Page MenuHomeVyOS Platform
Feed All Stories

Jan 9 2024

dmbaturin closed T1850: syslog protocol can be set multiple times per facility for the same host, a subtask of T1845: syslog host no longer accepts a port, as Not Applicable.
Jan 9 2024, 4:03 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin closed T1850: syslog protocol can be set multiple times per facility for the same host as Not Applicable.

There is no protocol under facility settings anymore, so the issue is no longer relevant.

Jan 9 2024, 4:03 PM
dmbaturin removed a project from T1850: syslog protocol can be set multiple times per facility for the same host: VyOS 1.3 Equuleus (1.3.6).
Jan 9 2024, 4:02 PM
dmbaturin triaged T1848: Rework the handling of special characters inside node values as Wishlist priority.
Jan 9 2024, 4:00 PM · VyOS 1.5 Circinus
dmbaturin edited projects for T1790: OSPF Exchanged Routes marked as invalid when run through a GRE PTMP/PTP OSPF between peers , added: VyOS 1.4 Sagitta; removed VyOS 1.2 Crux (VyOS 1.2.9).
Jan 9 2024, 3:59 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
dmbaturin triaged T1790: OSPF Exchanged Routes marked as invalid when run through a GRE PTMP/PTP OSPF between peers as High priority.
Jan 9 2024, 3:59 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
dmbaturin triaged T1771: Recover from failed boots/upgrades automatically as Wishlist priority.
Jan 9 2024, 3:58 PM · VyOS 1.5 Circinus
dmbaturin closed T1759: Replacing Vyatta::Interface perl, a subtask of T1579: Rewrite all interface types in new XML/Python style, as Resolved.
Jan 9 2024, 3:58 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin closed T1759: Replacing Vyatta::Interface perl as Resolved.

The new interface handling infrastructure is firmly in place now.

Jan 9 2024, 3:58 PM · VyOS 1.4 Sagitta
dmbaturin renamed T1733: Route filters syntax redesign from structure of prefix-lists to Route filters syntax redesign.
Jan 9 2024, 3:57 PM · Ideas, VyOS 2.0.x
dmbaturin triaged T1683: Difficulty monitoring VyOS through SNMP as Normal priority.
Jan 9 2024, 3:56 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
dmbaturin triaged T1674: Support [virtual] dvd device in add system image as Wishlist priority.
Jan 9 2024, 3:55 PM · VyOS 1.5 Circinus
dmbaturin merged T1671: rewrite udev script logic /lib/udev/vyatta_net_name into T3871: Resolve unexpected interface name reordering.
Jan 9 2024, 3:54 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA)
dmbaturin merged task T1671: rewrite udev script logic /lib/udev/vyatta_net_name into T3871: Resolve unexpected interface name reordering.
Jan 9 2024, 3:54 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin closed T1667: Add a tool for automatically importing old style command definitions into XML as Not Applicable.

The last old-style definitions are gone, so the tool is no longer relevant.

Jan 9 2024, 3:49 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin triaged T1641: VRRP conntrack-sync dropping packets passing through the router as High priority.
Jan 9 2024, 3:48 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
dmbaturin closed T1634: Commit fails when changing policy route "set table" and adding the table at the same time, results in config deadlock as Not Applicable.

The new firewall implementation solved it.

Jan 9 2024, 3:47 PM
dmbaturin removed projects from T1634: Commit fails when changing policy route "set table" and adding the table at the same time, results in config deadlock: VyOS 1.3 Equuleus (1.3.6), VyOS 1.2 Crux (VyOS 1.2.9).
Jan 9 2024, 3:46 PM
dmbaturin removed a project from T1625: Update validation rules for OSPF max-metric values: VyOS 1.3 Equuleus (1.3.6).
Jan 9 2024, 3:45 PM
dmbaturin closed T1625: Update validation rules for OSPF max-metric values as Resolved.
Jan 9 2024, 3:45 PM
dmbaturin triaged T1619: Migrate user home directories on image update as Wishlist priority.
Jan 9 2024, 3:44 PM · Restricted Project, VyOS 1.5 Circinus
dmbaturin closed T1549: ipsec ikev2 multi usergroup roadwarrior configuration, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Not Applicable.
Jan 9 2024, 3:44 PM · VyOS 1.4 Sagitta
dmbaturin closed T1549: ipsec ikev2 multi usergroup roadwarrior configuration as Not Applicable.

Since we do have proper support for IKEv2 remote access VPN, the issue of configuring it with a workaround is no longer relevant, I suppose.

Jan 9 2024, 3:44 PM
dmbaturin removed a project from T1549: ipsec ikev2 multi usergroup roadwarrior configuration: VyOS 1.4 Sagitta.
Jan 9 2024, 3:43 PM
dmbaturin added a comment to T1499: Move nic to mac mapping out of the configuration file.

Let's give it some thought for 1.5/Circinus.

Jan 9 2024, 3:42 PM · Ideas
dmbaturin triaged T1499: Move nic to mac mapping out of the configuration file as Wishlist priority.
Jan 9 2024, 3:41 PM · Ideas
dmbaturin closed T1492: Not able to delete the configured arp-monitor target and interval attribute on VyOS 1.2.0 as Resolved.

It is impossible to create the config in question now.

Jan 9 2024, 3:40 PM · VyOS 1.2 Crux
dmbaturin closed T1481: When deleting and re-adding a configuration node with the same value, exit and save still say configuration has been modified as Wontfix.

I agree this is an issue, but it's a feature for the new configuration backend. Trying to fix it in the current legacy backend is likely futile.

Jan 9 2024, 3:35 PM
dmbaturin removed a project from T1481: When deleting and re-adding a configuration node with the same value, exit and save still say configuration has been modified: VyOS 1.3 Equuleus (1.3.6).
Jan 9 2024, 3:34 PM
dmbaturin closed T1457: Improve documentation on readthedocs as Resolved.

Now the readthedocs process is well-established.

Jan 9 2024, 3:33 PM · Restricted Project
dmbaturin closed T1442: Add documentation how people can add patches and some guidelines. as Resolved.

We have sorta decent contribution guidelines now, or so I hope. ;)

Jan 9 2024, 3:31 PM · Restricted Project
dmbaturin closed T1364: libvyosconfig does not allow comments after node as Wontfix.

The use case for it will be addressed by the future support for true (ignored by the parser) comments.

Jan 9 2024, 3:27 PM · VyConf
dmbaturin merged T1253: Feature Request: FRR Flowspec into T4266: Add controller for nftables bgp flowspec routes.
Jan 9 2024, 3:25 PM
dmbaturin merged task T1253: Feature Request: FRR Flowspec into T4266: Add controller for nftables bgp flowspec routes.
Jan 9 2024, 3:24 PM · VyOS 1.5 Circinus
dmbaturin triaged T1229: Add support for unencrypted L2TPv2 client connections as Normal priority.
Jan 9 2024, 3:24 PM · VyOS Rolling, VyOS 1.5 Circinus
n.fort changed the status of T5915: Firewall zone - Re add op-mode commands from Open to Confirmed.
Jan 9 2024, 12:07 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
n.fort created T5915: Firewall zone - Re add op-mode commands.
Jan 9 2024, 12:06 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T1297: Add GARP settings to VRRP/keepalived as Resolved.
Jan 9 2024, 11:28 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
n.fort committed rVYOSONEX56141ca2165f: T1297: vrrp: backport VRRP GARP options to Equuleus.
Jan 9 2024, 11:13 AM
GitHub <[email protected]> committed rVYOSONEXe8d57b5f9cae: Merge pull request #2776 from nicolas-fort/T1297 (authored by dmbaturin).
Jan 9 2024, 11:13 AM
Viacheslav moved T1297: Add GARP settings to VRRP/keepalived from Backport Candidates to Finished on the VyOS 1.4 Sagitta board.
Jan 9 2024, 10:14 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
n.fort added a comment to T1297: Add GARP settings to VRRP/keepalived.

PR for Equuleus: https://github.com/vyos/vyos-1x/pull/2776

Jan 9 2024, 9:57 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
a.apostoliuk edited projects for T5914: CVE-2023-48795 - Terrapin vulnerability, added: VyOS 1.3 Equuleus (1.3.6); removed VyOS 1.3 Equuleus.
Jan 9 2024, 9:42 AM · VyOS 1.3 Equuleus (1.3.6)
SteveP added a comment to T5876: Dhcp bug in latest 1.5 rolling releases.

Hi, If it helps

Jan 9 2024, 9:15 AM · VyOS 1.5 Circinus
Viacheslav changed the status of T5909: Container registry with authentication prevents config load (section container) after reboot from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/2775

Jan 9 2024, 9:10 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
a.apostoliuk created T5914: CVE-2023-48795 - Terrapin vulnerability.
Jan 9 2024, 9:08 AM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav added a subtask for T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6): T5912: DHCP Static mapping don't work on every first lease.
Jan 9 2024, 8:05 AM · VyOS 1.5 Circinus
Viacheslav added a parent task for T5912: DHCP Static mapping don't work on every first lease: T3316: Use Kea DHCP(v6) instead of ISC DHCP(v6).
Jan 9 2024, 8:05 AM · VyOS 1.5 Circinus
Viacheslav added a project to T5909: Container registry with authentication prevents config load (section container) after reboot: VyOS 1.5 Circinus.
Jan 9 2024, 8:00 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
adestis added a comment to T5909: Container registry with authentication prevents config load (section container) after reboot.

Warning would be much better because it would solve the problem.
When you have the image already loaded and the system was rebooted, the image should still exist and therefore the user/pass is not required (for the moment).

Jan 9 2024, 7:56 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
Viacheslav added a comment to T5909: Container registry with authentication prevents config load (section container) after reboot.

There could be another bug related T5407
I guess we should not Raise config but use the Warning here https://github.com/vyos/vyos-1x/blob/864524ba86b0a4d57ab64d6e9398c3fd5eb2fce4/src/conf_mode/container.py#L405-L408

Jan 9 2024, 7:52 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
adestis added a comment to T5909: Container registry with authentication prevents config load (section container) after reboot.

Viacheslav suggested the following change which worked for me:

Jan 9 2024, 7:48 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
L0crian assigned T5913: Allow for Peer-Groups in ipv4-labeled-unicast SAFI to c-po.
Jan 9 2024, 7:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
L0crian created T5913: Allow for Peer-Groups in ipv4-labeled-unicast SAFI.
Jan 9 2024, 7:45 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5911: pki: service update ignored if certificate name contains a hyphen (-) from Open to Finished on the VyOS 1.5 Circinus board.
Jan 9 2024, 6:48 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po moved T5902: http: remove virtual-host configuration in webserver from Open to Finished on the VyOS 1.5 Circinus board.
Jan 9 2024, 6:48 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5886: Add support for ACME protocol (LetsEncrypt) from Open to Finished on the VyOS 1.5 Circinus board.
Jan 9 2024, 6:47 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5886: Add support for ACME protocol (LetsEncrypt) from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 9 2024, 6:47 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a project to T5886: Add support for ACME protocol (LetsEncrypt): VyOS 1.5 Circinus.
Jan 9 2024, 6:47 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5766: http: rewrite conf-mode script to get_config_dict() from Open to Finished on the VyOS 1.4 Sagitta board.
Jan 9 2024, 6:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po moved T5766: http: rewrite conf-mode script to get_config_dict() from Open to Finished on the VyOS 1.5 Circinus board.
Jan 9 2024, 6:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po closed T5905: pki: IPsec and VTI interface priority inversion when using x509 site-to-site peer, a subtask of T5886: Add support for ACME protocol (LetsEncrypt), as Resolved.
Jan 9 2024, 6:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po closed T5905: pki: IPsec and VTI interface priority inversion when using x509 site-to-site peer as Resolved.
Jan 9 2024, 6:46 AM · VyOS 1.5 Circinus
c-po added a comment to T5905: pki: IPsec and VTI interface priority inversion when using x509 site-to-site peer.

PR for 1.5 https://github.com/vyos/vyos-1x/pull/2768
PR for 1.4 https://github.com/vyos/vyos-1x/pull/2774

Jan 9 2024, 6:44 AM · VyOS 1.5 Circinus
indrajitr added a comment to T5876: Dhcp bug in latest 1.5 rolling releases.

Can you please paste the output of ls -ld /config/dhcp and ls -l /config/dhcp. It is possible you might have installed a version _before_ 1.5-rolling-202401030023 and the instance is carrying forward the misconfigured directory/file persmissions.

Jan 9 2024, 5:33 AM · VyOS 1.5 Circinus
fghorow added a comment to T5910: Grub problem(?) Serial Console no longer working.

I replied to jestabro via email a couple of hours back, but noticed that it didn't show up here. For the benefit of anybody else interested in this bug I'm cutting and pasting the email below:

Jan 9 2024, 12:40 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Jan 8 2024

rob updated the task description for T5912: DHCP Static mapping don't work on every first lease.
Jan 8 2024, 9:30 PM · VyOS 1.5 Circinus
rob updated the task description for T5912: DHCP Static mapping don't work on every first lease.
Jan 8 2024, 9:29 PM · VyOS 1.5 Circinus
rob created T5912: DHCP Static mapping don't work on every first lease.
Jan 8 2024, 9:28 PM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEXa9ed12de9342: Merge pull request #2774 from vyos/mergify/bp/sagitta/pr-2758 (authored by c-po).
Jan 8 2024, 9:17 PM
c-po added a comment to T5886: Add support for ACME protocol (LetsEncrypt).

PR for VyOS 1.4 https://github.com/vyos/vyos-1x/pull/2774

Jan 8 2024, 8:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po closed T5904: op-mode: add "show ipv6 route vrf <name> <prefix>" command as Resolved.
Jan 8 2024, 8:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a comment to T5766: http: rewrite conf-mode script to get_config_dict() .

https://github.com/vyos/vyos-1x/pull/2773

Jan 8 2024, 8:17 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po added a comment to T5902: http: remove virtual-host configuration in webserver.

Well, the webserver is for an API - if you wan't to server files you can either use the default document root, or spawn a container. We should focus on packet pushing and administration.

Jan 8 2024, 8:17 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po committed rVYOSONEX692d700f903c: smoketest: T5905: always delete pki in ipsec test startup.
Jan 8 2024, 8:13 PM
c-po committed rVYOSONEX404a2e92d027: ipsec: T5905: use interface_exists() wrapper over raw calls to os.path.exists().
Jan 8 2024, 8:13 PM
c-po committed rVYOSONEX4dfb14d509b9: pki: T5905: do not use expand_nodes=Diff.ADD|Diff.DELETE) in node_changed().
Jan 8 2024, 8:13 PM
c-po committed rVYOSONEX69b8c448c7c8: pki: T5886: add op-mode commands for log and renewal.
Jan 8 2024, 8:11 PM
c-po committed rVYOSONEX1b85e7a9442a: https: T5886: migrate https certbot to new "pki certificate" CLI tree.
Jan 8 2024, 8:11 PM
c-po committed rVYOSONEXf8f51939ae5a: pki: T5886: add support for ACME protocol (LetsEncrypt).
Jan 8 2024, 8:11 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXb93786b8c855: https: T5886: migrate https certbot to new "pki certificate" CLI tree (authored by c-po).
Jan 8 2024, 8:06 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXfa61e4076a47: pki: T5886: add op-mode commands for log and renewal (authored by c-po).
Jan 8 2024, 8:06 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX8edc78dcbc01: pki: T5886: add support for ACME protocol (LetsEncrypt) (authored by c-po).
Jan 8 2024, 8:06 PM
c-po added a subtask for T3642: PKI configuration: T5911: pki: service update ignored if certificate name contains a hyphen (-).
Jan 8 2024, 8:05 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
c-po added a parent task for T5911: pki: service update ignored if certificate name contains a hyphen (-): T3642: PKI configuration.
Jan 8 2024, 8:05 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
c-po added a comment to T5911: pki: service update ignored if certificate name contains a hyphen (-).

https://github.com/vyos/vyos-1x/pull/2773

Jan 8 2024, 8:04 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
jestabro closed T3980: vrrp transition-script validator makes warning fatal and also causes a python NameError exception as Resolved.

The errors here were fixed in:
https://vyos.dev/T4052
https://vyos.dev/T4053
in equuleus and subsequent.

Jan 8 2024, 7:59 PM · VyOS 1.3 Equuleus (1.3.6)
dmbaturin closed T3480: Does not possible to change console baud-rate as Resolved.
Jan 8 2024, 7:45 PM · VyOS 1.4 Sagitta
dmbaturin triaged T5526: Clarify the error message when trying to set an interface as a BGP peer group using the wrong syntax as Low priority.
Jan 8 2024, 7:45 PM · Restricted Project, VyOS 1.3 Equuleus (1.3.8)
dmbaturin triaged T3450: Make libvyosconfig avoid quoting values that don't need quoting as Low priority.
Jan 8 2024, 7:29 PM · Restricted Project, Restricted Project, VyOS 1.5 Circinus
dmbaturin closed T4822: vyatta-cfg-system: install correct version of GRUB for architecture (arm64) as Resolved.
Jan 8 2024, 7:28 PM
dmbaturin edited projects for T4193: Add support for transparent firewall, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus (1.3.6).
Jan 8 2024, 7:28 PM · VyOS 1.4 Sagitta
dmbaturin closed T4193: Add support for transparent firewall as Resolved.

The new firewall implementation by Nicholas et al. supports bridge firewalls.

Jan 8 2024, 7:27 PM · VyOS 1.4 Sagitta
dmbaturin closed T4078: A hybrid of "network-group" and "address-group". as Not Applicable.

I suppose with the new firewall implementation, this is no longer relevant.

Jan 8 2024, 7:27 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
dmbaturin closed T3784: can't build iso with custom built iptables as Not Applicable.

With the migration to nftables, I suppose this is not relevant anymore.

Jan 8 2024, 7:25 PM · VyOS 1.4 Sagitta
dmbaturin closed T3754: Make config scripts more testable as Resolved.

With the current smoke test infrastructure, I'm inclined to call the original task resolved.

Jan 8 2024, 7:25 PM · VyOS 1.4 Sagitta
dmbaturin closed T3663: Use inotify file watching where applicable as Resolved.
Jan 8 2024, 7:24 PM · VyOS 1.4 Sagitta
dmbaturin closed T3545: Does not possible to update VyOS from 1.1.8 as Wontfix.

Neither 1.1.8 nor Crux are supported anymore.

Jan 8 2024, 7:24 PM · VyOS 1.2 Crux
dmbaturin closed T3484: Kernel panic when QAT uses, a subtask of T3587: Intel QAT support is broken on VyOS 1.4 due to a Kernel Crash, as Not Applicable.
Jan 8 2024, 7:22 PM · VyOS 1.4 Sagitta
dmbaturin closed T3484: Kernel panic when QAT uses as Not Applicable.

I presume the issue is no longer relevant since people do successfully use QAT now, but feel free to reopen if anything.

Jan 8 2024, 7:22 PM · VyOS 1.4 Sagitta