Page MenuHomeVyOS Platform
Feed All Stories

Mar 10 2023

c-po moved T4959: Add container registry authentication config for containers from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 10 2023, 8:19 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po changed the status of T4959: Add container registry authentication config for containers from In progress to Needs testing.
Mar 10 2023, 8:19 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po moved T5079: xml: schema extension to support defaultValues on tagNodes from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 10 2023, 8:19 PM · VyOS 1.4 Sagitta
c-po added a project to T5079: xml: schema extension to support defaultValues on tagNodes: VyOS 1.3 Equuleus (1.3.3).
Mar 10 2023, 8:18 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXfe82d86d3e87: container: T4959: add registry authentication option.
Mar 10 2023, 8:17 PM
c-po committed rVYOSONEXb4af532dd531: schema: T5079: extension to support defaultValues on tagNodes.
Mar 10 2023, 8:17 PM
c-po edited a custom field on T5079: xml: schema extension to support defaultValues on tagNodes.
Mar 10 2023, 7:27 PM · VyOS 1.4 Sagitta
c-po changed the status of T5079: xml: schema extension to support defaultValues on tagNodes, a subtask of T4959: Add container registry authentication config for containers, from Open to In progress.
Mar 10 2023, 7:27 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
c-po changed the status of T5079: xml: schema extension to support defaultValues on tagNodes from Open to In progress.
Mar 10 2023, 7:27 PM · VyOS 1.4 Sagitta
c-po created T5079: xml: schema extension to support defaultValues on tagNodes.
Mar 10 2023, 7:27 PM · VyOS 1.4 Sagitta
MartB added a comment to T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6).

@sdev just for clarification do you mean "deleted" as in only existing entries but new ones will work or completely deleted?
Im asking because I do use keas global, subnet, pool and class option-data support extensively outside of vyos.
If this would stay/become a part of vyos that would be great!

Mar 10 2023, 5:27 PM · VyOS 1.5 Circinus
c-po committed rVYOSONEX6bfeb43b0cfe: xml: bgp: T5070: split out CLI definitions to include files which can be reused.
Mar 10 2023, 2:56 PM
Viacheslav committed rVYOSONEX9701cbe89dbb: T5058: Fix range_to_regex list argument.
Mar 10 2023, 2:16 PM
GitHub <noreply@github.com> committed rVYOSONEXeb4d0ac46bf4: Merge pull request #1884 from sever-sever/T5058 (authored by c-po).
Mar 10 2023, 2:16 PM
Viacheslav added a comment to T5058: Extend template filter range_to_regex.

PR https://github.com/vyos/vyos-1x/pull/1884

>>> range_to_regex(['10-20', '22-35', '50'])
'(1\\d|20|2[2-9]|3[0-5]|50)'
>>>
Mar 10 2023, 2:05 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5070: show bgp nexthop unavailable in VRF from Open to Needs testing.
Mar 10 2023, 1:02 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5074: Show IPSEC SA failed if remote access IKEv2 vpn is used. from In progress to Needs testing.
Mar 10 2023, 12:40 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEXf28c6531c8f8: graphql: T5068: generate client operations for code generation tools.
Mar 10 2023, 12:28 PM
GitHub <noreply@github.com> committed rVYOSONEX29d27c392274: Merge pull request #1876 from jestabro/codegen (authored by c-po).
Mar 10 2023, 12:28 PM
Viacheslav changed the status of T4973: show dhcp server leases error for lease time 4294967295 from In progress to Needs testing.

Will be fixed in the next rolling release

Mar 10 2023, 12:02 PM · VyOS 1.4 Sagitta
tfiebig committed rVYOSONEX4cdf1386840e: T5070: Added show bgp martian/show bgp nexthop to bgp in vrf.
Mar 10 2023, 12:01 PM
GitHub <noreply@github.com> committed rVYOSONEX684b30a16c61: Merge pull request #1880 from ichdasich/add_bgp_nexthop_to_vrf (authored by c-po).
Mar 10 2023, 12:01 PM
Viacheslav committed rVYOSONEX77448e1d5ece: T4973: DHCP server fix output for long leases.
Mar 10 2023, 12:01 PM
GitHub <noreply@github.com> committed rVYOSONEX284820582938: Merge pull request #1883 from sever-sever/T4973 (authored by c-po).
Mar 10 2023, 12:01 PM
a.apostoliuk committed rVYOSONEX72ef87421bd4: util: T5074: Fixed decoding of certificate value to UTF-8 string.
Mar 10 2023, 12:00 PM
GitHub <noreply@github.com> committed rVYOSONEXcb8006da2a84: Merge pull request #1882 from aapostoliuk/T5074-sagitta (authored by c-po).
Mar 10 2023, 12:00 PM
tfiebig added a comment to T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'.

Wanted to have the ticketid to write the right commit message right away. Diff is here: https://github.com/vyos/vyos-1x/compare/current...ichdasich:vyos-1x:filtered_routes

Mar 10 2023, 11:51 AM · VyOS 1.4 Sagitta
tfiebig created T5078: VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'.
Mar 10 2023, 11:50 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5058: Extend template filter range_to_regex.

If we add vlan to range we get error

set service ipoe-server authentication mode 'noauth'
set service ipoe-server client-ip-pool name POOL1 gateway-address '192.0.2.1'
set service ipoe-server client-ip-pool name POOL1 subnet '192.0.2.0/24'
set service ipoe-server interface eth1 vlan '2000-3000'
commit
set service ipoe-server interface eth1 vlan '50'
commit

The second commit:

Mar 10 2023, 10:18 AM · VyOS 1.4 Sagitta
Viacheslav reopened T5058: Extend template filter range_to_regex as "Needs testing".
Mar 10 2023, 10:16 AM · VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4925: Need to add the possibility to configure Pseudo-Random Functions (PRF) in IKEv2 from Open to In progress.
Mar 10 2023, 9:35 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk added a project to T4925: Need to add the possibility to configure Pseudo-Random Functions (PRF) in IKEv2: VyOS 1.3 Equuleus (1.3.3).
Mar 10 2023, 9:35 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk reopened T4925: Need to add the possibility to configure Pseudo-Random Functions (PRF) in IKEv2 as "Open".
Mar 10 2023, 9:34 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX36fea4cb4956: T5033: Ability to generate muliple keys from a file or link.
Mar 10 2023, 9:21 AM
GitHub <noreply@github.com> committed rVYOSONEXa3b16a483140: Merge pull request #1859 from sever-sever/T5033-eq (authored by Viacheslav).
Mar 10 2023, 9:21 AM
Viacheslav changed the status of T4973: show dhcp server leases error for lease time 4294967295 from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/1883

Mar 10 2023, 9:20 AM · VyOS 1.4 Sagitta
a.apostoliuk changed the status of T5074: Show IPSEC SA failed if remote access IKEv2 vpn is used. from Open to In progress.
Mar 10 2023, 8:18 AM · VyOS 1.4 Sagitta
a.apostoliuk claimed T5074: Show IPSEC SA failed if remote access IKEv2 vpn is used..
Mar 10 2023, 8:18 AM · VyOS 1.4 Sagitta
aserkin created T5077: routes completely dropped from the node while running L2TP LNS service.
Mar 10 2023, 7:44 AM · Bugs
Viacheslav renamed T4973: show dhcp server leases error for lease time 4294967295 from show dhcp server leases error for static entries to show dhcp server leases error for lease time 4294967295.
Mar 10 2023, 7:12 AM · VyOS 1.4 Sagitta

Mar 9 2023

klipz updated subscribers of T5055: Firewall - Add packet type matcher (pkttype).

@n.fort @Viacheslav
Here is an example of what I am after for DNAT rule, specifically, using meta pkttype:

Mar 9 2023, 7:31 PM · VyOS 1.4 Sagitta
c-po changed the status of T5076: CI/CD: Docker container is bloated by legacy and conflicting dependencies from Open to In progress.
Mar 9 2023, 7:06 PM · VyOS 1.4 Sagitta
c-po created T5076: CI/CD: Docker container is bloated by legacy and conflicting dependencies.
Mar 9 2023, 7:06 PM · VyOS 1.4 Sagitta
c-po closed T4952: Improve interface completion helper CLI experience as Resolved.
Mar 9 2023, 6:43 PM · VyOS 1.4 Sagitta
c-po committed rVYOSONEXfe4da6288649: xml: T4952: improve interface completion helper CLI experience.
Mar 9 2023, 6:41 PM
sarthurdev committed rVYOSONEX25b64f32a22c: qos: T5018: Fix interface tc qdisc cleanup.
Mar 9 2023, 6:38 PM
sarthurdev committed rVYOSONEXc3039903aff9: qos: T5018: Use configdep to fix interface mirror/redirect issue.
Mar 9 2023, 6:38 PM
GitHub <noreply@github.com> committed rVYOSONEX0f3710927eab: Merge pull request #1881 from sarthurdev/qos_fix (authored by c-po).
Mar 9 2023, 6:38 PM
daniil added a comment to T4989: QoS Policy Limiter - classes for marked traffic do not work.

QoS Policy Limiter now works correctly.
But the shaper classes for tagged traffic don't work.

Mar 9 2023, 6:35 PM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Jimz added a comment to T4973: show dhcp server leases error for lease time 4294967295.

I was able to get it to work as expected by reducing the lease below 4294967295 and removing the /config/dhcpd.leases file. It should work per the instruction to make the lease effectively static. It had worked in the past so at some point the check that the resultant lease end day is numeric.

Mar 9 2023, 5:59 PM · VyOS 1.4 Sagitta
Jimz added a comment to T4973: show dhcp server leases error for lease time 4294967295.

Example configuration:

Mar 9 2023, 5:25 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T5018: Redirect to IFB removed after change in qos policy.

PR: https://github.com/vyos/vyos-1x/pull/1881

Mar 9 2023, 5:09 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T5018: Redirect to IFB removed after change in qos policy from Confirmed to In progress.
Mar 9 2023, 4:26 PM · VyOS 1.4 Sagitta
Viacheslav awarded T5046: CLI for password complexity enforcement PAM module a Like token.
Mar 9 2023, 4:18 PM · VyOS Rolling
Viacheslav closed T5066: Different GRE tunnel but same tunnel keys error as Resolved.
Mar 9 2023, 4:02 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the status of T5073: IPoE-server interface option failed to parse from In progress to Needs testing.
Mar 9 2023, 3:58 PM · VyOS 1.4 Sagitta
sarthurdev closed T5075: QoS removes interface mirror/redirect rules as Invalid.

My bad

Mar 9 2023, 3:23 PM · VyOS 1.4 Sagitta
rayzilt added a comment to T5075: QoS removes interface mirror/redirect rules.

Seems to be the same task -> https://vyos.dev/T5018

Mar 9 2023, 3:22 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T5075: QoS removes interface mirror/redirect rules from Open to In progress.
Mar 9 2023, 3:15 PM · VyOS 1.4 Sagitta
sarthurdev created T5075: QoS removes interface mirror/redirect rules.
Mar 9 2023, 3:15 PM · VyOS 1.4 Sagitta
tfiebig added a comment to T5069: BGP large-community-list regex validation is incomplete.

Just put this on a live system, and it behaves as intended (so far). Special meaning of _ would certainly have to be added to the check, i guess, but that needs further delving into bgp-regex syntax.

Mar 9 2023, 2:45 PM · VyOS 1.4 Sagitta (1.4.4), VyOS 1.5 Circinus (2025.11)
erkin changed the status of T5046: CLI for password complexity enforcement PAM module, a subtask of T4712: Collaborative Protection Profile cPP for Network Devices root task, from Open to In progress.
Mar 9 2023, 2:42 PM · VyOS Rolling, VyOS 1.5 Circinus (1.5-stream-2025-Q4)
erkin changed the status of T5046: CLI for password complexity enforcement PAM module from Open to In progress.
Mar 9 2023, 2:42 PM · VyOS Rolling
erkin updated the task description for T5046: CLI for password complexity enforcement PAM module.
Mar 9 2023, 2:41 PM · VyOS Rolling
Viacheslav committed rVYOSONEXc2f3bb253d37: T5066: Fix GRE tunnel variable name for verify check keys.
Mar 9 2023, 2:28 PM
GitHub <noreply@github.com> committed rVYOSONEX9e79f8a38be1: Merge pull request #1878 from sever-sever/T5066-eq (authored by dmbaturin).
Mar 9 2023, 2:28 PM
Viacheslav committed rVYOSONEX7310b1bf6553: T5073: IPoE-server fix parse empty range option.
Mar 9 2023, 2:23 PM
GitHub <noreply@github.com> committed rVYOSONEX3c6e20b3bb54: Merge pull request #1877 from sever-sever/T5073 (authored by c-po).
Mar 9 2023, 2:23 PM
tfiebig added a comment to T5070: show bgp nexthop unavailable in VRF.

https://github.com/vyos/vyos-1x/pull/1880

Mar 9 2023, 2:07 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4973: show dhcp server leases error for lease time 4294967295.

@Jimz could you share an example of configuration?
I can't reproduce it with

set service dhcp-server shared-network-name Lan01 authoritative
set service dhcp-server shared-network-name Lan01 name-server '1.1.1.1'
set service dhcp-server shared-network-name Lan01 subnet 192.0.2.0/24 default-router '192.0.2.1'
set service dhcp-server shared-network-name Lan01 subnet 192.0.2.0/24 range R1 start '192.0.2.10'
set service dhcp-server shared-network-name Lan01 subnet 192.0.2.0/24 range R1 stop '192.0.2.254'
set service dhcp-server shared-network-name Lan01 subnet 192.0.2.0/24 static-mapping myhost ip-address '192.0.2.5'
set service dhcp-server shared-network-name Lan01 subnet 192.0.2.0/24 static-mapping myhost mac-address '02:a6:0c:88:3e:a2'
Mar 9 2023, 1:43 PM · VyOS 1.4 Sagitta
tfiebig added a comment to T5070: show bgp nexthop unavailable in VRF.

Let me give it another test-run in a bit and then i'll issue a PR.

Mar 9 2023, 12:56 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5070: show bgp nexthop unavailable in VRF.

Could you create a PR?

Mar 9 2023, 12:52 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3008: Migrate from ntpd to chronyd.

Discovered a couple of problems with chrony using the existing CLI.

Mar 9 2023, 12:25 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX3b27442674e0: T5063: IPoE-server ethX vlan must not be used with client-subnet.
Mar 9 2023, 11:01 AM
GitHub <noreply@github.com> committed rVYOSONEX80f51ba0bb9d: Merge pull request #1879 from sever-sever/T5063 (authored by c-po).
Mar 9 2023, 11:01 AM
Viacheslav added a comment to T5063: IPoE-server ethX vlan must not be used with client-subnet.

PR https://github.com/vyos/vyos-1x/pull/1879

Mar 9 2023, 11:00 AM · VyOS 1.4 Sagitta
a.apostoliuk created T5074: Show IPSEC SA failed if remote access IKEv2 vpn is used..
Mar 9 2023, 9:25 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5066: Different GRE tunnel but same tunnel keys error.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1878

Mar 9 2023, 9:21 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav edited projects for T5066: Different GRE tunnel but same tunnel keys error, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Mar 9 2023, 8:53 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav moved T5066: Different GRE tunnel but same tunnel keys error from Open to Finished on the VyOS 1.4 Sagitta board.
Mar 9 2023, 8:52 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T5073: IPoE-server interface option failed to parse.

PR https://github.com/vyos/vyos-1x/pull/1877

Mar 9 2023, 8:15 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T5073: IPoE-server interface option failed to parse from Open to In progress.
Mar 9 2023, 7:29 AM · VyOS 1.4 Sagitta
Viacheslav created T5073: IPoE-server interface option failed to parse.
Mar 9 2023, 7:29 AM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T5071: QOS-Rewrite: DSCP match missing from "Task" to "Bug".
Mar 9 2023, 3:56 AM · VyOS 1.4 Sagitta
MartB created T5072: QOS-Rewrite: protocol name used literally.
Mar 9 2023, 1:35 AM · VyOS 1.4 Sagitta
MartB created T5071: QOS-Rewrite: DSCP match missing.
Mar 9 2023, 1:31 AM · VyOS 1.4 Sagitta
MartB added a comment to T4989: QoS Policy Limiter - classes for marked traffic do not work.

@c-po Isnt this implementation wrong for "shaper" anyway?
The speed should only be taken from the interface as an last resort, if the default bandwidth is configured in a no percentage unit it should be used instead, no?

Mar 9 2023, 1:23 AM · vyatta-cfg-qos, VyOS 1.4 Sagitta

Mar 8 2023

tfiebig created T5070: show bgp nexthop unavailable in VRF.
Mar 8 2023, 8:30 PM · VyOS 1.4 Sagitta
tfiebig created T5069: BGP large-community-list regex validation is incomplete.
Mar 8 2023, 7:39 PM · VyOS 1.4 Sagitta (1.4.4), VyOS 1.5 Circinus (2025.11)
jestabro triaged T5068: Generate op-mode API client requests along with schema generation as Normal priority.
Mar 8 2023, 7:39 PM · VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXe63ade27c14b: T5066: Fix GRE tunnel variable name which checks keys.
Mar 8 2023, 7:18 PM
GitHub <noreply@github.com> committed rVYOSONEXe1ea2f826ce7: Merge pull request #1875 from sever-sever/T5066 (authored by c-po).
Mar 8 2023, 7:18 PM
jestabro edited projects for T4396: HTTP API no response after several days restarted, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.3).
Mar 8 2023, 7:16 PM · VyOS 1.4 Sagitta
jestabro closed T4396: HTTP API no response after several days restarted as Not Applicable.

This was never reproduced; user will report if recurrence and we will reopen as needed.

Mar 8 2023, 7:15 PM · VyOS 1.4 Sagitta
jestabro edited projects for T4318: Add ability to mark nodes as non-tag nodes, added: VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.3).

Lower priority and will need testing when implemented.

Mar 8 2023, 7:10 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q4), VyOS Rolling
jestabro changed the status of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command from Unknown Status to Resolved.
Mar 8 2023, 3:17 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro changed the status of T4872: Op-mode show openvpn misses a case when parsing for tunnel IP, a subtask of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command, from Unknown Status to Resolved.
Mar 8 2023, 3:16 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro changed the status of T4872: Op-mode show openvpn misses a case when parsing for tunnel IP from Unknown Status to Resolved.
Mar 8 2023, 3:16 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dex created T5067: Recursively change group names in firewall rules.
Mar 8 2023, 2:13 PM · VyOS Rolling
dex added a comment to T5064: Value validation for domain-groups seems to be broken.

Looking at the regex it seems that . (dot) is also allowed. Is that right? If so, the error message should be altered accordingly.

Mar 8 2023, 1:35 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta