

Feb 25 2023, 1:24 PM · VyOS 1.4 Sagitta
fernando added a comment to T4074: Add NETCONF server with YANG data modeling .

including information about Netopee2/sysrepo services, how to integrate it with FRR, where we can utilize the advantages netconf/yang :

Feb 25 2023, 1:23 PM · VyOS Rolling
Viacheslav changed the status of T4943: Radius SSH login displays "permission denied" on 1.4 rolling release from In progress to Needs testing.
Feb 25 2023, 5:30 AM · VyOS 1.4 Sagitta

Feb 24 2023

doctorpangloss created T5033: generate-public-key command fails for address with multiple public keys like GitHub.
Feb 24 2023, 9:02 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
c-po committed rVYOSONEX893ead2fe9b3: login: T1948: drop absolut path to /usr/libexec/vyos, re-use vyos.defaults.
Feb 24 2023, 9:01 PM
zsdc committed rVYOSONEX32a4415191ca: login: T4943: Fixed 2FA + RADIUS compatibility.
Feb 24 2023, 9:00 PM
GitHub <noreply@github.com> committed rVYOSONEXc0b5b3d52d46: Merge pull request #1851 from zdc/T4943-sagitta (authored by c-po).
Feb 24 2023, 9:00 PM
jestabro closed T5030: HTTPS-API delete key without id error as Resolved.
Feb 24 2023, 8:15 PM · VyOS 1.4 Sagitta
devon added a comment to T5032: VRRP aware DHCP relay.

I looked into it, but there doesn't seem to be a way to temporarily disable a particular interface in DHCP relay.

Feb 24 2023, 7:32 PM · VyOS 1.4 Sagitta
n.fort added a comment to T5032: VRRP aware DHCP relay.

Have you try getting same result using VRRP transitions scripts?

Feb 24 2023, 7:28 PM · VyOS 1.4 Sagitta
devon added a comment to T5032: VRRP aware DHCP relay.

PR https://github.com/vyos/vyos-1x/pull/1852

Feb 24 2023, 7:26 PM · VyOS 1.4 Sagitta
devon created T5032: VRRP aware DHCP relay.
Feb 24 2023, 7:21 PM · VyOS 1.4 Sagitta
Memphis created T5031: Users Level.
Feb 24 2023, 6:31 PM · VyOS Rolling
zsdc added a comment to T4943: Radius SSH login displays "permission denied" on 1.4 rolling release.

PRs:
https://github.com/vyos/libnss-mapuser/pull/7
https://github.com/vyos/libpam-radius-auth/pull/6
https://github.com/vyos/vyos-1x/pull/1851

Feb 24 2023, 6:26 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXd3fa059264bf: T5029: Change nginx default root directory.
Feb 24 2023, 4:38 PM
GitHub <noreply@github.com> committed rVYOSONEX73ceaaafa9e7: Merge pull request #1848 from sever-sever/T5029 (authored by c-po).
Feb 24 2023, 4:38 PM
jestabro committed rVYOSONEXb0bc3ce9513f: http-api: T5030: fix missing check on delete keys id tag or key value.
Feb 24 2023, 4:37 PM
GitHub <noreply@github.com> committed rVYOSONEX42e758dde8e0: Merge pull request #1850 from jestabro/T5030 (authored by c-po).
Feb 24 2023, 4:37 PM
Viacheslav committed rVYOSONEXf1dc4ef24173: T5029: Fix Regex for nginx to find a better match.
Feb 24 2023, 4:37 PM
GitHub <noreply@github.com> committed rVYOSONEXb49f27ce14b7: Merge pull request #1849 from sever-sever/T5029-regex (authored by c-po).
Feb 24 2023, 4:37 PM
jestabro added a comment to T5030: HTTPS-API delete key without id error.

https://github.com/vyos/vyos-1x/pull/1850

Feb 24 2023, 3:53 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5029: Nginx change default root directory and fix regex.
Feb 24 2023, 3:45 PM · VyOS 1.4 Sagitta
jestabro edited a custom field on T5030: HTTPS-API delete key without id error.
Feb 24 2023, 3:32 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5029: Nginx change default root directory and fix regex.

PR https://github.com/vyos/vyos-1x/pull/1848
PR https://github.com/vyos/vyos-1x/pull/1849

Feb 24 2023, 3:30 PM · VyOS 1.4 Sagitta
a.apostoliuk committed rVYOSONEXbaa8eb854348: openconnect: T4955: Removed wrong authserver in radiusclient.conf.
Feb 24 2023, 3:15 PM
GitHub <noreply@github.com> committed rVYOSONEX0420cea6f0c6: Merge pull request #1794 from aapostoliuk/T4955-equuleus (authored by c-po).
Feb 24 2023, 3:15 PM
a.apostoliuk committed rVYOSONEX391b7333c836: macsec: T5008: Changed length of CKN to (2..64 hex-digits).
Feb 24 2023, 3:13 PM
GitHub <noreply@github.com> committed rVYOSONEX35482c42691c: Merge pull request #1846 from aapostoliuk/T5008-equuleus (authored by c-po).
Feb 24 2023, 3:13 PM
jestabro claimed T5030: HTTPS-API delete key without id error.
Feb 24 2023, 2:33 PM · VyOS 1.4 Sagitta