Page MenuHomeVyOS Platform
Feed All Stories

Jan 1 2024

GitHub <[email protected]> committed rVYOSONEX22bf0f39ef2b: Merge pull request #2738 from vyos/mergify/bp/sagitta/pr-2737 (authored by c-po).
Jan 1 2024, 11:28 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX43931d99c553: image-tools: T5885: relax restriction on image-name len from 32 to 64 (authored by jestabro).
Jan 1 2024, 10:22 PM
jestabro committed rVYOSONEX3a9688ddb07f: image-tools: T5885: relax restriction on image-name len from 32 to 64.
Jan 1 2024, 10:21 PM
GitHub <[email protected]> committed rVYOSONEXfc0fe0e0ed37: Merge pull request #2737 from jestabro/len-image-name (authored by c-po).
Jan 1 2024, 10:21 PM
c-po added a parent task for T3651: Move certbot request to op-mode: T5886: Add support for ACME protocol (LetsEncrypt).
Jan 1 2024, 9:57 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
c-po added a subtask for T5886: Add support for ACME protocol (LetsEncrypt): T3651: Move certbot request to op-mode.
Jan 1 2024, 9:57 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a subtask for T5886: Add support for ACME protocol (LetsEncrypt): T3264: Allow custom ACME provider for certbot.
Jan 1 2024, 9:56 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a parent task for T3264: Allow custom ACME provider for certbot: T5886: Add support for ACME protocol (LetsEncrypt).
Jan 1 2024, 9:56 PM · VyOS 2.0.x
c-po created T5886: Add support for ACME protocol (LetsEncrypt).
Jan 1 2024, 9:56 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a comment to T5885: image-tools: relax restriction on image-name length from 32 to 64.

PR:
https://github.com/vyos/vyos-1x/pull/2737

Jan 1 2024, 9:00 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro renamed T5885: image-tools: relax restriction on image-name length from 32 to 64 from image-tools: loosen restriction on image-name length from 32 to 64 to image-tools: relax restriction on image-name length from 32 to 64.
Jan 1 2024, 8:55 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro added a project to T5885: image-tools: relax restriction on image-name length from 32 to 64: VyOS 1.5 Circinus.
Jan 1 2024, 8:55 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro triaged T5885: image-tools: relax restriction on image-name length from 32 to 64 as Normal priority.
Jan 1 2024, 8:53 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro moved T5883: Preserve file ownership in /config subdirs on add system image from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 1 2024, 8:42 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro closed T5883: Preserve file ownership in /config subdirs on add system image, a subtask of T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6), as Resolved.
Jan 1 2024, 8:42 PM · VyOS 1.5 Circinus
jestabro closed T5883: Preserve file ownership in /config subdirs on add system image as Resolved.
Jan 1 2024, 8:42 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
aga claimed T5884: Minor description fix (op-mode: generate wireguard).
Jan 1 2024, 7:35 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
aga created T5884: Minor description fix (op-mode: generate wireguard).
Jan 1 2024, 7:32 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <[email protected]> committed rVYOSONEX25f2c9c4b117: Merge pull request #2734 from vyos/mergify/bp/sagitta/pr-2726 (authored by c-po).
Jan 1 2024, 7:19 PM
himurae added a comment to T5876: Dhcp bug in latest 1.5 rolling releases.

What I noticed is whenever you update rolling versions it breaks dhcp ,but when you make a new install it is fine.
Just to report back

Jan 1 2024, 6:43 PM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX2bb32b3be32e: Merge pull request #2733 from vyos/mergify/bp/sagitta/pr-2731 (authored by c-po).
Jan 1 2024, 6:42 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX88a77db9ddd7: login: T5875: restore home directory permissions only when needed (authored by c-po).
Jan 1 2024, 6:15 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXa5cdb6f40534: image-tools: T5883: preserve file owner in /config on add system update (authored by jestabro).
Jan 1 2024, 4:59 PM
jestabro committed rVYOSONEX9f66b9ccfa25: image-tools: T5883: preserve file owner in /config on add system update.
Jan 1 2024, 4:56 PM
GitHub <[email protected]> committed rVYOSONEX27b9a45ef346: Merge pull request #2731 from jestabro/copy-preserve-owner (authored by jestabro).
Jan 1 2024, 4:56 PM
AP added a comment to T5881: IPv6 addresses jumbled in flow accounting.

Sorry maybe I’m not understanding you. The address you’ve highlighted isn’t valid in any case (it only has 6 segments). At the very best it should look like 2602:fcad:2:fffe:5054:ff:XXXX:XXXX (with eight segments). 2602:fcad:2:fffe::/64 is a valid prefix on our network, but there would need to be another 4 segments at the end for SLAAC assigned addresses (which is how that particular address is being assigned). I’d need to look deeper into what the correct address should be, which is why we provided the iperf3 example given the shorter / defined host addresses (with the hope that someone else smarter than me might see the pattern of how the addresses are being mangled). Thanks.

Jan 1 2024, 2:36 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXd61f5a269b17: tunnel: T5879: properly verify source-interface used for tunnels (authored by c-po).
Jan 1 2024, 11:44 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX069e4873ee6e: configverify: T5880: raise exception if interfaces sourced form dynamic… (authored by c-po).
Jan 1 2024, 11:44 AM
c-po committed rVYOSONEX5062f5d31354: configverify: T5880: raise exception if interfaces sourced form dynamic….
Jan 1 2024, 10:21 AM
c-po committed rVYOSONEX66ce19058b7b: tunnel: T5879: properly verify source-interface used for tunnels.
Jan 1 2024, 10:21 AM
GitHub <[email protected]> committed rVYOSONEX4519506c6f53: Merge pull request #2728 from c-po/verify-T5880 (authored by Viacheslav).
Jan 1 2024, 10:21 AM
c-po closed T5474: Establish common file name pattern for XML conf mode commands as Resolved.
Jan 1 2024, 10:01 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5474: Establish common file name pattern for XML conf mode commands from Open to Finished on the VyOS 1.5 Circinus board.
Jan 1 2024, 10:01 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5474: Establish common file name pattern for XML conf mode commands from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 1 2024, 10:01 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a project to T5474: Establish common file name pattern for XML conf mode commands: VyOS 1.5 Circinus.
Jan 1 2024, 10:01 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
GitHub <[email protected]> committed rVYOSONEX13fddcfef2f9: Merge pull request #2730 from vyos/mergify/bp/sagitta/pr-2729 (authored by c-po).
Jan 1 2024, 10:00 AM
c-po committed rVYOSONEXc9eaafd9f808: T5474: establish common file name pattern for XML conf mode commands.
Jan 1 2024, 9:20 AM
c-po committed rVYOSONEX1b364428f79b: login: T5875: restore home directory permissions only when needed.
Jan 1 2024, 8:26 AM
GitHub <[email protected]> committed rVYOSONEX15e55e4ea920: Merge pull request #2726 from c-po/login-T5875-part2 (authored by c-po).
Jan 1 2024, 8:26 AM
Viacheslav committed rVYOSONEX87202912e871: T3476: Add option latest to add system image.
Jan 1 2024, 7:33 AM
GitHub <[email protected]> committed rVYOSONEX95de314ad992: Merge pull request #2724 from sever-sever/T3476 (authored by c-po).
Jan 1 2024, 7:33 AM
Apachez added a comment to T5881: IPv6 addresses jumbled in flow accounting.

Yes but "2602:fcad:2:fffe:5054:ff" is a valid host in your case?

Jan 1 2024, 7:14 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
jestabro added a subtask for T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6): T5883: Preserve file ownership in /config subdirs on add system image.
Jan 1 2024, 4:43 AM · VyOS 1.5 Circinus
jestabro added a parent task for T5883: Preserve file ownership in /config subdirs on add system image: T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6).
Jan 1 2024, 4:43 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro created T5883: Preserve file ownership in /config subdirs on add system image.
Jan 1 2024, 4:43 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro added a comment to T5882: vyos-utils: move to Dune as build system.

PR:
https://github.com/vyos/vyos-utils/pull/19

Jan 1 2024, 3:38 AM · VyOS 1.5 Circinus
AP added a comment to T5881: IPv6 addresses jumbled in flow accounting.

Hmm, I also just realized the SRC_PORT and DST_PORT are 0 in both the IPv4 and IPv6 flows (also seen in the first example).

Jan 1 2024, 3:17 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
AP added a comment to T5881: IPv6 addresses jumbled in flow accounting.

No -- I don't believe that's a valid IPv6 address. We just ran some iperf3 tests between two servers on our network 2602:fcad:1::12 <-> 2602:fcad:1:ffff::ffff. Here's what showed up in nfdump (our Netflow collector). I'm not seeing an obvious pattern on how the addresses are being mangled.

Jan 1 2024, 2:49 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
jestabro triaged T5882: vyos-utils: move to Dune as build system as Normal priority.
Jan 1 2024, 12:43 AM · VyOS 1.5 Circinus
c-po committed rVYOSONEX68b2eaa1b3ed: T5474: establish common file name pattern for XML conf mode commands.
Jan 1 2024, 12:14 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX114391adbdee: T5474: establish common file name pattern for XML conf mode commands (authored by c-po).
Jan 1 2024, 12:01 AM
c-po committed rVYOSONEX4ef110fd2c50: T5474: establish common file name pattern for XML conf mode commands.
Jan 1 2024, 12:00 AM
GitHub <[email protected]> committed rVYOSONEX22d5b2bab254: Merge pull request #2729 from c-po/rename-T5474 (authored by c-po).
Jan 1 2024, 12:00 AM

Dec 31 2023

Apachez added a comment to T5881: IPv6 addresses jumbled in flow accounting.

You mean that for SRC_IP you expect it to be "2602:fcad:2:fffe:5054:ff" and not "14d:63f:2602:fcad:2:fffe:5054:ff" ?

Dec 31 2023, 11:36 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
GitHub <[email protected]> committed rVYOSONEX207825317604: Merge pull request #2725 from vyos/mergify/bp/sagitta/pr-2651 (authored by dmbaturin).
Dec 31 2023, 11:22 PM
AP created T5881: IPv6 addresses jumbled in flow accounting.
Dec 31 2023, 5:49 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
c-po added a comment to T5880: verify_source_interface should not allow dynamic interfaces like ppp, l2tp, ipoe or sstpc client interfaces.

PR https://github.com/vyos/vyos-1x/pull/2728

Dec 31 2023, 12:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.

PR https://github.com/vyos/vyos-1x/pull/2728

Dec 31 2023, 12:30 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5474: Establish common file name pattern for XML conf mode commands.

PR https://github.com/vyos/vyos-1x/pull/2729

Dec 31 2023, 12:29 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po claimed T5880: verify_source_interface should not allow dynamic interfaces like ppp, l2tp, ipoe or sstpc client interfaces.
Dec 31 2023, 9:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5880: verify_source_interface should not allow dynamic interfaces like ppp, l2tp, ipoe or sstpc client interfaces.
Dec 31 2023, 9:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
indrajitr committed rVYOSONEX745b9ea8f0df: dhcp: T3316: Adjust kea lease files' location and permissions.
Dec 31 2023, 6:29 AM
GitHub <[email protected]> committed rVYOSONEX2286b8600da6: Merge pull request #2696 from indrajitr/kea-lfc-fix (authored by c-po).
Dec 31 2023, 6:29 AM
indrajitr committed rVYOSONEX3192095a197a: dhcp: T3316: Add `_kea` user as vyattacfg group member.
Dec 31 2023, 6:29 AM
GitHub <[email protected]> committed rVYOSONEX9e49bcad817d: Merge pull request #2727 from vyos/mergify/bp/sagitta/pr-2707 (authored by c-po).
Dec 31 2023, 6:27 AM
Apachez added a comment to T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.

Related to the list provided in https://vyos.dev/T5706 ?

Dec 31 2023, 12:25 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Dec 30 2023

c-po closed T5875: login: removing and re-adding a user keeps the home directory but changes the UID, thus SSH keys no longer work as Resolved.
Dec 30 2023, 10:08 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX6cfcef98b8a8: T5870: ipsec remote access VPN: add x509 ("pubkey") authentication. (authored by lucasec).
Dec 30 2023, 9:58 PM
lucasec committed rVYOSONEX656934e85cee: T5870: ipsec remote access VPN: add x509 ("pubkey") authentication..
Dec 30 2023, 9:57 PM
GitHub <[email protected]> committed rVYOSONEX14dc8a8962f0: Merge pull request #2707 from lucasec/t5870 (authored by c-po).
Dec 30 2023, 9:57 PM
c-po claimed T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.
Dec 30 2023, 8:53 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po renamed T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots from tunnel: souring from dynamic pppoe0 interface will fail on reboots to tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.
Dec 30 2023, 8:52 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po created T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.
Dec 30 2023, 8:52 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po committed rVYOSONEX57faafc8f859: firewall: T5834: Improve log message and simplify log-option include (authored by indrajitr).
Dec 30 2023, 7:35 PM
c-po committed rVYOSONEX3d579863c986: firewall: T5834: Remove vestigial include file (authored by indrajitr).
Dec 30 2023, 7:35 PM
c-po committed rVYOSONEX201501ace130: firewall: T5834: Migration for 'enable-default-log' to 'default-log' (authored by indrajitr).
Dec 30 2023, 7:35 PM
c-po committed rVYOSONEX468984d7cde4: firewall: T5834: Add support for default log for route policy (authored by indrajitr).
Dec 30 2023, 7:35 PM
c-po committed rVYOSONEX2c8e41465ee3: firewall: T5834: Rename 'enable-default-log' to 'default-log' (authored by indrajitr).
Dec 30 2023, 7:35 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX516dba45b996: firewall: T5834: Improve log message and simplify log-option include (authored by indrajitr).
Dec 30 2023, 7:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX574c23abffe1: firewall: T5834: Remove vestigial include file (authored by indrajitr).
Dec 30 2023, 7:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0f79421f61a6: firewall: T5834: Migration for 'enable-default-log' to 'default-log' (authored by indrajitr).
Dec 30 2023, 7:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX739d55baf6b5: firewall: T5834: Add support for default log for route policy (authored by indrajitr).
Dec 30 2023, 7:07 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX10b7b09ed054: firewall: T5834: Rename 'enable-default-log' to 'default-log' (authored by indrajitr).
Dec 30 2023, 7:07 PM
Viacheslav added a comment to T160: Support NAT64.

It is more of a question for Jool.
Or you can use a range of required ports that aren't used by the system

Dec 30 2023, 5:48 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
danielpo added a comment to T160: Support NAT64.

I've tinkered with this a bit , but a problem I have is that I need multiple ip addresses on the outgoing interface(s). I understand that Jool takes all ports, so It's needed for everything to work properly.
On my own WAN interface, this is not a problem, I can just assign another ip from my ISP.

Dec 30 2023, 5:19 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav added a comment to T3476: Update availability check.

PR https://github.com/vyos/vyos-1x/pull/2724

vyos@r4:~$ add system image latest
Dec 30 2023, 2:08 PM · VyOS 1.4 Sagitta
cmonck created T5878: Make the list of SSH server ciphers configurable.
Dec 30 2023, 12:40 PM · VyOS 1.4 Sagitta (1.4.1)
GitHub <[email protected]> committed rVYOSONEX74e749be2e4b: Merge pull request #2723 from vyos/mergify/bp/sagitta/pr-2722 (authored by c-po).
Dec 30 2023, 12:20 PM
c-po committed rVYOSONEXc70195779b41: ipsec: T1210: extend remote-access smoketest with IP pool configuration.
Dec 30 2023, 12:15 PM
c-po committed rVYOSONEX1e46cd606d9d: ipsec: T1210: extend remote-access smoketest with IP pool configuration.
Dec 30 2023, 12:14 PM
c-po added a comment to T5653: Command to display fingerprint.

Removing 1.3 backport as it's not trivial. Implementation depends on python3-pyhump (not available and must be self build) and also on vyos.opmode framework which does not exist for 1.3 equuleus

Dec 30 2023, 12:02 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXf9207ed4a0a5: ipsec: T1210: add smoketest for remote-access (road-warrior) users (authored by c-po).
Dec 30 2023, 11:58 AM
c-po committed rVYOSONEX1a84c4d0e6ff: ipsec: T1210: add smoketest for remote-access (road-warrior) users.
Dec 30 2023, 11:54 AM
GitHub <[email protected]> committed rVYOSONEX6ba91d40b54a: Merge pull request #2722 from c-po/t1210-ipsec-smoketest (authored by Viacheslav).
Dec 30 2023, 11:54 AM
c-po closed T5653: Command to display fingerprint as Resolved.
Dec 30 2023, 11:53 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po moved T5875: login: removing and re-adding a user keeps the home directory but changes the UID, thus SSH keys no longer work from Open to Finished on the VyOS 1.4 Sagitta board.
Dec 30 2023, 11:04 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
GitHub <[email protected]> committed rVYOSONEX91ec0b5f3ec9: Merge pull request #2714 from vyos/mergify/bp/sagitta/pr-2704 (authored by c-po).
Dec 30 2023, 11:01 AM
GitHub <[email protected]> committed rVYOSONEXb37885b01968: Merge pull request #2717 from vyos/mergify/bp/sagitta/pr-2715 (authored by c-po).
Dec 30 2023, 11:01 AM
GitHub <[email protected]> committed rVYOSONEX39b63971dc75: Merge pull request #2720 from vyos/mergify/bp/sagitta/pr-2718 (authored by c-po).
Dec 30 2023, 11:01 AM
GitHub <[email protected]> committed rVYOSONEX865e4290ce1d: Merge pull request #2721 from vyos/mergify/bp/sagitta/pr-2716 (authored by c-po).
Dec 30 2023, 11:01 AM