Page MenuHomeVyOS Platform
Feed All Stories

Nov 22 2023

n.fort closed T5681: Interface match - Simplified and unified cli as Resolved.
Nov 22 2023, 7:14 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort closed T5729: Firewall, nat and policy route - Switch to valueless as Resolved.
Nov 22 2023, 7:11 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort changed the status of T5637: Firewall default-action log from Confirmed to Needs testing.
Nov 22 2023, 7:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav assigned T5774: commit-archive to FTP server broken after update (VyOS 1.5-rolling) to erkin.
Nov 22 2023, 5:06 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav triaged T5774: commit-archive to FTP server broken after update (VyOS 1.5-rolling) as Normal priority.
Nov 22 2023, 4:56 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
I-n-d-y raised the priority of T5774: commit-archive to FTP server broken after update (VyOS 1.5-rolling) from Low to Requires assessment.
Nov 22 2023, 4:54 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
I-n-d-y created T5774: commit-archive to FTP server broken after update (VyOS 1.5-rolling).
Nov 22 2023, 4:52 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a project to T5773: Unable to load config via HTTP: VyOS 1.5 Circinus.
Nov 22 2023, 4:52 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav updated the task description for T5773: Unable to load config via HTTP.
Nov 22 2023, 4:51 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
erkin claimed T5773: Unable to load config via HTTP.
Nov 22 2023, 4:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav triaged T5773: Unable to load config via HTTP as Urgent! priority.
Nov 22 2023, 4:38 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5773: Unable to load config via HTTP.
Nov 22 2023, 4:38 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXca9c77af975e: https api: T5772: check if keys are configured (authored by dmbaturin).
Nov 22 2023, 3:08 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX78d4a8268792: https api: T5772: check if keys are configured (authored by dmbaturin).
Nov 22 2023, 3:08 PM
GitHub <noreply@github.com> committed rVYOSONEXc1e170c88cd2: Merge pull request #2522 from dmbaturin/require-api-keys (authored by c-po).
Nov 22 2023, 3:07 PM
dmbaturin committed rVYOSONEX8c450ea7f538: https api: T5772: check if keys are configured.
Nov 22 2023, 3:07 PM
JeffWDH added a project to T5771: GeoIP - Include RFC reserved IP ranges in inverse-match rules: VyOS 1.5 Circinus.
Nov 22 2023, 2:10 PM · Restricted Project, VyOS Rolling
GitHub <noreply@github.com> committed rVYOSONEX319e1bf7f23c: Merge pull request #2529 from vyos/mergify/bp/sagitta/pr-2527 (authored by dmbaturin).
Nov 22 2023, 12:26 PM
n.fort committed rVYOSONEXc45b695ca068: T5637: firewall: extend rule for default-action to firewall bridge, in order to….
Nov 22 2023, 12:24 PM
GitHub <noreply@github.com> committed rVYOSONEX8f853daa22fe: Merge pull request #2528 from nicolas-fort/T5637-Extend-bridge (authored by c-po).
Nov 22 2023, 12:24 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX2dd0aa94e080: pppoe: T5630: make MRU default to MTU if unspecified (authored by c-po).
Nov 22 2023, 12:24 PM
c-po committed rVYOSONEXffd7339e2ea3: pppoe: T5630: make MRU default to MTU if unspecified.
Nov 22 2023, 12:23 PM
GitHub <noreply@github.com> committed rVYOSONEX9a5785c698d5: Merge pull request #2527 from c-po/t5630-mru-part-2 (authored by c-po).
Nov 22 2023, 12:23 PM
c-po added a comment to T5630: pppoe: allow to specify MRU in addition to already configurable MTU.

A fix that changes the behavior back to it was https://github.com/vyos/vyos-1x/pull/2527

Nov 22 2023, 12:22 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a comment to T5637: Firewall default-action log.

PR for bridge: https://github.com/vyos/vyos-1x/pull/2528

Nov 22 2023, 12:08 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.apostoliuk changed the status of T5413: Deny the opportunity to use one public/private key pair on both wireguard peers. from Needs testing to In progress.
Nov 22 2023, 11:36 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
a.apostoliuk added a project to T5413: Deny the opportunity to use one public/private key pair on both wireguard peers.: VyOS 1.3 Equuleus (1.3.5).
Nov 22 2023, 11:35 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
a.apostoliuk changed the status of T5413: Deny the opportunity to use one public/private key pair on both wireguard peers. from In progress to Needs testing.
Nov 22 2023, 11:14 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
a.apostoliuk closed T4877: Need verification in using import vrf and import vpn, export vpn commands as Resolved.
Nov 22 2023, 11:11 AM · VyOS 1.4 Sagitta
a.apostoliuk closed T5578: "ikev2-reauth" description contains outdated information as Resolved.
Nov 22 2023, 10:51 AM · VyOS 1.3 Equuleus (1.3.5)
a.apostoliuk closed T5426: Add exceptions in vici functions calls as Resolved.
Nov 22 2023, 10:50 AM · VyOS 1.4 Sagitta
a.apostoliuk moved T5338: Add 'mpls bgp forwarding' feature from Open to Finished on the VyOS 1.4 Sagitta board.
Nov 22 2023, 10:48 AM · VyOS 1.4 Sagitta
a.apostoliuk closed T5338: Add 'mpls bgp forwarding' feature, a subtask of T5337: MPLS/BGP: Route leak does not happen from the VPNv4 table to specific vrf, as Resolved.
Nov 22 2023, 10:48 AM · VyOS 1.4 Sagitta
a.apostoliuk closed T5338: Add 'mpls bgp forwarding' feature as Resolved.
Nov 22 2023, 10:48 AM · VyOS 1.4 Sagitta
a.apostoliuk placed T5201: Add Split Tunneling for L2TP/PPTP/SSTP VPN Clients up for grabs.
Nov 22 2023, 10:43 AM · VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXb083d60102e5: vxlan: T5759: change default MTU from 1450 -> 1500 bytes (authored by c-po).
Nov 22 2023, 10:06 AM
c-po committed rVYOSONEX4a163b016333: vxlan: T5759: change default MTU from 1450 -> 1500 bytes.
Nov 22 2023, 10:04 AM
GitHub <noreply@github.com> committed rVYOSONEX6dfbf213fe83: Merge pull request #2503 from c-po/t5759-vxlan-mtu (authored by c-po).
Nov 22 2023, 10:04 AM
GitHub <noreply@github.com> committed rVYOSONEXb1ef7ba3e5f6: Merge pull request #2525 from vyos/mergify/bp/sagitta/pr-2499 (authored by c-po).
Nov 22 2023, 10:04 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX449ab8521298: vxlan: T5753: add support for VNI filtering (authored by c-po).
Nov 22 2023, 9:38 AM
c-po committed rVYOSONEX35f6033d2105: vxlan: T5753: add support for VNI filtering.
Nov 22 2023, 9:37 AM
GitHub <noreply@github.com> committed rVYOSONEX00a28fe512cc: Merge pull request #2499 from c-po/t5753-vxlan-vnifilter (authored by c-po).
Nov 22 2023, 9:37 AM
Viacheslav closed T5767: Add reboot and poweroff the system via API as Resolved.

Works fine

$ curl -k --location --request POST 'https://192.168.122.11/reboot'   --form data='{"op": "reboot", "path": ["now"]}'   --form key='foo'
{"success": true, "data": "Warning: there are unsaved configuration changes!\nRun 'save' command if you do not want to lose those changes after reboot/shutdown.\n\n", "error": null}
Nov 22 2023, 9:31 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
a.hajiyev closed T4021: Long commit time on bridge interface with 1-4094 allowed VLAN tags as Resolved.
Nov 22 2023, 7:42 AM · VyOS 1.4 Sagitta
a.hajiyev added a comment to T4021: Long commit time on bridge interface with 1-4094 allowed VLAN tags.

Tested on VyOS 1.4-rolling-202311100309:

Nov 22 2023, 7:41 AM · VyOS 1.4 Sagitta
a.hajiyev closed T3818: BGP export route-map only works after bgpd restart as Resolved.
Nov 22 2023, 7:20 AM · VyOS 1.4 Sagitta
a.hajiyev added a comment to T3818: BGP export route-map only works after bgpd restart.

Tested in VyOS 1.4-rolling-202311100309:
The configuration:

Nov 22 2023, 7:19 AM · VyOS 1.4 Sagitta
a.hajiyev removed a project from T2845: BGP conf_mode unable to delete configuration with peer-group: VyOS 1.4 Sagitta.
Nov 22 2023, 6:15 AM · VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX756bd6d45ab7: Merge pull request #2523 from vyos/mergify/bp/sagitta/pr-2519 (authored by Viacheslav).
Nov 22 2023, 6:09 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX92a75196e5a0: http: T5762: rename "virtual-host listen-port" -> "virtual-host port" (authored by c-po).
Nov 22 2023, 5:51 AM
c-po committed rVYOSONEX0e885f1bf014: http: T5762: rename "virtual-host listen-port" -> "virtual-host port".
Nov 22 2023, 5:30 AM
GitHub <noreply@github.com> committed rVYOSONEXaf08c30063fb: Merge pull request #2519 from c-po/t5762-vhost-port (authored by jestabro).
Nov 22 2023, 5:30 AM
a.hajiyev added a comment to T2845: BGP conf_mode unable to delete configuration with peer-group.

Tested in VyOS 1.4-rolling-202311100309
The configuration:
VyOS:

Nov 22 2023, 4:47 AM · VyOS 1.4 Sagitta
dmbaturin created T5772: Require HTTPS API server configurations to include at least one key if key-based auth is used.
Nov 22 2023, 12:26 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a comment to T5767: Add reboot and poweroff the system via API.

@a.apostoliuk will be available in the next rolling release.

Nov 22 2023, 12:14 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav changed the status of T5767: Add reboot and poweroff the system via API from In progress to Needs testing.
Nov 22 2023, 12:14 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <noreply@github.com> committed rVYOSONEXd908073cac14: Merge pull request #2521 from vyos/mergify/bp/sagitta/pr-2516 (authored by dmbaturin).
Nov 22 2023, 12:10 AM
GitHub <noreply@github.com> committed rVYOSONEX93ded25d1900: Merge pull request #2520 from vyos/mergify/bp/sagitta/pr-2518 (authored by dmbaturin).
Nov 22 2023, 12:10 AM
n.fort committed rVYOSONEX4e8839b6d78c: T5419: firewall: backport firewall flowtable to Sagitta..
Nov 22 2023, 12:09 AM
GitHub <noreply@github.com> committed rVYOSONEXc87edc8f1f61: Merge pull request #2517 from nicolas-fort/T5419-FT-Sagitta (authored by dmbaturin).
Nov 22 2023, 12:09 AM
GitHub <noreply@github.com> committed rVYOSONEXd1750790419d: Merge pull request #2510 from vyos/mergify/bp/sagitta/pr-2506 (authored by dmbaturin).
Nov 22 2023, 12:08 AM

Nov 21 2023

Viacheslav updated the task description for T5765: Add OpenConfig gNMI gRPC integration.
Nov 21 2023, 11:57 PM · VyOS Rolling
dotAndy added a comment to T5761: Allow PPPoE interface to be assigned IPv6 address via DHCPv6.

I had the below set on the pppoe interface to allow for DHCPv6-PD. That part was working fine it was just the pppoe interface that wasn't picking up an address:

Nov 21 2023, 10:44 PM · VyOS Rolling
c-po added a project to T5769: VTI tunnels lose their v6 Link Local addresses when set down/up: VyOS 1.4 Sagitta.
Nov 21 2023, 9:17 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po changed the status of T5769: VTI tunnels lose their v6 Link Local addresses when set down/up from Open to In progress.
Nov 21 2023, 9:17 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a comment to T5769: VTI tunnels lose their v6 Link Local addresses when set down/up.

This is related to Kernel addr_gen_mode beeing globally disabled. It's actually on my "to refactor list" and with this bug it gainer priority!

Nov 21 2023, 9:16 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXcc4773e23ae9: T5767: HTTPS API add reboot and poweroff endpoints (authored by Viacheslav).
Nov 21 2023, 8:23 PM
Viacheslav added a project to T5767: Add reboot and poweroff the system via API: VyOS 1.4 Sagitta.
Nov 21 2023, 8:23 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po committed rVYOSONEX1f7968d032df: smoketest: macsec: T5770: fix NameError: name 'cipher' is not defined.
Nov 21 2023, 8:19 PM
c-po committed rVYOSONEX02a3e26e88f0: smoketest: macsec: T5770: fix NameError: name 'cipher' is not defined.
Nov 21 2023, 8:18 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX945dacc0d136: macsec: T5770: enable iproute2 "encrypt on" stanza (authored by giga1699).
Nov 21 2023, 8:17 PM
c-po committed rVYOSONEXa7a90e81ad03: macsec: T5770: enable iproute2 "encrypt on" stanza (authored by giga1699).
Nov 21 2023, 8:17 PM
GitHub <noreply@github.com> committed rVYOSONEXd3c7d9731b44: Merge pull request #2518 from giga1699/T5770 (authored by c-po).
Nov 21 2023, 8:17 PM
Viacheslav committed rVYOSONEX36f3c329c2df: T5767: HTTPS API add reboot and poweroff endpoints.
Nov 21 2023, 8:15 PM
GitHub <noreply@github.com> committed rVYOSONEX821eaea09d2e: Merge pull request #2516 from sever-sever/T5767 (authored by c-po).
Nov 21 2023, 8:15 PM
JeffWDH added a comment to T5771: GeoIP - Include RFC reserved IP ranges in inverse-match rules.

Although, now that I look at the contents of the 'zz' country code, I wonder if there are unintended consequences to specifying some of these... Such as the multicast ones, etc.

Nov 21 2023, 7:56 PM · Restricted Project, VyOS Rolling
c-po updated the task description for T5762: http: api: smoketests fail as they can not establish IPv6 connection to uvicorn backend server.
Nov 21 2023, 7:48 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
JeffWDH updated the task description for T5771: GeoIP - Include RFC reserved IP ranges in inverse-match rules.
Nov 21 2023, 7:39 PM · Restricted Project, VyOS Rolling
JeffWDH updated the task description for T5771: GeoIP - Include RFC reserved IP ranges in inverse-match rules.
Nov 21 2023, 7:37 PM · Restricted Project, VyOS Rolling
JeffWDH created T5771: GeoIP - Include RFC reserved IP ranges in inverse-match rules.
Nov 21 2023, 7:35 PM · Restricted Project, VyOS Rolling
giga1699 claimed T5770: MACsec not encrypting.

PR2518 submitted

Nov 21 2023, 7:01 PM · VyOS 1.5 Circinus
giga1699 created T5770: MACsec not encrypting.
Nov 21 2023, 6:53 PM · VyOS 1.5 Circinus
c-po claimed T5769: VTI tunnels lose their v6 Link Local addresses when set down/up.
Nov 21 2023, 6:29 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
gmurphy42 created T5769: VTI tunnels lose their v6 Link Local addresses when set down/up.
Nov 21 2023, 6:05 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort changed the status of T4072: Feature Request: Firewall on bridge interfaces from In progress to Needs testing.
Nov 21 2023, 5:46 PM · VyOS 1.4 Sagitta
jestabro changed Is it a breaking change? from compatible to validation on T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script.
Nov 21 2023, 4:47 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a subtask for T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script: T5766: http: rewrite conf-mode script to get_config_dict() .
Nov 21 2023, 4:45 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a parent task for T5766: http: rewrite conf-mode script to get_config_dict() : T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script.
Nov 21 2023, 4:45 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a subtask for T5762: http: api: smoketests fail as they can not establish IPv6 connection to uvicorn backend server: T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script.
Nov 21 2023, 4:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a parent task for T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script: T5762: http: api: smoketests fail as they can not establish IPv6 connection to uvicorn backend server.
Nov 21 2023, 4:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro triaged T5768: Remove auxiliary http-api.conf for simplification of http-api config mode script as Normal priority.
Nov 21 2023, 4:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav placed T5167: Add a simple file server up for grabs.
Nov 21 2023, 2:35 PM
Viacheslav added a comment to T5767: Add reboot and poweroff the system via API.

PR https://github.com/vyos/vyos-1x/pull/2516

Nov 21 2023, 10:47 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav changed the status of T5767: Add reboot and poweroff the system via API from Open to In progress.
Nov 21 2023, 10:14 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
zsdc committed rVYOSONEX9cf2f2c8019b: groups: T5577: Added `radius` and `tacacs` groups.
Nov 21 2023, 9:09 AM
zsdc committed rVYOSONEX5d712700d6b8: TACACS: T5577: Added `mandatory` and `optional` modes for TACACS+.
Nov 21 2023, 9:09 AM
zsdc committed rVYOSONEXc5dbc2049fd4: pam: T5577: Improved PAM configs for RADIUS and TACACS+.
Nov 21 2023, 9:09 AM
zsdc committed rVYOSONEX2a023b878471: RADIUS: T5577: Added `mandatory` and `optional` modes for RADIUS.
Nov 21 2023, 9:09 AM
zsdc committed rVYOSONEXe1bf5516bbb0: init: T5577: clear mandatory and optional RADIUS/TACACS PAM settings (authored by c-po).
Nov 21 2023, 9:09 AM
zsdc committed rVYOSONEXd7457268fcaa: PAM: T5577: Optimized RADIUS PAM config.
Nov 21 2023, 9:09 AM