Page MenuHomeVyOS Platform
Feed All Stories

Mar 25 2025

jestabro committed rVYOSONEX42bc671b1875: T7246: update hash for strip version on config load.
Mar 25 2025, 7:38 PM
Viacheslav added a comment to T4797: External address/network lists for firewall (Local and remote).

T5493 is merged

Mar 25 2025, 7:10 PM · VyOS Rolling
xeluior created T7285: CVE-2024-3596 (BlastRADIUS) mitigations for pam_radius.
Mar 25 2025, 6:53 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
Embezzle changed the status of T5493: Add capability to use local and external dynamic-lists for firewall rules but also for various policies such as access-list, route-maps etc. from In progress to Needs testing.
Mar 25 2025, 6:21 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
GitHub <noreply@github.com> committed rVYOSONEX1d419bc2b56a: Merge pull request #4413 from oniko94/fix/T7278-fix-cracklib-dep-build (authored by jestabro).
Mar 25 2025, 5:04 PM
oniko94 committed rVYOSONEXd9ec5d1e70d3: T7278: Remove cracklib hack from postinstall script template.
Mar 25 2025, 5:04 PM
Embezzle committed rVYOSONEX9e2bdc96ea63: firewall: T5493: Implement remote-group.
Mar 25 2025, 3:22 PM
GitHub <noreply@github.com> committed rVYOSONEX1c66841323ba: Merge pull request #4326 from Embezzle/T5493 (authored by dmbaturin).
Mar 25 2025, 3:22 PM
dmbaturin added a project to T5493: Add capability to use local and external dynamic-lists for firewall rules but also for various policies such as access-list, route-maps etc.: VyOS 1.5 Circinus.
Mar 25 2025, 3:21 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
natali-rs1985 added a comment to T7283: VPP add static NAT support.

https://github.com/vyos/vyos-vpp/pull/24

Mar 25 2025, 1:57 PM · VyOS Rolling
markh0338 added a comment to T7144: Firewall Cannot Load Podman Network Interfaces at Boot.

Yes - this has been included in the nightly builds for a few weeks now.

Mar 25 2025, 1:54 PM · VyOS Rolling
natali-rs1985 changed the status of T7283: VPP add static NAT support, a subtask of T7221: VPP related features the root task, from Open to In progress.
Mar 25 2025, 1:51 PM · VyOS Rolling
natali-rs1985 changed the status of T7283: VPP add static NAT support from Open to In progress.
Mar 25 2025, 1:51 PM · VyOS Rolling
woodsb02 updated subscribers of T7270: syslog: typos in rsyslog.conf.
Mar 25 2025, 11:24 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
woodsb02 added a comment to T7144: Firewall Cannot Load Podman Network Interfaces at Boot.

Is this resolved on the latest nightly, now that T7177 has been resolved?

Mar 25 2025, 10:35 AM · VyOS Rolling
woodsb02 added a project to T7270: syslog: typos in rsyslog.conf: Bugs.
Mar 25 2025, 10:25 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T7283: VPP add static NAT support as High priority.
Mar 25 2025, 10:15 AM · VyOS Rolling
RubenNL changed the status of T7284: Delete firewall description not possible from Open to In progress.
Mar 25 2025, 10:03 AM · VyOS Ansible Collection
RubenNL created T7284: Delete firewall description not possible.
Mar 25 2025, 10:02 AM · VyOS Ansible Collection
RubenNL closed T7262: _in_target doesn't check for None as Wontfix.

Decided to not replace the functionality for all methods, only where I found a problem. This means the information in this issue isn't relevant. I'll make a new issue to fix the test case above.

Mar 25 2025, 9:58 AM · VyOS Ansible Collection
natali-rs1985 added a parent task for T7283: VPP add static NAT support: T7221: VPP related features the root task.
Mar 25 2025, 9:43 AM · VyOS Rolling
natali-rs1985 added a subtask for T7221: VPP related features the root task: T7283: VPP add static NAT support.
Mar 25 2025, 9:43 AM · VyOS Rolling
natali-rs1985 updated the task description for T7283: VPP add static NAT support.
Mar 25 2025, 9:36 AM · VyOS Rolling
natali-rs1985 created T7283: VPP add static NAT support.
Mar 25 2025, 9:29 AM · VyOS Rolling
Viacheslav edited projects for T7138: "show qos shaper" doesn't work with VRFs, added: VyOS 1.4 Sagitta (1.4.3); removed VyOS 1.4 Sagitta.
Mar 25 2025, 8:43 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
woodsb02 added a comment to T6939: Add DNS-01 challenge for ACME.

The version of lego in the Debian repositories is very old, and this will likely mean it is broken for various DNS providers since things change rapidly out there on the Internet. As an example, Porkbun DNS provider has recently changed the URL for their DNS API, which has been updated in the newest LEGO, but the old version in the debian repos no longer works for Porkbun. I believe updating LEGO in the debian repos is hard due to needing to bring each go dependency into the repos also - which means the LEGO version is even old in the debian unstable repos.

Mar 25 2025, 8:35 AM · VyOS Rolling
Viacheslav changed the status of T7282: op-mode: not all groups are displayed correctly with `show firewall groups` from Open to In progress.
Mar 25 2025, 8:02 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
woodsb02 updated subscribers of T6939: Add DNS-01 challenge for ACME.

A key decision in implementing this dns-01 acme authentication feature is whether or not to change the upstream tool used to obtain let's encrypt certificates (currently certbot).

Mar 25 2025, 7:07 AM · VyOS Rolling
L0crian added a comment to T7138: "show qos shaper" doesn't work with VRFs.

Will this be backported to 1.4 ahead of the 1.4.2 release?

Mar 25 2025, 5:46 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
franklin373 added a comment to T4074: Add NETCONF server with YANG data modeling .

I am tired of Network Management complacation, I am tired to change different management cli command if switch diffrent brand router, I need automation, so I switch to netconf to config, I ask chatgpt, what router support, It said VyOS, But VyOS not support NetConf infact, I hope someday it could.

Mar 25 2025, 2:48 AM · VyOS Rolling
markh0338 added a comment to T7282: op-mode: not all groups are displayed correctly with `show firewall groups`.

Related PR from GitHub: PR #4414

Mar 25 2025, 1:22 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling
markh0338 created T7282: op-mode: not all groups are displayed correctly with `show firewall groups`.
Mar 25 2025, 1:14 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.3), VyOS Rolling

Mar 24 2025

dmbaturin added a comment to T7276: Nightly builds since 2025.03.05-0017 are not signed by the documented key.

Thanks for reporting this! At least we know people actually use the signatures. ;)

Mar 24 2025, 8:04 PM · VyOS Rolling
dmbaturin merged task T7279: VyOS nightly build signed with wrong key into T7276: Nightly builds since 2025.03.05-0017 are not signed by the documented key.
Mar 24 2025, 8:02 PM · VyOS Rolling
dmbaturin merged T7279: VyOS nightly build signed with wrong key into T7276: Nightly builds since 2025.03.05-0017 are not signed by the documented key.
Mar 24 2025, 8:02 PM · VyOS Rolling
dmbaturin closed T7280: Update Procedure Blocked Between `flavor` and `flavor-update` Types as Wontfix.

*-update flavors are no longer used in LTS releases — there is no need to, and it's much simpler for users when they can just use openstack or whatever ISO flavor for upgrade.

Mar 24 2025, 8:01 PM · VyOS Rolling
sarthurdev created T7281: Update Kea to 3.0.
Mar 24 2025, 1:09 PM · VyOS 1.5 Circinus (2025.11)
zsdc changed the status of T7280: Update Procedure Blocked Between `flavor` and `flavor-update` Types from Open to Confirmed.
Mar 24 2025, 12:18 PM · VyOS Rolling
zsdc created T7280: Update Procedure Blocked Between `flavor` and `flavor-update` Types.
Mar 24 2025, 12:18 PM · VyOS Rolling
a.apostoliuk added a comment to T7271: PIMD crashes.

If I use 1M in the command, everything works well for 3 hours

Mar 24 2025, 11:59 AM
a.apostoliuk added a comment to T7271: PIMD crashes.

I reproduced this issue in my lab.
Network MAP
HOST1(debian)---VyOS1----(GREoverIPSEC)-----VyOS-2-- HOST2(debian)

Mar 24 2025, 11:54 AM
Viacheslav changed the status of T7278: Impossible to create users from Open to In progress.
Mar 24 2025, 11:45 AM · VyOS Rolling
Viacheslav added a comment to T7278: Impossible to create users.

Another possible solution https://github.com/vyos/vyos-build/pull/935

Mar 24 2025, 11:44 AM · VyOS Rolling
Viacheslav closed T7131: VPP after enabling by default route-no-paths we get crash daemon and faulting address as Resolved.
Mar 24 2025, 11:40 AM · VyOS Rolling
Viacheslav closed T7131: VPP after enabling by default route-no-paths we get crash daemon and faulting address, a subtask of T7070: VPP related bugs the root task, as Resolved.
Mar 24 2025, 11:40 AM · VyOS Rolling
Viacheslav closed T7189: VPP source of the tunnel interface should be checked and configured, a subtask of T7070: VPP related bugs the root task, as Resolved.
Mar 24 2025, 11:40 AM · VyOS Rolling
Viacheslav closed T7189: VPP source of the tunnel interface should be checked and configured as Resolved.
Mar 24 2025, 11:40 AM · VyOS Rolling
Viacheslav closed T7129: VPP after the update image vpp cannot configure GRE or IPIP tunnel kernel-interface LCP but with clean install can, a subtask of T7070: VPP related bugs the root task, as Resolved.
Mar 24 2025, 11:39 AM · VyOS Rolling
Viacheslav closed T7129: VPP after the update image vpp cannot configure GRE or IPIP tunnel kernel-interface LCP but with clean install can as Resolved.

Fixed in https://github.com/vyos/vyos-vpp-patches/pull/4

Mar 24 2025, 11:39 AM · VyOS Rolling
Viacheslav closed T7244: VPP crashes if using VPP/non-VPP interfaces for OSPF MPLS as Resolved.
Mar 24 2025, 11:38 AM · VyOS Rolling
Viacheslav closed T7244: VPP crashes if using VPP/non-VPP interfaces for OSPF MPLS, a subtask of T7070: VPP related bugs the root task, as Resolved.
Mar 24 2025, 11:38 AM · VyOS Rolling

Mar 23 2025

Apachez added a comment to T7239: version.json for nightly builds no longer updates.

Im also getting a 404 for the commit link posted at 2025-03-23 11:50.

Mar 23 2025, 8:31 PM · VyOS Rolling
jvoss added a comment to T6977: add SRv6 encapsulation source address.

Thanks @Viacheslav, but no need to patch anything in FRR. The commit has made it into the FRR 10.3 release, it will be better to just wait until you guys bump to the latest FRR release. I can rebase and submit a PR at that point fairly quickly.

Mar 23 2025, 6:23 PM · VyOS Rolling
Viacheslav added a comment to T6353: Add a warning when the user tries to set a password too simple.

PR revert https://github.com/vyos/vyos-1x/pull/4411

Mar 23 2025, 5:21 PM · VyOS 1.5 Circinus, Restricted Project, VyOS Rolling
Viacheslav added a comment to T7278: Impossible to create users.

Revert PR https://github.com/vyos/vyos-1x/pull/4411

Mar 23 2025, 5:19 PM · VyOS Rolling
curtdept added a comment to T7239: version.json for nightly builds no longer updates.
Mar 23 2025, 3:23 PM · VyOS Rolling
evgbondarenko closed T7239: version.json for nightly builds no longer updates as Resolved.
Mar 23 2025, 10:51 AM · VyOS Rolling
evgbondarenko added a comment to T7239: version.json for nightly builds no longer updates.

https://github.com/VyOS-Networks/vyos-nightly-build/commit/7e4efc05a48dc10324464889afb45dff3a0bd581

Mar 23 2025, 10:50 AM · VyOS Rolling
Viacheslav added a comment to T6977: add SRv6 encapsulation source address.

We can add patches for FRR build https://github.com/vyos/vyos-build/tree/current/scripts/package-build/frr/patches/frr

Mar 23 2025, 10:18 AM · VyOS Rolling
Viacheslav triaged T7279: VyOS nightly build signed with wrong key as Normal priority.
Mar 23 2025, 10:13 AM · VyOS Rolling
ruffy91 created T7279: VyOS nightly build signed with wrong key.
Mar 23 2025, 10:12 AM · VyOS Rolling
Viacheslav closed T7275: GRETAP not documented correctly as Invalid.

You do not need task on phorge for docs

Mar 23 2025, 10:10 AM · VyOS Rolling
Viacheslav triaged T7277: service/dns/forwarding/dhcp not parsed as Normal priority.
Mar 23 2025, 10:08 AM · VyOS Rolling
Viacheslav updated the task description for T7278: Impossible to create users.
Mar 23 2025, 10:03 AM · VyOS Rolling
Viacheslav triaged T7278: Impossible to create users as Urgent! priority.
Mar 23 2025, 10:03 AM · VyOS Rolling
Viacheslav created T7278: Impossible to create users.
Mar 23 2025, 10:02 AM · VyOS Rolling
sskaje added a comment to T7277: service/dns/forwarding/dhcp not parsed .

PR: https://github.com/vyos/vyos-1x/pull/4410

Mar 23 2025, 4:31 AM · VyOS Rolling
sskaje claimed T7277: service/dns/forwarding/dhcp not parsed .
Mar 23 2025, 4:31 AM · VyOS Rolling
sskaje created T7277: service/dns/forwarding/dhcp not parsed .
Mar 23 2025, 3:39 AM · VyOS Rolling

Mar 22 2025

chenxiaolong created T7276: Nightly builds since 2025.03.05-0017 are not signed by the documented key.
Mar 22 2025, 4:46 PM · VyOS Rolling
jbeaver78 renamed T7275: GRETAP not documented correctly from GRETAP not working correctly to GRETAP not documented correctly.
Mar 22 2025, 4:46 PM · VyOS Rolling
jbeaver78 added a comment to T7275: GRETAP not documented correctly.
Mar 22 2025, 4:24 PM · VyOS Rolling
jbeaver78 added a comment to T7275: GRETAP not documented correctly.
Mar 22 2025, 4:23 PM · VyOS Rolling
L0crian updated the task description for T7274: EVPN ESI requires arbitrary change to VxLAN interface to update fdb from EVPN.
Mar 22 2025, 4:09 PM · VyOS Rolling
L0crian closed T7274: EVPN ESI requires arbitrary change to VxLAN interface to update fdb from EVPN as Resolved.
Mar 22 2025, 4:08 PM · VyOS Rolling
jbeaver78 created T7275: GRETAP not documented correctly.
Mar 22 2025, 3:58 PM · VyOS Rolling
L0crian updated the task description for T7273: Changes to VxLAN interfaces erases FRR config.
Mar 22 2025, 3:24 PM · VyOS Rolling
L0crian created T7274: EVPN ESI requires arbitrary change to VxLAN interface to update fdb from EVPN.
Mar 22 2025, 2:59 PM · VyOS Rolling
L0crian created T7273: Changes to VxLAN interfaces erases FRR config.
Mar 22 2025, 1:59 PM · VyOS Rolling

Mar 21 2025

jestabro created T7272: Vyconf: update in memory config tree on response from vyos-commitd.
Mar 21 2025, 8:48 PM · VyOS Rolling
a.apostoliuk added a comment to T7271: PIMD crashes.

I built a lab and generated traffic as the customer did. However, I could not reproduce this issue. Maybe it is a problem with the packets generated by the switch (192.168.10.10).
There are periodic messages in the log file

Mar 21 2025, 5:17 PM
a.apostoliuk triaged T7271: PIMD crashes as Urgent! priority.
Mar 21 2025, 5:14 PM
a.apostoliuk created T7271: PIMD crashes.
Mar 21 2025, 5:14 PM
jvoss added a comment to T6977: add SRv6 encapsulation source address.

Dependent FRR commit has made it to the 10.3 release. Waiting for VyOS to update and then I will create a PR.

Mar 21 2025, 2:01 PM · VyOS Rolling
jvoss added a comment to T6978: add IS-IS SRv6 configuration.

Both dependent FRR commits have made it to the 10.3 release. Waiting for VyOS to update and then I will create a PR.

Mar 21 2025, 2:01 PM · VyOS Rolling
jbeaver78 added a comment to T7269: DHCP Server Custom Options.

Well, it could go something like this:

Mar 21 2025, 1:06 PM · VyOS Rolling
Viacheslav changed the status of T7226: LDP Hello packets are generated to answer incoming Hello before forming neighbor adjacency from In progress to Needs testing.
Mar 21 2025, 1:00 PM · VyOS 1.4 Sagitta (1.4.2), VyOS Rolling, VyOS 1.5 Circinus
Viacheslav added a comment to T7269: DHCP Server Custom Options.

Which option do you propose for CLI to configure it?

Mar 21 2025, 12:52 PM · VyOS Rolling
Viacheslav changed the status of T7270: syslog: typos in rsyslog.conf from Open to In progress.
Mar 21 2025, 12:15 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
woodsb02 renamed T7270: syslog: typos in rsyslog.conf from syslog: format octet-counted not working due to typo in rsyslog.conf to syslog: typos in rsyslog.conf.
Mar 21 2025, 11:39 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
jbeaver78 added a comment to T7269: DHCP Server Custom Options.

At the moment, it's not configurable in the CLI or if it is, it's not documented or it's buried somewhere that my question marking through the whole thing hasn't revealed it.

Mar 21 2025, 11:27 AM · VyOS Rolling
woodsb02 added a comment to T7270: syslog: typos in rsyslog.conf.

PR submitted: https://github.com/vyos/vyos-1x/pull/4409

Mar 21 2025, 11:08 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav raised the priority of T7270: syslog: typos in rsyslog.conf from Low to High.
Mar 21 2025, 10:31 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav changed the subtype of T7270: syslog: typos in rsyslog.conf from "Task" to "Bug".

@woodsb02 Would you like to create a PR fix?

Mar 21 2025, 10:29 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
woodsb02 created T7270: syslog: typos in rsyslog.conf.
Mar 21 2025, 10:20 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T7269: DHCP Server Custom Options as Wishlist priority.
Mar 21 2025, 9:47 AM · VyOS Rolling
Viacheslav added a comment to T7269: DHCP Server Custom Options.

How do you see it in the CLI?
In my opinion each option should be configurable from the proper CLI if such option does not exist, it should be added.

Mar 21 2025, 9:31 AM · VyOS Rolling
GitHub <noreply@github.com> committed rVYOSONEX46e23b351260: Merge pull request #4400 from l0crian1/current (authored by c-po).
Mar 21 2025, 5:35 AM
GitHub <noreply@github.com> committed rVYOSONEX3fee8ec30dce: Merge pull request #4397 from c-po/T861-secure-boot-certs (authored by c-po).
Mar 21 2025, 5:35 AM
c-po committed rVYOSONEXbd7363dc6568: T861: rename Secure Boot MOK (Machine Owner Key) file.
Mar 21 2025, 5:35 AM