Page MenuHomeVyOS Platform
Feed All Stories

Jan 25 2024

Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXc13628bca37a: T5817: Fix for show openvpn server (authored by Viacheslav).
Jan 25 2024, 11:16 AM
jestabro committed rVYOSONEXd603b1e3b2d0: image-tools: T5983: fix regression in prune_vyos_versions.
Jan 25 2024, 9:08 AM
GitHub <[email protected]> committed rVYOSONEX80d6813cad24: Merge pull request #2893 from jestabro/fix-regression-version-files (authored by dmbaturin).
Jan 25 2024, 9:08 AM
Viacheslav moved T5927: QoS policy shaper-hfsc class does not have a `bandwidth` node but requires one in the check from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 25 2024, 8:57 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5927: QoS policy shaper-hfsc class does not have a `bandwidth` node but requires one in the check from Open to Finished on the VyOS 1.5 Circinus board.
Jan 25 2024, 8:57 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5927: QoS policy shaper-hfsc class does not have a `bandwidth` node but requires one in the check, a subtask of T5938: Migration fail root task for 1.4-rc, as Resolved.
Jan 25 2024, 8:57 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Viacheslav closed T5927: QoS policy shaper-hfsc class does not have a `bandwidth` node but requires one in the check as Resolved.
Jan 25 2024, 8:57 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
syncer assigned T5974: QoS policy shaper is currently miscalculating bandwidth and ceil values for the default class to Viacheslav.
Jan 25 2024, 8:12 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a comment to T5983: image-tools: minor regression in pruning version files in compatibility mode.

PR
https://github.com/vyos/vyos-1x/pull/2893

Jan 25 2024, 4:23 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro changed the status of T5983: image-tools: minor regression in pruning version files in compatibility mode from Open to In progress.
Jan 25 2024, 2:24 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Jan 24 2024

danhusan added a comment to T5811: static dhcp-interface routes not installed.

Same results here. If I remove the routes and re-add them they work perfectly. The issue only comes up at reboot.

Jan 24 2024, 5:19 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a comment to T5811: static dhcp-interface routes not installed.

I have another result

vyos@r1# set protocols static route 203.0.113.22/32 dhcp-interface eth2
[edit]
vyos@r1# commit
[edit]
vyos@r1# 
[edit]
vyos@r1# vtysh -c "show run" | match 203.0.113
ip route 203.0.113.22/32 192.168.100.1 eth2
[edit]
vyos@r1#
Jan 24 2024, 5:13 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
danhusan added a comment to T5811: static dhcp-interface routes not installed.
[email protected]:~$ show configuration commands | match 111.111.22.227
set protocols static route 111.111.22.227/32 dhcp-interface 'eth0'
Jan 24 2024, 5:01 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
yzguy added a comment to T5965: WWAN modems using raw-ip do not work with dhclient/dhcp6c.

@c-po This would be the commits from https://gitlab.isc.org/isc-projects/dhcp/-/merge_requests/67 and 2 of mine to fix the issues with that PR, plus add support for ARPHRD_NONE

Jan 24 2024, 2:57 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
Viacheslav added a comment to T5941: [1.3.5 -> 1.4.0-RC1 Migration] Orphaned Configuration Nodes Cause Issues.

PR for policy https://github.com/vyos/vyos-1x/pull/2890
PR for traffic-policy https://github.com/vyos/vyos-1x/pull/2892

Jan 24 2024, 2:03 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T1237: Static Route Path Monitoring, failover.

WLB is another feature and not related to protocols failover route

Jan 24 2024, 1:04 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5811: static dhcp-interface routes not installed from Open to Needs testing.
Jan 24 2024, 1:02 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

I've made mistake while configuring my test stand so the WLB in my GNS3 was affected by contrack on host machine.
Looks like the WLB works as it should.
Sorry to bother you!

Jan 24 2024, 12:24 PM · VyOS 1.4 Sagitta
danhusan added a comment to T5811: static dhcp-interface routes not installed.

Issue is back in 1.4.0-rc3

Jan 24 2024, 11:32 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
danhusan reopened T5811: static dhcp-interface routes not installed as "Open".
Jan 24 2024, 11:32 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Viacheslav added a comment to T5750: Upgrade from 1.3.4 to 1.4 Rolling fails QoS.

Update:
It is completely different issue

Jan 24 2024, 9:26 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
devon added a comment to T5981: IPsec site-to-site migrated PKI ca certificates are created with an '@'.

Sorry about that. I have updated the description.

Jan 24 2024, 9:19 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
devon updated the task description for T5981: IPsec site-to-site migrated PKI ca certificates are created with an '@'.
Jan 24 2024, 9:19 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

Found task named wan load balance issues with 3 or more WANs.

Jan 24 2024, 8:59 AM · VyOS 1.4 Sagitta
Viacheslav triaged T5982: Isolated interfaces smoketest fail as High priority.
Jan 24 2024, 8:40 AM · VyOS 1.3 Equuleus (1.3.7)
Viacheslav created T5982: Isolated interfaces smoketest fail.
Jan 24 2024, 8:40 AM · VyOS 1.3 Equuleus (1.3.7)
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

BTW, do you have any plans to use this mechanism for WAN failover?
Could you explain or send some examples?

Jan 24 2024, 8:37 AM · VyOS 1.4 Sagitta
Viacheslav triaged T5981: IPsec site-to-site migrated PKI ca certificates are created with an '@' as High priority.

@devon Could you share the example of "set" commands before migration?
It is a good practice to have "set" of commands. It makes the lives of developers easy and is one of the requirements of creating bug reports.
Thanks.

Jan 24 2024, 8:17 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T1237: Static Route Path Monitoring, failover.

BTW, do you have any plans to use this mechanism for WAN failover?

Jan 24 2024, 8:13 AM · VyOS 1.4 Sagitta
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

Is it OK to discuss such topics here?

Jan 24 2024, 7:51 AM · VyOS 1.4 Sagitta
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

BTW, do you have any plans to use this mechanism for WAN failover?

Jan 24 2024, 7:49 AM · VyOS 1.4 Sagitta
Harliff added a comment to T1237: Static Route Path Monitoring, failover.

Could you check it? Available in the latest rolling release

Jan 24 2024, 7:48 AM · VyOS 1.4 Sagitta
devon created T5981: IPsec site-to-site migrated PKI ca certificates are created with an '@'.
Jan 24 2024, 6:24 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po claimed T5965: WWAN modems using raw-ip do not work with dhclient/dhcp6c.
Jan 24 2024, 5:01 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
c-po added a comment to T5965: WWAN modems using raw-ip do not work with dhclient/dhcp6c.

Can you share your patch?

Jan 24 2024, 5:01 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
Viacheslav changed the status of T5207: Improper NAT66 Support from Open to Needs reporter action.
Jan 24 2024, 4:15 AM · VyOS 1.5 Circinus
yzguy updated subscribers of T5965: WWAN modems using raw-ip do not work with dhclient/dhcp6c.

Digging into it a little, @c-po mentioned in Slack about trying https://gitlab.isc.org/isc-projects/dhcp/-/merge_requests/67 (the stalled PR). I had to fix a few things which I left as a comment on that PR just in case some else stumbles on it.

Jan 24 2024, 3:55 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus

Jan 23 2024

sarthurdev changed the status of T3771: DHCPv6 server prefix delegation - dynamically add route to delegated prefix via requesting router from Needs testing to In progress.
Jan 23 2024, 11:30 PM · VyOS 1.5 Circinus
n.fort added a comment to T5977: nftables: Operation not supported when using match-ipsec in outbound firewall.

Pr for 1.5: https://github.com/vyos/vyos-1x/pull/2887

Jan 23 2024, 8:27 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
jestabro closed T5980: Add image-tools support for configurable kernel boot options, a subtask of T5979: Add configurable kernel boot parameters, as Unknown Status.
Jan 23 2024, 8:02 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro closed T5980: Add image-tools support for configurable kernel boot options as Unknown Status.
Jan 23 2024, 8:02 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX287c3edbac7f: T5979: add configurable kernel boot option 'disable-mitigations' (authored by c-po).
Jan 23 2024, 7:11 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0cf188d74f14: image-tools: T5980: add support for configurable kernel boot options (authored by jestabro).
Jan 23 2024, 7:11 PM
jestabro committed rVYOSONEX1b1569d5b88a: image-tools: T5980: add support for configurable kernel boot options.
Jan 23 2024, 7:10 PM
jestabro committed rVYOSONEX256346a66cc3: T5979: add configurable kernel boot option 'disable-mitigations' (authored by c-po).
Jan 23 2024, 7:10 PM
GitHub <[email protected]> committed rVYOSONEXd736a9b70ca8: Merge pull request #2886 from jestabro/add-kernel-boot-options (authored by dmbaturin).
Jan 23 2024, 7:10 PM
dmbaturin triaged T5978: ethernet: hw-tc-offload does not actually get enabled on the NIC as High priority.
Jan 23 2024, 6:57 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
dmbaturin triaged T5977: nftables: Operation not supported when using match-ipsec in outbound firewall as High priority.
Jan 23 2024, 6:57 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
martafolf updated martafolf.
Jan 23 2024, 6:51 PM
Apachez added a comment to T5979: Add configurable kernel boot parameters.

Related?

Jan 23 2024, 4:30 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro updated the task description for T5979: Add configurable kernel boot parameters.
Jan 23 2024, 4:26 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro reassigned T5979: Add configurable kernel boot parameters from jestabro to c-po.
Jan 23 2024, 4:25 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a parent task for T5980: Add image-tools support for configurable kernel boot options: T5979: Add configurable kernel boot parameters.
Jan 23 2024, 4:25 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a subtask for T5979: Add configurable kernel boot parameters: T5980: Add image-tools support for configurable kernel boot options.
Jan 23 2024, 4:25 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro changed the status of T5980: Add image-tools support for configurable kernel boot options from Open to In progress.
Jan 23 2024, 4:25 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro changed the status of T5979: Add configurable kernel boot parameters from Open to In progress.
Jan 23 2024, 4:23 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX4276133800e9: Merge pull request #2885 from vyos/mergify/bp/sagitta/pr-2884 (authored by c-po).
Jan 23 2024, 12:33 PM
c-po closed T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option. as Resolved.
Jan 23 2024, 11:58 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option. from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 23 2024, 11:58 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX3347c72fd5d8: bfd: T5967: add minimum-ttl option (authored by c-po).
Jan 23 2024, 11:58 AM
c-po moved T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option. from Open to Finished on the VyOS 1.5 Circinus board.
Jan 23 2024, 11:58 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po committed rVYOSONEX1f07dcbddfcf: bfd: T5967: add minimum-ttl option.
Jan 23 2024, 11:57 AM
GitHub <[email protected]> committed rVYOSONEX4c2d4519277b: Merge pull request #2884 from c-po/bfd-T5967 (authored by c-po).
Jan 23 2024, 11:57 AM
c-po changed the status of T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option. from Open to In progress.
Jan 23 2024, 11:55 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option..

https://github.com/vyos/vyos-1x/pull/2884

Jan 23 2024, 11:55 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort added a project to T5977: nftables: Operation not supported when using match-ipsec in outbound firewall: VyOS 1.5 Circinus.
Jan 23 2024, 11:47 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
n.fort changed the status of T5977: nftables: Operation not supported when using match-ipsec in outbound firewall from Confirmed to In progress.
Jan 23 2024, 11:47 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
Viacheslav added a comment to T5977: nftables: Operation not supported when using match-ipsec in outbound firewall.

Also, issues with the input

vyos@r4# set firewall ipv4 input filter rule 10 action accept
[edit]
vyos@r4# set firewall ipv4 input filter rule 10 ipsec match-ipsec
[edit]
vyos@r4# 
[edit]
vyos@r4# commit
[ firewall ]
Failed to apply firewall: /run/nftables.conf:19:17-27: Error: No such
file or directory; did you mean table ‘vyos_filter’ in family ip? delete
table ip vyos_filter                 ^^^^^^^^^^^
/run/nftables.conf:47:18-28: Error: No such file or directory; did you
mean table ‘vyos_filter’ in family ip? delete table ip6 vyos_filter
^^^^^^^^^^^ /run/nftables.conf:75:21-31: Error: No such file or
directory; did you mean table ‘vyos_filter’ in family ip? delete table
bridge vyos_filter                     ^^^^^^^^^^^
Jan 23 2024, 11:33 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
Viacheslav changed the status of T5974: QoS policy shaper is currently miscalculating bandwidth and ceil values for the default class from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/2883

Jan 23 2024, 11:13 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort changed the status of T5977: nftables: Operation not supported when using match-ipsec in outbound firewall from Open to Confirmed.
Jan 23 2024, 10:49 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
c-po claimed T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option..
Jan 23 2024, 10:40 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <[email protected]> committed rVYOSONEX280cb292d169: Merge pull request #2882 from vyos/mergify/bp/sagitta/pr-2881 (authored by Viacheslav).
Jan 23 2024, 7:56 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXe333071ca9a4: ethernet: T5978: hw-tc-offload does not actually get enabled on the NIC (authored by c-po).
Jan 23 2024, 7:36 AM
c-po committed rVYOSONEXbfb7e4f2b374: ethernet: T5978: hw-tc-offload does not actually get enabled on the NIC.
Jan 23 2024, 7:35 AM
GitHub <[email protected]> committed rVYOSONEX20106f2e827e: Merge pull request #2881 from c-po/ethernet-gso-T5978 (authored by c-po).
Jan 23 2024, 7:35 AM
exp added a comment to T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option..
set dummy dum0 address '172.20.215.131/32'
comment dummy dum0 'Dummy interface for BFD traffic'
set peer 172.20.215.130 multihop
set peer 172.20.215.130 profile 'bgp'
set peer 172.20.215.130 source address '172.20.215.131'
set profile bgp interval echo-interval '500'
set profile bgp interval multiplier '10'
set profile bgp interval receive '100'
set profile bgp interval transmit '100'
Jan 23 2024, 7:06 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5978: ethernet: hw-tc-offload does not actually get enabled on the NIC.

https://github.com/vyos/vyos-1x/pull/2881

Jan 23 2024, 7:03 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po changed the status of T5978: ethernet: hw-tc-offload does not actually get enabled on the NIC from Open to In progress.
Jan 23 2024, 6:58 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5978: ethernet: hw-tc-offload does not actually get enabled on the NIC.
Jan 23 2024, 6:58 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
devon created T5977: nftables: Operation not supported when using match-ipsec in outbound firewall.
Jan 23 2024, 6:01 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus

Jan 22 2024

sarthurdev committed rVYOSONEXf241dbd8dd2d: dhcp: T5787: Allow disabled duplicates on static-mapping (backport).
Jan 22 2024, 9:28 PM
GitHub <[email protected]> committed rVYOSONEXc0d70f697905: Merge pull request #2880 from sarthurdev/T5787_disabledbp (authored by c-po).
Jan 22 2024, 9:28 PM
c-po changed the status of T4729: VxLAN does not work and deleted after tun changed from Needs testing to Needs reporter action.
Jan 22 2024, 9:08 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
c-po changed the status of T2287: LLDP not working on X710 adapter, i40e driver from Open to Needs reporter action.
Jan 22 2024, 9:07 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
c-po closed T5969: op-mode: list multicast group membership as Resolved.
Jan 22 2024, 8:47 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po moved T5969: op-mode: list multicast group membership from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 22 2024, 8:47 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a project to T5969: op-mode: list multicast group membership: VyOS 1.4 Sagitta.
Jan 22 2024, 8:46 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po closed T5975: GraphQL expects script otp.py that does not exists in 1.4 as Resolved.
Jan 22 2024, 8:46 PM · VyOS 1.4 Sagitta
c-po moved T5975: GraphQL expects script otp.py that does not exists in 1.4 from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 22 2024, 8:46 PM · VyOS 1.4 Sagitta
c-po added a comment to T5975: GraphQL expects script otp.py that does not exists in 1.4.

https://github.com/vyos/vyos-1x/pull/2878

Jan 22 2024, 8:46 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEX2af00ee89549: op-mode: T5137: fix show_techsupport_report.py permissions.
Jan 22 2024, 8:40 PM
c-po committed rVYOSONEXddd3ec918cb6: op-mode: T4864: fix zone.py permissions.
Jan 22 2024, 8:40 PM
c-po committed rVYOSONEX064e0b81f0ac: op-mode: T5975: add missing 2FA OTP commands.
Jan 22 2024, 8:40 PM
c-po committed rVYOSONEXdc003f5fe9ea: op-mode: T5658: fix mtr.py permissions.
Jan 22 2024, 8:40 PM
GitHub <[email protected]> committed rVYOSONEX7d6002b9f8e4: Merge pull request #2878 from c-po/sagitta-only-fixes (authored by c-po).
Jan 22 2024, 8:40 PM
sarthurdev committed rVYOSONEXc5b9edb2f763: dhcp: T5787: Allow disabled duplicates on static-mapping.
Jan 22 2024, 8:39 PM
GitHub <[email protected]> committed rVYOSONEXe2d46861092d: Merge pull request #2879 from sarthurdev/T5787_disabled (authored by c-po).
Jan 22 2024, 8:39 PM
roedie added a comment to T5832: Allow setting the interface for excluded address in VRRP.

@Viacheslav Yes I will create a PR somewhere coming weeks.

Jan 22 2024, 8:06 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T5973: vrf: RTNETLINK answers: File exists.

https://github.com/vyos/vyos-1x/pull/2877

Jan 22 2024, 7:54 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro changed Difficulty level from easy to normal on T5976: Allow commit-confirm to use soft-rollback instead of reboot.
Jan 22 2024, 7:49 PM · VyOS Rolling, VyOS 1.5 Circinus