@syncer @higebu Yes, stock quagga is missing many things that ours has. We have no choice other than to integrate the patches by hand.
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Jun 6 2018
Jun 5 2018
Jun 4 2018
It was just an error in the help. Someone probably copied it from somewhere else (e.g. the address option of firewall rules) and forgot to edit.
Interesting. Perhaps the config format has changed in newer versions? What do the docs say?
Jun 3 2018
After installing pppd from T677, it seems to work again.
Found the issue. First, renaming is hadled in a pre-up script that was in the ppp package rather than vyatta-ravpn, so it is not included in 1.2.0.
State files are updated properly after keepalived upgrade, no need for this workaround anymore.
When we get to it, we should also get rid of built-in support for a handful of north american wireless providers (which is likely very out of date by now) and add support for custom connection strings etc.
The root cause was here:
Jun 2 2018
Completely dead:
Just verified that install_routes = no has no adverse effect on L2TP/IPsec.
Downgraded packages are in the latest nightly build.
Correction: 5.5, not 5.2.
No amount of messing up with the config in 5.6 fixed this, but when I downgraded strongswan to 5.2 (from stretch-security), it just worked. I'm downgrading it in the repositories.
Jun 1 2018
May 31 2018
Should be working now in the code rewritten for pdns, and dnsmasq is gone so issues specific to it will not be a problem anymore.
Should be working now that we've added syslog forwarding to journald.
@aopdal I agree it would be nice to have RFC compatibility, but when it was introduced, it relied upon a kernel hack that never made it into the mainline. If mainline keepalived and kernel do not support it, and we cannot add support for it that can be merged into the mainline, then it's more trouble than it's worth I think.
Cross-vendor VRRP is more of a hypothetical situation than a common setup.
The fault was in XorpConfigParser, whose "set" function behaves as if all nodes were multi nodes, so it was adding a value where none was needed (that's on top of the fact that it didn't properly check if it exists).
The new task should be to make 1.2.0-rc1. :)
I've setup a minimal WLB config and it worked for me.
Serial is, sadly, a hard problem, especially on machines that need it most, i.e. those without any graphical console. Since it's impossible to automatically find out the correct port and speed/parity settings, it will always need some manual configuration I suppose.
I have reservations about actually using it though. The whole point of the vyos-1x package is to stop multiplying submodules and consolidate everything instead. ;)
May 30 2018
Without the new sysctl options:
intfwatchd is no more (T669), so if it had any other memory leaks, they are also not a problem now.
May 29 2018
Even simpler way to reproduce:
May 28 2018
May 25 2018
Inserting FQDN seems reasonable, but we need to think carefully when FQDN should come from, and if we use the "system domain-name" option, what should we do if it's not present.
May 24 2018
Needs to be re-tested in recent images.
Needs to be tested in 1.2.0