Page MenuHomeVyOS Platform
Feed All Stories

Oct 16 2023

GitHub <[email protected]> committed rVYOSONEX69fb230ee022: op-mode: T5653: command to display SSH server public key fingerprints (authored by JeffWDH).
Oct 16 2023, 6:49 PM
a.apostoliuk committed rVYOSONEX65911b17340a: op-mode: T5642: 'generate tech-support archive' moved to vyos-1x.
Oct 16 2023, 6:38 PM
GitHub <[email protected]> committed rVYOSONEXbc0330808b21: Merge pull request #2367 from aapostoliuk/T5642-current (authored by c-po).
Oct 16 2023, 6:38 PM
Viacheslav changed the status of T5232: Flow-accounting uacctd.service cannot restart correctly from In progress to Needs testing.
Oct 16 2023, 4:42 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav committed rVYOSONEXf197b07710c1: T5634: Smoketest add encryption ciphers.
Oct 16 2023, 3:08 PM
GitHub <[email protected]> committed rVYOSONEXb7359833c666: Merge pull request #2366 from sever-sever/T5634 (authored by c-po).
Oct 16 2023, 3:08 PM
a.apostoliuk added a comment to T5337: MPLS/BGP: Route leak does not happen from the VPNv4 table to specific vrf.

In this case we can use the next solution:

Oct 16 2023, 10:54 AM · VyOS 1.4 Sagitta
Viacheslav removed a project from T5554: Disable sudo for PAM RADIUS: VyOS 1.3 Equuleus (1.3.5).
Oct 16 2023, 9:02 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5137: show tech support command, a subtask of T3355: Remove all remaining legacy Vyatta code, as Resolved.
Oct 16 2023, 9:00 AM · VyOS 1.5 Circinus
Viacheslav closed T5137: show tech support command as Resolved.
Oct 16 2023, 9:00 AM
Viacheslav moved T5165: Policy local-route ability set protocol and port from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 16 2023, 8:41 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5165: Policy local-route ability set protocol and port as Resolved.
Oct 16 2023, 8:41 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5634: Remove support for Blowfish and DES from OpenVPN.

PR https://github.com/vyos/vyos-1x/pull/2366

Oct 16 2023, 6:54 AM · VyOS 1.4 Sagitta
Apachez added a comment to T5634: Remove support for Blowfish and DES from OpenVPN.

Still fails:

Oct 16 2023, 2:36 AM · VyOS 1.4 Sagitta

Oct 15 2023

ServerForge added a comment to T5580: vyos-1x package builds as 1.5 on sagitta branch.

Looks like this issue may actually be resolved now.

Oct 15 2023, 2:05 PM · VyOS 1.4 Sagitta
GitHub <[email protected]> committed rVYOSONEXc345f83ed46f: Merge pull request #2356 from vyos/mergify/bp/sagitta/pr-2342 (authored by Viacheslav).
Oct 15 2023, 1:56 PM
ServerForge added a comment to T5580: vyos-1x package builds as 1.5 on sagitta branch.
Oct 15 2023, 1:30 PM · VyOS 1.4 Sagitta
jestabro added a comment to T5634: Remove support for Blowfish and DES from OpenVPN.

cf. T5027: the commit for this task necessarily removed the fix there, leading to failing of the same two tests. A fix is to specify a specific encryption cipher within test_openvpn_options and test_openvpn_site2site_interfaces_tun to avoid openvpn defaulting to bf.

Oct 15 2023, 12:55 AM · VyOS 1.4 Sagitta

Oct 14 2023

I-n-d-y added a comment to T5652: Config migrate to image upgrade does not properly generate home directory.

I was also affected by this issue. I could only update to 1.5-rolling-202309280022. Updates to more recent versions had the effect that after login I coudn't manage VyOS as I only had a standard linux bash.

Oct 14 2023, 6:03 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a comment to T5657: Add VRF support for zabbix-agent.

Did you test it in vrf? Is it really works as expected?

Oct 14 2023, 5:23 PM · VyOS 1.5 Circinus
bbabich created T5659: VPP cannot add interface to dataplane if it already has an address configured.
Oct 14 2023, 4:34 PM · VyOS 1.5 Circinus
bbabich awarded T1797: Implement DPDK Fast-Path using FRR's Alternate Forwarding Planes and VPP a Like token.
Oct 14 2023, 2:57 PM
bbabich claimed T5658: Add VRF support for mtr.
Oct 14 2023, 2:54 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
bbabich created T5658: Add VRF support for mtr.
Oct 14 2023, 2:52 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
bbabich created T5657: Add VRF support for zabbix-agent.
Oct 14 2023, 2:36 PM · VyOS 1.5 Circinus
fsbof added a comment to T5653: Command to display fingerprint.

@JeffWDH I am happy to download, build and test when you're ready if you point me to the right version(s)/location(s). I'm also very new to this but I managed to Build Equuleus in a docker container which has been working ok. Appreciate your efforts.

Oct 14 2023, 1:05 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
JeffWDH added a comment to T5653: Command to display fingerprint.

I've updated this to default to no ASCII art as I think it's cleaner, but added an option to show it if you want to see it:

Oct 14 2023, 12:18 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEXbdc5a7c12464: Merge pull request #2365 from vyos/mergify/bp/sagitta/pr-2359 (authored by dmbaturin).
Oct 14 2023, 11:54 AM
fsbof added a comment to T5653: Command to display fingerprint.

Wow - you guys work quickly! 👍

Oct 14 2023, 10:35 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez added a comment to T5653: Command to display fingerprint.

I think it should be included, its often used during generation in Debian among other distros.

Oct 14 2023, 7:52 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8ab27f839a55: remote: T5650: Resize-aware progressbar implementation (authored by erkin).
Oct 14 2023, 7:42 AM
GitHub <[email protected]> committed rVYOSONEX3b202fa469f5: Merge pull request #2364 from vyos/mergify/bp/sagitta/pr-2361 (authored by c-po).
Oct 14 2023, 7:42 AM
Viacheslav closed T5629: Policy local-route bug after migration to destination node address, a subtask of T5165: Policy local-route ability set protocol and port, as Resolved.
Oct 14 2023, 7:34 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav closed T5629: Policy local-route bug after migration to destination node address as Resolved.

Fixed in https://github.com/vyos/vyos-1x/pull/2342

Oct 14 2023, 7:33 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav changed the status of T5648: ldpd neighbour template errors from Open to Needs testing.
Oct 14 2023, 7:32 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po changed the status of T5653: Command to display fingerprint from Open to In progress.
Oct 14 2023, 6:59 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a comment to T5653: Command to display fingerprint.

I wonder if we need the ASCII art though or not the plain fingerprints only (first line of the command)

Oct 14 2023, 6:58 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
erkin committed rVYOSONEX799d24eba18d: remote: T5650: Resize-aware progressbar implementation.
Oct 14 2023, 6:58 AM
zsdc committed rVYOSONEXe364e9813b68: pmacct: T5232: Fixed pmacct service control via systemctl.
Oct 14 2023, 6:58 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX6cb00c9a7eb7: pmacct: T5232: Fixed pmacct service control via systemctl (authored by zsdc).
Oct 14 2023, 6:58 AM
GitHub <[email protected]> committed rVYOSONEX39bc608060ea: Merge pull request #2359 from erkin/progressbar (authored by c-po).
Oct 14 2023, 6:58 AM
GitHub <[email protected]> committed rVYOSONEX656f9ccad10e: Merge pull request #2361 from zdc/T5232-circinus (authored by c-po).
Oct 14 2023, 6:58 AM
c-po renamed T5656: commit-archive password does not allow for all special characters from commit-archive password doe not allow for all special characters to commit-archive password does not allow for all special characters.
Oct 14 2023, 6:24 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5656: commit-archive password does not allow for all special characters.
Oct 14 2023, 6:23 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5655: commit-archive: Ctrl+C should not eror out with stack trace, signal should be cought.
Oct 14 2023, 5:54 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Oct 13 2023

indrajitr closed T5115: Support custom port for name servers for forwarding zones as Resolved.

Implementation complete

Oct 13 2023, 10:10 PM · VyOS 1.4 Sagitta
indrajitr closed T5118: Cleanup vestigial ntp completion script as Resolved.

Implementation complete

Oct 13 2023, 10:08 PM · VyOS 1.4 Sagitta
indrajitr closed T5112: Enable support for Network Time Security (NTS) for chrony, a subtask of T3008: Migrate from ntpd to chronyd, as Resolved.
Oct 13 2023, 10:08 PM · VyOS 1.4 Sagitta
indrajitr closed T5112: Enable support for Network Time Security (NTS) for chrony as Resolved.

Implementation complete

Oct 13 2023, 10:08 PM · VyOS 1.4 Sagitta
indrajitr closed T5143: Apply constraint on powerdns forward-zones configuration as Resolved.

Implementation complete

Oct 13 2023, 10:05 PM · VyOS 1.4 Sagitta
indrajitr closed T5227: mDNS reflector should allow additional domains to browse and allow filtering services as Resolved.

Implementation complete

Oct 13 2023, 10:04 PM · VyOS 1.4 Sagitta
indrajitr closed T5166: Remove local minisign package from build repo for 1.4 as Resolved.

Implementation complete

Oct 13 2023, 10:04 PM · VyOS 1.4 Sagitta
indrajitr closed T5113: PDNS: Support custom port for DNS forwarders as Resolved.

Implementation complete

Oct 13 2023, 10:02 PM · VyOS 1.4 Sagitta
JeffWDH added a comment to T5653: Command to display fingerprint.
$ show ssh fingerprints
SSH server public key fingerprints:
Oct 13 2023, 5:10 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav added a comment to T5634: Remove support for Blowfish and DES from OpenVPN.

OpenVPN cannot pass the smoketest

 DEBUG - ======================================================================
DEBUG - FAIL: test_openvpn_options (__main__.TestInterfacesOpenVPN.test_openvpn_options)
DEBUG - ----------------------------------------------------------------------
DEBUG - Traceback (most recent call last):
DEBUG -   File "/usr/libexec/vyos/tests/smoke/cli/test_interfaces_openvpn.py", line 525, in test_openvpn_options
DEBUG -     self.assertNotEqual(cur_pid, new_pid)
DEBUG - AssertionError: None == None
DEBUG - 
DEBUG - ======================================================================
DEBUG - FAIL: test_openvpn_site2site_interfaces_tun (__main__.TestInterfacesOpenVPN.test_openvpn_site2site_interfaces_tun)
DEBUG - ----------------------------------------------------------------------
DEBUG - Traceback (most recent call last):
DEBUG -   File "/usr/libexec/vyos/tests/smoke/cli/test_interfaces_openvpn.py", line 601, in test_openvpn_site2site_interfaces_tun
DEBUG -     self.assertTrue(process_named_running(PROCESS_NAME))
DEBUG - AssertionError: None is not true
Oct 13 2023, 2:46 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5541: Zone-Based Firewalling in VyOS Sagitta 1.4 from Open to In progress.
Oct 13 2023, 2:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
JeffWDH added a comment to T5652: Config migrate to image upgrade does not properly generate home directory.

I had a similar issue going from 1.5-rolling-202309250022 to 1.5-rolling-202310090023.

Oct 13 2023, 12:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
a.apostoliuk changed the status of T5254: Modification of any interface setting sets MTU back to default when MTU has been inherited from a bond from In progress to Needs testing.
Oct 13 2023, 9:09 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav created T5654: Migrate policy local-route.
Oct 13 2023, 7:47 AM · VyOS Rolling, VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX688bde775690: Merge pull request #2350 from vyos/mergify/bp/sagitta/pr-2349 (authored by c-po).
Oct 13 2023, 5:33 AM
fsbof created T5653: Command to display fingerprint.
Oct 13 2023, 1:31 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
fsbof updated fsbof.
Oct 13 2023, 1:09 AM

Oct 12 2023

jestabro moved T5649: vyos-1x should generate XML cache after building command templates for less cryptic error on typo from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 12 2023, 6:57 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro closed T5649: vyos-1x should generate XML cache after building command templates for less cryptic error on typo as Resolved.
Oct 12 2023, 6:56 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX4c062a3217d0: Merge pull request #2360 from vyos/mergify/bp/sagitta/pr-2358 (authored by jestabro).
Oct 12 2023, 6:56 PM
Apachez added a comment to T5651: chain FW_CONNTRACK incorrectly use accept as action.

Then this task can be set to closed and invalid :-)

Oct 12 2023, 6:54 PM · VyOS 1.5 Circinus
Apachez added a comment to T5498: fsck during boot doesnt work.

PR updated: https://github.com/vyos/vyos-build/pull/435

Oct 12 2023, 6:46 PM · Restricted Project, VyOS 1.5 Circinus
sarthurdev closed T5651: chain FW_CONNTRACK incorrectly use accept as action as Invalid.

If you don't use the firewall (statefully at least) then it will go through the FW_CONNTRACK chain and the NAT_CONNTRACK and/or WLB_CONNTRACK chains will be reached, or fall through to the notrack.

Oct 12 2023, 6:29 PM · VyOS 1.5 Circinus
Apachez reopened T5651: chain FW_CONNTRACK incorrectly use accept as action as "Open".

But the NAT_CONNTRACK and WLB_CONNTRACK chains are never evaluted because FW_CONNTRACK always set action to accept?

Oct 12 2023, 6:18 PM · VyOS 1.5 Circinus
gmurphy42 created T5652: Config migrate to image upgrade does not properly generate home directory.
Oct 12 2023, 5:56 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
zsdc changed the status of T5232: Flow-accounting uacctd.service cannot restart correctly from Open to In progress.

PR: https://github.com/vyos/vyos-1x/pull/2361

Oct 12 2023, 5:31 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
zsdc changed the status of T5233: Op-mode flow-accounting netflow with disable-imt errors from Open to In progress.

This should fix the problem: https://github.com/vyos/vyos-1x/pull/2361

Oct 12 2023, 5:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
sarthurdev closed T5651: chain FW_CONNTRACK incorrectly use accept as action as Invalid.

That is how the conntrack enabling system works. FW_CONNTRACK verdict is set to accept when it is determined the firewall needs conntracking (state rules, flowtable etc.), same for NAT_/WLB_ chains. If none require conntrack - all chains will be return and it falls down the chain to the final notrack and conntrack is not enabled.

Oct 12 2023, 5:29 PM · VyOS 1.5 Circinus
Apachez created T5651: chain FW_CONNTRACK incorrectly use accept as action.
Oct 12 2023, 5:05 PM · VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXea35feb50082: xml: T5649: catch errors from schema validation before generating cache (authored by jestabro).
Oct 12 2023, 5:03 PM
devon committed rVYOSONEXdf6ced3811eb: ldpd: T5648: Fix ldpd template errors.
Oct 12 2023, 5:01 PM
GitHub <[email protected]> committed rVYOSONEXc4bea386c662: Merge pull request #2357 from devon-mar/ldpd-template-errors (authored by c-po).
Oct 12 2023, 5:01 PM
jestabro committed rVYOSONEX126a67ade9cd: xml: T5649: catch errors from schema validation before generating cache.
Oct 12 2023, 5:00 PM
GitHub <[email protected]> committed rVYOSONEXbf0ade04be9f: Merge pull request #2358 from jestabro/schema-check (authored by c-po).
Oct 12 2023, 5:00 PM
erkin added a subtask for T3356: Script for remote file transfers: T5650: Progressbars suffer from staircasing effect.
Oct 12 2023, 4:40 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin added a parent task for T5650: Progressbars suffer from staircasing effect: T3356: Script for remote file transfers.
Oct 12 2023, 4:40 PM · VyOS 1.4 Sagitta
erkin created T5650: Progressbars suffer from staircasing effect.
Oct 12 2023, 4:40 PM · VyOS 1.4 Sagitta
jestabro committed rVYOSONEXe65117532b48: openvpn: T5634: fix permissions on migration file.
Oct 12 2023, 3:27 PM
a.apostoliuk committed rVYOSONEXaa0282ceb379: bonding: T5254: Fixed changing ethernet when it is a bond member.
Oct 12 2023, 2:36 PM
GitHub <[email protected]> committed rVYOSONEXe55f07932349: Merge pull request #2277 from aapostoliuk/T5254-1-sagitta (authored by dmbaturin).
Oct 12 2023, 2:36 PM
JeffWDH added a comment to T5647: Extend failover route functionality to use dynamically assigned interface next hops.

An additional "nice to have" would be a hook that runs on route state change.
Examples:

set protocols failover route 0.0.0.0/0 next-hop 100.100.100.1 hook '/config/scripts/failover-hook-100.100.100.1'
Oct 12 2023, 1:53 PM · VyOS 1.5 Circinus
jestabro added projects to T5649: vyos-1x should generate XML cache after building command templates for less cryptic error on typo: VyOS 1.5 Circinus, VyOS 1.4 Sagitta.
Oct 12 2023, 1:45 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro triaged T5649: vyos-1x should generate XML cache after building command templates for less cryptic error on typo as Normal priority.
Oct 12 2023, 1:37 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro committed rVYOSONEX227e3f2876e5: openvpn: T5634: fix typo.
Oct 12 2023, 1:19 PM
Viacheslav updated the task description for T5647: Extend failover route functionality to use dynamically assigned interface next hops.
Oct 12 2023, 10:54 AM · VyOS 1.5 Circinus
Viacheslav removed a project from T1237: Static Route Path Monitoring, failover: VyOS 1.3 Equuleus (1.3.3).
Oct 12 2023, 6:31 AM · VyOS 1.4 Sagitta
Viacheslav moved T1237: Static Route Path Monitoring, failover from Open to Finished on the VyOS 1.4 Sagitta board.
Oct 12 2023, 6:31 AM · VyOS 1.4 Sagitta
devon claimed T5648: ldpd neighbour template errors.

PR: https://github.com/vyos/vyos-1x/pull/2357

Oct 12 2023, 5:53 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
devon created T5648: ldpd neighbour template errors.
Oct 12 2023, 5:49 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro claimed T5644: Firewall groups deletion can break config.
Oct 12 2023, 1:30 AM · VyOS 1.5 Circinus
dmbaturin committed rVYOSONEX941c5adfaca2: openvpn: T5634: Remove support for insecure DES and Blowfish ciphers.
Oct 12 2023, 12:44 AM
GitHub <[email protected]> committed rVYOSONEX526f19eaf795: Merge pull request #2353 from dmbaturin/T5634-no-more-blowfish (authored by jestabro).
Oct 12 2023, 12:43 AM

Oct 11 2023

Viacheslav awarded T5647: Extend failover route functionality to use dynamically assigned interface next hops a Like token.
Oct 11 2023, 6:12 PM · VyOS 1.5 Circinus
JeffWDH created T5647: Extend failover route functionality to use dynamically assigned interface next hops.
Oct 11 2023, 4:58 PM · VyOS 1.5 Circinus
Viacheslav created T5646: QoS policy limiter broken if class without match.
Oct 11 2023, 3:31 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus