Page MenuHomeVyOS Platform
Feed All Stories

May 22 2024

Giggum created T6381: Typos in select ConfigError messages in dhcpv6-server.
May 22 2024, 2:56 PM · VyOS 1.5 Circinus
Giggum added a comment to T3493: DHCPv6 does not have prefix range validation.

Does 1.5 has the same bug?

May 22 2024, 2:44 PM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza added a project to T4576: vpn l2tp logging level configuration: VyOS 1.5 Circinus.
May 22 2024, 2:00 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
dmbaturin created T6380: Reorganize the directory structure in vyos-utils.
May 22 2024, 1:09 PM · VyOS Rolling
Viacheslav edited projects for T6373: QoS Policy Limiter - classes for marked traffic do not work, added: VyOS 1.4 Sagitta (1.4.0-GA); removed VyOS 1.4 Sagitta.
May 22 2024, 12:38 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav moved T3493: DHCPv6 does not have prefix range validation from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-GA) board.
May 22 2024, 12:35 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a comment to T3493: DHCPv6 does not have prefix range validation.

Does 1.5 has the same bug?

May 22 2024, 12:35 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav triaged T6379: "generate openvpn" uses "comp-lzo no", which leads to problems on Android-Clients as Normal priority.
May 22 2024, 12:33 PM · VyOS 1.4 Sagitta (1.4.1)
natali-rs1985 changed the status of T6227: Rewrite show conntrack-sync cache internal to use tabulate output from Open to In progress.
May 22 2024, 12:23 PM · VyOS Rolling
Viacheslav closed T6366: CGNAT add the ability to show allocation per external or internal address, a subtask of T5169: Add CGNAT Carrier-Grade NAT based on nftables, as Resolved.
May 22 2024, 12:22 PM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav closed T6366: CGNAT add the ability to show allocation per external or internal address as Resolved.
May 22 2024, 12:22 PM · VyOS 1.5 Circinus
manuel81 created T6379: "generate openvpn" uses "comp-lzo no", which leads to problems on Android-Clients.
May 22 2024, 10:52 AM · VyOS 1.4 Sagitta (1.4.1)
Giggum added a comment to T3493: DHCPv6 does not have prefix range validation.

PR merged: https://github.com/vyos/vyos-1x/pull/3499/

May 22 2024, 10:46 AM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza claimed T4576: vpn l2tp logging level configuration.
May 22 2024, 10:28 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
Vijayakumar changed the status of T6378: move labeler.yml to reusable repo from Open to In progress.
May 22 2024, 9:48 AM · VyOS 1.4 Sagitta
Vijayakumar committed rVYOSONEXa37dbf7de235: T6378: remove labler yml as it is kept in reusable workflow repo.
May 22 2024, 9:42 AM
Vijayakumar created T6378: move labeler.yml to reusable repo.
May 22 2024, 9:38 AM · VyOS 1.4 Sagitta
Vijayakumar added a comment to T6357: Create test repository to validate setup.

Done.
https://github.com/vyos/vyos-workflow-test-temp

May 22 2024, 9:27 AM · GitHub Infrastructure
a.apostoliuk closed T6359: Multicast does not forward after reboot as Resolved.
May 22 2024, 8:15 AM · VyOS 1.3 Equuleus (1.3.8)
a.apostoliuk changed the status of T6359: Multicast does not forward after reboot from In progress to Needs testing.
May 22 2024, 7:58 AM · VyOS 1.3 Equuleus (1.3.8)
aidan-gibson added a comment to T5835: UPnP port mapping / rule installation fails.

I'd prefer to integrate the Port Control Protocol (PCP) instead.

pcp.png (410×767 px, 50 KB)

May 22 2024, 7:58 AM
Res added a comment to T5835: UPnP port mapping / rule installation fails.

You can still have it in a container easily; as I mentioned, it has never worked since 2021
You do not lose anything.

May 22 2024, 7:30 AM
HollyGurza moved T6373: QoS Policy Limiter - classes for marked traffic do not work from Open to In Progress on the VyOS 1.5 Circinus board.
May 22 2024, 7:22 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza moved T6373: QoS Policy Limiter - classes for marked traffic do not work from Open to In Progress on the VyOS 1.4 Sagitta board.
May 22 2024, 7:22 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza claimed T6373: QoS Policy Limiter - classes for marked traffic do not work.
May 22 2024, 7:21 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Giggum committed rVYOSONEX4cde0b8ce778: dhcpv6-server: T3493: adds prefix range validation and fixes typos in select….
May 22 2024, 6:32 AM
GitHub <[email protected]> committed rVYOSONEX413fd63b631b: Merge pull request #3499 from Giggum/sagitta (authored by c-po).
May 22 2024, 6:32 AM
GitHub <[email protected]> committed rVYOSONEXd702b781f472: Merge pull request #3495 from vyos/mergify/bp/sagitta/pr-3493 (authored by c-po).
May 22 2024, 6:17 AM
GitHub <[email protected]> committed rVYOSONEX202c1d159991: Merge pull request #3496 from vyos/mergify/bp/sagitta/pr-3494 (authored by c-po).
May 22 2024, 6:16 AM

May 21 2024

jestabro added a comment to T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate.

PR merged into vyos-utils:
https://github.com/vyos/vyos-utils/pull/20
and backported. The fix has been tested with migration from 1.3.x with settings as suggested by @trae32566

May 21 2024, 6:49 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXbc1c850285a8: T6373: QoS Policy Limiter - classes for marked traffic do not work (authored by khramshinr <[email protected]>).
May 21 2024, 6:02 PM
khramshinr <[email protected]> committed rVYOSONEXe50b7afc9d5b: T6373: QoS Policy Limiter - classes for marked traffic do not work.
May 21 2024, 6:01 PM
GitHub <[email protected]> committed rVYOSONEX23a420194f4d: Merge pull request #3494 from HollyGurza/T6373 (authored by c-po).
May 21 2024, 6:01 PM
Viacheslav committed rVYOSONEXc554c483817b: T6366: CGNAT add ability to get external and internal allocations.
May 21 2024, 5:51 PM
GitHub <[email protected]> committed rVYOSONEX108a42fc0130: Merge pull request #3490 from sever-sever/T6366 (authored by c-po).
May 21 2024, 5:51 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXd3fb767da14e: T6375: Fix/Update NAT logging (authored by L0crian).
May 21 2024, 5:51 PM
L0crian committed rVYOSONEX5cb9b84bd9ce: T6375: Fix/Update NAT logging.
May 21 2024, 5:50 PM
GitHub <[email protected]> committed rVYOSONEXa67cde68b553: Merge pull request #3493 from l0crian1/T6375-fix-add-nat-logging (authored by c-po).
May 21 2024, 5:50 PM
syncer lowered the priority of T5584: System cannot boot with commit-arachive location sftp in some cases from High to Normal.
May 21 2024, 5:22 PM · VyOS Rolling, Restricted Project
jestabro added a comment to T5584: System cannot boot with commit-arachive location sftp in some cases.

Yes, @c-po that would be a reasonable explanation; the timeout was added for Equuleus by 1.3.4. Without a reporting user to ask; other reports on later version; or further information, I would vote to close ...

May 21 2024, 5:19 PM · VyOS Rolling, Restricted Project
manuel81 created T6377: PermissionError on /config/auth/letsencrypt/live/ when running show pki.
May 21 2024, 4:40 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
L0crian updated the task description for T6375: Fix/Update NAT Logging.
May 21 2024, 4:37 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
L0crian created T6376: EVPN-MH uplink command not fully working correctly (protodown not supported).
May 21 2024, 3:53 PM · VyOS Rolling, Restricted Project
HollyGurza added a comment to T6373: QoS Policy Limiter - classes for marked traffic do not work.

https://github.com/vyos/vyos-1x/pull/3494

May 21 2024, 2:06 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
natali-rs1985 updated the task description for T6374: Openvpn site-to-site mode with TLS not starting.
May 21 2024, 1:59 PM · VyOS 1.5 Circinus
L0crian added a comment to T6375: Fix/Update NAT Logging.

PR: https://github.com/vyos/vyos-1x/pull/3493

May 21 2024, 1:57 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
natali-rs1985 updated the task description for T6374: Openvpn site-to-site mode with TLS not starting.
May 21 2024, 1:56 PM · VyOS 1.5 Circinus
natali-rs1985 updated the task description for T6374: Openvpn site-to-site mode with TLS not starting.
May 21 2024, 1:55 PM · VyOS 1.5 Circinus
natali-rs1985 updated the task description for T6374: Openvpn site-to-site mode with TLS not starting.
May 21 2024, 1:53 PM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX412789b6ffff: Merge pull request #3491 from vyos/mergify/bp/sagitta/pr-3489 (authored by c-po).
May 21 2024, 1:20 PM
L0crian created T6375: Fix/Update NAT Logging.
May 21 2024, 1:10 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jestabro claimed T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate.
May 21 2024, 1:03 PM · VyOS 1.4 Sagitta (1.4.0-GA)
jestabro updated subscribers of T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate.

The argument would be to relax the url validator regex for compatibility with 1.3: since the plan is to replace this mechanism in 1.5 with something similar to @trae32566 suggestion above (brought up for discussion by @Viacheslav recently), and since it is deprecated/not advised anyway (RFC 3986). The simple change will be made to the validator.

May 21 2024, 1:02 PM · VyOS 1.4 Sagitta (1.4.0-GA)
natali-rs1985 created T6374: Openvpn site-to-site mode with TLS not starting.
May 21 2024, 12:26 PM · VyOS 1.5 Circinus
HollyGurza moved T5307: QoS - traffic-class-map services from Open to In Progress on the VyOS 1.5 Circinus board.
May 21 2024, 10:11 AM · VyOS 1.5 Circinus
HollyGurza moved T5307: QoS - traffic-class-map services from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.0-GA) board.
May 21 2024, 10:11 AM · VyOS 1.5 Circinus
HollyGurza moved T6225: Unhandled exception when configuring random-detect QoS policy from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-GA) board.
May 21 2024, 10:09 AM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza closed T6225: Unhandled exception when configuring random-detect QoS policy as Resolved.
May 21 2024, 10:09 AM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza changed the status of T5307: QoS - traffic-class-map services from Open to In progress.
May 21 2024, 10:05 AM · VyOS 1.5 Circinus
HollyGurza added a comment to T5307: QoS - traffic-class-map services .

https://github.com/vyos/vyos-1x/pull/3492

May 21 2024, 10:05 AM · VyOS 1.5 Circinus
natali-rs1985 closed T6328: Add a warning message about deprecation of web proxy URL filtering as Resolved.
May 21 2024, 9:42 AM · VyOS 1.4 Sagitta (1.4.0-GA)
natali-rs1985 closed T4393: sstp: add support for configuring host-name (SNI) as Resolved.
May 21 2024, 9:40 AM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a comment to T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7.

https://github.com/debiansid/nftables-fullcone

May 21 2024, 9:33 AM · VyOS Rolling
natali-rs1985 closed T6348: SNAT op-mode fails with flowtable offload entries as Resolved.
May 21 2024, 9:32 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXc01c33c0b9a0: op-mode: T6367: fix "force commit-archive" TypeError (authored by c-po).
May 21 2024, 9:02 AM
c-po committed rVYOSONEX0d6e44179bae: op-mode: T6367: fix "force commit-archive" TypeError.
May 21 2024, 9:01 AM
GitHub <[email protected]> committed rVYOSONEX9f55afc424b2: Merge pull request #3489 from c-po/commit-archive (authored by dmbaturin).
May 21 2024, 9:01 AM
Viacheslav changed the status of T6366: CGNAT add the ability to show allocation per external or internal address, a subtask of T5169: Add CGNAT Carrier-Grade NAT based on nftables, from Open to In progress.
May 21 2024, 8:18 AM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav changed the status of T6366: CGNAT add the ability to show allocation per external or internal address from Open to In progress.
May 21 2024, 8:18 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6366: CGNAT add the ability to show allocation per external or internal address.

PR https://github.com/vyos/vyos-1x/pull/3490

May 21 2024, 8:18 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T5584: System cannot boot with commit-arachive location sftp in some cases.

@jestabro It was a report from the user; unfortunately, I do not have more details.

May 21 2024, 6:26 AM · VyOS Rolling, Restricted Project
c-po added a comment to T5584: System cannot boot with commit-arachive location sftp in some cases.

I remember there was an ancient bug where the commit-archive rewrite did not come with a timeout. As routing might not have been converged during boot, that could explain the lock.

May 21 2024, 5:26 AM · VyOS Rolling, Restricted Project

May 20 2024

jestabro added a comment to T5584: System cannot boot with commit-arachive location sftp in some cases.

Naive attempts to reproduce on 1.3.3 are not successful, yet (Vmware; KVM), but will continue to investigate; any other information is welcome @Viacheslav, should you recall ...

May 20 2024, 7:11 PM · VyOS Rolling, Restricted Project
c-po moved T6367: op-mode: commit-archive: TypeError: attribute name must be string, not 'NoneType' from Need Triage to In Progress on the VyOS 1.4 Sagitta (1.4.0-GA) board.
May 20 2024, 6:32 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
c-po moved T6367: op-mode: commit-archive: TypeError: attribute name must be string, not 'NoneType' from Open to Finished on the VyOS 1.5 Circinus board.
May 20 2024, 6:32 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
c-po added a comment to T6367: op-mode: commit-archive: TypeError: attribute name must be string, not 'NoneType'.

https://github.com/vyos/vyos-1x/pull/3489

May 20 2024, 6:31 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
matthewr added a comment to T6076: [1.3.3->1.4.0-epa1 Migration] Most of config missing.

@jestabro This was the first of some issues I reported with migration to 1.4.0. The report is (with apologies) a bit vague as much did not work and it took more effort to identify the causes. It turned out to be a combination of things, of which T6131 was only part.

May 20 2024, 4:13 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
jestabro changed the status of T6076: [1.3.3->1.4.0-epa1 Migration] Most of config missing from Needs testing to Needs reporter action.

@matthewr Were all issues of this task resolved by the above discussions and the fix for T6131 ?

May 20 2024, 3:06 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
zsdc updated subscribers of T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate.

@jestabro could it be that the validator needs an update to allow special characters in the user/password field?
https://github.com/vyos/vyos-utils/blob/0d57cc9a266fe8d6fc87df5a769f42b4a45c7221/src/url.ml

May 20 2024, 1:56 PM · VyOS 1.4 Sagitta (1.4.0-GA)
HollyGurza changed Version from - to 1.5-rolling-202405080016 on T6373: QoS Policy Limiter - classes for marked traffic do not work.
May 20 2024, 12:07 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza changed the subtype of T6373: QoS Policy Limiter - classes for marked traffic do not work from "Task" to "Bug".
May 20 2024, 12:07 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
HollyGurza created T6373: QoS Policy Limiter - classes for marked traffic do not work.
May 20 2024, 12:06 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
natali-rs1985 claimed T6227: Rewrite show conntrack-sync cache internal to use tabulate output.
May 20 2024, 10:01 AM · VyOS Rolling
manuel81 added a comment to T6368: acme should also be able to listen on IPv6 addresses.

It seems to work basically

May 20 2024, 8:33 AM · VyOS Rolling
Viacheslav closed T6364: CGNAT drop hard limit that allowed only one translation rule, a subtask of T5169: Add CGNAT Carrier-Grade NAT based on nftables, as Resolved.
May 20 2024, 7:25 AM · VyOS Rolling, VyOS 1.5 Circinus
Viacheslav closed T6364: CGNAT drop hard limit that allowed only one translation rule as Resolved.
May 20 2024, 7:24 AM · VyOS 1.5 Circinus
Viacheslav updated the task description for T5169: Add CGNAT Carrier-Grade NAT based on nftables.
May 20 2024, 7:08 AM · VyOS Rolling, VyOS 1.5 Circinus
Vijayakumar closed T6372: global CODEOWERS not reflecting in other repos, a subtask of T6309: Check code quality with CodeQL, as Resolved.
May 20 2024, 7:05 AM · GitHub Infrastructure
Vijayakumar closed T6372: global CODEOWERS not reflecting in other repos as Resolved.
May 20 2024, 7:05 AM · GitHub Infrastructure
GitHub <[email protected]> committed rVYOSONEX7b2d9e1f68b7: Merge pull request #3488 from vyos/feature/T6372-add-codeowners (authored by c-po).
May 20 2024, 6:54 AM
Viacheslav added a comment to T6368: acme should also be able to listen on IPv6 addresses.

Can you manually edit the node and re-check if it will work for acme

sudo nano -c /opt/vyatta/share/vyatta-cfg/templates/pki/certificate/node.tag/acme/listen-address/node.def

replace:

type: txt
help: Local IPv4 addresses to listen on
val_help: ipv4; IPv4 address to listen for incoming connections
allowed: sh -c "${vyos_completion_dir}/list_local_ips.sh --ipv4"
syntax:expression: exec "${vyos_libexec_dir}/validate-value  --exec \"${vyos_validators_dir}/ipv4-address \"  --value \'$VAR(@)\'"; "Invalid value"

to

type: txt
help: Local IPv4 addresses to listen on
val_help: ipv4; IPv4 address to listen for incoming connections
May 20 2024, 6:45 AM · VyOS Rolling
Vijayakumar committed rVYOSONEX17a94c2d6405: T6372: added codeowners.
May 20 2024, 6:42 AM
Vijayakumar changed the status of T6372: global CODEOWERS not reflecting in other repos, a subtask of T6309: Check code quality with CodeQL, from Open to In progress.
May 20 2024, 6:29 AM · GitHub Infrastructure
Vijayakumar changed the status of T6372: global CODEOWERS not reflecting in other repos from Open to In progress.
May 20 2024, 6:29 AM · GitHub Infrastructure
Vijayakumar created T6372: global CODEOWERS not reflecting in other repos.
May 20 2024, 6:29 AM · GitHub Infrastructure
Viacheslav triaged T6371: Show nat source rules shows unexpected dictionary as Normal priority.
May 20 2024, 5:49 AM · VyOS Rolling, Restricted Project
Viacheslav created T6371: Show nat source rules shows unexpected dictionary.
May 20 2024, 5:49 AM · VyOS Rolling, Restricted Project

May 19 2024

syncer assigned T6183: OpenVPN IPv6 server: Unable to establish connection without local-host parameter to c-po.
May 19 2024, 9:21 PM · VyOS 1.5 Circinus
c-po added a comment to T4833: Include wireguard peer name in interface summary report.

@Alfa80 this is actually the verbatim output of sudo wg show <interface>. I agree that it would sometimes be more intuitive to see the peers name

May 19 2024, 7:51 PM · VyOS Rolling
c-po claimed T6345: Source NAT Port Mapping setting of Fully-Random is superfluous in Kernels 5.0 onwards.
May 19 2024, 7:45 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus