In T1311#157738, @syncer wrote:@Viacheslav will you backport this to 1.3 ?
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Feed All Stories
All Stories
All Stories
Aug 28 2023
Aug 28 2023
Viacheslav added a comment to T1311: WAN load-balancing can't flush connections when conntrack-sync is enabled.
Aug 28 2023, 4:10 PM · VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, test
Viacheslav edited projects for T2296: Upgrade WALinux to 2.2.41, added: VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.5), VyOS 1.2 Crux (VyOS 1.2.9).
we have a version updated , this case should be closed:
azureuser@vyos-support:~$ sudo /usr/sbin/waagent -version WALinuxAgent-2.2.45 running on debian 10.12 Python: 3.7.3 Goal state agent: 2.2.45
syncer added a comment to T1311: WAN load-balancing can't flush connections when conntrack-sync is enabled.
@Viacheslav will you backport this to 1.3 ?
Aug 28 2023, 2:54 PM · VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, test
Viacheslav added a comment to T2505: XCP-ng packet drops for small packets (e.g. icmp) under Xen and AWS.
@Sonicbx Is it an actual bug?
Viacheslav edited projects for T2433: Improve CLI value validator performance, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav edited projects for T2444: Remove keepalived in favor of FRR for VRRP, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav edited projects for T2424: Ability to choose the direction of Mirroring, added: VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.5).
Implemented in previous versions, https://github.com/vyos/vyos-1x/blob/a5c5998a84917cc45f9fb3234607f53b27a109fc/interface-definitions/include/interface/mirror.xml.i#L1-L25
vyos@r1# set interfaces ethernet eth0 mirror Possible completions: egress Mirror the egress traffic of the interface to the destination interface ingress Mirror the ingress traffic of the interface to the destination interface
@n.fort Add please a PR for 1.3 or delete the 1.3 tag if it is not required
Viacheslav changed the status of T2416: Do not always delete all bond members when adding new ones from Open to Needs testing.
Viacheslav edited projects for T2405: commit archive to GIT, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav edited projects for T2390: unify the chmod_ function of VyOS, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav removed a project from T2315: Ability to have right address-family for BGP peers.: VyOS 1.3 Equuleus (1.3.5).
Viacheslav edited projects for T2326: Migrate NHRP(DMVPN) to FRR, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Can be resolved by route-map acting on community (for example <ASN>:888) and setting nexthop to 192.0.2.1 (optional tag 666) or for IPv6 set nexthop 0100:: along with a static route where 192.0.2.1/32 and 0100::/64 have null0 as nexthop.
Viacheslav closed T2274: Move the interface default values from the conf_mode file to the interface, a subtask of T2171: Unify creation and manipulation of interfaces, as Invalid.
Viacheslav closed T2274: Move the interface default values from the conf_mode file to the interface as Invalid.
It is not a task for 1.3 LTS releases.
For 1.4, there a new feature that was implemented in https://vyos.dev/T5228
get_config_dict and add argument with_defaults
Viacheslav closed T2258: VRF route leaking from BGP, a subtask of T2579: The root task for VRF features, as Wontfix.
Route leaking for dynamic protocols won't be implemented in VyOS 1.3 due to the old backend.
You can set a table in the route-map or use virtual-ethernet interfaces
Viacheslav removed a project from T2199: Rewrite firewall in new XML/Python style: VyOS 1.3 Equuleus (1.3.5).
Viacheslav closed T2123: Configure 3 NTP servers, a subtask of T2014: Use vendor specific NTP Pool hostname, as Resolved.
PR https://github.com/vyos/vyos-1x/pull/2182
vyos@r1:~$ show pppoe-server interfaces
interface: connections: state:
-----------------------------------
eth0 1 active
vyos@r1:~$Viacheslav updated the task description for T5521: Home owner directory changed to vyos for the user after reboot.
Viacheslav updated the task description for T5521: Home owner directory changed to vyos for the user after reboot.
Viacheslav edited projects for T2037: Make use of a systemd environment file, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
The cluster feature will be deprecated, as we use systemd we should avoid init.d scripts.
All logic should be rewritten to VRRP
Viacheslav updated subscribers of T1764: Use lists instead of whitespace-separated strings in vyos.config .
@dmaasland @jestabro Can we close it?
Viacheslav edited projects for T1674: Support [virtual] dvd device in add system image, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav edited projects for T1647: event-handler configurable syslog.pipe level , added: VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.5).
The event handler was rewritten to python3 and doesn't use pipes.
Viacheslav closed T1647: event-handler configurable syslog.pipe level , a subtask of T3083: Add feature event-handler, as Invalid.
Viacheslav edited projects for T1449: Add opportunity to include custom default configs (few) at building , added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
@runar Can we close it?
vyos@r1# set interfaces bridge br0 member interface eth1 Possible completions: + allowed-vlan Specify VLAN id which is allowed in this trunk interface cost Bridge port cost isolated Port is isolated (also known as Private-VLAN) native-vlan Specify VLAN id which should natively be present on the link priority Bridge port priority
Viacheslav moved T1311: WAN load-balancing can't flush connections when conntrack-sync is enabled from Open to Finished on the VyOS 1.4 Sagitta board.
Aug 28 2023, 10:08 AM · VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, test
There are not such options in FRR
r14(config-route-map)# set ip next-hop A.B.C.D IP address of next hop peer-address Use peer address (for BGP only) unchanged Don't modify existing Next hop address r14(config-route-map)#
It must be next-hop
Viacheslav edited projects for T1002: install image - fast install, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.5).
Viacheslav closed T1012: vyos-build configure script should check /etc/issue to avoid confusion as Not Applicable.
The best option is to use containers https://docs.vyos.io/en/latest/contributing/build-vyos.html#build-container
Close it as out of date.
Same issue. So building Equuleus isn't possible at all anymore? I don't quite understand that the message is "it will be fixed eventually" but at the same time it's tagged as "Wont fix".
Viacheslav added a comment to T738: Add local-port and resolver port options for powerdns in CLI configuration tree.
PR for 1.3 https://github.com/vyos/vyos-1x/pull/2181
Viacheslav edited projects for T469: Problem after commit with errors, added: VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.5).
I don't see any errors in VyOS 1.3-stable-202308240442
vyos@r1# set firewall group network-group FW-OUT network '191.200.161.8/31' [edit] vyos@r1# set firewall group network-group FW-OUT network '191.200.161.8/32' [edit] vyos@r1# commit [edit] vyos@r1# delete firewall group [edit] vyos@r1# commit [edit] vyos@r1#
limitations of old backend
Viacheslav closed T4745: CLI TAB issue with values with '-' at the beginning in conf mode, a subtask of T4704: Allow to set metric (MED) to rtt with rtt,+rtt or -rtt, as Resolved.
Viacheslav closed T4745: CLI TAB issue with values with '-' at the beginning in conf mode as Resolved.
Viacheslav edited projects for T4745: CLI TAB issue with values with '-' at the beginning in conf mode, added: VyOS 1.3 Equuleus (1.3.4); removed VyOS 1.3 Equuleus (1.3.5).
Fixed
[edit] vyos@r1# set policy route-map TEST rule 10 set metric -10 [edit] vyos@r1# commit [edit] vyos@r1# sudo vtysh -c "show run" Building configuration...
This task for the ldpd
https://vyos.dev/T4020
My bad, I don't know how I missed them!
The smoketest was in the same PR https://github.com/vyos/vyos-1x/pull/2162/files#diff-59a88cf4e56c56db9de173bbdeb31600f9733d8598570831364d2d368402af77
@Apachez thanks to you.
Let me check it.
syncer triaged T5510: Shrink imagesize and improve read performance by changing mksquashfs syntax as Normal priority.
Apachez added a comment to T5510: Shrink imagesize and improve read performance by changing mksquashfs syntax.
Some tests on filesystem.squashfs from VyOS 1.4-rolling-202308280021.
In T5472#157591, @aderouineau wrote:Should a smoke test be added?
Better to have it
it will be fixed eventually
jestabro updated the task description for T5520: Likely source of corruption on system update exposed by change in coreutils for Bookworm.
jestabro updated the task description for T5520: Likely source of corruption on system update exposed by change in coreutils for Bookworm.
jestabro updated the task description for T5520: Likely source of corruption on system update exposed by change in coreutils for Bookworm.
jestabro updated the task description for T5520: Likely source of corruption on system update exposed by change in coreutils for Bookworm.
jestabro triaged T5520: Likely source of corruption on system update exposed by change in coreutils for Bookworm as High priority.
Apachez added a comment to T5511: Cleanup of unused directories (and files) in order to shrink image-size.
A note from https://forum.vyos.io/t/clear-logs-on-vyos/6878/10?u=viacheslav that there might be issues if removing directories from within / var/log/* doesnt occur to PR381 since that PR was specific about which files and directories to remove when it comes to / var/log. That is only files NOT directories were removed from / var/log.
Validated the change on version 1.4-rolling-202308250021.
https://github.com/vyos/vyos-1x/pull/2180 implement a workaround by changing the default values of stdout and stderr from PIPE to None.
Aug 27 2023
Aug 27 2023
sarthurdev closed T1097: Make firewall groups work everywhere that's appropropriate, a subtask of T2199: Rewrite firewall in new XML/Python style, as Resolved.
A baseline could be to look at the linux kernel config used by Alpine Linux for their RPI-builds:
@sdev I saw c-po revert the merge.
and I didn't expect that it will cost lots of time also.
It's better to revert it.
Currently, I will maintain kernel configs in my own branch.
dmbaturin renamed T5512: build linux-firmware script cannot expand asterisks if firmware name is a glob string from build linux-firmware script cannot expend star sign if firmware name is a glob string to build linux-firmware script cannot expand asterisks if firmware name is a glob string.
@tjjh89017 This will need to be re-evaluated. The build from your PR was taking in excess of 8 hours on the build server - the defconfig likely needs to be brought down to only the minimum required modules/drivers for successful builds on target devices.
Just a comment:
tjjh89017 added a comment to T5512: build linux-firmware script cannot expand asterisks if firmware name is a glob string.
It should be fixed via https://github.com/vyos/vyos-build/pull/382
This does still need to be addressed in 1.4. Without a version string, the 2-to-3 migrator is adding the conntrack helpers to the default config.
Duplicate T3275
GitHub <noreply@github.com> committed rVYOSONEXd3edda22573f: Merge pull request #2176 from sarthurdev/T5080 (authored by c-po).
GitHub <noreply@github.com> committed rVYOSONEX904cbe448c57: Merge pull request #2178 from sarthurdev/labels (authored by c-po).
GitHub <noreply@github.com> committed rVYOSONEX63012d655fbe: Merge pull request #2175 from sarthurdev/labels (authored by c-po).
sarthurdev added a comment to T5479: Helper leftovers found in nftables (firewall) even with all helpers disabled.
The kernel modules handle tracking of those, rpc/tns are userspace helpers.
Apachez added a comment to T5479: Helper leftovers found in nftables (firewall) even with all helpers disabled.
So how are all the other helpers added to the ruleset if not dynamically?