Page MenuHomeVyOS Platform
Feed All Stories

Apr 13 2023

fernando closed T4939: VRRP command no-preempt not work as expected as Resolved.
Apr 13 2023, 12:04 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav closed T5152: Telegraf agent hostname isn't qualified as Resolved.
Apr 13 2023, 11:25 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav moved T4727: Add RADIUS rate limit support to PPTP server from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 13 2023, 11:24 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav closed T4727: Add RADIUS rate limit support to PPTP server as Resolved.
Apr 13 2023, 11:23 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
marc_s added a comment to T5141: Add numbers for dhclient-exit-hooks.d to enforce script order execution.

@Viacheslav confirmed working.

Apr 13 2023, 9:47 AM · VyOS 1.4 Sagitta
marc_s added a comment to T4362: Wan Load Balancing - Can't create routing tables.

@Viacheslav Confirmed fixed, thank you.

Apr 13 2023, 9:46 AM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX78d846824df0: xml: T5137: fix empty node.def files.
Apr 13 2023, 7:49 AM
mkorobeinikov <[email protected]> committed rVYOSONEXf14de93cdb1d: T5137: refactoring the tech-support command.
Apr 13 2023, 7:07 AM
GitHub <[email protected]> committed rVYOSONEX477f00bd7d95: Merge pull request #1930 from mkorobeinikov/current (authored by c-po).
Apr 13 2023, 7:07 AM
c-po committed rVYOSONEX64871ad75ab0: xml: dns: T5143: valueHelp format should be txt instead of text.
Apr 13 2023, 7:05 AM
c-po committed rVYOSONEX8993298bc2c9: eigrp: T2472: remove pprint debug statement.
Apr 13 2023, 7:01 AM
indrajitr committed rVYOSONEX8afe702361df: dns: T5143: Apply constraint for domain name in DNS forwarding.
Apr 13 2023, 6:55 AM
GitHub <[email protected]> committed rVYOSONEX0cadfa1e1dea: Merge pull request #1935 from indrajitr/pdns-round3 (authored by c-po).
Apr 13 2023, 6:55 AM
Viacheslav committed rVYOSONEXb897f00a008b: T4727: Add RADIUS rate-limit attribute for vpn pptp.
Apr 13 2023, 6:54 AM
GitHub <[email protected]> committed rVYOSONEX65278fa76c07: Merge pull request #1952 from sever-sever/T4727 (authored by c-po).
Apr 13 2023, 6:54 AM
Viacheslav committed rVYOSONEX692f103fe535: T5152: Get default hostname for telegraf from FQDN or hostname.
Apr 13 2023, 6:53 AM
GitHub <[email protected]> committed rVYOSONEX94a6fb73d248: Merge pull request #1954 from sever-sever/T5152-eq (authored by c-po).
Apr 13 2023, 6:53 AM

Apr 12 2023

fett0 <[email protected]> committed rVYOSONEX56a762fc6c21: T4939: backport VRRP startup delay.
Apr 12 2023, 11:22 PM
fett0 <[email protected]> committed rVYOSONEX930a2276811d: T4939: fixed template VRRP startup delay.
Apr 12 2023, 11:22 PM
GitHub <[email protected]> committed rVYOSONEX30263ab26b8a: Merge pull request #1951 from fett0/T4939 (authored by dmbaturin).
Apr 12 2023, 11:22 PM
c-po committed rVYOSONEX47bd0d8ab940: xml: op-mode: T5081: re-use vtysh-generic-detail building block.
Apr 12 2023, 7:48 PM
c-po committed rVYOSONEX23c757dae9b1: xml: op-mode: T5081: introduce new FRR tagNode interface building block.
Apr 12 2023, 7:48 PM
c-po committed rVYOSONEX8cb0b59fce84: xml: T5081: generate common holddown XML building block for IS-IS and OSPF.
Apr 12 2023, 7:47 PM
Cheeze_It committed rVYOSONEXd6ef0c54ad8c: T5081: ISIS and OSPF syncronization with IGP-LDP sync.
Apr 12 2023, 7:29 PM
GitHub <[email protected]> committed rVYOSONEX4d5bc8259053: Merge branch 'vyos:current' into current (authored by Cheeze-It <[email protected]>).
Apr 12 2023, 7:29 PM
Cheeze_It committed rVYOSONEX9347bfa20962: T5081: ISIS and OSPF syncronization with IGP-LDP sync.
Apr 12 2023, 7:29 PM
Cheeze_It committed rVYOSONEX3ffb5ff16543: T5081: ISIS and OSPF syncronization with IGP-LDP sync.
Apr 12 2023, 7:29 PM
Cheeze_It committed rVYOSONEX472f13e28842: Merge branch 'current' of https://github.com/Cheeze-It/vyos-1x into current.
Apr 12 2023, 7:29 PM
GitHub <[email protected]> committed rVYOSONEXf0c274a2187a: Merge pull request #1904 from Cheeze-It/current (authored by c-po).
Apr 12 2023, 7:29 PM
unity added a comment to T425: AWS CloudWatch monitoring scripts.

I've created the PR https://github.com/vyos/vyos-documentation/pull/987 as a temporary explanation for users on how to preserve CloudWatch Agent configuration in a semi-automated way, using the SSM Parameter Store.

Apr 12 2023, 5:09 PM · VyOS 1.3 Equuleus (1.3.3), Amazon AWS Support
Viacheslav added a comment to T5153: OpenConnect route restriction via iptables is ignored.

The firewall for ocserv is handled by https://gitlab.com/openconnect/ocserv/-/blob/master/src/ocserv-fw and uses iptables by default

Apr 12 2023, 4:15 PM
jestabro added a comment to T4516: Rewrite system image manipulation tools in Python.

Supporting (draft) PR and minor fixes linked in PR:
https://github.com/vyos/vyos-1x/pull/1768

Apr 12 2023, 3:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
fernando added a comment to T4939: VRRP command no-preempt not work as expected.

PR 1.3 https://github.com/vyos/vyos-1x/pull/1951

Apr 12 2023, 12:45 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T1237: Static Route Path Monitoring, failover.

@Harliff Could you re-check?

Apr 12 2023, 9:11 AM · VyOS 1.4 Sagitta
Viacheslav moved T5152: Telegraf agent hostname isn't qualified from Open to Finished on the VyOS 1.4 Sagitta board.
Apr 12 2023, 8:49 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T5152: Telegraf agent hostname isn't qualified.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1954

Apr 12 2023, 8:46 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
FileGo created T5154: Chrony - multiple listen addresses.
Apr 12 2023, 7:42 AM · VyOS 1.4 Sagitta
PeppyH added a comment to T5153: OpenConnect route restriction via iptables is ignored.

Could you send sudo nft list ruleset ?

Apr 12 2023, 12:20 AM
PeppyH updated the task description for T5153: OpenConnect route restriction via iptables is ignored.
Apr 12 2023, 12:18 AM

Apr 11 2023

Viacheslav committed rVYOSONEXf62dffaa3121: T4727: Change and fix RADIUS rate-limit option for pptp.
Apr 11 2023, 9:12 PM
GitHub <[email protected]> committed rVYOSONEXc04976f3ccfb: Merge pull request #1953 from sever-sever/T4727-curr (authored by c-po).
Apr 11 2023, 9:12 PM
Viacheslav edited projects for T5152: Telegraf agent hostname isn't qualified, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus.
Apr 11 2023, 7:51 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T4727: Add RADIUS rate limit support to PPTP server.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1952
PR for 1.4 fix https://github.com/vyos/vyos-1x/pull/1953

Apr 11 2023, 7:34 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T4727: Add RADIUS rate limit support to PPTP server from "Task" to "Feature Request".
Apr 11 2023, 7:31 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the status of T5152: Telegraf agent hostname isn't qualified from In progress to Needs testing.
Apr 11 2023, 6:46 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX2179cf45d606: T5152: Get default hostname for telegraf from FQDN or hostname.
Apr 11 2023, 6:45 PM
GitHub <[email protected]> committed rVYOSONEX14582acd1c7d: Merge pull request #1950 from sever-sever/T5152 (authored by c-po).
Apr 11 2023, 6:45 PM
Viacheslav added a comment to T4727: Add RADIUS rate limit support to PPTP server.

For 1.4 rate-limit in the wrong place

set vpn pptp remote-access authentication rate-limit

Expected in the radius section:

set vpn pptp remote-access authentication radius rate-limit
Apr 11 2023, 6:09 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
fernando added a comment to T4939: VRRP command no-preempt not work as expected.

Yes, I forgot to add this task. I'll make the PR

Apr 11 2023, 12:05 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav closed T4051: Connected routes strange / not working as Resolved.
Apr 11 2023, 11:59 AM · VyOS 1.4 Sagitta
Viacheslav closed T4924: Systemctl strongswan.service for some reason is not disabled as Resolved.
Apr 11 2023, 11:27 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T1297: Add GARP settings to VRRP/keepalived.

@n.fort Could you add PR for 1.3?

Apr 11 2023, 11:25 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav added a comment to T4939: VRRP command no-preempt not work as expected.

@fernando Could you add PR for 1.3?

Apr 11 2023, 11:24 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T5152: Telegraf agent hostname isn't qualified.

PR https://github.com/vyos/vyos-1x/pull/1950

Apr 11 2023, 9:12 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav closed T4197: Vyos arm64-latest build issue with telegraf pkg as Resolved.
Apr 11 2023, 8:28 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5152: Telegraf agent hostname isn't qualified from Open to In progress.
Apr 11 2023, 7:19 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added projects to T5153: OpenConnect route restriction via iptables is ignored: VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta.

Could you send sudo nft list ruleset ?

Apr 11 2023, 7:07 AM
Viacheslav added a project to T5152: Telegraf agent hostname isn't qualified: VyOS 1.4 Sagitta.
Apr 11 2023, 6:59 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
paolobyte added a comment to T4891: BFD flapping loop.

I reproduced this configuration. Version VyOS 1.4-rolling-202212270317 - BFD works fine.

Configuration:

set interfaces ethernet eth0 address '10.221.3.18/30'
set interfaces ethernet eth0 mtu '9000'
set interfaces ethernet eth0 offload gro
set interfaces ethernet eth0 offload gso
set interfaces ethernet eth0 offload sg
set interfaces ethernet eth0 offload tso

BFD peer status:

BFD Peers:
        peer 10.221.3.17 vrf default
                ID: 2428685750
                Remote ID: 2382320760
                Active mode
                Status: up
                Uptime: 30 minute(s), 19 second(s)
                Diagnostics: ok
                Remote diagnostics: ok
                Peer Type: configured
                RTT min/avg/max: 0/0/0 usec
                Local timers:
                        Detect-multiplier: 5
                        Receive interval: 100ms
                        Transmission interval: 100ms
                        Echo receive interval: 50ms
                        Echo transmission interval: disabled
                Remote timers:
                        Detect-multiplier: 5
                        Receive interval: 100ms
                        Transmission interval: 100ms
                        Echo receive interval: 50ms

[edit]

Try upgrading the VyOS to the latest version.

Apr 11 2023, 6:06 AM · VyOS 1.4 Sagitta
PeppyH created T5153: OpenConnect route restriction via iptables is ignored.
Apr 11 2023, 5:37 AM

Apr 10 2023

dhoard updated the task description for T5152: Telegraf agent hostname isn't qualified.
Apr 10 2023, 10:01 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dhoard updated the task description for T5152: Telegraf agent hostname isn't qualified.
Apr 10 2023, 10:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dhoard created T5152: Telegraf agent hostname isn't qualified.
Apr 10 2023, 10:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the status of T5012: Control network configuration from Cloud-Init config from In progress to Needs testing.
Apr 10 2023, 9:44 PM · VyOS 1.4 Sagitta
Viacheslav closed T5061: All containers restart on config change as Resolved.

Fixed in T5047

Apr 10 2023, 9:30 PM · VyOS 1.4 Sagitta
chenxiaolong closed T5151: EAP-TLS TLSv1.0/1.1 regression after T5003 as Resolved.
Apr 10 2023, 8:46 PM · VyOS 1.4 Sagitta
Viacheslav closed T5148: OpenVPN cannot start due to could not load plugin shared object /openvpn-otp.so as Resolved.
Apr 10 2023, 8:36 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5065: Mixing `destination port xxx` and `destination group port-group yyy` in firewall rules doesn't work, but can be commited from In progress to Needs testing.
Apr 10 2023, 7:48 PM · VyOS 1.4 Sagitta
indrajitr committed rVYOSONEX3f3621b68743: dns: T5144: Improve dns dynamic status output.
Apr 10 2023, 7:37 PM
GitHub <[email protected]> committed rVYOSONEXc5cd065773a0: Merge pull request #1936 from indrajitr/ddclient-opmode (authored by c-po).
Apr 10 2023, 7:37 PM
Viacheslav committed rVYOSONEX8e4b8d1468c0: T5148: Add smoketest for plugin openvpn-otp OpenVPN.
Apr 10 2023, 7:36 PM
GitHub <[email protected]> committed rVYOSONEX37b98709d96d: Merge pull request #1947 from sever-sever/T5148 (authored by c-po).
Apr 10 2023, 7:36 PM
Viacheslav committed rVYOSONEX8ef944b854de: T5065: Add verify for firewall port-group and port.
Apr 10 2023, 7:35 PM
GitHub <[email protected]> committed rVYOSONEXc8562d33e7d9: Merge pull request #1949 from sever-sever/T5065 (authored by c-po).
Apr 10 2023, 7:35 PM
chenxiaolong committed rVYOSONEX8eb85739c965: hostapd: T5151: Override ConditionFileNotEmpty.
Apr 10 2023, 7:34 PM
GitHub <[email protected]> committed rVYOSONEX40f60ae63e0d: Merge pull request #1948 from chenxiaolong/T5151 (authored by c-po).
Apr 10 2023, 7:34 PM
unity added a comment to T425: AWS CloudWatch monitoring scripts.

Notice. Initially this task was about monitoring scripts but they were deprecated. Then aws-cloudwatch-agent emerged.
aws-cloudwatch-agent was successfully added to vyos-build:equuleus. But cloudwatch configuration preservation between image updates is not.
This task was closed mistakenly prematurely thus should be reopen.

Apr 10 2023, 7:11 PM · VyOS 1.3 Equuleus (1.3.3), Amazon AWS Support
Viacheslav added a comment to T5065: Mixing `destination port xxx` and `destination group port-group yyy` in firewall rules doesn't work, but can be commited.

PR https://github.com/vyos/vyos-1x/pull/1949

Apr 10 2023, 6:12 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5065: Mixing `destination port xxx` and `destination group port-group yyy` in firewall rules doesn't work, but can be commited from Open to In progress.
Apr 10 2023, 5:48 PM · VyOS 1.4 Sagitta
chenxiaolong added a comment to T5151: EAP-TLS TLSv1.0/1.1 regression after T5003.

I found the issue. This was caused by bumping the debian packaging scripts from debian/2%2.10-10 to debian/2%2.10-12, which includes https://salsa.debian.org/debian/wpa/-/commit/d204ceb5a2dc33db888eb55b5fee542a1005e69c. This is not compatible with vyos because vyos uses a config path in /run.

Apr 10 2023, 5:10 PM · VyOS 1.4 Sagitta
chenxiaolong added a comment to T5151: EAP-TLS TLSv1.0/1.1 regression after T5003.

Thanks, I ran the ethernet smoke tests, but not the wireless ones. I'll investigate right away.

Apr 10 2023, 3:52 PM · VyOS 1.4 Sagitta
Viacheslav closed T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes' as Resolved.

So we can close it. Thank you for contributing.

Apr 10 2023, 3:26 PM · VyOS 1.4 Sagitta
tfiebig added a comment to T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'.

kk, will try to remember to setup a box for that; Usually rolling my own images. ;-)

Apr 10 2023, 2:41 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'.

Just waiting for a new rolling image and checking that those commands are present for CLI :)
If all goods we can close it

Apr 10 2023, 2:39 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5122: Move "archive-areas" to defaults.toml to support "non-free-firmware" repository from "Task" to "Feature Request".
Apr 10 2023, 2:37 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
tfiebig added a comment to T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'.

What is meant with testing? Writing the unit tests? Or seeing whether it actually works? If it is the latter, this is in prod on my boxes for roughly a month ;-)

Apr 10 2023, 2:36 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T1237: Static Route Path Monitoring, failover.

Targets and logs will be fixed in the next rolling release

Apr 10 2023, 2:26 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX1a402dd93974: T1237: Failover route add checks for multiple targets.
Apr 10 2023, 2:26 PM
GitHub <[email protected]> committed rVYOSONEX3593ecfa51a6: Merge pull request #1941 from sever-sever/T1237 (authored by Viacheslav).
Apr 10 2023, 2:26 PM
sskaje added a comment to T5122: Move "archive-areas" to defaults.toml to support "non-free-firmware" repository.

My fault, the double quotes were mis-removed in the PR when cleaning code.

Apr 10 2023, 2:07 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav added a comment to T5148: OpenVPN cannot start due to could not load plugin shared object /openvpn-otp.so.

Smoketest PR https://github.com/vyos/vyos-1x/pull/1947

Apr 10 2023, 1:56 PM · VyOS 1.4 Sagitta
Viacheslav assigned T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes' to tfiebig.
Apr 10 2023, 1:32 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes' from Open to Needs testing.
Apr 10 2023, 1:32 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX4fac9c122887: T4770: Ability to get OpenVPN iface state and description for raw.
Apr 10 2023, 1:23 PM
GitHub <[email protected]> committed rVYOSONEX28c01a860582: Merge pull request #1942 from sever-sever/T4770 (authored by dmbaturin).
Apr 10 2023, 1:23 PM
Viacheslav changed the status of T5148: OpenVPN cannot start due to could not load plugin shared object /openvpn-otp.so from In progress to Needs testing.
Apr 10 2023, 1:21 PM · VyOS 1.4 Sagitta
tfiebig committed rVYOSONEX6efdab7cccdd: T5078: Added filtered-routes BGP command.
Apr 10 2023, 12:59 PM
GitHub <[email protected]> committed rVYOSONEX14cbda871f7e: Merge pull request #1946 from ichdasich/filtered_routes (authored by dmbaturin).
Apr 10 2023, 12:59 PM
Viacheslav committed rVYOSONEXc6f23303112e: T5148: Fix OpenVPN plugin dir variable.
Apr 10 2023, 12:57 PM
GitHub <[email protected]> committed rVYOSONEX0ae6ad7af43c: Merge pull request #1945 from sever-sever/T5148 (authored by dmbaturin).
Apr 10 2023, 12:57 PM