Page MenuHomeVyOS Platform
Feed Search

Nov 2 2020

liljenstolpe added a comment to T3021: We shouldn't be using pool.ntp.org.

The application process is pretty simple, you need to provide a few pieces of information:

Nov 2 2020, 11:50 PM · VyOS 1.3 Equuleus (1.3.0)
liljenstolpe closed T3024: DHCPv6 PD configuration doesn't really render an expected behavior as Resolved.

PBKS

Nov 2 2020, 11:02 PM · VyOS 1.3 Equuleus (1.3.0)
liljenstolpe added a comment to T3024: DHCPv6 PD configuration doesn't really render an expected behavior.

I can confirm that this is working.

Nov 2 2020, 11:02 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3038: Supporting AZERTY keyboards .

It turns out that you know that a separate command is set to execute this layout setting, but I think the setting of your command is unreasonable because the user will mistakenly think that the following command can be used to set a specific layout:

Nov 2 2020, 7:51 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3038: Supporting AZERTY keyboards .

PR https://github.com/vyos/vyos-1x/pull/590
I hope it will be helpful for many people from France. As for me it better solution then glue stickers with QWERTY keys =)

Nov 2 2020, 7:35 PM · VyOS 1.3 Equuleus (1.3.0)
phillipmcmahon added a comment to T1276: dhcp relay + VLAN fails.

@Viacheslav vlans are working fine.

Nov 2 2020, 6:58 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, test
Viacheslav added a comment to T1276: dhcp relay + VLAN fails.

@phillipmcmahon Try to check if vlan works correctly without DHCP?
I met several nuances associated with vlans on ESXi.

Nov 2 2020, 6:33 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, test
phillipmcmahon added a comment to T1276: dhcp relay + VLAN fails.

I just tried replacing my vyos vlan DHCP scopes with a relay and passing back to my Windows 2019 server that is already set up and working as a DHCP server for my main LAN.

Nov 2 2020, 6:06 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta, test
zsdc changed the status of T3039: Resize a root partition and filesystem automatically during deployment in virtual environments from Open to In progress.
Nov 2 2020, 12:57 PM · VyOS 1.3 Equuleus (1.3.6)
zsdc created T3039: Resize a root partition and filesystem automatically during deployment in virtual environments.
Nov 2 2020, 12:56 PM · VyOS 1.3 Equuleus (1.3.6)
jack9603301 added a comment to T3038: Supporting AZERTY keyboards .

The support of keyboard layout has always been a relatively complex and user experience issue. I am in China, so I can only say that the country where I am is usually using American keyboard, while other countries such as Korea, Japan and so on, their keyboard layout is.... Keyboard layout should not be a major obstacle in most countries

Nov 2 2020, 12:02 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3038: Supporting AZERTY keyboards .

Ok, let's review the situation when you install VyOS on bare metal and you have an only AZERTY keyboard. You press key A but in console, you see Q, you press Z on the console you see W.
Debian way, install console-data from https://packages.debian.org/sid/console-data and run sudo loadkeys fr

Nov 2 2020, 11:58 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3038: Supporting AZERTY keyboards .

I think the default keyboard layout should be based on the American layout, and allow switching between custom keyboard layouts (in Debian, it should be possible to use dpkg-reconfigure for configuration)

Nov 2 2020, 11:50 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3038: Supporting AZERTY keyboards .

To add the possibility to switch from default QWERTY keyboard type to AZERTY.

Screenshot 2020-11-02 at 14.42.07.png (452×1 px, 169 KB)

Nov 2 2020, 11:44 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3038: Supporting AZERTY keyboards .

I don't understand. Do you mean that users should be allowed to set keyboard layout?

Nov 2 2020, 11:39 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) updated the task description for T3038: Supporting AZERTY keyboards .
Nov 2 2020, 11:37 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) changed the status of T3038: Supporting AZERTY keyboards from Open to In progress.
Nov 2 2020, 11:37 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T3038: Supporting AZERTY keyboards .
Nov 2 2020, 11:37 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2387: Create XML scheme for [conf_mode] BGP .

PR https://github.com/vyos/vyos-1x/pull/589

Nov 2 2020, 10:59 AM · VyOS 1.3 Equuleus (1.3.0)
njh added a comment to T1229: Add support for unencrypted L2TPv2 client connections.

Not had a lot of time recently, but I have kind of been waiting for the configuration nodes to be ported to Python, so that this can be written in the new / modern way.

Nov 2 2020, 12:42 AM · VyOS Rolling
njh updated the task description for T1229: Add support for unencrypted L2TPv2 client connections.
Nov 2 2020, 12:32 AM · VyOS Rolling

Nov 1 2020

ropeguru added a comment to T1229: Add support for unencrypted L2TPv2 client connections.

Another willing to test.

Nov 1 2020, 7:35 PM · VyOS Rolling
Viacheslav created T3037: Bgp afi ipv6-unicast capability dynamic bug.
Nov 1 2020, 3:15 PM · VyOS 1.2 Crux (VyOS 1.2.7)
Viacheslav added a comment to T1187: Command show log vpn display wrong information .

We need some expressions like

Nov 1 2020, 1:49 PM · VyOS-1.2.0-GA
Viacheslav closed T2193: Display disabled VRRP instances in a `show vrrp` output as Resolved.

I see correct state "disabled"

Nov 1 2020, 1:31 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3036: OpenVPN remote-address does not accept IPv6 address, a subtask of T2994: Migrate OpenVPN interfaces to get_config_dict() syntax, as Resolved.
Nov 1 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3036: OpenVPN remote-address does not accept IPv6 address as Resolved.
Nov 1 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2639: sort output of show vpn ipsec sa .
Nov 1 2020, 12:24 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T3036: OpenVPN remote-address does not accept IPv6 address from Open to In progress.
Nov 1 2020, 9:46 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T3036: OpenVPN remote-address does not accept IPv6 address, a subtask of T2994: Migrate OpenVPN interfaces to get_config_dict() syntax, from Open to In progress.
Nov 1 2020, 9:46 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3036: OpenVPN remote-address does not accept IPv6 address.
Nov 1 2020, 9:45 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3032: Ability to "set table" in the policy route-map as Resolved.
Nov 1 2020, 8:36 AM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po changed the status of T3024: DHCPv6 PD configuration doesn't really render an expected behavior from Open to Needs testing.
Nov 1 2020, 7:19 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 31 2020

GregGreg added a comment to T2567: accel-ppp eats all memory with a small sstp config.

Hi guys, I decided to revive this thread because it seems better than to create a new one, the subject seems to be the same. Im running a Vyos in a R420 with 16gb of ram (no errors in my tests while preparing the machine for the Vyos) and 2 processors, and after some 30 days running flawlessly, it started failing partially. It started working fine again after a reboot. After some 5-7 days the same problem reoccurred. At the first time I managed to see some errors in its screens and they said basically:

Oct 31 2020, 11:55 PM · VyOS 1.3 Equuleus (1.3.9)
c-po added a comment to T3024: DHCPv6 PD configuration doesn't really render an expected behavior.

which exact VyOS version are you using? Delegating from one interface to many should be doable and can be configured on the latest rolling version.

Oct 31 2020, 1:37 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin triaged T3035: Allow IPv4 over IPv6 IPsec and vice versa as Normal priority.
Oct 31 2020, 10:54 AM · VyOS 1.2 Crux (VyOS 1.2.7)
c-po claimed T3024: DHCPv6 PD configuration doesn't really render an expected behavior.
Oct 31 2020, 7:39 AM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T3034: Add WiFi WPA 3 support.
Oct 31 2020, 7:37 AM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T3034: Add WiFi WPA 3 support.
Oct 31 2020, 7:37 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3034: Add WiFi WPA 3 support.
Oct 31 2020, 7:36 AM · VyOS 1.3 Equuleus (1.3.0)
c-po renamed T3033: Update Linux Kernel to v4.19.154 from Update Linux Kernel to v4.19.153 to Update Linux Kernel to v4.19.154.
Oct 31 2020, 7:10 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 30 2020

c-po changed the status of T2994: Migrate OpenVPN interfaces to get_config_dict() syntax, a subtask of T2653: "set interfaces" Python handler code improvements - next iteration, from In progress to Needs testing.
Oct 30 2020, 8:14 PM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T2994: Migrate OpenVPN interfaces to get_config_dict() syntax from In progress to Needs testing.
Oct 30 2020, 8:14 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit, a subtask of T1579: Rewrite all interface types in new XML/Python style, as Resolved.
Oct 30 2020, 6:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit as Resolved.
Oct 30 2020, 6:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit, a subtask of T2994: Migrate OpenVPN interfaces to get_config_dict() syntax, as Resolved.
Oct 30 2020, 6:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2969: OpenVPN: command_set on interface is not applied, if interface doesn't come up in commit.

Closing in favor of T2994 - please try tomorrows rolling release. If there are new bugs (which might always happen on rewrites) please file a new Bug report and I try to fix them ASAP.

Oct 30 2020, 6:03 PM · VyOS 1.3 Equuleus (1.3.0)
c-po merged T2950: DHCP server cannot start on live CD into T2958: DHCP server doesn't work from a live CD.
Oct 30 2020, 5:53 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
c-po merged task T2950: DHCP server cannot start on live CD into T2958: DHCP server doesn't work from a live CD.
Oct 30 2020, 5:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po assigned T3021: We shouldn't be using pool.ntp.org to syncer.
Oct 30 2020, 5:52 PM · VyOS 1.3 Equuleus (1.3.0)
c-po renamed T3005: Intel: update out-of-tree drivers, i40e driver warning from i40e driver warning to Intel: update out-of-tree drivers, i40e driver warning.
Oct 30 2020, 4:04 PM · VyOS 1.3 Equuleus (1.3.0)
rizkidtn added a comment to T1289: route-map set route-type blackhole.

Like this?

vyos@r4-roll# set policy route-map FJFFJJF rule 10 set ip-next-hop 
Possible completions:
   <x.x.x.x>    IP address

where x.x.x.x route to blackhole?

Oct 30 2020, 2:05 PM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T1289: route-map set route-type blackhole.

Like this?

Oct 30 2020, 11:07 AM · VyOS 1.3 Equuleus (1.3.5)
rizkidtn added a comment to T1289: route-map set route-type blackhole.

The usual procedure is to create a route-map that sets the nexthop to a blackholed address if the advertisment has a specific community string set.
So when a customer advertises an address (rather a /32 network) to you with that string set, it automatically ends up blackholed.

Do you just want a shortcut for that, or you are having issues with community string-based approach?

Oct 30 2020, 10:59 AM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T1518: Removing full OSPF protocol is not possible.

This logic does not allow for the complete removal of the protocol.
https://github.com/vyos/vyatta-cfg-quagga/blob/32cbb1e5059c6c27449b7013f790aff1c50a9831/templates/protocols/ospf/passive-interface/node.def#L29-L35

Oct 30 2020, 10:53 AM · VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T2258: VRF route leaking from BGP.

@Azayaka do you mean import routes to a specific table? T3032
Can you check it with the next rolling release?

Oct 30 2020, 10:28 AM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T1289: route-map set route-type blackhole.

@rizkidtn Update, please your request. Is the community works for you for blackholing?

Oct 30 2020, 10:24 AM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav closed T2790: Add ability to set ipv6 protocol route-map for OSPFv3 as Resolved.
Oct 30 2020, 10:07 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2424: Ability to choose the direction of Mirroring.

I found some interesting information, it seems that inbound/outbound port mirroring can be achieved

Oct 30 2020, 9:51 AM · VyOS 1.3 Equuleus (1.3.4)
c-po closed T3033: Update Linux Kernel to v4.19.154 as Resolved.
Oct 30 2020, 9:15 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3033: Update Linux Kernel to v4.19.154.
Oct 30 2020, 9:15 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3032: Ability to "set table" in the policy route-map from Open to Needs testing.
Oct 30 2020, 9:06 AM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a comment to T3032: Ability to "set table" in the policy route-map.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/56

Oct 30 2020, 9:04 AM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav created T3032: Ability to "set table" in the policy route-map.
Oct 30 2020, 7:29 AM · VyOS 1.2 Crux (VyOS 1.2.8)

Oct 29 2020

c-po added a comment to T2587: Cannot enable the interface when the MTU is set to less than 1280.

set interfaces ethernet eth1 ipv6 address no-default-link-local is the right command, yes

Oct 29 2020, 4:27 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2587: Cannot enable the interface when the MTU is set to less than 1280.

Bug ;) will be fixed soon

Oct 29 2020, 4:26 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3030: Support ERSPAN Tunnel Protocol.

Yes, but iptables tee seems to support packet copy of various rules

Oct 29 2020, 4:26 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3030: Support ERSPAN Tunnel Protocol.

Do you mean that?

set interfaces ethernet eth1 mirror
Oct 29 2020, 4:15 PM · VyOS 1.4 Sagitta
jack9603301 triaged T3030: Support ERSPAN Tunnel Protocol as Wishlist priority.
Oct 29 2020, 3:58 PM · VyOS 1.4 Sagitta
jack9603301 created T3030: Support ERSPAN Tunnel Protocol.
Oct 29 2020, 3:57 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2387: Create XML scheme for [conf_mode] BGP .
  1. Not all interfaces can be used as "update-source"

Missed "vti | dum | lo" etc.
https://github.com/vyos/vyos-1x/blob/current/interface-definitions/protocols-bgp.xml.in#L639

Oct 29 2020, 2:49 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro claimed T2847: System freezes after attempting commit with insufficient memory.
Oct 29 2020, 1:43 PM · VyOS 1.3 Equuleus
Viacheslav added a comment to T2850: Add BGP template for FRR.

PR https://github.com/vyos/vyos-1x/pull/587
Fix the FRR template for new bgp implementation.

Oct 29 2020, 12:51 PM · VyOS 1.3 Equuleus (1.3.0)
cjeanneret added a comment to T3029: Generated NGINX configuration is wrong for the redirection (http -> https).

Pull request is up: https://github.com/vyos/vyos-1x/pull/586

Oct 29 2020, 11:06 AM · VyOS 1.3 Equuleus (1.3.0)
cjeanneret claimed T3029: Generated NGINX configuration is wrong for the redirection (http -> https).
Oct 29 2020, 11:00 AM · VyOS 1.3 Equuleus (1.3.0)
cjeanneret created T3029: Generated NGINX configuration is wrong for the redirection (http -> https).
Oct 29 2020, 10:59 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2587: Cannot enable the interface when the MTU is set to less than 1280.

How to do it?

Oct 29 2020, 6:54 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 28 2020

zsdc changed the status of T3028: Create a default user when metadata is not available (for Cloud-init builds) from In progress to Needs testing.
Oct 28 2020, 10:40 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2587: Cannot enable the interface when the MTU is set to less than 1280.

You actually can when setting ipv6 disable-link-local addressing on the particular interface.

Oct 28 2020, 8:38 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2995: Enhancements/bugfixes for vyos_dict_search() as Resolved.
Oct 28 2020, 6:25 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T2995: Enhancements/bugfixes for vyos_dict_search().
Oct 28 2020, 6:25 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2968: Add support for Intel Atom C2000 series QAT as Resolved.
Oct 28 2020, 6:21 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2630: Allow Interface MTU over 9000 as Resolved.
Oct 28 2020, 6:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2630: Allow Interface MTU over 9000.
vyos@vyos# set interfaces ethernet eth2 mtu 16000
[edit]
vyos@vyos# commit
[ interfaces ethernet eth2 ]
Interface MTU too high, maximum supported MTU is 9000!
Oct 28 2020, 6:05 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2630: Allow Interface MTU over 9000.
Oct 28 2020, 5:49 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3027: Unable to update system Signature check FAILED as Resolved.
Oct 28 2020, 4:28 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T3027: Unable to update system Signature check FAILED.

The root cause for this is the sha256 checksum file itself. It contains the hash and the filename. When running sha256 --check during the upgrade it expects the "real" filename when calculating and verifying the hash. The real filename differs when using the vyos-rolling-latest.iso symlink on the webserver as it will tell the running VyOS installation a different filename and the validation fails. This is now fixed by not depending on the filename when verifying the has. We simply calculate the hash of the downloaded file and compare it to the hash we saved inside the checksum file and totally ignore the filename itself.

Oct 28 2020, 4:25 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T3027: Unable to update system Signature check FAILED.
Oct 28 2020, 4:22 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T2631: l2tp, sstp, pptp add option to disable radius accounting as Resolved.
Oct 28 2020, 4:00 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav updated the task description for T3027: Unable to update system Signature check FAILED.
Oct 28 2020, 3:55 PM · VyOS 1.3 Equuleus (1.3.0)
klase added a comment to T2631: l2tp, sstp, pptp add option to disable radius accounting.

I have tested both SSTP and L2TP and it works as expected - thank you for this addition!

Oct 28 2020, 2:12 PM · VyOS 1.3 Equuleus (1.3.0)
zsdc changed the status of T3028: Create a default user when metadata is not available (for Cloud-init builds) from Open to In progress.
Oct 28 2020, 2:08 PM · VyOS 1.3 Equuleus (1.3.0)
zsdc created T3028: Create a default user when metadata is not available (for Cloud-init builds).
Oct 28 2020, 2:08 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3027: Unable to update system Signature check FAILED from Open to Confirmed.
Oct 28 2020, 1:01 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav created T3027: Unable to update system Signature check FAILED.
Oct 28 2020, 1:00 PM · VyOS 1.3 Equuleus (1.3.0)

Oct 27 2020

Cheeze_It added a comment to T915: MPLS Support.

Put in a PR to separate hello/hold timers for IPv4 and IPv6. Added IPv6 timers.

Oct 27 2020, 11:54 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
klase added a comment to T2631: l2tp, sstp, pptp add option to disable radius accounting.

I will check it tomorrow and verify operation. Thank you!

Oct 27 2020, 7:55 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2587: Cannot enable the interface when the MTU is set to less than 1280 as Resolved.

Fixed

vyos@r4-roll# run show version
Oct 27 2020, 7:28 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2631: l2tp, sstp, pptp add option to disable radius accounting.

@klase Check these options in the next rolling release (after 20201027)

Oct 27 2020, 7:15 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T2582: Script daemon to offload processing during commit as Resolved.
Oct 27 2020, 6:25 PM · VyOS 1.3 Equuleus (1.3.0)