Page MenuHomeVyOS Platform

n.fort (Nicolas Fort)
User

Projects

User Details

User Since
Jun 9 2021, 3:23 PM (173 w, 5 d)

Recent Activity

Yesterday

n.fort reassigned T6641: Show command for interface messages from n.fort to HollyGurza.
Mon, Oct 7, 11:36 AM · Restricted Project, VyOS 1.5 Circinus

Fri, Oct 4

n.fort changed the status of T6760: Firewall - Add set options of "set policy route" to normal firewall rules from In progress to Needs testing.
Fri, Oct 4, 8:06 PM · VyOS 1.5 Circinus
n.fort closed T6687: NAT - Add support for fqdn entries as Resolved.
Fri, Oct 4, 8:05 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus

Thu, Oct 3

n.fort added a comment to T6760: Firewall - Add set options of "set policy route" to normal firewall rules.

PR: https://github.com/vyos/vyos-1x/pull/4123

Thu, Oct 3, 3:00 PM · VyOS 1.5 Circinus
n.fort changed the status of T6760: Firewall - Add set options of "set policy route" to normal firewall rules from Open to In progress.
Thu, Oct 3, 2:50 PM · VyOS 1.5 Circinus
n.fort created T6760: Firewall - Add set options of "set policy route" to normal firewall rules.
Thu, Oct 3, 2:49 PM · VyOS 1.5 Circinus
n.fort changed the status of T6757: Openconnect - source address for Radius auth not working from In progress to Needs testing.
Thu, Oct 3, 2:43 PM · VyOS 1.5 Circinus

Wed, Oct 2

n.fort changed the status of T6687: NAT - Add support for fqdn entries from In progress to Needs testing.
Wed, Oct 2, 1:34 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
n.fort changed the status of T6757: Openconnect - source address for Radius auth not working from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/4120

Wed, Oct 2, 1:33 PM · VyOS 1.5 Circinus
n.fort changed the status of T6757: Openconnect - source address for Radius auth not working from Open to Confirmed.
Wed, Oct 2, 11:43 AM · VyOS 1.5 Circinus
n.fort created T6757: Openconnect - source address for Radius auth not working.
Wed, Oct 2, 11:43 AM · VyOS 1.5 Circinus

Fri, Sep 20

n.fort closed T6723: op-mode command 'show firewall" is not complete as Resolved.
Fri, Sep 20, 8:06 PM · VyOS 1.5 Circinus

Wed, Sep 18

n.fort changed the status of T6641: Show command for interface messages from Open to In progress.
Wed, Sep 18, 3:18 PM · Restricted Project, VyOS 1.5 Circinus
n.fort changed the status of T6723: op-mode command 'show firewall" is not complete from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/4084

Wed, Sep 18, 2:17 PM · VyOS 1.5 Circinus

Tue, Sep 17

n.fort renamed T6723: op-mode command 'show firewall" is not complete from op-mode command 'show filreall" is not complete to op-mode command 'show firewall" is not complete.
Tue, Sep 17, 8:30 PM · VyOS 1.5 Circinus
n.fort changed the status of T6723: op-mode command 'show firewall" is not complete from Open to Confirmed.
Tue, Sep 17, 8:27 PM · VyOS 1.5 Circinus
n.fort created T6723: op-mode command 'show firewall" is not complete.
Tue, Sep 17, 8:27 PM · VyOS 1.5 Circinus
n.fort closed T6647: Zone-based Firewalls on Bridges would flag related DHCP traffic invalid as Resolved.
Tue, Sep 17, 3:50 PM · Restricted Project, VyOS 1.5 Circinus
n.fort closed T6698: Bridge firewall - Add vlan type option as Resolved.
Tue, Sep 17, 3:49 PM · VyOS 1.5 Circinus

Sep 3 2024

n.fort changed the status of T6698: Bridge firewall - Add vlan type option from Open to Confirmed.
Sep 3 2024, 3:40 PM · VyOS 1.5 Circinus
n.fort created T6698: Bridge firewall - Add vlan type option.
Sep 3 2024, 3:38 PM · VyOS 1.5 Circinus

Aug 30 2024

n.fort added a comment to T6687: NAT - Add support for fqdn entries.

PR: https://github.com/vyos/vyos-1x/pull/4024

Aug 30 2024, 6:02 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
n.fort changed the status of T6687: NAT - Add support for fqdn entries from Open to In progress.
Aug 30 2024, 5:53 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
n.fort created T6687: NAT - Add support for fqdn entries.
Aug 30 2024, 5:52 PM · VyOS 1.4 Sagitta (1.4.0), VyOS 1.5 Circinus
n.fort closed T6344: multiple ntp listen-address commands not working as Resolved.
Aug 30 2024, 10:49 AM · VyOS 1.4 Sagitta

Aug 29 2024

n.fort added a comment to T6641: Show command for interface messages.

Showing all logs for interface might print more information than it's needed. Maybe a different approach:

Aug 29 2024, 7:24 PM · Restricted Project, VyOS 1.5 Circinus
n.fort added a comment to T6344: multiple ntp listen-address commands not working.

PR for docuemntation: https://github.com/vyos/vyos-documentation/pull/1531

Aug 29 2024, 7:10 PM · VyOS 1.4 Sagitta

Aug 26 2024

n.fort added a comment to T6647: Zone-based Firewalls on Bridges would flag related DHCP traffic invalid.

PR: https://github.com/vyos/vyos-1x/pull/4018

Aug 26 2024, 6:24 PM · Restricted Project, VyOS 1.5 Circinus
n.fort closed T5177: Make the chain policy configurable as Resolved.
Aug 26 2024, 11:46 AM · VyOS 1.5 Circinus

Aug 23 2024

n.fort added a comment to T5177: Make the chain policy configurable.

I think we can close this one

Aug 23 2024, 12:20 PM · VyOS 1.5 Circinus
n.fort closed T6646: 1.3.8 to 1.4.0 config migration fails due to conntrack ignore rule, a subtask of T5938: Migration fail root task for 1.4-rc, as Resolved.
Aug 23 2024, 12:16 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
n.fort closed T6646: 1.3.8 to 1.4.0 config migration fails due to conntrack ignore rule as Resolved.
Aug 23 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0)
n.fort closed T5794: Flowtable with Bond Race as Resolved.
Aug 23 2024, 12:15 PM · VyOS 1.5 Circinus
n.fort closed T6636: Show log firewall not printing logs for default-actions for custom ruleset as Resolved.
Aug 23 2024, 12:15 PM · Restricted Project, VyOS 1.5 Circinus

Aug 16 2024

n.fort changed the status of T6647: Zone-based Firewalls on Bridges would flag related DHCP traffic invalid from Confirmed to In progress.
Aug 16 2024, 5:44 PM · Restricted Project, VyOS 1.5 Circinus

Aug 15 2024

n.fort added a comment to T5794: Flowtable with Bond Race.

PR: https://github.com/vyos/vyos-1x/pull/3988

Aug 15 2024, 6:12 PM · VyOS 1.5 Circinus
n.fort closed T6643: IP Address range in firewall rules throws error as Resolved.
Aug 15 2024, 10:42 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, Restricted Project

Aug 14 2024

n.fort added a comment to T6646: 1.3.8 to 1.4.0 config migration fails due to conntrack ignore rule.

PR: https://github.com/vyos/vyos-1x/pull/3981

Aug 14 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0)
n.fort changed the status of T6646: 1.3.8 to 1.4.0 config migration fails due to conntrack ignore rule from Open to In progress.
Aug 14 2024, 11:52 AM · VyOS 1.4 Sagitta (1.4.0)
n.fort changed the status of T6646: 1.3.8 to 1.4.0 config migration fails due to conntrack ignore rule, a subtask of T5938: Migration fail root task for 1.4-rc, from Open to In progress.
Aug 14 2024, 11:52 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)

Aug 12 2024

n.fort changed the status of T6643: IP Address range in firewall rules throws error from In progress to Needs testing.
Aug 12 2024, 11:27 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, Restricted Project
n.fort changed the status of T6647: Zone-based Firewalls on Bridges would flag related DHCP traffic invalid from Open to Confirmed.

Config to reproduce the issue:

Aug 12 2024, 11:00 AM · Restricted Project, VyOS 1.5 Circinus

Aug 9 2024

n.fort changed the status of T6643: IP Address range in firewall rules throws error from Confirmed to In progress.

https://github.com/vyos/vyos-1x/pull/3964

Aug 9 2024, 3:48 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, Restricted Project
n.fort claimed T6643: IP Address range in firewall rules throws error.
Aug 9 2024, 11:18 AM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus, Restricted Project

Aug 7 2024

n.fort closed T6536: Config migration does not work as expected when update from 1.3.2 to 1.4.0 (with NAT with wildcard and sysctl parameters) as Resolved.
Aug 7 2024, 5:01 PM · VyOS 1.4 Sagitta
n.fort closed T5680: Allow selecting mac-groups in bridge firewall as Resolved.
Aug 7 2024, 5:00 PM · Restricted Project, VyOS 1.5 Circinus
n.fort closed T6631: Error on firewall while using jump-target and no custom ruleset are present as Resolved.

PR https://github.com/vyos/vyos-1x/pull/3901

Aug 7 2024, 4:10 PM · Restricted Project, VyOS 1.5 Circinus
n.fort closed T6570: Firewall bridge allways passes traffic to IP layer as Resolved.
Aug 7 2024, 4:10 PM · Restricted Project, VyOS 1.5 Circinus

Aug 5 2024

n.fort changed the status of T6636: Show log firewall not printing logs for default-actions for custom ruleset from Open to Confirmed.
Aug 5 2024, 5:42 PM · Restricted Project, VyOS 1.5 Circinus
n.fort created T6636: Show log firewall not printing logs for default-actions for custom ruleset.
Aug 5 2024, 5:42 PM · Restricted Project, VyOS 1.5 Circinus

Aug 2 2024

n.fort changed the status of T6631: Error on firewall while using jump-target and no custom ruleset are present from Open to In progress.
Aug 2 2024, 11:48 AM · Restricted Project, VyOS 1.5 Circinus
n.fort created T6631: Error on firewall while using jump-target and no custom ruleset are present.
Aug 2 2024, 11:48 AM · Restricted Project, VyOS 1.5 Circinus

Jul 30 2024

n.fort added a comment to T6570: Firewall bridge allways passes traffic to IP layer.

PR: https://github.com/vyos/vyos-1x/pull/3901

Jul 30 2024, 12:08 PM · Restricted Project, VyOS 1.5 Circinus
n.fort changed the status of T5680: Allow selecting mac-groups in bridge firewall from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/3901

Jul 30 2024, 12:08 PM · Restricted Project, VyOS 1.5 Circinus

Jul 29 2024

n.fort closed T6607: Error when deleting VLAN-VNI mapping as Invalid.
Jul 29 2024, 1:31 PM · VyOS 1.5 Circinus

Jul 24 2024

n.fort changed the status of T6570: Firewall bridge allways passes traffic to IP layer from Confirmed to In progress.
Jul 24 2024, 5:41 PM · Restricted Project, VyOS 1.5 Circinus
n.fort created T6605: `ConfigError()` behavior is wrong with running `vyos-configd`.
Jul 24 2024, 12:22 PM · VyOS 1.4 Sagitta (1.4.1), Restricted Project, VyOS 1.5 Circinus

Jul 18 2024

n.fort claimed T6570: Firewall bridge allways passes traffic to IP layer.
Jul 18 2024, 5:40 PM · Restricted Project, VyOS 1.5 Circinus

Jul 12 2024

n.fort changed the status of T6570: Firewall bridge allways passes traffic to IP layer from Open to Confirmed.
Jul 12 2024, 12:13 PM · Restricted Project, VyOS 1.5 Circinus
n.fort created T6570: Firewall bridge allways passes traffic to IP layer.
Jul 12 2024, 12:13 PM · Restricted Project, VyOS 1.5 Circinus

Jul 4 2024

n.fort added a comment to T5654: Migrate policy local-route.

PR: https://github.com/vyos/vyos-1x/pull/3781

Jul 4 2024, 5:07 PM · Restricted Project, VyOS 1.5 Circinus
n.fort closed T6488: Firewall op mode output incomplete as Resolved.
Jul 4 2024, 11:01 AM · VyOS 1.5 Circinus
n.fort changed the status of T6536: Config migration does not work as expected when update from 1.3.2 to 1.4.0 (with NAT with wildcard and sysctl parameters) from In progress to Needs testing.
Jul 4 2024, 10:59 AM · VyOS 1.4 Sagitta

Jul 3 2024

n.fort changed the status of T5654: Migrate policy local-route from Open to In progress.
Jul 3 2024, 4:05 PM · Restricted Project, VyOS 1.5 Circinus

Jul 2 2024

n.fort changed the status of T6536: Config migration does not work as expected when update from 1.3.2 to 1.4.0 (with NAT with wildcard and sysctl parameters) from Open to In progress.

PR: https://github.com/vyos/vyos-1x/pull/3749

Jul 2 2024, 12:32 PM · VyOS 1.4 Sagitta

Jun 24 2024

n.fort claimed T6266: Firewall flowtable ability to set timeout for TCP and UDP flow.
Jun 24 2024, 11:07 AM · VyOS 1.5 Circinus
n.fort added a comment to T6266: Firewall flowtable ability to set timeout for TCP and UDP flow.

Now we have:

Jun 24 2024, 11:07 AM · VyOS 1.5 Circinus

Jun 19 2024

n.fort added a comment to T6503: Command 'restart ssh' not working.

Command to restart when ssh running on default vrf:

Jun 19 2024, 6:32 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort changed the status of T6503: Command 'restart ssh' not working from Open to Confirmed.
Jun 19 2024, 6:17 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort created T6503: Command 'restart ssh' not working.
Jun 19 2024, 6:16 PM · VyOS 1.4 Sagitta (1.4.1), VyOS 1.5 Circinus
n.fort added a comment to T6488: Firewall op mode output incomplete.

PR: https://github.com/vyos/vyos-1x/pull/3681

Jun 19 2024, 12:19 PM · VyOS 1.5 Circinus
n.fort changed the status of T6488: Firewall op mode output incomplete from Confirmed to In progress.
Jun 19 2024, 12:08 PM · VyOS 1.5 Circinus

Jun 14 2024

n.fort changed the status of T6488: Firewall op mode output incomplete from Open to Confirmed.
Jun 14 2024, 7:08 PM · VyOS 1.5 Circinus
n.fort created T6488: Firewall op mode output incomplete.
Jun 14 2024, 7:08 PM · VyOS 1.5 Circinus
n.fort closed T6394: Migrate conntrack timeout sysctl parameter to firewall as Resolved.
Jun 14 2024, 7:04 PM · VyOS 1.5 Circinus
n.fort closed T3900: Add support for raw tables to firewall as Resolved.
Jun 14 2024, 7:04 PM · VyOS 1.5 Circinus

Jun 6 2024

n.fort changed the status of T3900: Add support for raw tables to firewall from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3578

Jun 6 2024, 3:25 PM · VyOS 1.5 Circinus
n.fort changed the status of T6394: Migrate conntrack timeout sysctl parameter to firewall from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3578

Jun 6 2024, 3:25 PM · VyOS 1.5 Circinus

Jun 5 2024

n.fort moved T6375: Fix/Update NAT Logging from Need Triage to Finished on the VyOS 1.5 Circinus board.
Jun 5 2024, 7:02 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort closed T6375: Fix/Update NAT Logging as Resolved.
Jun 5 2024, 7:02 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
n.fort closed T6396: MINOR Typo: set system conntrack timeout custom ipv4 rule X as Resolved.
Jun 5 2024, 7:02 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
n.fort moved T6396: MINOR Typo: set system conntrack timeout custom ipv4 rule X from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-GA) board.
Jun 5 2024, 7:02 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

May 24 2024

n.fort changed the status of T6394: Migrate conntrack timeout sysctl parameter to firewall from Open to In progress.
May 24 2024, 12:34 PM · VyOS 1.5 Circinus
n.fort created T6394: Migrate conntrack timeout sysctl parameter to firewall.
May 24 2024, 12:33 PM · VyOS 1.5 Circinus

May 17 2024

n.fort added a comment to T6344: multiple ntp listen-address commands not working.

Yeah, my bad!

May 17 2024, 3:02 PM · VyOS 1.4 Sagitta
n.fort added a comment to T6344: multiple ntp listen-address commands not working.

Maybe we should create another xml file identical to listen-address.xml.i but without multi option define in line 16.

May 17 2024, 2:19 PM · VyOS 1.4 Sagitta
n.fort added a comment to T6362: Create a conntrack/translations logger daemon.

Related to https://vyos.dev/T5471 ?

May 17 2024, 10:53 AM · VyOS 1.5 Circinus

May 14 2024

n.fort changed the status of T3900: Add support for raw tables to firewall from Open to In progress.
May 14 2024, 12:31 PM · VyOS 1.5 Circinus
n.fort placed T5497: Add ability to resequence rule numbers for firewall up for grabs.
May 14 2024, 10:56 AM · VyOS 1.4 Sagitta (1.4.0-epa1)

May 10 2024

n.fort closed T5497: Add ability to resequence rule numbers for firewall as Resolved.
May 10 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
n.fort added a comment to T5497: Add ability to resequence rule numbers for firewall.

I'm closing this task a solution was included. I'm not in favor of introducing similar command in configuration mode.

May 10 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
n.fort added a comment to T5794: Flowtable with Bond Race.

Maybe we should change firewall priority, and make sure all interfaces are defined in the system before loading firewall?

May 10 2024, 1:58 PM · VyOS 1.5 Circinus
n.fort added a comment to T6329: Firewall - Error while printing groups.

PR: https://github.com/vyos/vyos-1x/pull/3442

May 10 2024, 1:39 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
n.fort changed the status of T6329: Firewall - Error while printing groups from Open to In progress.
May 10 2024, 1:05 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
n.fort created T6329: Firewall - Error while printing groups.
May 10 2024, 1:05 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus

May 8 2024

n.fort added a comment to T5177: Make the chain policy configurable.

Behavior change for this issue was fix some month ago in migration scripts, in order to remain action "return" when upgrading from older versions to new syntax.

May 8 2024, 4:32 PM · VyOS 1.5 Circinus
n.fort closed T6269: Polixy route "set table" option is not working correctly as Resolved.
May 8 2024, 4:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
n.fort closed T6305: IPoE interface wildcard validation error in firewall rules as Resolved.
May 8 2024, 4:19 PM · VyOS 1.4 Sagitta (1.4.0-epa3)

May 7 2024

n.fort closed T6265: Firewall flowtable should allow ethernet only interfaces as Invalid.

Further tests in lab shows that non-ehternet interfaces are needed in order to offload traffic as expected. An example is when using wireguard interface: in order to offload traffic, it's necessary to add interface wgX to the flowtable.
Otherwise, it won't work as expected

May 7 2024, 4:52 PM · VyOS 1.5 Circinus
n.fort added a comment to T6305: IPoE interface wildcard validation error in firewall rules.

PR: https://github.com/vyos/vyos-1x/pull/3424

May 7 2024, 3:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)