Page MenuHomeVyOS Platform
Feed All Stories

Feb 5 2022

bbabich updated the task description for T4229: Add xdp-tools to build.
Feb 5 2022, 4:23 AM · VyOS 1.4 Sagitta
bbabich created T4229: Add xdp-tools to build.
Feb 5 2022, 4:22 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4087: IPsec IKE-group proposals limit of 10 pieces .

VyOS 1.4-rolling-202201041316 - works well.

Feb 5 2022, 2:43 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.2 Crux (VyOS 1.2.9)

Feb 4 2022

danhusan awarded T4120: [VXLAN] add ability to set multiple unicast-remotes a Love token.
Feb 4 2022, 10:11 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
alyandon added a comment to T3420: Support UPNP protocol.

Ran some quick tests with current vyos installed in a VM and a client ubuntu server VM hooked up to it - since this is all internal stuff it is a double NAT scenario with the vyos external IP allocated out of 192.168.x.x space and using 10.100.100.0/24 internally for the client ubuntu VM.

Feb 4 2022, 8:59 PM
Viacheslav assigned T4163: [BMP-BGP] Routing monitoring feature to fernando.
Feb 4 2022, 6:15 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
c-po updated the task description for T4228: bond: OS error thrown when two bonds use the same member.
Feb 4 2022, 5:20 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po claimed T4228: bond: OS error thrown when two bonds use the same member.
Feb 4 2022, 5:19 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
c-po created T4228: bond: OS error thrown when two bonds use the same member.
Feb 4 2022, 5:19 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav added a comment to T4214: [DHCP] static route dhcp-interface issues.

@aohanian I got it, thanks, so it doesn't delete the previous route in one commit
it can be archived with 2 commits

configure
delete protocols static route 1.1.1.1/32 dhcp-interface eth4
commit
set protocols static route 1.1.1.1/32 dhcp-interface eth5
commit
Feb 4 2022, 4:54 PM · VyOS 1.5 Circinus, VyOS Rolling
aohanian added a comment to T4214: [DHCP] static route dhcp-interface issues.

The problem in 1.3.0 is that if you delete the next-hop and then use a different next-hop, both next-hops are in the routing table. The next-hop that you deleted is still there:

Feb 4 2022, 2:48 PM · VyOS 1.5 Circinus, VyOS Rolling
fernando added a comment to T4214: [DHCP] static route dhcp-interface issues.

I think there is a bit of confusion here. nowadays 1.4 it's works as you mention , but 1.3 doesn't remove static (so we can see both static in the RIB) . however, In my personal opinion , it should show both static in our cli (same also on FRR) , because it's possible that you may need a different prefix ,it'll be installed with a different next-hop .

Feb 4 2022, 2:44 PM · VyOS 1.5 Circinus, VyOS Rolling
Viacheslav added a comment to T4214: [DHCP] static route dhcp-interface issues.

@fernando What do you want to see it that case?
In the our CLI DHCP-route can be as a single value now:

set protocols static route 192.0.2.192/32 dhcp-interface 'eth0'
set protocols static route 192.0.2.192/32 dhcp-interface 'eth2'

I.e. the first route will be replaced with the second route in CLI.
So if I understand correctly you expect that this route will be also replaced an in the FRR?

Feb 4 2022, 1:51 PM · VyOS 1.5 Circinus, VyOS Rolling
Viacheslav moved T4196: DHCP server client-prefix-length parameter results in non-functional leases from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Feb 4 2022, 1:38 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav closed T4196: DHCP server client-prefix-length parameter results in non-functional leases as Resolved.
Feb 4 2022, 1:38 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav added a comment to T2654: Multiple names unable to be assigned to the same static mapping.

For 1.4 this feature was added in T2683

Feb 4 2022, 1:18 PM · VyOS 1.3 Equuleus (1.3.2)
Viacheslav closed T2557: clear interfaces <type> <interface> counters has no effect as Not Applicable.

Fixed in 1.3

vyos@r4:~$ show interfaces counters 
Interface    Rx Packets   Rx Bytes     Tx Packets   Tx Bytes
dum0                  0          0              0          0
eth0                126       9952             76      10316
eth1                  4        280              5        523
eth2                 37       1924              0          0
lo                    6        300              6        300
vyos@r4:~$ 
vyos@r4:~$ clear interfaces ethernet eth1 counters 
Clearing eth1
vyos@r4:~$ show interfaces counters 
Interface    Rx Packets   Rx Bytes     Tx Packets   Tx Bytes
dum0                  0          0              0          0
eth0                182      14550            108      14340
eth1                  0          0              0          0
eth2                 42       2184              0          0
lo                    6        300              6        300
vyos@r4:~$
Feb 4 2022, 1:11 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a subtask for T4085: Rewrite L2TP/PPTP/SSTP/PPPoE services to get_config_dict: T2580: Support for ip pools for ippoe.
Feb 4 2022, 12:32 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a parent task for T2580: Support for ip pools for ippoe: T4085: Rewrite L2TP/PPTP/SSTP/PPPoE services to get_config_dict.
Feb 4 2022, 12:32 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T4165: Custom conntrack rules cannot be deleted.

PR https://github.com/vyos/vyatta-conntrack/pull/7

Feb 4 2022, 11:08 AM · VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav edited projects for T4165: Custom conntrack rules cannot be deleted, added: VyOS 1.3 Equuleus ( 1.3.1); removed VyOS 1.3 Equuleus.
Feb 4 2022, 10:46 AM · VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav changed the status of T4165: Custom conntrack rules cannot be deleted from Open to In progress.
Feb 4 2022, 10:43 AM · VyOS 1.3 Equuleus ( 1.3.1)
zsdc changed the status of T3409: Add back TCP-MSS Clamp to PMTU from Open to Confirmed.
Feb 4 2022, 9:39 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T3420: Support UPNP protocol from In progress to Needs testing.

@jack9603301 Could you test it, also create a pr for the documentation?

Feb 4 2022, 9:11 AM
Viacheslav added a comment to T4151: IPV6 local PBR Support.

PR https://github.com/vyos/vyos-1x/pull/1207

Feb 4 2022, 8:50 AM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
Unknown Object (User) updated subscribers of T4226: VRRP transition-script does not work for groups name which contains -(minus) sign.

@jestabro you are right. Adding no_tag_node_value_mangle=True will fix this issue.
https://github.com/vyos/vyos-1x/blob/ec13cac66ba612ecc36053158c7517c8fe993547/src/system/keepalived-fifo.py#L73-L74

self.vrrp_config_dict = conf.get_config_dict(base,
                                     key_mangling=('-', '_'), get_first_key=True,
                                     no_tag_node_value_mangle=True)
Feb 4 2022, 6:27 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
nikeshhajari closed T4176: VyOS CLI command: show openvpn server/client does not display output as Invalid.
Feb 4 2022, 5:49 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
nikeshhajari added a comment to T4176: VyOS CLI command: show openvpn server/client does not display output.

Found the problem here - I used a different and simpler version of the configuration above and *show openvpn server* returns an output when a client is connected.

Feb 4 2022, 5:48 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sarthurdev changed the status of T4209: Firewall incorrect handler for recent count and time from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/1206

Feb 4 2022, 12:51 AM · VyOS 1.4 Sagitta

Feb 3 2022

Viacheslav closed T3643: show vpn ipsec sa doesn't show tunnels in "down" state, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Feb 3 2022, 5:35 PM · VyOS 1.4 Sagitta
Viacheslav closed T3643: show vpn ipsec sa doesn't show tunnels in "down" state as Resolved.
Feb 3 2022, 5:35 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
SrividyaA added a comment to T4227: Typo in help completion of hello-time option of bridge interface.

https://github.com/vyos/vyos-1x/pull/1205

Feb 3 2022, 5:20 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
SrividyaA claimed T4227: Typo in help completion of hello-time option of bridge interface.
Feb 3 2022, 5:20 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
SrividyaA created T4227: Typo in help completion of hello-time option of bridge interface.
Feb 3 2022, 5:03 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav added a comment to T4193: Add support for transparent firewall.

PR for op-mode https://github.com/vyos/vyos-1x/pull/1204

Feb 3 2022, 4:11 PM · VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEX1920c4faa9d2: firewall-bridge: T4193: Add verify for action reject (authored by Viacheslav).
Feb 3 2022, 1:57 PM
zsdc assigned T4176: VyOS CLI command: show openvpn server/client does not display output to RyVolodya.
Feb 3 2022, 11:29 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
zsdc assigned T4192: OpenVPN custom option for "--client-to-client" causes configuration error to RyVolodya.
Feb 3 2022, 11:26 AM · VyOS 1.3 Equuleus (1.3.0)
sarthurdev committed rVYOSONEX9f7f1ebb15a2: firewall: T4178: Fix only inverse matching on tcp flags.
Feb 3 2022, 7:27 AM
GitHub <[email protected]> committed rVYOSONEX26774b890443: Merge pull request #1201 from sarthurdev/T4178_2 (authored by c-po).
Feb 3 2022, 7:27 AM
c-po closed T4218: firewall: rule name is not allowed to start with a number as Resolved.
Feb 3 2022, 7:05 AM · VyOS 1.4 Sagitta
c-po added a comment to T4218: firewall: rule name is not allowed to start with a number.

Thanks - works again

Feb 3 2022, 7:05 AM · VyOS 1.4 Sagitta

Feb 2 2022

sarthurdev changed the status of T4178: policy based routing tcp flags issue from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/1201

Feb 2 2022, 11:36 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4178: policy based routing tcp flags issue from Needs testing to In progress.

Adding this issue to this task: https://forum.vyos.io/t/firewall-configuration-issue-after-upgrade/8414

Feb 2 2022, 11:07 PM · VyOS 1.4 Sagitta
Unknown Object (User) created T4226: VRRP transition-script does not work for groups name which contains -(minus) sign.
Feb 2 2022, 8:24 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav added a comment to T3872: Add configurable telegraf monitoring service.

PR https://github.com/vyos/vyos-1x/pull/1200
Fix for telegraf template/scripts for services.

Feb 2 2022, 6:14 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav changed the status of T4194: prefix-list no check for duplicate entries from Open to Needs testing.
Feb 2 2022, 4:59 PM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4210: NAT source/destination negated ports throws an error.

I've used for these tests (VyOS 1.4-rolling-202202010836)
The same situation in general when you want to use "!".
Bad exampels.

set nat source rule 10 destination port !1-5
set nat source rule 10 destination port !22
set nat source rule 10 destination port !http
set nat source rule 10 destination port telnet,!http,!123,1001-1005
set nat source rule 10 destination port telnet,http,!123,1001-1005
Feb 2 2022, 2:54 AM · VyOS 1.4 Sagitta

Feb 1 2022

Unknown Object (User) added a comment to T4218: firewall: rule name is not allowed to start with a number.

( VyOS 1.4-rolling-202202010836)- Rule name which starts with a number work well.

Feb 1 2022, 9:44 PM · VyOS 1.4 Sagitta
mTx87 closed T4225: Performance degration with latest rolling release as Resolved.
Feb 1 2022, 2:04 PM · VyOS 1.4 Sagitta
mTx87 created T4225: Performance degration with latest rolling release.
Feb 1 2022, 1:50 PM · VyOS 1.4 Sagitta
hensur added a comment to T4151: IPV6 local PBR Support.

docs: https://github.com/vyos/vyos-documentation/pull/707

Feb 1 2022, 12:45 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
SrividyaA added a comment to T4222: Support for TWAMP as round-trip metric.

I have found the following links:

Feb 1 2022, 12:22 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
mTx87 added a comment to T4216: Firewall: can't use negated groups in firewall rules.

tested my previous code in latest rolling, looking good so far.
no errors on commiting.

Feb 1 2022, 12:02 PM · VyOS 1.4 Sagitta
adestis closed T4198: Error shown on commit as Resolved.
Feb 1 2022, 10:56 AM · VyOS 1.3 Equuleus (1.3.0)
adestis added a comment to T4198: Error shown on commit.

Seems like this is already handled in T4101

Feb 1 2022, 10:51 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav closed T4138: NAT configuration allows to set incorrect port range and invalid port as Resolved.
Feb 1 2022, 9:31 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4222: Support for TWAMP as round-trip metric.

Is there any Linux implementation?

Feb 1 2022, 9:04 AM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
c-po added a comment to T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso).

reverted broken commit

Feb 1 2022, 7:02 AM · VyOS 1.4 Sagitta
c-po closed T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso) as Resolved.
Feb 1 2022, 7:02 AM · VyOS 1.4 Sagitta
c-po added a comment to T4220: Commit broke dhclient 78b247b724f74bdabab0706aaa7f5b00e5809bc1.

reverted commit

Feb 1 2022, 7:02 AM · VyOS 1.4 Sagitta
c-po added a reverting change for rVYOSONEX78b247b724f7: dhclient: T3392: remove /usr/sbin prefix from iproute2 ip command: rVYOSONEXbf549b34e7da: Revert "dhclient: T3392: remove /usr/sbin prefix from iproute2 ip command".
Feb 1 2022, 7:02 AM
c-po committed rVYOSONEXbf549b34e7da: Revert "dhclient: T3392: remove /usr/sbin prefix from iproute2 ip command".
Feb 1 2022, 7:02 AM
c-po closed T4220: Commit broke dhclient 78b247b724f74bdabab0706aaa7f5b00e5809bc1 as Resolved.
Feb 1 2022, 7:02 AM · VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso) from Open to Confirmed.
Feb 1 2022, 12:32 AM · VyOS 1.4 Sagitta
mshipman updated the task description for T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso).
Feb 1 2022, 12:27 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso).

Confirm
VyOS 1.4-rolling-202201291849

Feb 1 2022, 12:25 AM · VyOS 1.4 Sagitta
mshipman added a comment to T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso).

My hunch would be that this is the breaking commit, given the context:

Feb 1 2022, 12:00 AM · VyOS 1.4 Sagitta

Jan 31 2022

mshipman created T4224: Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso).
Jan 31 2022, 9:58 PM · VyOS 1.4 Sagitta
c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.174 / 5.10.94 to Update Linux Kernel to v5.4.175 / 5.10.95.
Jan 31 2022, 8:59 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po committed rVYOSONEX494ca8ffa043: upnpd: T3420: code cleanup.
Jan 31 2022, 8:57 PM
c-po committed rVYOSONEX2ac8376ca1b7: upnpd: T3420: use proper include directives.
Jan 31 2022, 8:57 PM
c-po committed rVYOSONEX3dc698f18bc8: smoketest: upnpd: T3420: refine code and re-use paths.
Jan 31 2022, 8:57 PM
hensur committed rVYOSONEXc6c562eca6ff: policy: T4219: add local-route(6) incoming-interface.
Jan 31 2022, 6:27 PM
GitHub <[email protected]> committed rVYOSONEXb3066e73ff48: Merge pull request #1196 from hensur/current-ipv6-local-route-iif (authored by c-po).
Jan 31 2022, 6:27 PM
sarthurdev committed rVYOSONEXed67750b94e8: firewall: T4218: Adds a prefix to all user defined chains.
Jan 31 2022, 6:26 PM
sarthurdev committed rVYOSONEX985a9e8536cb: firewall: T4216: Add support for negated firewall groups.
Jan 31 2022, 6:26 PM
sarthurdev committed rVYOSONEX8532f2c391e8: policy: T4213: Fix duplicate commands from multiple rules with single table.
Jan 31 2022, 6:26 PM
sarthurdev committed rVYOSONEXfafd25143d46: firewall: T2199: Add constraint for tagnode names.
Jan 31 2022, 6:26 PM
sarthurdev committed rVYOSONEXff2cc45f8ba6: firewall: T2199: Fix errors when referencing an empty chain.
Jan 31 2022, 6:26 PM
GitHub <[email protected]> committed rVYOSONEX36e54482a242: Merge pull request #1199 from sarthurdev/T4218 (authored by c-po).
Jan 31 2022, 6:26 PM
GitHub <[email protected]> committed rVYOSONEX3aa1ec3f03a9: Merge pull request #1198 from vyos/force_to_list (authored by c-po).
Jan 31 2022, 6:26 PM
danielpo added a comment to T4223: policy route cannot have several entries with the same table.

Thanks!😀

Jan 31 2022, 5:25 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4216: Firewall: can't use negated groups in firewall rules from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/1199

Jan 31 2022, 5:06 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4218: firewall: rule name is not allowed to start with a number from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/1199

Jan 31 2022, 5:06 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4223: policy route cannot have several entries with the same table from In progress to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/1199

Jan 31 2022, 5:05 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4223: policy route cannot have several entries with the same table from Open to In progress.

I already have a fix for this from your comment on T4213. Will have it included in a PR shortly.

Jan 31 2022, 4:47 PM · VyOS 1.4 Sagitta
danielpo created T4223: policy route cannot have several entries with the same table.
Jan 31 2022, 4:39 PM · VyOS 1.4 Sagitta
SrividyaA created T4222: Support for TWAMP as round-trip metric.
Jan 31 2022, 3:11 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
dmbaturin committed rVYOSONEX84d790b65e13: T4221: add force_to_list Jinja2 filter.
Jan 31 2022, 12:56 PM
dmbaturin triaged T4221: Add a template filter for converting scalars to single-item lists as Low priority.
Jan 31 2022, 12:54 PM · VyOS 1.4 Sagitta (1.4.0-epa1)

Jan 30 2022

dmbaturin committed rVYOSONEX35f7cac7750c: T4193: handle groups with only one element correctly.
Jan 30 2022, 1:28 PM
dmbaturin committed rVYOSONEX0c265e420bdf: T4193: bail out early if bridge firewall policy is not assigned.
Jan 30 2022, 1:28 PM
dmbaturin committed rVYOSONEX793185dc09d5: T4193: Remove a debug print.
Jan 30 2022, 1:28 PM
dmbaturin committed rVYOSONEXdcad12c21979: T4193: fix module imports.
Jan 30 2022, 1:28 PM
dmbaturin committed rVYOSONEX3700c3780ede: firewall-bridge: T4193: Checks if firewall or group not configured (authored by Viacheslav).
Jan 30 2022, 1:28 PM
danielpo created T4220: Commit broke dhclient 78b247b724f74bdabab0706aaa7f5b00e5809bc1.
Jan 30 2022, 8:09 AM · VyOS 1.4 Sagitta
Rhongomiant added a comment to T4206: Policy Based Routing with DHCP Interface Issue.

I don't know what I'm building. How can I be sure I'm actually building 1.3.0 rather than 1.4? I ask because when I boot off the build I compiled I get the following message at the start of the boot process. Is it 1.3.0 or sagitta (1.4)?

Jan 30 2022, 6:14 AM · VyOS 1.3 Equuleus (1.3.2)

Jan 29 2022

Unknown Object (User) added a comment to T4218: firewall: rule name is not allowed to start with a number.

The same situation if you set the number or special symbol.

Jan 29 2022, 11:18 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T4218: firewall: rule name is not allowed to start with a number from Open to In progress.
Jan 29 2022, 10:34 PM · VyOS 1.4 Sagitta