Page MenuHomeVyOS Platform

talmakion (Andrew T)
User

Projects

User does not belong to any projects.

User Details

User Since
Jul 18 2020, 12:39 PM (224 w, 1 d)

Recent Activity

Mon, Oct 21

talmakion added a comment to T6794: Doco tweak: Update-check URLs.

Created PR: https://github.com/vyos/vyos-documentation/pull/1563

Mon, Oct 21, 5:25 AM · VyOS 1.5 Circinus
talmakion created T6794: Doco tweak: Update-check URLs.
Mon, Oct 21, 5:12 AM · VyOS 1.5 Circinus

Tue, Oct 8

talmakion created T6767: 'add system image latest vrf <name>' ignores provided VRF for version check.
Tue, Oct 8, 8:25 AM · VyOS Rolling, Restricted Project

Aug 3 2024

talmakion added a comment to T6430: Allow larger table ids in policy route.

New PR created for matching functionality in policy local-route: https://github.com/vyos/vyos-1x/pull/3938

Aug 3 2024, 10:05 AM · VyOS Rolling

Aug 1 2024

talmakion added a comment to T6430: Allow larger table ids in policy route.

@bernhardschmidt my PR for this made it into current rolling, which rather than just widening the table range, allows using 'set vrf' instead of 'set table' to policy route directly to VRFs with out-of-range RT IDs.

Aug 1 2024, 1:53 PM · VyOS Rolling
talmakion changed the status of T6157: Can not create two GRE tunnels to the same DST but from different SRC addresses from In progress to Needs testing.
Aug 1 2024, 1:46 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)

Jul 30 2024

talmakion added a comment to T6622: Add support for non-decimal numbers to the numeric validator.

My opinion is largely based on my recent use-case for this, the GRE-match ethertype fields. I remember grumbling a couple of times about needing to convert bases to decimal in the past, but it's been too long to remember specifically what I was configuring at the time.

Jul 30 2024, 11:34 AM · VyOS Rolling

Jul 5 2024

talmakion created T6558: VRF removals are not validated against VRF usage.
Jul 5 2024, 9:45 AM · VyOS Rolling, Restricted Project

Jun 29 2024

talmakion added a comment to T6430: Allow larger table ids in policy route.

New PR that will allow targeting VRFs directly by name, to reach higher table IDs: https://github.com/vyos/vyos-1x/pull/3740

Jun 29 2024, 5:43 AM · VyOS Rolling

Jun 21 2024

talmakion added a comment to T3334: Changing serial settings from a serial console ends session abruptly.

Created PR https://github.com/vyos/vyos-1x/pull/3698

Jun 21 2024, 8:53 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)

Jun 20 2024

talmakion added a comment to T6482: LLDP shows description instead of remote port.

Just some quick testing with 2 VyOS instances connected via 2 straight ethernet into a virtual switch. eth0 on the remote has been given a description of "ETHZERO".

Jun 20 2024, 12:29 PM · Restricted Project, VyOS Rolling

Jun 18 2024

talmakion added a comment to T5069: bgp large-community-list regex validation incomplete.

Looking at it, T5816 already attempted to fix this and is probably better for users - doesn't give the full flexibility of regex and doesn't handle '_' at all, but does have a strict format expectation.

Jun 18 2024, 2:29 PM · VyOS Rolling, Restricted Project
talmakion added a comment to T5069: bgp large-community-list regex validation incomplete.

Looking at the code in FRR, it just expands '_' to the full match '(^|[,{}()]|$)' and sends that whole match off to regexec().

Jun 18 2024, 2:13 PM · VyOS Rolling, Restricted Project
talmakion closed T6456: "monitor traffic" incorrectly consumes some arguments as Resolved.
Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6456: "monitor traffic" incorrectly consumes some arguments.

All working nicely in current rolling.

Jun 18 2024, 11:18 AM · VyOS 1.5 Circinus
talmakion added a comment to T6045: show more detail when using lldp.

@Thunderstorm looks like this one made it to the current rolling, if you're able to try it out?

Jun 18 2024, 10:39 AM · VyOS Rolling

Jun 15 2024

talmakion added a comment to T4026: PKI: generate pki certificate sign <ca-name> is not working.

I've created a PR for this: https://github.com/vyos/vyos-1x/pull/3655

Jun 15 2024, 4:31 PM · VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T5514: Improve error handling when/if config.boot is deleted or missing .

I've created a PR with a very simple fix: https://github.com/vyos/vyos-1x/pull/3654

Jun 15 2024, 3:39 PM · VyOS 1.4 Sagitta (1.4.1)

Jun 14 2024

talmakion added a comment to T6430: Allow larger table ids in policy route.

While I think the mismatch between PBR-addressable RTs and VRF RTs is a bit odd, the PR's been rejected and could be addressed differently in any case. In the meantime, VRFs with RTs 100-200 are targetable by PBR.

Jun 14 2024, 4:38 AM · VyOS Rolling

Jun 13 2024

talmakion added a comment to T6482: LLDP shows description instead of remote port.

I think this one would be fixed by my PR for https://vyos.dev/T6045

Jun 13 2024, 10:45 AM · Restricted Project, VyOS Rolling
talmakion added a comment to T6479: PBR into VXLAN VRF does not work, encapsulation loop .

@bernhardschmidt Are you able to share the relevant pieces of your VXLAN and VRF config as well?

Jun 13 2024, 8:32 AM · Restricted Project, VyOS Rolling

Jun 12 2024

fatred awarded T6403: nat64 input validation required a Orange Medal token.
Jun 12 2024, 7:46 PM · VyOS 1.5 Circinus

Jun 11 2024

talmakion added a comment to T6157: Can not create two GRE tunnels to the same DST but from different SRC addresses.

@a.apostoliuk this one should be resolved in the current rolling release, if you're able to check it out?

Jun 11 2024, 2:07 PM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T4694: Allow VyOS Firewall to Match Outbound IPSec Traffic.

I have https://github.com/vyos/vyos-1x/pull/3616 and https://github.com/vyos/vyos-1x/pull/3637 as works in progress.

Jun 11 2024, 11:32 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

Jun 9 2024

talmakion added a comment to T4667: DMVPN IPSec allows cleartext GRE over the internet when reconnecting.

I may have figured something out in https://vyos.dev/T4694.

Jun 9 2024, 9:49 AM · VyOS Rolling, Restricted Project
talmakion added a comment to T4694: Allow VyOS Firewall to Match Outbound IPSec Traffic.

It looks like outbound encap can be matched via routing expressions:

Jun 9 2024, 9:39 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
talmakion added a comment to T6456: "monitor traffic" incorrectly consumes some arguments.

PR created: https://github.com/vyos/vyos-1x/pull/3601

Jun 9 2024, 2:07 AM · VyOS 1.5 Circinus

Jun 8 2024

talmakion created T6456: "monitor traffic" incorrectly consumes some arguments.
Jun 8 2024, 3:23 PM · VyOS 1.5 Circinus

Jun 6 2024

talmakion added a comment to T6403: nat64 input validation required.

@fatred fix should be in the latest rolling, if you'd like to give it a go?

Jun 6 2024, 11:29 PM · VyOS 1.5 Circinus
talmakion added a comment to T6045: show more detail when using lldp.

I've created a PR for this one: https://github.com/vyos/vyos-1x/pull/3590 covering both pieces - for Remote Port, if the PortID type is ifname, we use the PortID before falling through to Descr and so on. The detail view side of things is a straightforward call to lldpcli in this PR but could be improved.

Jun 6 2024, 11:29 AM · VyOS Rolling
talmakion added a comment to T6045: show more detail when using lldp.

I'll see if I can whip up a patch for the detail commands.

Jun 6 2024, 8:32 AM · VyOS Rolling

Jun 5 2024

talmakion added a comment to T6431: monitor traceroute broken VRF support.

PR created: https://github.com/vyos/vyos-1x/pull/3582

Jun 5 2024, 7:02 AM · VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T6430: Allow larger table ids in policy route.

I've created a quick PR for this: https://github.com/vyos/vyos-1x/pull/3581

Jun 5 2024, 7:02 AM · VyOS Rolling

Jun 3 2024

talmakion added a comment to T6401: Attempts to delete vlan-to-vni option causes an unhandled exception.

This is without my patch applied, confirming both the problem and a workaround:

Jun 3 2024, 1:22 AM · VyOS 1.4 Sagitta (1.4.1)

Jun 1 2024

talmakion added a comment to T6401: Attempts to delete vlan-to-vni option causes an unhandled exception.

On testing, it looks like vyos.utils.network.get_vxlan_vni_filter() doesn't know how to handle when there are no vni filters installed.

Jun 1 2024, 12:39 PM · VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T6403: nat64 input validation required.

I've created a quick PR to give sane feedback from the validator: https://github.com/vyos/vyos-1x/pull/3572

Jun 1 2024, 10:56 AM · VyOS 1.5 Circinus

May 31 2024

talmakion added a comment to T6157: Can not create two GRE tunnels to the same DST but from different SRC addresses.

I've created a PR for this that fixed a mistake with my original patch: https://github.com/vyos/vyos-1x/pull/3570

May 31 2024, 11:58 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)

May 25 2024

talmakion added a comment to T2942: traffic-policy does not classify by VLAN.

Is this meant to be possible this way?

May 25 2024, 2:47 PM · Restricted Project, VyOS 1.5 Circinus
talmakion attached a referenced file: F4328045: vyatta-cfg-separate-completer.diff.
May 25 2024, 10:21 AM · VyOS 1.4 Sagitta (1.4.0-GA)
talmakion attached a referenced file: F4328046: vyatta-cfg-combined-completer.diff.
May 25 2024, 10:21 AM · VyOS 1.4 Sagitta (1.4.0-GA)
talmakion attached a referenced file: Unknown Object (File).
May 25 2024, 10:21 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T6157: Can not create two GRE tunnels to the same DST but from different SRC addresses.

As far as I can tell the test will always error if the remote matches and neither source-interface and source-address are configured differently, including the case where they're both blank (source-interface == None on both tunnels triggers this particular case).

May 25 2024, 9:52 AM · Restricted Project, VyOS 1.4 Sagitta (1.4.1)
talmakion added a comment to T6383: Incorrect completion for rollback-soft.

Only recently moved from 1.3 to 1.5 and noticed rollback-soft immediately (great stuff), the completion message was annoying me too.

May 25 2024, 5:45 AM · VyOS 1.4 Sagitta (1.4.0-GA)

May 24 2024

talmakion added a comment to T5049: Configure GRE over IPsec tunnel when source port is in VRF, OSPF causes GRE tunnel broken..

I've just been picking at this one tonight because it's close to some areas of interest (DMVPNs in VRFs), so hopefully this input is useful and appropriate:

May 24 2024, 5:40 PM · Restricted Project, VyOS Rolling