Page MenuHomeVyOS Platform

Apachez (Apachez)
User

Projects

User does not belong to any projects.

User Details

User Since
Jul 2 2023, 10:05 PM (42 w, 5 d)

Recent Activity

Yesterday

Apachez added a comment to T6258: set system sysctl pre- vs postboot.

Perhaps those changes should be within the firewall context?

Fri, Apr 26, 8:09 AM · VyOS 1.5 Circinus

Thu, Apr 25

Apachez added a comment to T6258: set system sysctl pre- vs postboot.

Im thinking since sysctl can be changed after the system have completed its boot shouldnt the "system sysctl" be runned among the last tasks according to "/usr/libexec/vyos/priority.py", which would also fix this issue ?

Thu, Apr 25, 10:22 PM · VyOS 1.5 Circinus
Apachez added a comment to T6258: set system sysctl pre- vs postboot.

Note that "base_reachable_time_ms" is still valid while "base_reachable_time" is obsolete.

Thu, Apr 25, 2:56 PM · VyOS 1.5 Circinus

Wed, Apr 24

Apachez added a comment to T6256: Replace deprecated ISC dhcp-relay (EOL) with something else.

I sent a question to ISC regarding https://www.isc.org/blogs/dhcp-client-relay-eom/ and:

Wed, Apr 24, 6:05 PM · VyOS 1.5 Circinus

Tue, Apr 23

Apachez added a comment to T6258: set system sysctl pre- vs postboot.

I have asked the OP @canoziia to provide such in the forum.

Tue, Apr 23, 9:14 AM · VyOS 1.5 Circinus
Apachez added a comment to T6258: set system sysctl pre- vs postboot.

I can only refer to whats unfolded on the forum at https://forum.vyos.io/t/how-to-set-net-ipv6-neigh-etha-b-base-reachable-time-in-vyos/14304

Tue, Apr 23, 7:37 AM · VyOS 1.5 Circinus

Mon, Apr 22

Apachez updated the task description for T6258: set system sysctl pre- vs postboot.
Mon, Apr 22, 5:32 PM · VyOS 1.5 Circinus
Apachez created T6258: set system sysctl pre- vs postboot.
Mon, Apr 22, 5:27 PM · VyOS 1.5 Circinus

Sun, Apr 21

Apachez added a comment to T6256: Replace deprecated ISC dhcp-relay (EOL) with something else.

Perhaps Im missing something here but where is Option82 information included (injected into the DCHP-request reaching the DHCP-server)?

Sun, Apr 21, 9:56 AM · VyOS 1.5 Circinus

Sat, Apr 20

Apachez added a comment to T6256: Replace deprecated ISC dhcp-relay (EOL) with something else.

Here is a post from an OPNsense forum administrator in august 2023 (dunno if the below is still valid for OPNsense):

Sat, Apr 20, 1:04 PM · VyOS 1.5 Circinus
Apachez added a comment to T6256: Replace deprecated ISC dhcp-relay (EOL) with something else.

When evaluating proper replacement (other than choosing the best one for the task) another thing to consider is, if possible, to select something that not everybody else uses in terms of if/when a vuln is found in that softrware then not ALL vendors are affected at once.

Sat, Apr 20, 9:45 AM · VyOS 1.5 Circinus
Apachez created T6256: Replace deprecated ISC dhcp-relay (EOL) with something else.
Sat, Apr 20, 9:40 AM · VyOS 1.5 Circinus

Thu, Apr 18

Apachez added a comment to T5572: Add capability for sending Gratuitous ARP (GARP) and the equal for IPv6.

It would be handy if the GARP announcement wouldnt be a separate list but rather picked up from any DNAT or SNAT rules.

Thu, Apr 18, 7:58 AM · VyOS 1.5 Circinus
Apachez added a comment to T6248: <device> ip source-validation 'strict' - doesn't set /proc/sys/net/ipv4/conf/<device>/rp_filter.

Probably related:

Thu, Apr 18, 4:35 AM · VyOS 1.4 Sagitta (1.4.0-epa2)

Sun, Apr 14

Apachez added a comment to T6239: Would it be possible to implement an additional command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

How is this supposed to work?

Sun, Apr 14, 9:41 AM · VyOS 1.5 Circinus
Apachez added a comment to T5694: NTP should always be allowed from localhost and bindaddress/binddevice can only exist once.

Will a migrationsscript be included so that users who used the default of:

Sun, Apr 14, 3:54 AM · VyOS 1.5 Circinus
Apachez added a comment to T6123: Limit NTP allow-client config to internal addresses by default.

Will a migrationsscript be included so that users who used the default of:

Sun, Apr 14, 3:54 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Sat, Apr 13

Apachez added a comment to T6239: Would it be possible to implement an additional command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

You can do the QoS priority on the VyOS by matching the traffic based on VLAN ID and then set the DSCP (TOS) using "set-dscp" according to the manuals below:

Sat, Apr 13, 6:04 PM · VyOS 1.5 Circinus
Apachez added a comment to T6239: Would it be possible to implement an additional command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

You mean you want QoS based on VLAN which is named 802.1p ?

Sat, Apr 13, 4:23 PM · VyOS 1.5 Circinus

Thu, Apr 11

Apachez added a comment to T6229: Unable to view transceiver information for Intel X710 interface.

According to https://community.intel.com/t5/Ethernet-Products/XXV710-V2-NIC-doesn-t-support-quot-ethtool-m-quot-Is-this-a-bug/m-p/730841 you need to:

Thu, Apr 11, 6:26 PM · VyOS 1.4 Sagitta

Wed, Apr 10

Apachez added a comment to T6221: Enabling VRF breaks connectivity.

I only created a vrf (but did not assign it to anything else). Is that intend to break connectivity?

Wed, Apr 10, 9:53 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T6221: Enabling VRF breaks connectivity.

Thats common with other vendors aswell.

Wed, Apr 10, 10:16 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez placed T5498: fsck during boot doesnt work up for grabs.

Removed assignee for now in case somebody else wants to fix this?

Wed, Apr 10, 5:52 AM · VyOS 1.4 Sagitta
Apachez placed T5522: Add logging for which mksquashfs syntax is being used up for grabs.

Removed assignee for now in case somebody else wants to fix this?

Wed, Apr 10, 5:46 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Apachez placed T5641: Enable compression of kernel modules up for grabs.

Removed assignee for now in case somebody else wants to fix this?

Wed, Apr 10, 5:45 AM · VyOS 1.5 Circinus
Apachez added a comment to T5694: NTP should always be allowed from localhost and bindaddress/binddevice can only exist once.

Removed assignee for now in case somebody else wants to fix this?

Wed, Apr 10, 5:45 AM · VyOS 1.5 Circinus
Apachez placed T5694: NTP should always be allowed from localhost and bindaddress/binddevice can only exist once up for grabs.
Wed, Apr 10, 5:43 AM · VyOS 1.5 Circinus

Mon, Apr 1

Apachez added a comment to T6181: A feature for checking popular ports..

Personally I dont think its a good idea to be able to use VyOS as a jumphost towards victims of scanning.

Mon, Apr 1, 8:11 AM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta (1.4.0)

Sat, Mar 30

Apachez added a comment to T6188: Add Firewall Rule Description to "show firewall" commands.

I think the wrapping should be left for the output to select since you can either be in a regular serialconsole of 80x25 or some highresmode which brings more characters per line or even through SSH with a 4k monitor which will be plenty of lines.

Sat, Mar 30, 5:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Apachez added a comment to T6188: Add Firewall Rule Description to "show firewall" commands.

Since descriptions can be very long I assume there will be a linewrap at the end?

Sat, Mar 30, 4:01 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus

Mar 25 2024

Apachez added a comment to T5566: Be able to disable 802.3az/EEE (energy efficient ethernet) for a particular interface.

Sure but if the function "port auto-power-down" is mapped to the ethtool function of disabling EEE then it should be safe?

Mar 25 2024, 7:10 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Mar 24 2024

Apachez reopened T5566: Be able to disable 802.3az/EEE (energy efficient ethernet) for a particular interface as "Known issue".

Reopened with status "Known issue" due to revert by PR 3177.

Mar 24 2024, 10:45 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez added a comment to T5566: Be able to disable 802.3az/EEE (energy efficient ethernet) for a particular interface.

To clearify:

Mar 24 2024, 10:38 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Mar 23 2024

Apachez added a comment to T6162: ixgbe: Add 1000BASE-BX support.

Wouldnt it be better if the same commit goes to Intel to be included with the out-of-tree driver which generally have better featuresupport than the in-tree driver which seems to be somewhat crippled?

That is that this commit goes into upstream to both Linux kernel and Intel out-of-tree driver (in case the later is missing this support)?

This is up to Intel as far as I know

Mar 23 2024, 2:25 PM
Apachez added a comment to T6162: ixgbe: Add 1000BASE-BX support.

Wouldnt it be better if the same commit goes to Intel to be included with the out-of-tree driver which generally have better featuresupport than the in-tree driver which seems to be somewhat crippled?

Mar 23 2024, 12:20 PM

Mar 22 2024

Apachez added a comment to T6140: After running a while the default routing failed on vyos 1.4 epa1&epa2 with pppoe0 enabled.

Wouldnt PPPoE always assign IP dynamically?

Mar 22 2024, 4:57 AM · VyOS 1.4 Sagitta
Apachez added a comment to T6154: Installer should ask for password twice.

Comparing to other vendors setting the password either in cleartext or as a salted hash (where when saved in config file its always saved as a salted hash - but it will accept a cleartext edition too if you wish that for whatever reason) through the CLI is the standard in NOS.

Mar 22 2024, 4:28 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T6140: After running a while the default routing failed on vyos 1.4 epa1&epa2 with pppoe0 enabled.

Also since dynamic and not static IP is being used it would be handy if the DHCP exchange can be captured using tcpdump and do this both on the 1.3 where this works and on 1.4/1.5 where this doesnt work.

Mar 22 2024, 4:20 AM · VyOS 1.4 Sagitta

Mar 15 2024

Apachez added a comment to T6091: [1.3.3->1.4.0-epa1 Migration] NTP "listen-address" config removed.

Proper would be to throw out chrony and use ntpsec instead which supports proper filtering.

Mar 15 2024, 5:06 PM · VyOS 1.4 Sagitta
Apachez added a comment to T4610: Firewall with 20K entries cannot load after reboot.

There do already exists tasks regarding commit and boot times such as: https://vyos.dev/T5388

Mar 15 2024, 10:35 AM · VyOS 1.4 Sagitta

Mar 14 2024

Apachez added a comment to T4610: Firewall with 20K entries cannot load after reboot.

I wouldnt call 1m37s of commit time for a single line of configchange as "resolved"...

Mar 14 2024, 10:33 PM · VyOS 1.4 Sagitta
Apachez added a comment to T5388: Something is fishy with commit and boot times when more than a few hundred static routes are being used.

Also probably related: https://forum.vyos.io/t/long-commit-time-for-multiple-vrfs/14053

Mar 14 2024, 8:48 PM · VyOS 1.4 Sagitta
Apachez added a comment to T2433: Improve CLI value validator performance.

Is this related to the long commit and boot times when one have more than a handful routes or firewall rules as described in https://vyos.dev/T5388 ?

Mar 14 2024, 10:54 AM · VyOS 1.4 Sagitta (1.4.0-epa1)

Mar 7 2024

Apachez added a comment to T6108: VTYSH - Slowdown.

1.3.3 and rolling from 2020?

Mar 7 2024, 4:14 PM · VyOS 1.3 Equuleus (1.3.7)
Apachez added a comment to T6107: Nginx does not allow big config queries for configure endpoint API.

While at it, whats the configured response time in nginx?

Mar 7 2024, 2:04 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus

Mar 6 2024

Apachez added a comment to T6103: DHCP-server bootfile-name double slash syntax weird behaviour.

Is "\" really a valid path for bootfile?

Mar 6 2024, 11:07 AM · VyOS 1.4 Sagitta (1.4.0-epa3), vyatta-cfg-dhcp-server

Mar 4 2024

Apachez created T6098: Description doesnt seem to allow for non international characters.
Mar 4 2024, 6:47 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
Apachez added a comment to T6096: Config commits are not synced properly because 00vyos-sync is deleted by vyos-router.

PR created: https://github.com/vyos/vyos-1x/pull/3085

Mar 4 2024, 6:21 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus
Apachez claimed T6096: Config commits are not synced properly because 00vyos-sync is deleted by vyos-router.
Mar 4 2024, 5:51 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus
Apachez created T6096: Config commits are not synced properly because 00vyos-sync is deleted by vyos-router.
Mar 4 2024, 5:31 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus

Mar 2 2024

Apachez added a comment to T6088: Configuration corrupted after saving and powercut or force reboot.

Instead of that sysrq stuff, how does it work if you try these 3 tests?

Mar 2 2024, 1:12 PM · VyOS 1.3 Equuleus (1.3.7)

Mar 1 2024

Apachez added a comment to T6085: VTI interfaces are in UP state by default.

If the peer reconnects after the first disconnect - does the local VTI interface go "UP" again?

Mar 1 2024, 10:19 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus

Feb 27 2024

Apachez added a comment to T5080: Conntrack enabled by default.

How do one re-open? :-)

Feb 27 2024, 5:00 PM · VyOS 1.4 Sagitta
Apachez added a comment to T6073: Conntrack/NAT not being disabled when VRFs are defined.

Similar task(s):

Feb 27 2024, 4:59 PM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus
Apachez added a comment to T6071: firewall: CLI description limit of 256 characters cause config upgrade issues.

While at it having a description for a firewall rule within the firewall itself thats longer than 256 is just "wrong" IMHO aka "you are doing it wrong".

Feb 27 2024, 9:15 AM · VyOS 1.4 Sagitta (1.4.0-epa2), VyOS 1.5 Circinus

Feb 26 2024

Apachez added a comment to T5619: Update the Intel ixgbe driver due to issues with Intel X533.

Unfortunately I haven't seen this before, for me this choice of using the out-of-tree driver is extremely wrong!

Most of the community's development is done on the mainline kernel driver (where among other things I'm working on sending patches to improve the ixgbe driver), if there are issues in the mainline driver they should be reported or resolved with a patch to be applied in vyos downstream and then send it to the Intel-wired-lan mailing list.

Please @samip537 can you tell me in a short list what exactly problems you encounter with the mainline Linux driver?

Feb 26 2024, 6:06 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Feb 24 2024

Apachez added a comment to T5388: Something is fishy with commit and boot times when more than a few hundred static routes are being used.

Adding https://forum.vyos.io/t/quick-and-dirty-benchmark-of-cores-vs-mhz/13831/ for reference which also concludes that something is off with the commit and boot times of VyOS.

Feb 24 2024, 12:10 PM · VyOS 1.4 Sagitta

Feb 19 2024

Apachez added a comment to T5549: Result of system audit by Lynis.

Its mainly a headsup for maintainers to go through the report and fix whats possible.

Feb 19 2024, 8:25 AM · VyOS 1.4 Sagitta

Feb 3 2024

Apachez added a comment to T5424: Routes vanishes when using FRR with ECMP and one of the ECMP paths is no longer available.

Its not clear if its fixed or not:

Feb 3 2024, 4:26 PM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project

Jan 28 2024

Apachez created T5995: Kernel NIC-drivers for Huawei NICs are not properly enabled.
Jan 28 2024, 12:55 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Jan 27 2024

Apachez added a comment to T5990: Intel 25G E810 kernel ice driver does not work with LLDP.

Same as with https://vyos.dev/T5619.

Jan 27 2024, 2:04 PM · VyOS 1.3 Equuleus (1.3.7)

Jan 23 2024

Apachez added a comment to T5979: Add configurable kernel boot parameters.

Related?

Jan 23 2024, 4:30 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Jan 20 2024

Apachez added a comment to T5572: Add capability for sending Gratuitous ARP (GARP) and the equal for IPv6.

Again, notifing upstream (or downstream) is not only about VRRP.

Jan 20 2024, 9:55 AM · VyOS 1.5 Circinus
Apachez added a comment to T5572: Add capability for sending Gratuitous ARP (GARP) and the equal for IPv6.

GARP is needed for VRRP but the GARP setting is also needed when doing NAT.

Jan 20 2024, 9:24 AM · VyOS 1.5 Circinus
Apachez added a comment to T3984: Ability to disable all logs.

Logrotate just renames the logs so that doesnt bring many writes.

Jan 20 2024, 9:12 AM · VyOS 1.5 Circinus

Jan 18 2024

Apachez added a comment to T5509: Add capability to add firewall rules similar to CoPP through VyOS configuration.
set firewall auto-ruleset ssh-server enable
set firewall auto-ruleset ssh-server interface 'eth7 eth8'
Jan 18 2024, 9:25 PM · VyOS 1.4 Sagitta

Jan 17 2024

Apachez added a comment to T5835: UPnP port mapping / rule installation fails.

Personally I would prefer that the "automagic" firewall ruleset would be done optionally through method described in:

Jan 17 2024, 11:51 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus

Jan 16 2024

Apachez added a comment to T5940: [1.3.5 -> 1.4.0-RC1 Migration] commit-archive Fails to Migrate.

Another good thing is that any logging can be done without spoling the user/pass which otherwise is the case with todays oneliner approach.

Jan 16 2024, 11:45 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
Apachez created T5950: Communicate with UPS for monitoring and clean shutdown.
Jan 16 2024, 4:51 AM · VyOS 1.5 Circinus
Apachez created T5949: Disable USB autosuspend.
Jan 16 2024, 4:08 AM · VyOS 1.5 Circinus

Jan 10 2024

Apachez added a comment to T3984: Ability to disable all logs.

Could for example be that set system options logtoram enables the feature while set system options logtoram size 32M sets the desired size where the default is 32M or whatever would be needed as a sane minimum.

Jan 10 2024, 12:40 AM · VyOS 1.5 Circinus

Jan 9 2024

Apachez added a comment to T5814: VyOS 1.3 to 1.4 LTS Firewall ruleset migration script breaks configuration.

On the other hand I would expect someone aka the admin who will configure an enterprise firewall such as VyOS could be called to have at least SOME basic knowledge and also some interest to read the documentation on how to configure the firewall.

Jan 9 2024, 11:01 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Jan 7 2024

Apachez added a comment to T5898: Replace partprobe with partx due to unable to install VyOS.

How come partprobe fails but not partx?

Jan 7 2024, 5:42 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Jan 6 2024

Apachez added a comment to T5902: http: remove virtual-host configuration in webserver.

Having support for vhost is handy when you dont want just to blindly share a single documentroot but have the ability to use multiple at a single host.

Jan 6 2024, 10:50 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Jan 5 2024

Apachez added a comment to T5593: Further shrink VyOS imagesize.

Hopefully this can be resolved for VyOS 2.0 in the future...

Jan 5 2024, 1:01 PM · VyOS 2.0.x
Apachez added a comment to T5622: Command 'add system upgrade' uses local script instead of updated script provided by ISO.

Hopefully this can be resolved for VyOS 2.0 in the future...

Jan 5 2024, 1:01 PM · VyOS 2.0.x

Jan 4 2024

Apachez added a comment to T3984: Ability to disable all logs.
set system options logtoram
Jan 4 2024, 5:53 PM · VyOS 1.5 Circinus

Jan 1 2024

Apachez added a comment to T5881: IPv6 addresses jumbled in flow accounting.

Yes but "2602:fcad:2:fffe:5054:ff" is a valid host in your case?

Jan 1 2024, 7:14 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)

Dec 31 2023

Apachez added a comment to T5881: IPv6 addresses jumbled in flow accounting.

You mean that for SRC_IP you expect it to be "2602:fcad:2:fffe:5054:ff" and not "14d:63f:2602:fcad:2:fffe:5054:ff" ?

Dec 31 2023, 11:36 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Apachez added a comment to T5879: tunnel: sourceing from dynamic pppoe0 interface will fail on reboots.

Related to the list provided in https://vyos.dev/T5706 ?

Dec 31 2023, 12:25 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Dec 27 2023

Apachez added a comment to T5860: Enhance strip-private to output more readable config.

Instead of "TEST-NET-X" and "TEST-IP-X" it could use "REPLACED-NET-X" and "REPLACED-IP-X" or such (where X defines the unique item thats being replaced).

Dec 27 2023, 11:03 AM · VyOS 1.5 Circinus
Apachez created T5860: Enhance strip-private to output more readable config.
Dec 27 2023, 11:01 AM · VyOS 1.5 Circinus

Dec 25 2023

Apachez added a comment to T5566: Be able to disable 802.3az/EEE (energy efficient ethernet) for a particular interface.

I think its a bit odd to completely disable EEE where the solution would be to disable EEE by default but having the config option to adjust for EEE if wanted.

Dec 25 2023, 12:13 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Dec 20 2023

Apachez added a comment to T5835: UPnP port mapping / rule installation fails.

Also while at it, the smoketests regarding UPnP should probably be updated by this task aswell since they claim everything is OK:

Dec 20 2023, 9:37 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.5 Circinus

Dec 13 2023

Apachez added a comment to T5822: Integration for Secure60 SIEM.

Wouldnt this rather be a task for secure60 to add compatability to parse and understand snmp and syslog received from a VyOS device?

Dec 13 2023, 8:34 AM · VyOS 1.5 Circinus

Dec 12 2023

Apachez added a comment to T5818: interface name mixup at boot (same PCI address).

"hw-id" should define which physical interface is mapped to which ethX VyOS interface.

Dec 12 2023, 3:08 PM · VyOS 1.4 Sagitta

Dec 3 2023

Apachez added a comment to T5759: Change VXLAN default MTU to 1500 bytes.

Wouldnt this break things with compatibility with other vendors?

Dec 3 2023, 11:25 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 18 2023

Apachez added a comment to T5757: Embedded: Allow ethernet names lanX, wan, sfpX.

I agree, even if its "odd" at first sight I like that all interfaces are named ethX within VyOS and then its a matter to map each to physical interface by hw-id (which is done automagically during first install but can be remapped if wanted).

Nov 18 2023, 2:06 PM · VyOS 1.5 Circinus
Apachez added a comment to T5757: Embedded: Allow ethernet names lanX, wan, sfpX.

Does all the interfaces at bananapi represent a hw-id which can be used to map to the ethX syntax of VyOS?

Nov 18 2023, 4:03 AM · VyOS 1.5 Circinus

Nov 15 2023

Apachez created T5742: Define port-group as a oneliner instead of multiline.
Nov 15 2023, 4:11 AM · VyOS 1.5 Circinus

Nov 14 2023

Apachez added a comment to T5167: Add a simple file server.

The fear of having the HTTP-API part of nginx compromised by another virtualhost config (as in they are sharing the same process) should be overcome by having a dedicated config file and start a 2nd nginx process.

Nov 14 2023, 12:36 AM · VyOS 1.5 Circinus

Nov 13 2023

Apachez added a comment to T5167: Add a simple file server.

I would vote for that (using nginx as backend since it already exists).

Nov 13 2023, 12:10 AM · VyOS 1.5 Circinus

Nov 12 2023

Apachez added a comment to T5167: Add a simple file server.

Instead of "file-server" I think "http-server" would be a better name or even "web-server" in this context.

Nov 12 2023, 3:05 PM · VyOS 1.5 Circinus

Nov 10 2023

Apachez created T5730: Add ability for VyOS to sendmail.
Nov 10 2023, 2:01 PM · VyOS 1.5 Circinus

Nov 8 2023

Apachez closed T5693: Adding variable vyos_persistence_dir (and improve variable vyos_rootfs_dir) as Resolved.

Verified with VyOS 1.5-rolling-202311081451.

Nov 8 2023, 6:06 PM · VyOS 1.5 Circinus

Nov 6 2023

Apachez added a comment to T5471: Conntrack logging doesnt seem to be working.

I would mainly want to log new conntrack entries for various reasons.

Nov 6 2023, 9:27 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Nov 4 2023

Apachez added a comment to T5713: strip-private doesn't strip string after "secret".

Do you have any example of in which context that exists?

Nov 4 2023, 6:44 PM · VyOS 1.5 Circinus
Apachez added a comment to T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces .

In that PR, shouldnt also ifb* be included?

Nov 4 2023, 1:37 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus

Nov 3 2023

Apachez added a comment to T5706: Systemd-udevd high CPU utilization for multiple dynamic ppp/l2tp/ipoe interfaces .

Shouldnt dummy* and some others be excluded aswell?

Nov 3 2023, 9:48 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Apachez added a comment to T5698: EVPN ESI Multihoming.

@shthead: Im talking about features in VyOS. I dont care what others such as Juniper does or doesnt do.

Nov 3 2023, 12:51 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta