Page MenuHomeVyOS Platform
Feed All Stories

Mar 15 2022

zsdc changed the status of T4300: Extend list of supported interfaces for Cloud-init Network Configuration from Open to In progress.
Mar 15 2022, 3:45 PM · VyOS 1.4 Sagitta
zsdc created T4300: Extend list of supported interfaces for Cloud-init Network Configuration.
Mar 15 2022, 1:06 PM · VyOS 1.4 Sagitta
fernando closed T4293: Add "set ip-next-hop unchanged" in route-map as Resolved.
Mar 15 2022, 11:28 AM · VyOS 1.4 Sagitta
rob added a comment to T4293: Add "set ip-next-hop unchanged" in route-map.

The PR is merged with the wrong Task number. This can be closed.

Mar 15 2022, 10:08 AM · VyOS 1.4 Sagitta

Mar 14 2022

n.fort committed rVYOSONEXff0e43807789: Firewall: T4286: Correct ipv6-range validator.
Mar 14 2022, 6:56 PM
GitHub <noreply@github.com> committed rVYOSONEX4924a82cbdc7: Merge pull request #1247 from nicolas-fort/T4286 (authored by c-po).
Mar 14 2022, 6:56 PM
SrividyaA added a comment to T4288: IPsec tunnel will break when ESP timeout.

IKEv2 has a different working behavior compared to the IKEv1. IKEv2 provides proper inline rekeying of IKE SAs by use of CREATE_CHILD_SA exchanges. This means that new keys may be established without any interruption of the existing IKE and IPsec SAs.

Mar 14 2022, 1:04 PM · VyOS 1.4 Sagitta
SrividyaA closed T4275: Incorrect val_help for local/remote prefix in ipsec vpn as Resolved.
Mar 14 2022, 9:26 AM · VyOS 1.4 Sagitta

Mar 13 2022

n.fort created T4299: Firewall - GeoIP filtering.
Mar 13 2022, 2:14 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4298: vyos-vm-images: fix ansible group name and remove obsolete empty command.

Update download URL -> PR: https://github.com/vyos/vyos-vm-images/pull/26

Mar 13 2022, 1:33 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4290: BGP source-interface fails to commit.

PR https://github.com/vyos/vyos-1x/pull/1248

Mar 13 2022, 1:01 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4290: BGP source-interface fails to commit from Open to In progress.
Mar 13 2022, 12:57 PM · VyOS 1.4 Sagitta
Viacheslav moved T1856: Support configuring IPSec SA bytes from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 13 2022, 11:46 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0)

Mar 12 2022

n.fort added a comment to T4286: Fix for firewall ipv6 name address validator.

PR for 1.4: https://github.com/vyos/vyos-1x/pull/1247

Mar 12 2022, 3:23 PM · VyOS 1.4 Sagitta
zsdc closed T4002: firewall group network-group long names restriction incorrect behavior as Resolved.
Mar 12 2022, 12:13 PM · VyOS 1.3 Equuleus ( 1.3.1)
zsdc moved T4296: Interface config injected by Cloud-Init may interfere with VyOS native from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 12 2022, 12:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
zsdc closed T4296: Interface config injected by Cloud-Init may interfere with VyOS native as Resolved.

Fixed for both 1.3 and 1.4.

Mar 12 2022, 12:07 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.183 / 5.10.104 to Update Linux Kernel to v5.4.184 / 5.10.105.
Mar 12 2022, 8:22 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
plett committed rVYOSONEX7549c847c3df: policy: T2493 ip-next-hop unchanged & peer-address.
Mar 12 2022, 8:20 AM
c-po committed rVYOSONEX56febd155792: Merge branch 'T2493-nexthop-unchanged' of https://github.com/plett/vyos-1x into….
Mar 12 2022, 8:20 AM
Viacheslav closed T4265: Add op-mode for bgp flowspec state and routes as Resolved.
Mar 12 2022, 7:44 AM · VyOS 1.4 Sagitta
zsdc committed rVYOSONEXebb524702e1c: logrotate: T4250: Fixed logrotate config generation.
Mar 12 2022, 7:27 AM
GitHub <noreply@github.com> committed rVYOSONEX1e17d1d45a09: Merge pull request #1241 from zdc/T4250-sagitta (authored by c-po).
Mar 12 2022, 7:27 AM
Viacheslav committed rVYOSONEXb1d4be53cd13: bgp: T4265: Add op-mode for bgp flowspec routes.
Mar 12 2022, 7:25 AM
GitHub <noreply@github.com> committed rVYOSONEX2d3f5a03de3e: Merge pull request #1246 from sever-sever/T4265 (authored by c-po).
Mar 12 2022, 7:25 AM

Mar 11 2022

Viacheslav changed the status of T4122: interface ip address config missing after upgrade from 1.2.8 to 1.3.0 (when redirect is configured?) from Resolved to Unknown Status.
Mar 11 2022, 6:32 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort closed T4122: interface ip address config missing after upgrade from 1.2.8 to 1.3.0 (when redirect is configured?) as Resolved.
Mar 11 2022, 6:20 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort updated n.fort.
Mar 11 2022, 6:18 PM
n.fort claimed T4286: Fix for firewall ipv6 name address validator.
Mar 11 2022, 6:17 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4265: Add op-mode for bgp flowspec state and routes.

PR https://github.com/vyos/vyos-1x/pull/1246

Mar 11 2022, 6:16 PM · VyOS 1.4 Sagitta
c-po closed T4297: Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings as Resolved.
Mar 11 2022, 6:13 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po moved T4297: Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 11 2022, 6:13 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po committed rVYOSONEXcfa98d3e281f: Ethtool: T4297: Update drivers supporting speed/flow/duplex (authored by dberlin).
Mar 11 2022, 6:12 PM
c-po moved T4297: Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Mar 11 2022, 6:12 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po assigned T4297: Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings to dberlin.
Mar 11 2022, 6:12 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEX2894b5245431: [Ethtool] T4297: Update drivers supporting speed/flow/duplex (authored by dberlin).
Mar 11 2022, 6:11 PM
GitHub <noreply@github.com> committed rVYOSONEX7d69edf280fd: Merge pull request #1245 from dberlin/patch-1 (authored by c-po).
Mar 11 2022, 6:11 PM
Viacheslav changed the status of T4265: Add op-mode for bgp flowspec state and routes from Open to In progress.
Mar 11 2022, 6:05 PM · VyOS 1.4 Sagitta
hakwerk created T4298: vyos-vm-images: fix ansible group name and remove obsolete empty command.
Mar 11 2022, 4:21 PM · VyOS 1.4 Sagitta
dberlin created T4297: Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings.
Mar 11 2022, 3:39 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dcplaya added a comment to T4290: BGP source-interface fails to commit.

You are correct, my config is not correct.

Mar 11 2022, 2:02 PM · VyOS 1.4 Sagitta
zsdc created T4296: Interface config injected by Cloud-Init may interfere with VyOS native.
Mar 11 2022, 2:02 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav updated the task description for T4265: Add op-mode for bgp flowspec state and routes.
Mar 11 2022, 2:01 PM · VyOS 1.4 Sagitta
chesskuo added a comment to T4288: IPsec tunnel will break when ESP timeout.

emmm, I know it.

Mar 11 2022, 12:58 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4288: IPsec tunnel will break when ESP timeout.

I found the swanctl.conf.
The config does not match the vyso config.

I set the close_action as restart, but config does not show this line.

Mar 11 2022, 12:28 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4290: BGP source-interface fails to commit.

Your configuration should be like:

Mar 11 2022, 12:02 PM · VyOS 1.4 Sagitta

Mar 10 2022

fernando reassigned T4293: Add "set ip-next-hop unchanged" in route-map from fernando to plett.
Mar 10 2022, 7:05 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4286: Fix for firewall ipv6 name address validator.

A simplified validator that rejects non-ipv6 address range (still lacks of 1st ipv6 minor than 2nd address validator):

Mar 10 2022, 6:50 PM · VyOS 1.4 Sagitta
jestabro moved T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py from Finished to In Progress on the VyOS 1.4 Sagitta board.

Re-open to investigate failure in vyos-configtest.

Mar 10 2022, 6:42 PM · VyOS 1.4 Sagitta
jestabro moved T4292: Rewrite vyatta-save-config.pl to Python from Finished to In Progress on the VyOS 1.4 Sagitta board.

Re-open to investigate failure in vyos-configtest.

Mar 10 2022, 6:41 PM · VyOS 1.4 Sagitta
jestabro moved T4291: Consolidate component version read/write functions from Finished to In Progress on the VyOS 1.4 Sagitta board.

Re-open to investigate failure in vyos-configtest.

Mar 10 2022, 6:41 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEXc1e04cea0817: Revert "component_version: T4291: consolidate read/write functions".
Mar 10 2022, 6:38 PM
jestabro added a reverting change for rVYOSONEX534f677d3628: component_version: T4291: consolidate read/write functions: rVYOSONEXc1e04cea0817: Revert "component_version: T4291: consolidate read/write functions".
Mar 10 2022, 6:38 PM
jestabro added a reverting change for rVYOSONEXc4d389488970: save-config: T4292: rewrite vyatta-save-config.pl to Python: rVYOSONEXef4870e66f8c: Revert "save-config: T4292: rewrite vyatta-save-config.pl to Python".
Mar 10 2022, 6:38 PM
jestabro committed rVYOSONEXef4870e66f8c: Revert "save-config: T4292: rewrite vyatta-save-config.pl to Python".
Mar 10 2022, 6:38 PM
jestabro added a reverting change for rVYOSONEX2a4b45ba7fa4: load-config: T4295: use config_tree instead of legacy loadFile: rVYOSONEXfde48b4d303b: Revert "load-config: T4295: use config_tree instead of legacy loadFile".
Mar 10 2022, 6:38 PM
jestabro committed rVYOSONEXfde48b4d303b: Revert "load-config: T4295: use config_tree instead of legacy loadFile".
Mar 10 2022, 6:38 PM
n.fort added a comment to T4286: Fix for firewall ipv6 name address validator.

For 1.4, problem is in ipv6-range validator, which accepts lots of values that should be considered as invalid:

Mar 10 2022, 6:30 PM · VyOS 1.4 Sagitta
erkin committed rVYOSONEX92f6fecabfab: T3506: loadkey: Add `generate public-key-command` command.
Mar 10 2022, 3:00 PM
GitHub <noreply@github.com> committed rVYOSONEX71307ab2a126: Merge pull request #1244 from erkin/equuleus (authored by dmbaturin).
Mar 10 2022, 3:00 PM
plett added a comment to T4293: Add "set ip-next-hop unchanged" in route-map.

PR: https://github.com/vyos/vyos-1x/pull/1243

Mar 10 2022, 2:25 PM · VyOS 1.4 Sagitta
erkin added a comment to T4238: Support for overriding XML properties in the template preprocessor.

I'm going to be experimenting with Jinja 2 to see if we can incorporate it into our template processor.

Mar 10 2022, 2:19 PM
erkin added a comment to T3506: Migrate loadkey command to op-mode.

Actually, let's leave it in 1.3 but backport the warning and generate public-key-command.

Mar 10 2022, 2:12 PM · VyOS 1.4 Sagitta
fernando claimed T4293: Add "set ip-next-hop unchanged" in route-map.
Mar 10 2022, 1:44 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4285: Add integration with Teleport.

@zsdc Do you have any idea for CLI configuration mode?

Mar 10 2022, 1:09 PM · VyOS Rolling
rexelpoland updated rexelpoland.
Mar 10 2022, 9:36 AM
chesskuo added a comment to T4288: IPsec tunnel will break when ESP timeout.

Hello sir, thank you !!!

Mar 10 2022, 3:37 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4288: IPsec tunnel will break when ESP timeout.

Could you try to use "ikev2"? Will the same problem be if you use "ikev2"?

Mar 10 2022, 1:32 AM · VyOS 1.4 Sagitta

Mar 9 2022

Unknown Object (User) added a comment to T4286: Fix for firewall ipv6 name address validator.

Similar situation in VyOS 1.3-stable-202202191602

Mar 9 2022, 10:47 PM · VyOS 1.4 Sagitta
c-po closed T3981: VRF support for flow-accounting as Resolved.
Mar 9 2022, 7:35 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4235: Add config tree diff algorithm: T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py.
Mar 9 2022, 5:23 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro added a parent task for T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py: T4235: Add config tree diff algorithm.
Mar 9 2022, 5:23 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py: T3441: More intelligent config loading scripts.
Mar 9 2022, 5:22 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T3441: More intelligent config loading scripts: T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py.
Mar 9 2022, 5:22 PM · VyOS Rolling
jestabro committed rVYOSONEX2a4b45ba7fa4: load-config: T4295: use config_tree instead of legacy loadFile.
Mar 9 2022, 5:02 PM
jestabro closed T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py as Unknown Status.
Mar 9 2022, 5:02 PM · VyOS 1.4 Sagitta
jestabro triaged T4295: Use config_tree instead of legacy loadFile in vyos-load-config.py as Normal priority.
Mar 9 2022, 4:58 PM · VyOS 1.4 Sagitta
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.182 / 5.10.103 to Update Linux Kernel to v5.4.183 / 5.10.104.
Mar 9 2022, 6:37 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Mar 8 2022

fernando reassigned T4293: Add "set ip-next-hop unchanged" in route-map from fernando to plett.
Mar 8 2022, 11:09 PM · VyOS 1.4 Sagitta
fernando claimed T4293: Add "set ip-next-hop unchanged" in route-map.
Mar 8 2022, 9:45 PM · VyOS 1.4 Sagitta
dmbaturin created T4294: Adding a new openvpn-option does not restart the OpenVPN process.
Mar 8 2022, 8:37 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
fernando changed the status of T4293: Add "set ip-next-hop unchanged" in route-map from Open to Confirmed.
Mar 8 2022, 8:25 PM · VyOS 1.4 Sagitta
plett created T4293: Add "set ip-next-hop unchanged" in route-map.
Mar 8 2022, 8:13 PM · VyOS 1.4 Sagitta
jestabro closed T4292: Rewrite vyatta-save-config.pl to Python as Unknown Status.
Mar 8 2022, 6:13 PM · VyOS 1.4 Sagitta
jestabro closed T4292: Rewrite vyatta-save-config.pl to Python, a subtask of T4291: Consolidate component version read/write functions, as Unknown Status.
Mar 8 2022, 6:13 PM · VyOS 1.4 Sagitta
jestabro closed T4292: Rewrite vyatta-save-config.pl to Python, a subtask of T3355: Remove all remaining legacy Vyatta code, as Unknown Status.
Mar 8 2022, 6:13 PM · VyOS Rolling
jestabro closed T4291: Consolidate component version read/write functions as Unknown Status.
Mar 8 2022, 6:13 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEXc4d389488970: save-config: T4292: rewrite vyatta-save-config.pl to Python.
Mar 8 2022, 6:09 PM
jestabro committed rVYOSONEX534f677d3628: component_version: T4291: consolidate read/write functions.
Mar 8 2022, 6:09 PM
eyesfire2 added a comment to T3981: VRF support for flow-accounting.

system seems to be able to process flow data now and im seeing the flow data (netflow and sflow) reach my destination pathed via flow location, appears to work now!

Mar 8 2022, 5:59 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T4292: Rewrite vyatta-save-config.pl to Python: T3355: Remove all remaining legacy Vyatta code.
Mar 8 2022, 5:44 PM · VyOS 1.4 Sagitta
jestabro added a subtask for T3355: Remove all remaining legacy Vyatta code: T4292: Rewrite vyatta-save-config.pl to Python.
Mar 8 2022, 5:44 PM · VyOS Rolling
jestabro added a subtask for T4291: Consolidate component version read/write functions: T4292: Rewrite vyatta-save-config.pl to Python.
Mar 8 2022, 5:44 PM · VyOS 1.4 Sagitta
jestabro added a parent task for T4292: Rewrite vyatta-save-config.pl to Python: T4291: Consolidate component version read/write functions.
Mar 8 2022, 5:44 PM · VyOS 1.4 Sagitta
jestabro triaged T4292: Rewrite vyatta-save-config.pl to Python as Normal priority.
Mar 8 2022, 5:44 PM · VyOS 1.4 Sagitta
jestabro triaged T4291: Consolidate component version read/write functions as Normal priority.
Mar 8 2022, 5:43 PM · VyOS 1.4 Sagitta
erkin added a comment to T3506: Migrate loadkey command to op-mode.

I'm removing loadkey from 1.4. It will be removed from 1.3.1, as well. Eventually, the warning will be dropped from 1.4 but it will remain in 1.3.

Mar 8 2022, 10:43 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4231: Feature Request: ocserv: 2FA (password+OTP) support in Openconnect.

Next, we need to create an OTP key generator in the VyOS CLI

Mar 8 2022, 10:33 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4231: Feature Request: ocserv: 2FA (password+OTP) support in Openconnect.

PR with basic functionality:
https://github.com/vyos/vyos-1x/pull/1242
https://github.com/vyos/vyatta-cfg-system/pull/178

Mar 8 2022, 10:32 AM · VyOS 1.4 Sagitta
Unknown Object (User) updated the task description for T4231: Feature Request: ocserv: 2FA (password+OTP) support in Openconnect.
Mar 8 2022, 10:18 AM · VyOS 1.4 Sagitta