Page MenuHomeVyOS Platform

n.fort (Nicolas Fort)
User

Projects

User Details

User Since
Jun 9 2021, 3:23 PM (94 w, 1 d)

Recent Activity

Yesterday

n.fort added a comment to T5128: Policy route - Allow wildcard interfaces.

PR: https://github.com/vyos/vyos-1x/pull/1922

Thu, Mar 30, 1:18 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5128: Policy route - Allow wildcard interfaces from Open to Confirmed.
Thu, Mar 30, 10:43 AM · VyOS 1.4 Sagitta
n.fort created T5128: Policy route - Allow wildcard interfaces.
Thu, Mar 30, 10:43 AM · VyOS 1.4 Sagitta

Wed, Mar 29

n.fort reassigned T4173: Wan Load Balancing - Error on firewall NAT rules from sdev to Viacheslav.
Wed, Mar 29, 1:03 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4173: Wan Load Balancing - Error on firewall NAT rules.

Re Opening this task, since same error is present again

Wed, Mar 29, 1:02 PM · VyOS 1.4 Sagitta
n.fort reopened T4173: Wan Load Balancing - Error on firewall NAT rules as "Confirmed".
Wed, Mar 29, 12:59 PM · VyOS 1.4 Sagitta

Wed, Mar 22

n.fort changed the status of T5105: DHCP Server - Wrong error message from Confirmed to Needs testing.
Wed, Mar 22, 11:15 AM · VyOS 1.4 Sagitta
n.fort added a comment to T5105: DHCP Server - Wrong error message.

PR: https://github.com/vyos/vyos-1x/pull/1905

Wed, Mar 22, 11:15 AM · VyOS 1.4 Sagitta
n.fort changed the status of T5105: DHCP Server - Wrong error message from Open to Confirmed.
Wed, Mar 22, 10:26 AM · VyOS 1.4 Sagitta
n.fort created T5105: DHCP Server - Wrong error message.
Wed, Mar 22, 10:25 AM · VyOS 1.4 Sagitta

Mon, Mar 20

n.fort added a comment to T5055: Firewall - Add packet type matcher (pkttype).

I have certain doubts about it.
Netfilter documentation is not always perfect, and many times you may find out some different options.

Mon, Mar 20, 12:47 PM · VyOS 1.4 Sagitta

Wed, Mar 15

n.fort changed the status of T5090: Add support for disk encryption during installation from Open to Confirmed.
Wed, Mar 15, 11:41 AM · VyOS 1.4 Sagitta
n.fort created T5090: Add support for disk encryption during installation.
Wed, Mar 15, 11:40 AM · VyOS 1.4 Sagitta

Tue, Mar 14

n.fort added a comment to T5055: Firewall - Add packet type matcher (pkttype).

PR: https://github.com/vyos/vyos-1x/pull/1890

Tue, Mar 14, 6:25 PM · VyOS 1.4 Sagitta
n.fort added a comment to T5055: Firewall - Add packet type matcher (pkttype).

I'll work on it on the next days.
I'll keep you posted!

Tue, Mar 14, 5:07 PM · VyOS 1.4 Sagitta
n.fort added a comment to T5050: Firewall - Add options for logging packets.

PR: https://github.com/vyos/vyos-1x/pull/1889

Tue, Mar 14, 4:52 PM · VyOS 1.4 Sagitta

Mon, Mar 13

n.fort changed the status of T5050: Firewall - Add options for logging packets from Confirmed to In progress.
Mon, Mar 13, 5:51 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5055: Firewall - Add packet type matcher (pkttype) from In progress to Needs testing.
Mon, Mar 13, 3:44 PM · VyOS 1.4 Sagitta

Mon, Mar 6

n.fort added a comment to T5055: Firewall - Add packet type matcher (pkttype).

PR: https://github.com/vyos/vyos-1x/pull/1871

Mon, Mar 6, 7:01 PM · VyOS 1.4 Sagitta
n.fort changed the status of T5055: Firewall - Add packet type matcher (pkttype) from Open to Confirmed.
Mon, Mar 6, 10:54 AM · VyOS 1.4 Sagitta
n.fort created T5055: Firewall - Add packet type matcher (pkttype).
Mon, Mar 6, 10:54 AM · VyOS 1.4 Sagitta

Fri, Mar 3

n.fort changed the status of T5050: Firewall - Add options for logging packets from Open to Confirmed.
Fri, Mar 3, 12:05 PM · VyOS 1.4 Sagitta
n.fort created T5050: Firewall - Add options for logging packets.
Fri, Mar 3, 12:04 PM · VyOS 1.4 Sagitta

Wed, Mar 1

n.fort changed the status of T5037: Firewall - Add queue action from In progress to Needs testing.
Wed, Mar 1, 8:23 PM · VyOS 1.4 Sagitta

Feb 27 2023

n.fort changed the status of T5037: Firewall - Add queue action from Open to In progress.
Feb 27 2023, 8:10 PM · VyOS 1.4 Sagitta
n.fort created T5037: Firewall - Add queue action.
Feb 27 2023, 8:09 PM · VyOS 1.4 Sagitta

Feb 24 2023

n.fort added a comment to T5032: VRRP aware DHCP relay.

Have you try getting same result using VRRP transitions scripts?

Feb 24 2023, 7:28 PM · VyOS 1.4 Sagitta

Feb 22 2023

n.fort added a comment to T5022: VRRP add mail notification.

Yes @syncer . One option is for source and other for destination.

Feb 22 2023, 10:02 AM · VyOS 1.4 Sagitta

Feb 18 2023

n.fort added a comment to T5016: Policy Route - Add load balancer capabilities.

A 2nd proposal could be:

Feb 18 2023, 1:38 PM · VyOS 1.4 Sagitta
n.fort updated the task description for T5016: Policy Route - Add load balancer capabilities.
Feb 18 2023, 1:03 PM · VyOS 1.4 Sagitta
n.fort added a comment to T5016: Policy Route - Add load balancer capabilities.
Feb 18 2023, 12:46 PM · VyOS 1.4 Sagitta
n.fort changed Version from - to vyos-1.4-rolling-202302150317 on T5016: Policy Route - Add load balancer capabilities.
Feb 18 2023, 12:32 PM · VyOS 1.4 Sagitta
n.fort created T5016: Policy Route - Add load balancer capabilities.
Feb 18 2023, 12:32 PM · VyOS 1.4 Sagitta
n.fort added a comment to T5014: Destination NAT - Add Load Balancing capabilities.

When internal hosts are behind NAT, this is working as expected, because of conntrack.

Feb 18 2023, 10:50 AM · VyOS 1.4 Sagitta

Feb 17 2023

n.fort renamed T4984: Firewall add mark for outgoing packets from Firewall add mark for ougoing packets to Firewall add mark for outgoing packets.
Feb 17 2023, 7:54 PM · VyOS 1.4 Sagitta
n.fort changed Version from - to vyos-1.4-rolling-202302150317 on T5014: Destination NAT - Add Load Balancing capabilities.
Feb 17 2023, 6:11 PM · VyOS 1.4 Sagitta
n.fort created T5014: Destination NAT - Add Load Balancing capabilities.
Feb 17 2023, 6:11 PM · VyOS 1.4 Sagitta

Feb 15 2023

n.fort changed the status of T5009: op-mode command: restart dhcp relay-agent not working from In progress to Needs testing.
Feb 15 2023, 2:36 PM · VyOS 1.3 Equuleus (1.3.3)

Feb 14 2023

n.fort changed the status of T5009: op-mode command: restart dhcp relay-agent not working from Confirmed to In progress.

PR: https://github.com/vyos/vyos-1x/pull/1820

Feb 14 2023, 7:04 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort added a comment to T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces.

Thanks Keving: https://vyos.dev/T5009

Feb 14 2023, 6:44 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus
n.fort changed the status of T5009: op-mode command: restart dhcp relay-agent not working from Open to Confirmed.
Feb 14 2023, 6:44 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort created T5009: op-mode command: restart dhcp relay-agent not working.
Feb 14 2023, 6:43 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort added a comment to T4601: dhcp : relay agent IP address issue..

Error still present in 1.4: https://vyos.dev/T5004

Feb 14 2023, 6:36 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort added a comment to T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces.

In Both version, restarting relay service solved the issue:

Feb 14 2023, 5:37 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus
n.fort changed Version from VyOS LTS 1.3.2 to VyOS LTS 1.3.2 - vyos-1.4-rolling-202302140317 on T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces.
Feb 14 2023, 3:19 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus
n.fort changed the status of T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces from Open to Confirmed.
Feb 14 2023, 3:19 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus
n.fort added a comment to T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces.

I can confirm this behavior, which occurs when changing IP address on listening interface (where dhcp-discover is captured).
Issue present in 1.3.2 .
It's also present in latest vyos-1.4-rolling-202302140317, regardless if old interface syntax is used, or if new upstream-interfces plus listen-interface commands are used.

Feb 14 2023, 3:18 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Feb 13 2023

n.fort added a comment to T5004: DHCP-Relay potential bug. Static configurations of DHCP-Relay Interfaces.

Can you provide this configuration on both setups:

Feb 13 2023, 6:53 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus
n.fort closed T4153: Monitor bandwidth-test initiate not working as Resolved.

Then lets close it

Feb 13 2023, 3:47 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort added a comment to T4376: DNAT with multiwan and policy routing, incoming connections only work on primary interface.

I have prepared a configuration example using one of the latest 1.4 images, where more features were introduced.
Scenario and requirements:

  • One vyos router
  • 3 Uplinks to internet (eth0, eth1 and eth2). Static IP used on three links
  • 2 VLANs
    • vif 2: + New Connections from vif-2 routed through WAN-2 + Server on vif 2 should accept ssh connections from internet, through dnat on 3 WAN interfaces (outside port 122)
    • vif 4: + NewConnections from vif-24routed through WAN-2 + Server on vif 4 should accept ssh connections from internet, through dnat on 3 WAN interfaces (outside port 222)
Feb 13 2023, 3:07 PM · VyOS 1.4 Sagitta

Feb 8 2023

n.fort added a comment to T4986: Ability to filter traffic originating from the router itself via firewall .

I would prefer a different syntax, in order to avoid the necessity attaching it to an interface. Maybe something like:

Feb 8 2023, 2:11 PM · VyOS 1.4 Sagitta
n.fort added a comment to T4857: SNMP - Implement FRR SNMP recommendations.

Error detected in forum: https://forum.vyos.io/t/unable-to-query-snmp-anymore-in-a-more-recent-1-4-version/10388/3
Fix for that bug: https://github.com/vyos/vyos-1x/pull/1805

Feb 8 2023, 1:35 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4857: SNMP - Implement FRR SNMP recommendations from Confirmed to Needs testing.
Feb 8 2023, 1:33 PM · VyOS 1.4 Sagitta

Feb 6 2023

n.fort changed the status of T2408: DHCP Relay upstream and downstream interfaces from In progress to Needs testing.
Feb 6 2023, 3:11 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Jan 31 2023

n.fort closed T4780: Firewall - Add interface group as Resolved.
Jan 31 2023, 11:04 AM · VyOS 1.4 Sagitta

Jan 26 2023

n.fort closed T4886: Firewall and Policy - Add connection mark as Resolved.
Jan 26 2023, 9:54 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4939: VRRP command no-preempt not work as expected from Confirmed to Needs testing.
Jan 26 2023, 9:48 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Jan 23 2023

n.fort added a comment to T1297: Add GARP settings to VRRP/keepalived.

PR for 1.4: https://github.com/vyos/vyos-1x/pull/1777

Jan 23 2023, 12:39 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Jan 19 2023

n.fort claimed T1297: Add GARP settings to VRRP/keepalived.
Jan 19 2023, 12:17 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Jan 17 2023

n.fort added a comment to T4939: VRRP command no-preempt not work as expected.

Error seems to be present only when bonding interface is configured.

Jan 17 2023, 3:52 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
n.fort assigned T4939: VRRP command no-preempt not work as expected to fernando.
Jan 17 2023, 12:11 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)

Dec 23 2022

n.fort changed the status of T4780: Firewall - Add interface group from In progress to Needs testing.
Dec 23 2022, 11:39 AM · VyOS 1.4 Sagitta
n.fort changed the status of T4886: Firewall and Policy - Add connection mark from In progress to Needs testing.
Dec 23 2022, 11:38 AM · VyOS 1.4 Sagitta

Dec 19 2022

n.fort added a comment to T4886: Firewall and Policy - Add connection mark.

PR: https://github.com/vyos/vyos-1x/pull/1718

Dec 19 2022, 3:46 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4886: Firewall and Policy - Add connection mark from Open to In progress.
Dec 19 2022, 12:24 PM · VyOS 1.4 Sagitta
n.fort created T4886: Firewall and Policy - Add connection mark.
Dec 19 2022, 12:23 PM · VyOS 1.4 Sagitta

Dec 6 2022

n.fort added a comment to T4863: need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting).

@aserkin . Viacheslav commands are present in more recent nighly builds.
Try with one of the latests images.

Dec 6 2022, 6:26 PM · VyOS 1.4 Sagitta

Dec 2 2022

n.fort closed T4122: interface ip address config missing after upgrade from 1.2.8 to 1.3.0 (when redirect is configured?) as Resolved.
Dec 2 2022, 4:19 PM · VyOS 1.3 Equuleus (1.3.3)
n.fort closed T1024: Policy Based Routing by DSCP as Resolved.
Dec 2 2022, 4:14 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort claimed T4839: Dynamic Firewall groups.
Dec 2 2022, 4:12 PM · VyOS 1.4 Sagitta
n.fort closed T4830: nat66 - Error in port translation rules as Resolved.
Dec 2 2022, 4:09 PM · VyOS 1.4 Sagitta
n.fort added a project to T2998: SNMP v3 oid "exclude" option doesn't work: VyOS 1.4 Sagitta.
Dec 2 2022, 2:26 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
n.fort added a comment to T2998: SNMP v3 oid "exclude" option doesn't work.

Error also present in vyos-1.4-rolling-202212020318

Dec 2 2022, 2:25 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
n.fort changed the status of T4857: SNMP - Implement FRR SNMP recommendations from Open to Confirmed.
Dec 2 2022, 1:38 PM · VyOS 1.4 Sagitta
n.fort created T4857: SNMP - Implement FRR SNMP recommendations.
Dec 2 2022, 1:37 PM · VyOS 1.4 Sagitta

Nov 24 2022

n.fort added a comment to T4839: Dynamic Firewall groups.

PR Draft: https://github.com/vyos/vyos-1x/pull/1677

Nov 24 2022, 3:59 PM · VyOS 1.4 Sagitta
n.fort changed Version from - to vyos-1.4-rolling-202211240318 on T4839: Dynamic Firewall groups.
Nov 24 2022, 3:24 PM · VyOS 1.4 Sagitta
n.fort created T4839: Dynamic Firewall groups.
Nov 24 2022, 3:23 PM · VyOS 1.4 Sagitta

Nov 22 2022

n.fort closed T4670: policy route - Update matching criteria as Resolved.
Nov 22 2022, 2:39 PM · VyOS 1.4 Sagitta
n.fort closed T4706: NAT and NAT66 issues as Resolved.
Nov 22 2022, 2:29 PM · VyOS 1.4 Sagitta

Nov 19 2022

n.fort added a comment to T4830: nat66 - Error in port translation rules.

PR: https://github.com/vyos/vyos-1x/pull/1666

Nov 19 2022, 3:55 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4830: nat66 - Error in port translation rules from Open to Confirmed.
Nov 19 2022, 3:05 PM · VyOS 1.4 Sagitta
n.fort created T4830: nat66 - Error in port translation rules.
Nov 19 2022, 3:00 PM · VyOS 1.4 Sagitta

Nov 10 2022

n.fort edited projects for T4153: Monitor bandwidth-test initiate not working, added: VyOS 1.3 Equuleus (1.3.3); removed VyOS 1.3 Equuleus (1.3.2).
Nov 10 2022, 2:19 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort edited projects for T4153: Monitor bandwidth-test initiate not working, added: VyOS 1.3 Equuleus (1.3.2); removed VyOS 1.3 Equuleus (1.3.0).
Nov 10 2022, 12:34 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort reopened T4153: Monitor bandwidth-test initiate not working as "Backport candidate".
Nov 10 2022, 12:30 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Nov 3 2022

n.fort added a comment to T4797: External address/network lists for firewall (Local and remote).

From my point of fiew, looks interesting.
The proposed structure and behaviour doesn't look that different than what is currently in geoip filtering: external URLs with data, and sync from time to time.

Nov 3 2022, 5:29 PM · VyOS 1.4 Sagitta

Nov 1 2022

n.fort added a comment to T4788: Factory-reset/default command .

Maybe a simplified and interactive cli, as when adding new image? So user can decide what to do with other images and containers.

Nov 1 2022, 1:29 PM · VyOS 1.4 Sagitta

Oct 28 2022

n.fort added a comment to T4780: Firewall - Add interface group.

PR: https://github.com/vyos/vyos-1x/pull/1626

Oct 28 2022, 7:46 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4780: Firewall - Add interface group from Open to In progress.
Oct 28 2022, 6:18 PM · VyOS 1.4 Sagitta
n.fort created T4780: Firewall - Add interface group.
Oct 28 2022, 6:17 PM · VyOS 1.4 Sagitta

Oct 19 2022

n.fort created T4759: domain-group on policy route not working.
Oct 19 2022, 11:24 AM · VyOS 1.4 Sagitta

Oct 18 2022

n.fort changed the status of T2408: DHCP Relay upstream and downstream interfaces from Open to In progress.
Oct 18 2022, 12:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort claimed T2408: DHCP Relay upstream and downstream interfaces.
Oct 18 2022, 12:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
n.fort added a comment to T2408: DHCP Relay upstream and downstream interfaces.

PR: https://github.com/vyos/vyos-1x/pull/1603

Oct 18 2022, 12:00 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Oct 12 2022

n.fort added a comment to T2408: DHCP Relay upstream and downstream interfaces.

+1 for @Viacheslav proposal.

Oct 12 2022, 9:24 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Oct 4 2022

n.fort changed the status of T4706: NAT and NAT66 issues from Confirmed to Needs testing.
Oct 4 2022, 5:53 PM · VyOS 1.4 Sagitta
n.fort closed T4700: Firewall - Add interface match criteria as Resolved.
Oct 4 2022, 5:52 PM · VyOS 1.4 Sagitta
n.fort closed T4699: Firewall - Add jump action - Add return action as Resolved.
Oct 4 2022, 12:05 PM · VyOS 1.4 Sagitta
n.fort closed T4651: Firewall - Add options to match packet size as Resolved.
Oct 4 2022, 12:05 PM · VyOS 1.4 Sagitta