Page MenuHomeVyOS Platform
Feed All Stories

May 15 2024

syncer edited projects for T2207: IPv6 route install failed, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM
syncer edited projects for T2251: VRF communication breaks when utilizing zone-based firewalling, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T2287: LLDP not working on X710 adapter, i40e driver, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer edited projects for T2760: In a load-balanced multi-wan configuration with DHCP assigned addresses, IPsec "dhcp-interface" does not work, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T2762: VRF: when SSHd is VRF bound all commands are executed in VRF context, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling
syncer edited projects for T2840: "beep-if-fully-booted" beeps too early, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T3086: Scheduled squidguard blacklist update breaks Squid, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM
syncer edited projects for T3529: vyos.frr class has no support for multi-line modify_section, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer edited projects for T3552: BFD does not work with OSPFv3 via wireguard, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM
syncer edited projects for T3598: DMVPN/IPSec does not work with upstream Strongswan 5.9, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T3824: Ethernet offload options are not populated in new installs, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM
syncer edited projects for T3933: The firewall does not filter incoming traffic on the interface with vrf., added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
syncer edited projects for T4025: OpenVPN server with TAP interface, client didn’t see network, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1), Restricted Project, openvpn
syncer edited projects for T4460: nhrp not starting due to missing cisco-authentication value, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
syncer edited projects for T4729: VxLAN does not work and deleted after tun changed, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
syncer edited projects for T4923: Zebra sends router advertisements even though it's not supposed to, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5444: R8169 driver crash, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM
syncer edited projects for T5820: error on dhcpv6-server range prefix with trailing colon (:), added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5847: Protocol failover stopped working after suspend + resume, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T5881: IPv6 addresses jumbled in flow accounting, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5892: container network interface and policy fails to apply after reboot, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5893: Firewall breaks VRF receiving DHCP routes, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:31 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5934: pppoe dhcp6c fails to get prefix, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T5947: [1.3.2 -> 1.4.0-RC1 Migration] Static ipv6 routes dropped, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.1)
syncer edited projects for T6058: Commit-Archive Save doesn't use https_proxy, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS Rolling, Restricted Project
syncer edited projects for T2468: Passwords with special characters fail in commit-archive, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS Rolling, Restricted Project
syncer edited projects for T5811: static dhcp-interface routes not installed, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer edited projects for T6101: IPsec some proposal combinations could be invalid and the service strongswan stops, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS Rolling, Restricted Project
syncer edited projects for T6097: vrf_zones blocking ipv6 traffic, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer edited projects for T5351: VyOS deployed with cloud-init improperly saves config.boot, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer edited projects for T6122: Protocols under VRF config run in a single pass against their conf_mode scripts, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta (1.4.0-epa1).
May 15 2024, 9:30 AM · VyOS Rolling
syncer moved T5069: bgp large-community-list regex validation incomplete from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:30 AM · VyOS Rolling, Restricted Project
syncer moved T5487: OPENVPN -DEPRECATED OPTION: --cipher from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:30 AM · VyOS 1.5 Circinus, Restricted Project
syncer moved T3410: Unsafe processing of special characters in CLI autocomplete from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:30 AM · Restricted Project, VyOS 1.5 Circinus, VyOS Rolling
syncer moved T5752: Check compatibility of new image tools with XCP-NG images from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T5878: Make the list of SSH server ciphers configurable from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:30 AM · VyOS 1.4 Sagitta (1.4.1)
syncer moved T5939: [1.3.5 -> 1.4.0-RC1 Migration] as-path-list Entries Get Messed Up from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T6300: [1.3->1.4 Migration] An empty interface configuration drops all interfaces configuration from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
syncer moved T4393: sstp: add support for configuring host-name (SNI) from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T6301: DHCPv6 client address causes long commits from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · Restricted Project, VyOS Rolling
syncer moved T4909: Rewrite the NTP op mode in the new format from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T6038: Losing default route after first reboot (cloud-init & DHCP) from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
syncer moved T6225: Unhandled exception when configuring random-detect QoS policy from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T6328: Add a warning message about deprecation of web proxy URL filtering from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.4 Sagitta (1.4.0-GA)
syncer moved T6290: SNMPD show logs systemstats_linux: unexpected header length from 1.4.0-epa3 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
syncer moved T6172: Static routes not working with PPPoE and VyOS 1.4.0-epa2 from 1.4.0-epa2 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS Rolling, Restricted Project
syncer moved T6320: WiFi: Enable support for 6GHz AccesPoints from 1.4.0 to 1.4.0-GA on the VyOS 1.4 Sagitta board.
May 15 2024, 9:29 AM · VyOS Rolling, VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
syncer added a comment to T5835: UPnP port mapping / rule installation fails.

yes, @aidan-gibson, there are no plans to entertain shit-talkers with a single task and no contributions

May 15 2024, 8:57 AM
aidan-gibson added a comment to T5835: UPnP port mapping / rule installation fails.

Wow...honestly no words

May 15 2024, 8:54 AM
syncer added a comment to T5835: UPnP port mapping / rule installation fails.

you are not from the community @simplysoft
it's time to depart from here

May 15 2024, 8:25 AM
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

I guess the fate of upnp has already been decided https://vyos.dev/rVYOSONEX7c438caa2c21101cbefc2eec21935ab55af19c46
RIP

May 15 2024, 8:17 AM
Viacheslav triaged T6338: Ability to use per-user traffic shaper or policy limits based on the network as Wishlist priority.
May 15 2024, 8:01 AM · VyOS Rolling
Viacheslav created T6338: Ability to use per-user traffic shaper or policy limits based on the network.
May 15 2024, 8:00 AM · VyOS Rolling
Viacheslav triaged T6337: Upgrade from 1.3.5 fails if ssh public key name has a space in it as High priority.
May 15 2024, 6:20 AM · VyOS 1.3 Equuleus (1.3.8)
GitHub <[email protected]> committed rVYOSONEX8c98231d62cd: Merge pull request #3453 from vyos/mergify/bp/sagitta/pr-3452 (authored by c-po).
May 15 2024, 5:02 AM
aidan-gibson added a comment to T5835: UPnP port mapping / rule installation fails.

I guess the fate of upnp has already been decided https://vyos.dev/rVYOSONEX7c438caa2c21101cbefc2eec21935ab55af19c46
RIP

May 15 2024, 1:52 AM
tjh added a comment to T6336: `set system option kernel disable-mitigations` not applied on upgrade.

@jestabro Thanks for the detailed explanation. If I'd been a proper tester I should have just rebooted it a second time! I think the current solution is fine as long as it's mentioned in release/upgrade notes somewhere. It really is only a performance tweak, it doesn't impact functionality. Thanks again.

May 15 2024, 1:43 AM
jestabro added a comment to T6336: `set system option kernel disable-mitigations` not applied on upgrade.

@tjh in fact, this was a design decision, discussed with @Viacheslav at the time, and agreed upon, although neither of us are fully satisfied with the decision (and I'll let him amend these claims, if needed):

May 15 2024, 1:41 AM
aidan-gibson added a comment to T5835: UPnP port mapping / rule installation fails.

I could argue with additional upnp use cases, but that doesn't seem useful here. It seems the only solution that isn't cringe is outlined here:

May 15 2024, 1:39 AM

May 14 2024

einsibjani created T6337: Upgrade from 1.3.5 fails if ssh public key name has a space in it.
May 14 2024, 11:22 PM · VyOS 1.3 Equuleus (1.3.8)
syncer assigned T6336: `set system option kernel disable-mitigations` not applied on upgrade to Viacheslav.
May 14 2024, 11:04 PM
tjh updated the task description for T6336: `set system option kernel disable-mitigations` not applied on upgrade.
May 14 2024, 11:02 PM
tjh created T6336: `set system option kernel disable-mitigations` not applied on upgrade.
May 14 2024, 11:02 PM
syncer removed a project from T6334: [Feature] Support unsigned vyos mirrors for builds: VyOS 1.5 Circinus.

thanks for your effort in any case @florin
"A journey of a thousand miles begins with a single step"

May 14 2024, 7:45 PM
florin closed T6334: [Feature] Support unsigned vyos mirrors for builds as Not Applicable.

seems rather useless now :)

May 14 2024, 7:43 PM
GitHub <[email protected]> committed rVYOSONEX137ff6601194: Merge pull request #3455 from vyos/mergify/bp/sagitta/pr-3454 (authored by c-po).
May 14 2024, 7:38 PM
florin added a comment to T6334: [Feature] Support unsigned vyos mirrors for builds.

I'm just using this for my home lab :) - that's a great suggestion @Rain I shall use that!

May 14 2024, 7:28 PM
Rain added a comment to T6334: [Feature] Support unsigned vyos mirrors for builds.

Since the --vyos-mirror string is copied directly, you can simply prepend it with [trusted=yes]; a new flag isn't really necessary:

May 14 2024, 7:18 PM
Apachez added a comment to T5835: UPnP port mapping / rule installation fails.

I fail to comprehend how a firewall that autonomously opens ports via calls from internal networks is appropriate for an enterprise.
Indeed there are some use cases but this functionality can be used by malicious code and allow bypass security configuration that is enforced otherwise

May 14 2024, 5:38 PM
Viacheslav committed rVYOSONEXf844b28a6164: T3420: Remove service upnp.
May 14 2024, 5:38 PM
Viacheslav committed rVYOSONEXbb0b1b75fbbe: T3420: Remove service upnp.
May 14 2024, 5:35 PM
Viacheslav committed rVYOSONEXe7714400f6b0: T3420: Remove service upnp.
May 14 2024, 5:33 PM
Apachez added a comment to T5835: UPnP port mapping / rule installation fails.

I fail to comprehend how a firewall that autonomously opens ports via calls from internal networks is appropriate for an enterprise.
Indeed there are some use cases but this functionality can be used by malicious code and allow bypass security configuration that is enforced otherwise

May 14 2024, 5:30 PM
c-po added a project to T6290: SNMPD show logs systemstats_linux: unexpected header length: VyOS 1.4 Sagitta (1.4.0-epa3).
May 14 2024, 5:26 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
c-po edited a custom field on T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 14 2024, 5:26 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
c-po added a comment to T6290: SNMPD show logs systemstats_linux: unexpected header length.

https://github.com/net-snmp/net-snmp/issues/786

May 14 2024, 5:26 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX4c526750a1da: smoketest: ospf: T4739: add timeout in ldp test (authored by c-po).
May 14 2024, 5:26 PM
c-po committed rVYOSONEXfbc846725d7d: smoketest: ospf: T4739: add timeout in ldp test.
May 14 2024, 5:25 PM
GitHub <[email protected]> committed rVYOSONEXc3c81dcc0a79: Merge pull request #3454 from c-po/ospf (authored by c-po).
May 14 2024, 5:25 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX9c89cfb9356a: T3420: Remove service upnp (authored by Viacheslav).
May 14 2024, 5:24 PM
Viacheslav closed T5835: UPnP port mapping / rule installation fails as Wontfix.
May 14 2024, 5:15 PM
Viacheslav committed rVYOSONEX7c438caa2c21: T3420: Remove service upnp.
May 14 2024, 5:14 PM
GitHub <[email protected]> committed rVYOSONEXf45b1b598c02: Merge pull request #3452 from sever-sever/T3420 (authored by Viacheslav).
May 14 2024, 5:14 PM
syncer removed a project from T3420: Support UPNP protocol: VyOS 1.5 Circinus.
May 14 2024, 4:58 PM
syncer closed T3420: Support UPNP protocol as Invalid.

Implementation never worked

May 14 2024, 4:58 PM
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

If you are really that curious, I can attach a screenshot.

May 14 2024, 4:04 PM
dylanneild added a comment to T5835: UPnP port mapping / rule installation fails.

If someone wants, I can probably unearth my patches to 1.4 and miniupnpd to make it all work. It was technically functional and worked as expected. I just don't have the time or patience to deal with getting it merged/integrated back into the project.

May 14 2024, 3:59 PM
dmbaturin added a comment to T5835: UPnP port mapping / rule installation fails.

Out of curiosity, will the details of the poll be public or the results being shared transparently?

May 14 2024, 3:48 PM
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

A bunch to unpack here.
[...]

May 14 2024, 3:41 PM
L0crian updated the task description for T6335: Add/update EVPN op commands.
May 14 2024, 3:36 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

Created a poll for maintainers on this topic, and we will go with the decision made.

May 14 2024, 3:36 PM
dylanneild added a comment to T5835: UPnP port mapping / rule installation fails.

A bunch to unpack here.

May 14 2024, 3:33 PM
L0crian renamed T6335: Add/update EVPN op commands from Add/updateEVPN op commands to Add/update EVPN op commands.
May 14 2024, 2:57 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Giggum added a comment to T2195: Support for encrypted DNS: dnscrypt, DoH, DoT, anonymized DNS.

Related https://vyos.dev/T921

May 14 2024, 2:52 PM
Giggum added a comment to T921: Encrypted DNS.

More info related to PowerDNS DNSdist: https://powerdns.org/dnsdist-md/dnsdist-diagrams.md.html

May 14 2024, 2:52 PM · VyOS Rolling
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

go learn how cheap cameras open firewalls via UPnP and make them available on the internet without people being aware of that

or how malware exfiltrates data via port 443 because enterprises can't reliably block outbound traffic on that port.

May 14 2024, 2:48 PM
L0crian created T6335: Add/update EVPN op commands.
May 14 2024, 2:42 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Unknown Object (User) added a comment to T5835: UPnP port mapping / rule installation fails.

If you know how to test it will be great to test it. If no one needs it even for tests, what are we talking about?

May 14 2024, 2:29 PM