Page MenuHomeVyOS Platform
Feed All Stories

Oct 8 2023

Viacheslav added a comment to T5635: Policy local-route ability with uid or gid.

I think it depends on nftables , https://wiki.nftables.org/wiki-nftables/index.php/Matching_packet_metainformation#Matching_by_socket_UID_.2F_GID , it is first handled by nftables and mark , then use rule .

Oct 8 2023, 6:07 PM · Restricted Project, VyOS Rolling
Apachez reopened T5489: Change to BBR as TCP congestion control, or at least make it an config option as "Open".
Oct 8 2023, 5:59 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXf7ecf80824cc: Change to BBR as TCP congestion control, or at least make it an config option (authored by Apachez).
Oct 8 2023, 5:56 PM
Apachez committed rVYOSONEXac1bd7c2f69e: Change to BBR as TCP congestion control, or at least make it an config option.
Oct 8 2023, 5:55 PM
GitHub <noreply@github.com> committed rVYOSONEX1280734bc53b: Merge pull request #2349 from Apachez-/T5489 (authored by c-po).
Oct 8 2023, 5:55 PM
Apachez added a comment to T5489: Change to BBR as TCP congestion control, or at least make it an config option.

PR created: https://github.com/vyos/vyos-1x/pull/2349

Oct 8 2023, 5:43 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Cheeze_It committed rVYOSONEX7a2b70bd73c8: T5530: isis: Adding loop free alternate feature.
Oct 8 2023, 5:15 PM
GitHub <noreply@github.com> committed rVYOSONEX8da99e575caa: Merge pull request #2263 from Cheeze-It/current (authored by Viacheslav).
Oct 8 2023, 5:15 PM
c-po closed T5630: pppoe: allow to specify MRU in addition to already configurable MTU as Resolved.
Oct 8 2023, 4:34 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEX32dc990e1eed: T5213: Add accounting-interim-interval option for PPPoE-server.
Oct 8 2023, 4:16 PM
GitHub <noreply@github.com> committed rVYOSONEXe6118a08081f: Merge pull request #2333 from sever-sever/T5213-eq (authored by dmbaturin).
Oct 8 2023, 4:16 PM
c-po committed rVYOSONEX88c1fd3a3592: pppoe: T5630: allow to specify MRU in addition to already configurable MTU.
Oct 8 2023, 4:14 PM
c-po committed rVYOSONEXab2aeec41a2e: pppoe: T5630: verify MRU is less or equal then MTU.
Oct 8 2023, 4:14 PM
GitHub <noreply@github.com> committed rVYOSONEX07758d372bbc: Merge pull request #2347 from c-po/equuleus (authored by dmbaturin).
Oct 8 2023, 4:14 PM
dmbaturin committed rVYOSONEX4912aca0e402: debian: T5639: group dependencies and add comments.
Oct 8 2023, 3:51 PM
GitHub <noreply@github.com> committed rVYOSONEXfd4096a42419: Merge pull request #2345 from dmbaturin/T5639-group-deps (authored by c-po).
Oct 8 2023, 3:51 PM
c-po added a comment to T4269: node.def generator should automatically add default values.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/2348

Oct 8 2023, 8:34 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po moved T4269: node.def generator should automatically add default values from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 8 2023, 8:07 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po changed the status of T4269: node.def generator should automatically add default values from Resolved to Unknown Status.
Oct 8 2023, 8:07 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
c-po moved T5630: pppoe: allow to specify MRU in addition to already configurable MTU from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.5) board.
Oct 8 2023, 7:55 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5630: pppoe: allow to specify MRU in addition to already configurable MTU.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/2347

Oct 8 2023, 7:54 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
freebsdjlu added a comment to T5635: Policy local-route ability with uid or gid.

I think it depends on nftables , https://wiki.nftables.org/wiki-nftables/index.php/Matching_packet_metainformation#Matching_by_socket_UID_.2F_GID , it is first handled by nftables and mark , then use rule .

Oct 8 2023, 7:51 AM · Restricted Project, VyOS Rolling
c-po moved T5630: pppoe: allow to specify MRU in addition to already configurable MTU from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 8 2023, 7:03 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5630: pppoe: allow to specify MRU in addition to already configurable MTU.

PR for 1.4 https://github.com/vyos/vyos-1x/pull/2346

Oct 8 2023, 7:03 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Oct 7 2023

GitHub <noreply@github.com> committed rVYOSONEX7720ee247c03: Merge pull request #2346 from vyos/mergify/bp/sagitta/pr-2335 (authored by c-po).
Oct 7 2023, 5:50 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX713647429b98: pppoe: T5630: verify MRU is less or equal then MTU (authored by c-po).
Oct 7 2023, 5:15 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXe4fabffe7408: pppoe: T5630: allow to specify MRU in addition to already configurable MTU (authored by c-po).
Oct 7 2023, 5:15 PM
c-po committed rVYOSONEXe062a8c11856: pppoe: T5630: allow to specify MRU in addition to already configurable MTU.
Oct 7 2023, 5:13 PM
c-po committed rVYOSONEXe357258e645c: pppoe: T5630: verify MRU is less or equal then MTU.
Oct 7 2023, 5:13 PM
GitHub <noreply@github.com> committed rVYOSONEX0d975350d0a9: Merge pull request #2335 from c-po/t5630-pppoe-mru (authored by dmbaturin).
Oct 7 2023, 5:13 PM
dmbaturin created T5639: Group vyos-1x dependencies by their VyOS components and specify their purpose.
Oct 7 2023, 5:05 PM · VyOS 1.4 Sagitta

Oct 6 2023

Apachez added a comment to T4502: Consider implementing (NAT/other) flow table offload.

The blog over at claims:

Oct 6 2023, 9:17 PM · VyOS 1.4 Sagitta
dmbaturin created T5638: Add support for requiring numeric values to be ranges rather than single numbers.
Oct 6 2023, 3:58 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5637: Firewall default-action log from Confirmed to In progress.
Oct 6 2023, 2:42 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort added a comment to T5637: Firewall default-action log.

PR: https://github.com/vyos/vyos-1x/pull/2344

Oct 6 2023, 2:42 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
erkin committed rVYOSONEX58b186c6fa2c: op-mode: T5608: Fix help message for `delete raid`.
Oct 6 2023, 12:16 PM
GitHub <noreply@github.com> committed rVYOSONEXf1eac571f22a: Merge pull request #2343 from erkin/raid (authored by dmbaturin).
Oct 6 2023, 12:16 PM
n.fort changed the status of T5637: Firewall default-action log from Open to Confirmed.
Oct 6 2023, 12:06 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort created T5637: Firewall default-action log.
Oct 6 2023, 12:06 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort closed T5096: Change 'accept' firewall rule action from 'return' to 'accept' as Resolved.

Closing this one, because it's already implemented

Oct 6 2023, 11:59 AM · VyOS 1.4 Sagitta
erkin closed T3506: Migrate loadkey command to op-mode, a subtask of T3356: Script for remote file transfers, as Resolved.
Oct 6 2023, 11:34 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin closed T3506: Migrate loadkey command to op-mode, a subtask of T3355: Remove all remaining legacy Vyatta code, as Resolved.
Oct 6 2023, 11:34 AM · VyOS Rolling
erkin closed T3506: Migrate loadkey command to op-mode as Resolved.
Oct 6 2023, 11:34 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T5165: Policy local-route ability set protocol and port.

PR https://github.com/vyos/vyos-1x/pull/2342

set policy local-route rule 23 destination port '222'
set policy local-route rule 23 protocol 'tcp'
set policy local-route rule 23 set table '123'
set policy local-route rule 23 source port '8888'

Check:

vyos@r4# ip rule show prio 23
23:	from all ipproto tcp sport 8888 dport 222 lookup 123
[edit]
vyos@r4#
Oct 6 2023, 9:27 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5635: Policy local-route ability with uid or gid.

It supports uidrange https://man7.org/linux/man-pages/man8/ip-rule.8.html
is it what you want?

uidrange NUMBER-NUMBER
       select the uid value to match.

I don't see gid option there.

Oct 6 2023, 5:39 AM · Restricted Project, VyOS Rolling
Viacheslav added a comment to T5635: Policy local-route ability with uid or gid.
Oct 6 2023, 5:36 AM · Restricted Project, VyOS Rolling
Viacheslav closed T5576: Add bgp remove-private-as all option as Resolved.
Oct 6 2023, 5:23 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav claimed T5165: Policy local-route ability set protocol and port.
Oct 6 2023, 4:31 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro changed the status of T2612: HTTPS API, changing API key fails but goes through from Open to In progress.
Oct 6 2023, 4:25 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
swanduron added a comment to T5376: Conntrack FTP helper does not work properly.

Hello @sdev , could you please help to check if the fix can resolve the problem with FTP ALG? I tested the newest rolling release but the PASV command still causes the data connection gets failed. My testing FTP server and client are both Filezilla product, please correct me if any mistakes I made during the test.

Oct 6 2023, 4:24 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus
freebsdjlu created T5636: Add GeoIP matching support for policy route.
Oct 6 2023, 1:24 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
freebsdjlu created T5635: Policy local-route ability with uid or gid.
Oct 6 2023, 1:13 AM · Restricted Project, VyOS Rolling

Oct 5 2023

jestabro added a comment to T2612: HTTPS API, changing API key fails but goes through.

Yes, I will add that as a first step ...

Oct 5 2023, 5:42 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro closed T5631: Ability to export the current configuration in JSON format as Unknown Status.

Added for 1.4, 1.5; as mentioned above, a backport to Equuleus will require a different implementation.

Oct 5 2023, 5:41 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
GitHub <noreply@github.com> committed rVYOSONEX669acb05c91a: Merge pull request #2341 from vyos/mergify/bp/sagitta/pr-2339 (authored by jestabro).
Oct 5 2023, 5:39 PM
jestabro moved T5631: Ability to export the current configuration in JSON format from Open to Finished on the VyOS 1.5 Circinus board.
Oct 5 2023, 5:35 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0b832eca6d2d: config: T5631: save copy of config in JSON format on commit (authored by jestabro).
Oct 5 2023, 5:35 PM
jestabro moved T4320: Remove legacy version files in vyatta-cfg-system/cfg-version from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 5 2023, 5:32 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro closed T4320: Remove legacy version files in vyatta-cfg-system/cfg-version, a subtask of T3355: Remove all remaining legacy Vyatta code, as Resolved.
Oct 5 2023, 5:31 PM · VyOS Rolling
jestabro closed T4320: Remove legacy version files in vyatta-cfg-system/cfg-version as Resolved.
Oct 5 2023, 5:31 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <noreply@github.com> committed rVYOSONEXaf17ef9b1069: Merge pull request #2340 from vyos/mergify/bp/sagitta/pr-2338 (authored by jestabro).
Oct 5 2023, 5:31 PM
Viacheslav added a comment to T2612: HTTPS API, changing API key fails but goes through.

The similar bug with load if we change something in service https api

curl -k --location 192.168.122.11 --request POST 'https://192.168.122.11/config-file' --form data='{"op": "load", "file": "config.boot"}' --form key='foo'
{"success": false, "error": "", "data": null}
Oct 5 2023, 5:16 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro committed rVYOSONEX27605426a4ad: config: T5631: save copy of config in JSON format on commit.
Oct 5 2023, 7:02 AM
GitHub <noreply@github.com> committed rVYOSONEX61bdc12b20c7: Merge pull request #2339 from jestabro/save-json-on-commit (authored by c-po).
Oct 5 2023, 7:02 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX536e9d0f13f5: T4320: remove references to obsoleted legacy version files (authored by jestabro).
Oct 5 2023, 6:22 AM
jestabro committed rVYOSONEXaeb0138c9df7: T4320: remove references to obsoleted legacy version files.
Oct 5 2023, 6:21 AM
GitHub <noreply@github.com> committed rVYOSONEXdf042ef016c9: Merge pull request #2338 from jestabro/legacy-versions (authored by c-po).
Oct 5 2023, 6:21 AM
GitHub <noreply@github.com> committed rVYOSONEX8dda05009a5c: Merge pull request #2337 from vyos/mergify/bp/sagitta/pr-2336 (authored by c-po).
Oct 5 2023, 6:20 AM
jestabro changed the status of T5631: Ability to export the current configuration in JSON format from Open to In progress.
Oct 5 2023, 5:13 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
jestabro triaged T5631: Ability to export the current configuration in JSON format as Normal priority.
Oct 5 2023, 5:12 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
jestabro edited a custom field on T5631: Ability to export the current configuration in JSON format.
Oct 5 2023, 5:12 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
jestabro added a comment to T5631: Ability to export the current configuration in JSON format.

Based on the requirements, it is natural to add this to the commit_revision post-commit hook of the config_mgmt module: this is low overhead as we use the existing configtree representation of the current config to save with ConfigTree().to_json().

Oct 5 2023, 5:11 AM · VyOS 1.4 Sagitta (1.4.0-epa2)

Oct 4 2023

fernando closed T3655: NAT doesn't work correctly with VRF as Resolved.
Oct 4 2023, 7:54 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T3655: NAT doesn't work correctly with VRF.

@rherold Could you re-check it?

Oct 4 2023, 7:54 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
fernando added a comment to T3655: NAT doesn't work correctly with VRF.

for me , it's ok . I didn't see another issue related it . we can close

Oct 4 2023, 7:44 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro claimed T5631: Ability to export the current configuration in JSON format.
Oct 4 2023, 7:43 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
jestabro added a comment to T4320: Remove legacy version files in vyatta-cfg-system/cfg-version.

PRs:
https://github.com/vyos/vyos-1x/pull/2338
https://github.com/vyos/vyatta-cfg-system/pull/210

Oct 4 2023, 7:37 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5585: Fix file access mode for dynamic dns configuration from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 4 2023, 7:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5585: Fix file access mode for dynamic dns configuration from Open to Finished on the VyOS 1.5 Circinus board.

@indrajitr Thanks!

Oct 4 2023, 7:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T3655: NAT doesn't work correctly with VRF.

Can we close it?

Oct 4 2023, 7:29 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
indrajitr closed T5585: Fix file access mode for dynamic dns configuration as Resolved.

Applied to current and sagitta

Oct 4 2023, 7:27 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5585: Fix file access mode for dynamic dns configuration.

Can we close it?

Oct 4 2023, 7:26 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5612: Miscellaneous improvements and fixes for dynamic DNS configuration from Open to Needs testing.

@indrajitr, Could you re-check and close if it was solved?

Oct 4 2023, 7:24 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5615: Narrow down spurious name conflict with mdns from Open to Needs testing.
Oct 4 2023, 7:23 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav changed the status of T5573: Fix ddclient cache entries from Open to Needs testing.
Oct 4 2023, 7:22 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX7498c30ef56b: login: T5521: do not call system-login.py in vyos-router init (authored by c-po).
Oct 4 2023, 6:58 PM
c-po committed rVYOSONEX12069d565303: login: T5521: do not call system-login.py in vyos-router init.
Oct 4 2023, 6:57 PM
GitHub <noreply@github.com> committed rVYOSONEX26b8e8af88dc: Merge pull request #2336 from c-po/t5521-home-dir (authored by c-po).
Oct 4 2023, 6:57 PM
dmbaturin created T5634: Remove support for Blowfish and DES from OpenVPN.
Oct 4 2023, 3:11 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T5631: Ability to export the current configuration in JSON format.
Oct 4 2023, 3:04 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

PR created: https://github.com/vyos/vyos-build/pull/434

Oct 4 2023, 2:34 PM · VyOS 1.5 Circinus
c-po reopened T5521: Home owner directory changed to vyos for the user after reboot as "In progress".
Oct 4 2023, 12:11 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav moved T5632: Add jq package to parse JSON files from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.5) board.
Oct 4 2023, 11:45 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav moved T5632: Add jq package to parse JSON files from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 4 2023, 11:40 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T5632: Add jq package to parse JSON files as Resolved.
Oct 4 2023, 11:40 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus
SrividyaA created T5633: op-cmd: Interrupting the "tech-support report" command generates error.
Oct 4 2023, 11:37 AM · Bugs, VyOS 1.4 Sagitta (1.4.0), VyOS Rolling, Restricted Project, VyOS 1.5 Circinus
Apachez added a comment to T5589: Nonstripped binaries exists in VyOS.

Regarding STRIP_EXCLUDE variable... one idea is to assign it dynamically like so:

Oct 4 2023, 11:19 AM · VyOS 1.5 Circinus
Viacheslav updated the task description for T5631: Ability to export the current configuration in JSON format.
Oct 4 2023, 10:47 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a project to T3202: Enable wireguard debug messages by default: VyOS 1.5 Circinus.

Proposed CLI:

set system syslog global service wireguard

Expected command for debug

echo "module wireguard +p" | sudo tee /sys/kernel/debug/dynamic_debug/control

To disable

echo "module wireguard -p" | sudo tee /sys/kernel/debug/dynamic_debug/control
Oct 4 2023, 9:33 AM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus
Viacheslav added a comment to T5632: Add jq package to parse JSON files.

PR https://github.com/vyos/vyos-user-utils/pull/7

vyos@r4# echo '{"system": "VyOS", "rate": 100}' | jq '.system'
"VyOS"
[edit]
vyos@r4#
Oct 4 2023, 9:23 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, VyOS 1.5 Circinus