Page MenuHomeVyOS Platform
Feed Search

Jun 7 2021

Viacheslav moved T3289: No description for node "service" conf-mode from Open to Finished on the VyOS 1.4 Sagitta board.
Jun 7 2021, 11:15 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.4 Sagitta
Viacheslav closed T3455: system users can not be added in "edit" as Resolved.
Jun 7 2021, 11:12 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3461: OpenConnect Server redundancy check from Unknown Status to Resolved.
Jun 7 2021, 11:10 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3581: Incomplete command `show ipv6 ospfv3 linkstate` as Resolved.
Jun 7 2021, 11:01 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav created T3606: SNMP unknown notification OID.
Jun 7 2021, 10:37 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T2620: Add ipsec peer-name to log to simplifies grepping and troubleshooting.

PR https://github.com/vyos/vyos-build/pull/169

Jun  8 00:59:20 r1-roll ipsec_starter[2373]: charon (2374) started after 400 ms
Jun  8 00:59:20 r1-roll charon: 05[CFG] received stroke: add connection 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 05[CFG] added configuration 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 07[CFG] received stroke: initiate 'peer-192.0.2.2-tunnel-0'
Jun  8 00:59:20 r1-roll charon: 07[IKE] <peer-192.0.2.2-tunnel-0|1> initiating Main Mode IKE_SA peer-192.0.2.2-tunnel-0[1] to 192.0.2.2
Jun  8 00:59:20 r1-roll charon: 07[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ SA V V V V V ]
Jun  8 00:59:20 r1-roll charon: 07[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (180 bytes)
Jun  8 00:59:20 r1-roll charon: 09[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (160 bytes)
Jun  8 00:59:20 r1-roll charon: 09[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ SA V V V V ]
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received XAuth vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received DPD vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received FRAGMENTATION vendor ID
Jun  8 00:59:20 r1-roll charon: 09[IKE] <peer-192.0.2.2-tunnel-0|1> received NAT-T (RFC 3947) vendor ID
Jun  8 00:59:20 r1-roll charon: 09[CFG] <peer-192.0.2.2-tunnel-0|1> selected proposal: IKE:AES_CBC_256/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_1024
Jun  8 00:59:20 r1-roll charon: 09[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ KE No NAT-D NAT-D ]
Jun  8 00:59:20 r1-roll charon: 09[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (244 bytes)
Jun  8 00:59:20 r1-roll charon: 10[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (244 bytes)
Jun  8 00:59:20 r1-roll charon: 10[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ KE No NAT-D NAT-D ]
Jun  8 00:59:20 r1-roll charon: 10[ENC] <peer-192.0.2.2-tunnel-0|1> generating ID_PROT request 0 [ ID HASH N(INITIAL_CONTACT) ]
Jun  8 00:59:20 r1-roll charon: 10[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (108 bytes)
Jun  8 00:59:20 r1-roll charon: 11[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (76 bytes)
Jun  8 00:59:20 r1-roll charon: 11[ENC] <peer-192.0.2.2-tunnel-0|1> parsed ID_PROT response 0 [ ID HASH ]
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> IKE_SA peer-192.0.2.2-tunnel-0[1] established between 192.0.2.1[192.0.2.1]...192.0.2.2[192.0.2.2]
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> scheduling rekeying in 2720s
Jun  8 00:59:20 r1-roll charon: 11[IKE] <peer-192.0.2.2-tunnel-0|1> maximum IKE_SA lifetime 3260s
Jun  8 00:59:20 r1-roll charon: 11[ENC] <peer-192.0.2.2-tunnel-0|1> generating QUICK_MODE request 3783917425 [ HASH SA No KE ID ID ]
Jun  8 00:59:20 r1-roll charon: 11[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (316 bytes)
Jun  8 00:59:20 r1-roll charon: 12[NET] <peer-192.0.2.2-tunnel-0|1> received packet: from 192.0.2.2[500] to 192.0.2.1[500] (316 bytes)
Jun  8 00:59:20 r1-roll charon: 12[ENC] <peer-192.0.2.2-tunnel-0|1> parsed QUICK_MODE response 3783917425 [ HASH SA No KE ID ID ]
Jun  8 00:59:20 r1-roll charon: 12[CFG] <peer-192.0.2.2-tunnel-0|1> selected proposal: ESP:AES_CBC_256/HMAC_SHA1_96/MODP_1024/NO_EXT_SEQ
Jun  8 00:59:20 r1-roll charon: 12[IKE] <peer-192.0.2.2-tunnel-0|1> CHILD_SA peer-192.0.2.2-tunnel-0{1} established with SPIs c4d940b7_i c9a69e83_o and TS 10.1.0.0/24 === 10.2.3.0/24
Jun  8 00:59:20 r1-roll charon: 12[ENC] <peer-192.0.2.2-tunnel-0|1> generating QUICK_MODE request 3783917425 [ HASH ]
Jun  8 00:59:20 r1-roll charon: 12[NET] <peer-192.0.2.2-tunnel-0|1> sending packet: from 192.0.2.1[500] to 192.0.2.2[500] (60 bytes)
Jun 7 2021, 10:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a project to T2620: Add ipsec peer-name to log to simplifies grepping and troubleshooting: VyOS 1.4 Sagitta.
Jun 7 2021, 8:50 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav closed T3358: VRRP: Is it necessary to support switches between master and backup with script? as Invalid.

@arvin This functions in all versions of VyOS.

Jun 7 2021, 7:08 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the subtype of T2763: New SNMP resource request - SNMP over TCP from "Task" to "Feature Request".
Jun 7 2021, 6:35 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T2855: disabled vti interfaces still working.

I can't reproduce it in 1.2.7 and VyOS 1.3-beta-202105272051

Jun 7 2021, 6:25 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a comment to T3017: bridge will lose the tuntap member after reboots.

@jingyun Can you describe steps on how to reproduce it? Or re-check it.
My test config after reboot works fine

set interfaces bridge br0 member interface tun0
set interfaces tunnel tun0 encapsulation 'gre-bridge'
set interfaces tunnel tun0 local-ip '100.64.0.1'
set interfaces tunnel tun0 remote-ip '100.64.0.254'
Jun 7 2021, 6:08 PM · Invalid
Viacheslav moved T3138: ddclient improperly updated when apply rfc2136 config from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
Jun 7 2021, 5:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3602: Renaming BGP Peer Groups Leaves Router Broken, a subtask of T3182: Main blocker Task for FRR 7.4/7.5 series update, from Open to Needs testing.
Jun 7 2021, 4:40 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav changed the status of T3602: Renaming BGP Peer Groups Leaves Router Broken from Open to Needs testing.
Jun 7 2021, 4:40 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T3516: FRR 7.5 adds a second route when you attempt to change a static route distance instead of overwriting the old route, a subtask of T3182: Main blocker Task for FRR 7.4/7.5 series update, as Resolved.
Jun 7 2021, 4:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3516: FRR 7.5 adds a second route when you attempt to change a static route distance instead of overwriting the old route as Resolved.
Jun 7 2021, 4:39 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav claimed T3602: Renaming BGP Peer Groups Leaves Router Broken.
Jun 7 2021, 4:35 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3602: Renaming BGP Peer Groups Leaves Router Broken.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/81

Jun 7 2021, 4:20 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a subtask for T3182: Main blocker Task for FRR 7.4/7.5 series update: T3602: Renaming BGP Peer Groups Leaves Router Broken.
Jun 7 2021, 2:44 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a parent task for T3602: Renaming BGP Peer Groups Leaves Router Broken: T3182: Main blocker Task for FRR 7.4/7.5 series update.
Jun 7 2021, 2:44 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3602: Renaming BGP Peer Groups Leaves Router Broken.

https://github.com/vyos/vyatta-cfg-quagga/blob/fef5870b764e6166b639043fadb9317c8a49881d/scripts/bgp/vyatta-bgp.pl#L621-L625
https://github.com/vyos/vyatta-cfg-quagga/blob/fef5870b764e6166b639043fadb9317c8a49881d/scripts/bgp/vyatta-bgp.pl#L802-L806

Jun 7 2021, 2:31 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

In the crux.

set system conntrack timeout custom rule 10 destination address '203.0.113.74'
set system conntrack timeout custom rule 10 destination port '80'
set system conntrack timeout custom rule 10 protocol tcp established '300'
set system conntrack timeout custom rule 10 source address '192.0.2.168'

commit

vyos@r2-lts# commit
[ system conntrack hash-size 32768 ]
Updated conntrack hash size. This change will take affect when the system is rebooted.
Jun 7 2021, 12:39 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T3505: Commits do not respect changes in FRR that are not stored in a config: T3600: DHCP Interface static route breaks PBR.
Jun 7 2021, 9:17 AM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a parent task for T3600: DHCP Interface static route breaks PBR: T3505: Commits do not respect changes in FRR that are not stored in a config.
Jun 7 2021, 9:17 AM · VyOS 1.4 Sagitta

Jun 2 2021

Viacheslav added a comment to T3595: Cannot create new VTI interface.

It seems after that commit
but it is not a root case

Jun 2 2021, 7:54 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: T3595: Cannot create new VTI interface.
Jun 2 2021, 7:52 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3595: Cannot create new VTI interface: T2816: Rewrite IPsec scripts with the new XML/Python approach.
Jun 2 2021, 7:52 PM · VyOS 1.4 Sagitta
Viacheslav edited projects for T3595: Cannot create new VTI interface, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.
Jun 2 2021, 7:51 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T3597: Add tunnels FOO over UDP (FOU).
Jun 2 2021, 7:33 PM
Viacheslav created T3597: Add tunnels FOO over UDP (FOU).
Jun 2 2021, 5:08 PM

Jun 1 2021

Viacheslav updated the task description for T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 2:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 2:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav renamed T3594: Disable by default service strongswan-starter from Disable by defaul service strongswan-starter to Disable by default service strongswan-starter.
Jun 1 2021, 1:10 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3594: Disable by default service strongswan-starter from "Task" to "Bug".
Jun 1 2021, 1:10 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3594: Disable by default service strongswan-starter as Normal priority.
Jun 1 2021, 1:09 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3592: Set default TTL 64 for tunnels.

PR https://github.com/vyos/vyos-1x/pull/861

Jun 1 2021, 12:01 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords.

Note
ipsec-interface not deprecated. This option needed.

set vpn ipsec ipsec-interfaces interface 'eth1'
Jun 1 2021, 10:17 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.

https://phabricator.vyos.net/T842

Jun 1 2021, 10:13 AM · VyOS 1.4 Sagitta
Viacheslav created T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 10:04 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T406: VPN configuration error: IPv6 over IPv4 IPsec is not supported when using IPv6 ONLY tunnel., a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 1 2021, 8:51 AM · VyOS 1.4 Sagitta
Viacheslav closed T406: VPN configuration error: IPv6 over IPv4 IPsec is not supported when using IPv6 ONLY tunnel. as Resolved.
set vpn ipsec esp-group ESP-GRP compression 'disable'
set vpn ipsec esp-group ESP-GRP lifetime '1800'
set vpn ipsec esp-group ESP-GRP mode 'tunnel'
set vpn ipsec esp-group ESP-GRP pfs 'enable'
set vpn ipsec esp-group ESP-GRP proposal 1 encryption 'aes256'
set vpn ipsec esp-group ESP-GRP proposal 1 hash 'sha1'
set vpn ipsec ike-group IKE-GRP ikev2-reauth 'no'
set vpn ipsec ike-group IKE-GRP key-exchange 'ikev1'
set vpn ipsec ike-group IKE-GRP lifetime '3600'
set vpn ipsec ike-group IKE-GRP proposal 1 encryption 'aes256'
set vpn ipsec ike-group IKE-GRP proposal 1 hash 'sha1'
set vpn ipsec ipsec-interfaces interface 'eth1'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 authentication mode 'pre-shared-secret'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 authentication pre-shared-secret 'SeCrEt'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 connection-type 'respond'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 ike-group 'IKE-GRP'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 local-address 'c01d:c01a:cafe::2'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 0 allow-nat-networks 'disable'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 0 allow-public-networks 'disable'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 0 esp-group 'ESP-GRP'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 0 local prefix '2001:db7::/64'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 0 remote prefix '2001:db8::/64'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 1 allow-nat-networks 'disable'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 1 allow-public-networks 'disable'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 1 esp-group 'ESP-GRP'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 1 local prefix '10.2.3.0/24'
set vpn ipsec site-to-site peer c01d:c01a:cafe::1 tunnel 1 remote prefix '10.1.0.0/24'
Jun 1 2021, 8:51 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav renamed T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan from IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in stringSwan to IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 1 2021, 7:08 AM · VyOS 1.4 Sagitta

May 31 2021

Viacheslav added a comment to T3591: OpenVPN with/without VRF not working (NordVPN).

@mTx87 Do you have a working example in Linux?
Maybe it also needs OpenVPN >= 2.5.0
https://blog.sdn.clinic/2018/12/openvpn-and-vrfs/

May 31 2021, 8:07 PM · VyOS 1.4 Sagitta

May 29 2021

Viacheslav added a comment to T1200: SNMP GET broken at least for BGP4-MIB.
root@r2-lts:/home/vyos# snmpget -v 2c -c public 192.168.122.11 IF-MIB::ifAdminStatus.1
IF-MIB::ifAdminStatus.1 = INTEGER: up(1)
May 29 2021, 11:10 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.6)

May 27 2021

Viacheslav closed T1905: Update to Keepalived 2.0.19 as Resolved.

Fixed in T3540
https://phabricator.vyos.net/R3:3652b3fd8eb7b4e5134906aa1c3aba2a35d293ca

May 27 2021, 12:14 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T1976: deleting address-family under neighbor will disable neighbor from Needs testing to Confirmed.
May 27 2021, 12:04 PM · VyOS 1.3 Equuleus (1.3.7), test
Viacheslav added a comment to T1976: deleting address-family under neighbor will disable neighbor.

The reason it such script https://github.com/vyos/vyatta-cfg-quagga/blob/d962ef0f2c15333411e719f7d1b02dd7575ebdee/scripts/bgp/vyatta-bgp.pl#L385
That do

router bgp xxx
 address-family ipv4 unicast 
 no neighbor x.x.x.x activate
May 27 2021, 11:49 AM · VyOS 1.3 Equuleus (1.3.7), test
Viacheslav added a subtask for T2199: Rewrite firewall in new XML/Python style: T2045: Can't commit due to with the same name, but different firewall groups types.
May 27 2021, 11:05 AM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a parent task for T2045: Can't commit due to with the same name, but different firewall groups types: T2199: Rewrite firewall in new XML/Python style.
May 27 2021, 11:05 AM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav closed T2512: vyatta-op-quagga [show ip] to XML format, a subtask of T2511: Migrate vyatta-op-quagga to new XML format, as Resolved.
May 27 2021, 10:32 AM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
Viacheslav closed T2512: vyatta-op-quagga [show ip] to XML format as Resolved.
May 27 2021, 10:32 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2617: Rewrite vyatta-op-quagga "show" to XML, a subtask of T2546: The root task for rewriting [op-mode] to XML, as Resolved.
May 27 2021, 10:20 AM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav closed T2617: Rewrite vyatta-op-quagga "show" to XML as Resolved.
May 27 2021, 10:20 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T2629: VXLAN interfaces don't actually allow you to configure most settings as Resolved.
May 27 2021, 9:58 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a project to T2669: DHCP-server overlapping ranges.: VyOS 1.4 Sagitta.
May 27 2021, 8:49 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3561: router-advert: support advertising specific routes.
May 27 2021, 8:12 AM · VyOS 1.4 Sagitta
Viacheslav closed T3561: router-advert: support advertising specific routes as Resolved.
May 27 2021, 8:11 AM · VyOS 1.4 Sagitta

May 26 2021

Viacheslav added a comment to T3383: BGP IPv6 neighbor statements configuration not normalized..

FRR doing normalization for ipv6

May 26 2021, 7:06 PM
Viacheslav added a subtask for T2199: Rewrite firewall in new XML/Python style: T3390: Expansion of a range in an address-group doesn't include the new addresses after commit.
May 26 2021, 6:22 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a parent task for T3390: Expansion of a range in an address-group doesn't include the new addresses after commit: T2199: Rewrite firewall in new XML/Python style.
May 26 2021, 6:22 PM · VyOS 1.3 Equuleus (1.3.5)
Viacheslav added a comment to T3421: MTR/Traceroute broken in 1.3-beta.

Possible was fixed in that task T3502

May 26 2021, 6:17 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3553: OSPFv3 redistribute configuration remains in frr running config after removal.

https://community.vyos.net/get/snapshots/

May 26 2021, 4:21 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav added a comment to T3527: Sometimes installing of static routes failes.

Unfortunately, I can't reproduce it.
Also, all smoke test for static routes looks good.

May 26 2021, 4:16 PM
Viacheslav closed T3558: autocomplete options for dhcp-interface is not showing for the static route command as Resolved.
[email protected]# set protocols static route 192.0.2.0/24 dhcp-interface 
Possible completions:
   <text>       DHCP interface name
   eth0         
   eth1         
   lo
May 26 2021, 4:03 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3536: Unable to list all available routes.

@olofl Add please a separate task for JSON.

May 26 2021, 3:58 PM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta
Viacheslav added a comment to T3546: Add support for running scripts on PPPoE server session events.

As I understand the needed section

[pppd-compat]
verbose=1
#ip-pre-up=/etc/ppp/ip-pre-up
ip-up=/etc/ppp/ip-up
ip-down=/etc/ppp/ip-down
#ip-change=/etc/ppp/ip-change
radattr-prefix=/var/run/radattr
#fork-limit=16
May 26 2021, 3:52 PM · VyOS 1.3 Equuleus (1.3.4)
Viacheslav added a subtask for T2199: Rewrite firewall in new XML/Python style: T3560: Ability to create groups of MAC addresses.
May 26 2021, 3:45 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a parent task for T3560: Ability to create groups of MAC addresses: T2199: Rewrite firewall in new XML/Python style.
May 26 2021, 3:45 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3561: router-advert: support advertising specific routes.

@masimo Can you check/test it?

May 26 2021, 3:44 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3581: Incomplete command `show ipv6 ospfv3 linkstate`.

PR https://github.com/vyos/vyos-1x/pull/855

May 26 2021, 2:31 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav changed the status of T3581: Incomplete command `show ipv6 ospfv3 linkstate` from Open to Confirmed.

The word "detail" is cut off for some reason.
https://github.com/vyos/vyos-1x/blob/32bc1e5babd1bd31909a93ca1818998bf46db003/op-mode-definitions/include/ospfv3-detail.xml.i#L7

May 26 2021, 11:39 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T3553: OSPFv3 redistribute configuration remains in frr running config after removal.

I can't reproduce it in 1.3-rc4

[email protected]# run show conf com | match ospf
set protocols ospfv3 area 0 interface 'lo'
set protocols ospfv3 area 0 interface 'eth0'
set protocols ospfv3 area 0 interface 'eth1'
set protocols ospfv3 parameters router-id '1.2.3.4'
set protocols ospfv3 redistribute static route-map 'FOO'
[edit]
[email protected]#
May 26 2021, 10:49 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

May 25 2021

Viacheslav changed the subtype of T3580: Refactoring firewall ipv6 rule icmpv6 from "Task" to "Feature Request".
May 25 2021, 9:17 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3580: Refactoring firewall ipv6 rule icmpv6 as Normal priority.
May 25 2021, 9:16 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3568: Add XML for firewall conf-mode, a subtask of T2199: Rewrite firewall in new XML/Python style, from Open to Needs testing.
May 25 2021, 8:20 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav changed the status of T3568: Add XML for firewall conf-mode from Open to Needs testing.
May 25 2021, 8:20 PM · VyOS 1.4 Sagitta
Viacheslav assigned T3578: Prefix-List(6) update cause empty prefix-list(6) to fernando.
May 25 2021, 7:12 PM · VyOS 1.4 Sagitta
Viacheslav assigned T3569: Firewall wrong completion help values to SrividyaA.
May 25 2021, 3:05 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav placed T3577: Generating vpn x509 key pair fails with command not found up for grabs.
May 25 2021, 3:02 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
Viacheslav assigned T3577: Generating vpn x509 key pair fails with command not found to SrividyaA.
May 25 2021, 2:13 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta

May 24 2021

Viacheslav added a comment to T3568: Add XML for firewall conf-mode.

PR https://github.com/vyos/vyos-1x/pull/854
Add XML for the firewall. For future rewriting to Python style.

May 24 2021, 12:06 PM · VyOS 1.4 Sagitta

May 22 2021

Viacheslav updated the task description for T3569: Firewall wrong completion help values.
May 22 2021, 2:30 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav added a subtask for T2199: Rewrite firewall in new XML/Python style: T3569: Firewall wrong completion help values.
May 22 2021, 2:22 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a parent task for T3569: Firewall wrong completion help values: T2199: Rewrite firewall in new XML/Python style.
May 22 2021, 2:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)
Viacheslav created T3569: Firewall wrong completion help values.
May 22 2021, 2:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)

May 21 2021

Viacheslav changed the status of T2807: IPv6 Link-Local Address - Automatically generation/configuration on GRE Interfaces from Open to Needs testing.
May 21 2021, 10:46 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav updated the task description for T3568: Add XML for firewall conf-mode.
May 21 2021, 2:29 PM · VyOS 1.4 Sagitta
Viacheslav claimed T3568: Add XML for firewall conf-mode.
May 21 2021, 2:26 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T2199: Rewrite firewall in new XML/Python style: VyOS 1.4 Sagitta.
May 21 2021, 2:25 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a subtask for T2199: Rewrite firewall in new XML/Python style: T3568: Add XML for firewall conf-mode.
May 21 2021, 2:25 PM · VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a parent task for T3568: Add XML for firewall conf-mode: T2199: Rewrite firewall in new XML/Python style.
May 21 2021, 2:25 PM · VyOS 1.4 Sagitta
Viacheslav created T3568: Add XML for firewall conf-mode.
May 21 2021, 2:24 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3567: Building Crux from Docker Image failing to download repo index.

Link to repo there
https://github.com/vyos/vyos-build/blob/06dc2469cc4c42a579a44e985d8099fc399f9c7b/data/defaults.json#L12

May 21 2021, 12:52 PM · VyOS 1.2 Crux, vyos-build
Viacheslav changed the status of T3567: Building Crux from Docker Image failing to download repo index from Open to Confirmed.
May 21 2021, 12:46 PM · VyOS 1.2 Crux, vyos-build
Viacheslav triaged T3567: Building Crux from Docker Image failing to download repo index as High priority.
May 21 2021, 12:46 PM · VyOS 1.2 Crux, vyos-build
Viacheslav added a project to T3567: Building Crux from Docker Image failing to download repo index: VyOS 1.2 Crux.
May 21 2021, 12:45 PM · VyOS 1.2 Crux, vyos-build

May 20 2021

Viacheslav added a comment to T3532: Not possible to change ethertype after interface creation.

PR https://github.com/vyos/vyos-1x/pull/849

May 20 2021, 4:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3532: Not possible to change ethertype after interface creation.

Function get_interface_config itself not added. Needs to add it for 1.3.

[email protected]:~$ show int
Traceback (most recent call last):
  File "/usr/libexec/vyos/op_mode/show_interfaces.py", line 26, in <module>
    from vyos.ifconfig import Section
  File "/usr/lib/python3/dist-packages/vyos/ifconfig/__init__.py", line 18, in <module>
    from vyos.ifconfig.interface import Interface
  File "/usr/lib/python3/dist-packages/vyos/ifconfig/interface.py", line 39, in <module>
    from vyos.util import get_interface_config
ImportError: cannot import name 'get_interface_config' from 'vyos.util' (/usr/lib/python3/dist-packages/vyos/util.py)
[email protected]:~$
May 20 2021, 4:25 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav closed T3554: Add area-type stub for ospfv3 as Resolved.

Fixed VyOS 1.4-rolling-202105192127

set protocols ospfv3 area 23 area-type stub
set protocols ospfv3 area 25 area-type stub no-summary
May 20 2021, 4:20 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav moved T1995: "show vpn ike sa" command always show child-sas as down from Open to Backport Candidates on the VyOS 1.4 Sagitta board.
May 20 2021, 1:42 PM · VyOS 1.2 Crux (VyOS 1.2.8)