Page MenuHomeVyOS Platform
Feed All Stories

Sep 15 2023

Apachez added a comment to T4502: Consider implementing (NAT/other) flow table offload.

Note that PR2062 is broken.

Sep 15 2023, 2:01 AM · VyOS 1.4 Sagitta

Sep 14 2023

n.fort committed rVYOSONEXe326ad5bc6eb: T5579: show log firewall - Fix command in order to fit new firewall cli….
Sep 14 2023, 6:47 PM
GitHub <[email protected]> committed rVYOSONEX249f391f6898: Merge pull request #2268 from nicolas-fort/T5579 (authored by c-po).
Sep 14 2023, 6:47 PM
n.fort changed the status of T5579: Log firewall - Wrong command after firewall refactor, a subtask of T5160: Firewall refactor, from Confirmed to In progress.
Sep 14 2023, 6:45 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5579: Log firewall - Wrong command after firewall refactor from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/2268

Sep 14 2023, 6:45 PM · VyOS 1.5 Circinus
I-n-d-y added a project to T5425: enable VRF for conntrack-sync: VyOS 1.5 Circinus.
Sep 14 2023, 5:51 PM · VyOS 1.5 Circinus, vyatta-conntrack-sync
n.fort committed rVYOSONEX063de842144a: T4072: Firewall op-mode command: add bridge capabilities.
Sep 14 2023, 5:14 PM
GitHub <[email protected]> committed rVYOSONEX324d3585d116: Merge pull request #2242 from nicolas-fort/T4072-op-mode (authored by c-po).
Sep 14 2023, 5:14 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX1c747d1d1e02: T5561: nat: defining inbound|outbound interface should not be mandatory while… (authored by n.fort).
Sep 14 2023, 5:14 PM
n.fort committed rVYOSONEXec5437913e48: T5561: nat: defining inbound|outbound interface should not be mandatory while….
Sep 14 2023, 5:13 PM
GitHub <[email protected]> committed rVYOSONEX5f2179306708: Merge pull request #2253 from nicolas-fort/T5561 (authored by c-po).
Sep 14 2023, 5:13 PM
GitHub <[email protected]> committed rVYOSONEXc5498ec219d0: Merge pull request #2254 from vyos/mergify/bp/sagitta/pr-2245 (authored by c-po).
Sep 14 2023, 5:06 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0c1e099301f9: T5575: ARP/NDP table-size isnt set properly (authored by Apachez).
Sep 14 2023, 5:05 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8e16ce8de70d: T5575: ARP/NDP table-size isnt set properly (authored by Apachez).
Sep 14 2023, 5:05 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX7009ef08a006: T5582: make "force ntp synchronisation" command VRF aware (authored by c-po).
Sep 14 2023, 5:05 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX9db289a02892: op mode: T5582: Add 'force ntp synchronization' (authored by dmbaturin).
Sep 14 2023, 5:04 PM
Apachez committed rVYOSONEX9391fc273ce9: T5575: ARP/NDP table-size isnt set properly.
Sep 14 2023, 5:04 PM
Apachez committed rVYOSONEX976f82785910: T5575: ARP/NDP table-size isnt set properly.
Sep 14 2023, 5:04 PM
GitHub <[email protected]> committed rVYOSONEX39e3c9e06e79: Merge pull request #2255 from Apachez-/T5575 (authored by c-po).
Sep 14 2023, 5:04 PM
dmbaturin committed rVYOSONEX8e5931c94a4e: op mode: T5582: Add 'force ntp synchronization'.
Sep 14 2023, 5:04 PM
c-po committed rVYOSONEXc27b0ca1816b: T5582: make "force ntp synchronisation" command VRF aware.
Sep 14 2023, 5:04 PM
GitHub <[email protected]> committed rVYOSONEX1fb9dbe0990a: Merge pull request #2262 from dmbaturin/T5582-ntp-force (authored by c-po).
Sep 14 2023, 5:04 PM
GitHub <[email protected]> committed rVYOSONEXed3c1137d65c: Merge pull request #2261 from vyos/mergify/bp/sagitta/pr-2260 (authored by jestabro).
Sep 14 2023, 3:05 PM
GitHub <[email protected]> committed rVYOSONEX3227ab936c6e: Merge pull request #2258 from vyos/mergify/bp/sagitta/pr-2257 (authored by Viacheslav).
Sep 14 2023, 3:01 PM
Viacheslav committed rVYOSONEX7a79dd77fa11: T5480: Ability to disable SNMP for keepalived service VRRP.
Sep 14 2023, 2:48 PM
GitHub <[email protected]> committed rVYOSONEXd43770709b0f: Merge pull request #2212 from sever-sever/T5480-sag (authored by dmbaturin).
Sep 14 2023, 2:48 PM
ordex committed rVYOSONEX3072e507eb1c: openvpn: T3214: allow configuring server with v6 only.
Sep 14 2023, 2:37 PM
ordex committed rVYOSONEX7a0e40ce8df3: openvpn: T3214: warn when setting nopool and server-ipv6 is being used.
Sep 14 2023, 2:37 PM
ordex committed rVYOSONEX0ccbbca01b22: openvpn: T3214: specify nopool on --server line only if needed.
Sep 14 2023, 2:37 PM
GitHub <[email protected]> committed rVYOSONEX599016be1ac0: Merge pull request #1637 from ordex/T3214 (authored by dmbaturin).
Sep 14 2023, 2:37 PM
vfreex committed rVYOSONEXf909c17aca4d: T4502: firewall: Add software flow offload using flowtable.
Sep 14 2023, 2:18 PM
GitHub <[email protected]> committed rVYOSONEXc355b07c21b6: Merge pull request #2062 from vfreex/simple-fastpath-support (authored by Viacheslav).
Sep 14 2023, 2:18 PM
dmbaturin created 1.3.4.
Sep 14 2023, 1:07 PM
Apachez added a comment to T5499: initial arm64 support for RPI4 and QEMU VM.

Regarding testing of arm-builds, hopefully this article might come handy (how to use qemu-system-aarch64 (on x86) part of the qemu-system-arm package):

Sep 14 2023, 12:41 PM · VyOS 1.5 Circinus
aalmenar added a comment to T5546: Failed upgrade from 1.4-rolling-202212310809 to 1.4-rolling-202309030023.

In my case the upgrade from 1.4-rolling-202308060317 to vyos-1.4-rolling-202308060317 made the vrf unavailable so no access to management. Booting back to old version became working again.

Sep 14 2023, 12:36 PM · VyOS 1.4 Sagitta (1.4.1)
Apachez added a comment to T5511: Cleanup of unused directories (and files) in order to shrink image-size.

The excludes-file in PR406 had incorrectly a '/' as first character (for the directory to be excluded from the squashfs-file).

Sep 14 2023, 12:01 PM · VyOS 1.4 Sagitta
Apachez committed rVYOSONEX40503a9d7df4: T2044: RPKI doesn't boot properly.
Sep 14 2023, 11:10 AM
GitHub <[email protected]> committed rVYOSONEXfc5b2871c548: Merge pull request #2264 from Apachez-/T2044 (authored by c-po).
Sep 14 2023, 11:10 AM
yun added a comment to T5455: SSH fingerprints aren't migrated to the new image on upgrade.

Would also be nice to include the global known_hosts file in /etc/ssh/ssh_known_hosts.

Sep 14 2023, 10:57 AM · VyOS 1.4 Sagitta (1.4.1)
yun added a comment to T5541: Zone-Based Firewalling in VyOS Sagitta 1.4.

I would also like to know if zone based firewall still work or support is removed?

Sep 14 2023, 10:56 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5584: System cannot boot with commit-arachive location sftp in some cases.
Sep 14 2023, 8:19 AM · Restricted Project, VyOS 1.3 Equuleus (1.3.9)
Apachez added a comment to T2044: RPKI doesn't boot properly.

PR created: https://github.com/vyos/vyos-1x/pull/2264

Sep 14 2023, 8:14 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5530: Add LFA to IS-IS from Open to In progress.
Sep 14 2023, 8:00 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
Apachez added a comment to T2044: RPKI doesn't boot properly.

Should probably add "-M rpki" permanently to FRR/bgp.

Sep 14 2023, 7:53 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez added a comment to T2044: RPKI doesn't boot properly.

Could the error from latest nightly be due to that rpki module isnt loaded for FRR/bgp?

Sep 14 2023, 7:39 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
maimun.najib created T5583: PPPoE server on vpp interface.
Sep 14 2023, 7:07 AM · VyOS 1.4 Sagitta
vfreex added a comment to T3655: NAT doesn't work correctly with VRF.

@fernando This is really nice. Thank you for the testing!

Sep 14 2023, 7:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T2044: RPKI doesn't boot properly.

Could https://vyos.dev/T2044 be related to the failed nightly build from last night?

Sep 14 2023, 6:53 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <[email protected]> committed rVYOSONEXc803cf3bae09: Merge pull request #2259 from vyos/mergify/bp/sagitta/pr-2252 (authored by c-po).
Sep 14 2023, 5:54 AM
Cheeze_It added a comment to T5530: Add LFA to IS-IS.

Added PR here https://github.com/vyos/vyos-1x/pull/2263

Sep 14 2023, 1:27 AM · VyOS 1.4 Sagitta (1.4.0-epa2)

Sep 13 2023

Apachez added a comment to T5471: Conntrack logging doesnt seem to be working.

This is still the case in VyOS 1.5-rolling-202309130022:

Sep 13 2023, 9:43 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Apachez added a comment to T5513: Anomalies in show firewall command after refactoring.

Suggestion of "hidden" ruleset (visible when doing show firewall and show firewall statistics):

Sep 13 2023, 9:39 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5511: Cleanup of unused directories (and files) in order to shrink image-size.

PR created: https://github.com/vyos/vyos-build/pull/406

Sep 13 2023, 9:08 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5511: Cleanup of unused directories (and files) in order to shrink image-size.

Found out that mksquashfs supports -ef EXCLUDE_FILE as a file that (line by line) defines which files and directories to be excluded during creation of filesystem.squashfs. Adding -wildcard will make it possible to use wildcards within the EXCLUDE_FILE.

Sep 13 2023, 8:49 PM · VyOS 1.4 Sagitta
zsdc changed the status of T5577: Optimize PAM configs for RADIUS/TACACS+ from Open to In progress.

PR for 1.5: https://github.com/vyos/vyos-1x/pull/2256

Sep 13 2023, 8:43 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5575: ARP/NDP table-size isnt set properly.

PR updated: https://github.com/vyos/vyos-1x/pull/2255

Sep 13 2023, 7:14 PM · VyOS 1.5 Circinus
Apachez added a comment to T5582: Add a command to force NTP sync.

Something like this console command but more handy in op-mode?

Sep 13 2023, 6:49 PM · VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX73b027586805: T671: do not preserve old tech-support report implementation (authored by jestabro).
Sep 13 2023, 5:59 PM
jestabro committed rVYOSONEXd1ec84877f8c: T671: do not preserve old tech-support report implementation.
Sep 13 2023, 5:58 PM
GitHub <[email protected]> committed rVYOSONEX0a0aff848be6: Merge pull request #2260 from jestabro/legacy-tech-support (authored by c-po).
Sep 13 2023, 5:58 PM
dmbaturin created T5582: Add a command to force NTP sync.
Sep 13 2023, 5:41 PM · VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX84e245a71250: T5576: Add BGP remove-private-as all option (authored by Viacheslav).
Sep 13 2023, 5:18 PM
Viacheslav committed rVYOSONEXd72024b11e12: T5576: Add BGP remove-private-as all option.
Sep 13 2023, 5:17 PM
GitHub <[email protected]> committed rVYOSONEXe8fb2d22c45f: Merge pull request #2252 from sever-sever/T5576 (authored by c-po).
Sep 13 2023, 5:17 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXde70690fb9b6: op-mode: T5581: add "show ip nht" command (IPv4 nexthop tracking table) (authored by c-po).
Sep 13 2023, 5:14 PM
c-po committed rVYOSONEX138e60831842: op-mode: T5581: add "show ip nht" command (IPv4 nexthop tracking table).
Sep 13 2023, 5:13 PM
GitHub <[email protected]> committed rVYOSONEXa8fecd96b9c3: Merge pull request #2257 from c-po/t5581-ip-nht (authored by c-po).
Sep 13 2023, 5:13 PM
c-po added a comment to T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table).

PR https://github.com/vyos/vyos-1x/pull/2257

Sep 13 2023, 4:58 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table) from Open to Finished on the VyOS 1.5 Circinus board.
Sep 13 2023, 4:58 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table) from Backlog to In Progress on the VyOS 1.4 Sagitta board.
Sep 13 2023, 4:58 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table) from Open to Backlog on the VyOS 1.4 Sagitta board.
Sep 13 2023, 4:58 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po changed the status of T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table) from Open to In progress.
Sep 13 2023, 4:55 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5581: Add "show ip nht" op-mode command (IPv4 nexthop tracking table).
Sep 13 2023, 4:54 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
fernando added a comment to T4919: TPM-backed config encryption.

@sdev greats !!!

Sep 13 2023, 4:39 PM · VyOS 1.5 Circinus
ServerForge created T5580: vyos-1x package builds as 1.5 on sagitta branch.
Sep 13 2023, 3:40 PM · VyOS 1.4 Sagitta
n.fort added a subtask for T5160: Firewall refactor: T5579: Log firewall - Wrong command after firewall refactor.
Sep 13 2023, 3:07 PM · VyOS 1.4 Sagitta
n.fort added a parent task for T5579: Log firewall - Wrong command after firewall refactor: T5160: Firewall refactor.
Sep 13 2023, 3:07 PM · VyOS 1.5 Circinus
n.fort changed the status of T5579: Log firewall - Wrong command after firewall refactor from Open to Confirmed.
Sep 13 2023, 3:07 PM · VyOS 1.5 Circinus
n.fort created T5579: Log firewall - Wrong command after firewall refactor.
Sep 13 2023, 3:07 PM · VyOS 1.5 Circinus
Apachez added a comment to T5575: ARP/NDP table-size isnt set properly.

PR created: https://github.com/vyos/vyos-1x/pull/2255

Sep 13 2023, 12:08 PM · VyOS 1.5 Circinus
Apachez added a comment to T5575: ARP/NDP table-size isnt set properly.

Turns out that the values who override the vyos-config values are set in /etc/sysctl.d/30-vyos-router.conf:

Sep 13 2023, 11:50 AM · VyOS 1.5 Circinus
Apachez claimed T5575: ARP/NDP table-size isnt set properly.
Sep 13 2023, 11:48 AM · VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX67e95d828747: frr: T5239: T2061: prevent writing logs to /var/log/frr/frr.log (authored by c-po).
Sep 13 2023, 11:42 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX3bde0d7b96cb: frr: T5239: fix process startup order (authored by c-po).
Sep 13 2023, 11:42 AM
c-po committed rVYOSONEXdf74a09b80df: frr: T5239: fix process startup order.
Sep 13 2023, 11:41 AM
c-po committed rVYOSONEXd4b9b2aa5f5d: frr: T5239: T2061: prevent writing logs to /var/log/frr/frr.log.
Sep 13 2023, 11:41 AM
GitHub <[email protected]> committed rVYOSONEX1bc808742f55: Merge pull request #2245 from c-po/t5239-frr (authored by c-po).
Sep 13 2023, 11:41 AM
sarthurdev changed the status of T5571: Firewall does not delete networks from the table raw from Open to Confirmed.
Sep 13 2023, 10:49 AM · VyOS 1.5 Circinus
n.fort changed the status of T5561: NAT - Inbound or outbound interface should not be mandatory from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/2253

Sep 13 2023, 10:47 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez added a comment to T5575: ARP/NDP table-size isnt set properly.

I can confirm that setting these values AFTER boot (and doing commit) they will be properly set.

Sep 13 2023, 10:42 AM · VyOS 1.5 Circinus
Viacheslav changed the status of T5576: Add bgp remove-private-as all option from Open to In progress.
Sep 13 2023, 10:19 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav edited projects for T5578: "ikev2-reauth" description contains outdated information, added: VyOS 1.3 Equuleus (1.3.5); removed VyOS 1.3 Equuleus.
Sep 13 2023, 9:48 AM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T5576: Add bgp remove-private-as all option.

PR for 1.3.x https://github.com/vyos/vyatta-cfg-quagga/pull/102
PR for the current https://github.com/vyos/vyos-1x/pull/2252

Sep 13 2023, 9:47 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
sarthurdev added a comment to T4919: TPM-backed config encryption.

@fernando See here: https://github.com/vyos/vyos-build/pull/297

Sep 13 2023, 9:35 AM · VyOS 1.5 Circinus
a.apostoliuk changed the status of T5578: "ikev2-reauth" description contains outdated information from Open to In progress.
Sep 13 2023, 9:16 AM · VyOS 1.3 Equuleus (1.3.5)
a.apostoliuk created T5578: "ikev2-reauth" description contains outdated information.
Sep 13 2023, 9:16 AM · VyOS 1.3 Equuleus (1.3.5)
zsdc added a parent task for T5554: Disable sudo for PAM RADIUS: T5577: Optimize PAM configs for RADIUS/TACACS+.
Sep 13 2023, 8:08 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
zsdc added a parent task for T5570: PAM config RADIUS ignore for default and success: T5577: Optimize PAM configs for RADIUS/TACACS+.
Sep 13 2023, 8:08 AM · VyOS 1.4 Sagitta (1.4.1)
zsdc added subtasks for T5577: Optimize PAM configs for RADIUS/TACACS+: T5570: PAM config RADIUS ignore for default and success, T5554: Disable sudo for PAM RADIUS.
Sep 13 2023, 8:08 AM · VyOS 1.4 Sagitta
zsdc created T5577: Optimize PAM configs for RADIUS/TACACS+.
Sep 13 2023, 8:07 AM · VyOS 1.4 Sagitta