Page MenuHomeVyOS Platform
Feed All Stories

Apr 16 2024

n.fort changed Version from 1.4.0-epa2 to 1.4.0-epa2, 1.5-rolling-202404141045 on T6191: Policy route set-mss option is not working correctly.
Apr 16 2024, 4:57 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
n.fort changed the status of T6191: Policy route set-mss option is not working correctly from Open to Confirmed.
Apr 16 2024, 4:57 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a comment to T6022: set system image default-boot.

The regression causing 'image cannot be found" was fixed in https://vyos.dev/T6186.

Apr 16 2024, 4:46 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro added a subtask for T6022: set system image default-boot: T6186: 'set system image default-boot' fails to find images that actually do exist in the system.
Apr 16 2024, 4:45 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro added a parent task for T6186: 'set system image default-boot' fails to find images that actually do exist in the system: T6022: set system image default-boot.
Apr 16 2024, 4:45 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro removed a subtask for T6022: set system image default-boot: T5917: Restore annotations of (running)/(default boot) in select image list.
Apr 16 2024, 4:44 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro removed a parent task for T5917: Restore annotations of (running)/(default boot) in select image list: T6022: set system image default-boot.
Apr 16 2024, 4:44 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
natali-rs1985 committed rVYOSONEX82fdbedb79cf: pppoe-server: T6141: T5364: PPPoE-server add pado-delay without sessions fails.
Apr 16 2024, 4:41 PM
GitHub <[email protected]> committed rVYOSONEX41663efaba26: Merge pull request #3317 from natali-rs1985/T6141-equuleus (authored by c-po).
Apr 16 2024, 4:41 PM
jestabro added a subtask for T6022: set system image default-boot: T5917: Restore annotations of (running)/(default boot) in select image list.
Apr 16 2024, 4:41 PM · VyOS 1.4 Sagitta (1.4.0)
jestabro added a parent task for T5917: Restore annotations of (running)/(default boot) in select image list: T6022: set system image default-boot.
Apr 16 2024, 4:41 PM · VyOS 1.4 Sagitta, VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX8f778f989d8f: Merge pull request #3318 from vyos/mergify/bp/sagitta/pr-3315 (authored by c-po).
Apr 16 2024, 4:41 PM
GitHub <[email protected]> committed rVYOSONEX5a481813c059: Merge pull request #3319 from vyos/mergify/bp/sagitta/pr-3313 (authored by c-po).
Apr 16 2024, 4:40 PM
Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from In progress to Needs testing.
Apr 16 2024, 4:33 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro added a comment to T6243: Update vyos-http-api-tools for package idna security advisory.

PR:
https://github.com/vyos/vyos-http-api-tools/pull/11

Apr 16 2024, 4:31 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
jestabro triaged T6243: Update vyos-http-api-tools for package idna security advisory as Normal priority.
Apr 16 2024, 4:12 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX6cace2df99c7: T5722: Failover route add option onlink (authored by Viacheslav).
Apr 16 2024, 3:10 PM
Viacheslav committed rVYOSONEXbb832acb9788: T5722: Failover route add option onlink.
Apr 16 2024, 3:09 PM
GitHub <[email protected]> committed rVYOSONEX6825873bd1e8: Merge pull request #3313 from sever-sever/T5722 (authored by dmbaturin).
Apr 16 2024, 3:08 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXdeb92e466110: T6242: load-balancing reverse-proxy: Ability for ssl backends to not verify… (authored by Embezzle).
Apr 16 2024, 3:08 PM
Embezzle committed rVYOSONEXaafe22d08bb3: T6242: load-balancing reverse-proxy: Ability for ssl backends to not verify….
Apr 16 2024, 3:06 PM
GitHub <[email protected]> committed rVYOSONEXc0eec365e2e3: Merge pull request #3315 from Embezzle/T6242 (authored by dmbaturin).
Apr 16 2024, 3:06 PM
Giggum added a comment to T4909: Rewrite the NTP op mode in the new format.

Status update:

  • "Like for like" functionality between .sh script and .py script is complete and working (can be viewed in PR)
  • Raw output capability -> in progress
Apr 16 2024, 1:36 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
Giggum closed T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf as Resolved.
Apr 16 2024, 1:29 PM · VyOS 1.5 Circinus
Giggum added a comment to T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf .

@Viacheslav concur that it looks to be resolved. The last log entry was at 9:10 and nothing telegraph-related has been logged in almost 30 minutes since. I will close ticket. Thank your help and insight.

Apr 16 2024, 1:26 PM · VyOS 1.5 Circinus
Viacheslav changed the status of T6123: Limit NTP allow-client config to internal addresses by default from Open to Needs testing.
Apr 16 2024, 1:03 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav changed the status of T4915: Minisign verification failure == pass?? from Needs testing to Needs reporter action.

We'll close it if no response

Apr 16 2024, 12:40 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav edited projects for T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta (1.4.0-epa3), Restricted Project.
Apr 16 2024, 12:35 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5946: TASK [setup-root-partition : Create a fileystem on EFI partition] failing in Docker as Wontfix.

A docker container usually has issues with loop devices:
Use the VM or attach dev

Apr 16 2024, 10:10 AM · VyOS 1.4 Sagitta
HollyGurza added a comment to T4248: There isn't a way to remove the only rule from the (traffic-policy) class..

https://github.com/vyos/vyos-1x/pull/3316

Apr 16 2024, 8:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
HollyGurza changed the status of T4248: There isn't a way to remove the only rule from the (traffic-policy) class. from Open to In progress.
Apr 16 2024, 8:01 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 15 2024

Embezzle added a comment to T6242: Add an option to disable certificate verification to reverse proxy.

PR: https://github.com/vyos/vyos-1x/pull/3315

Apr 15 2024, 6:54 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
GitHub <[email protected]> committed rVYOSONEXd8bca084a1f0: Merge pull request #3310 from vyos/mergify/bp/sagitta/pr-3309 (authored by c-po).
Apr 15 2024, 6:41 PM
GitHub <[email protected]> committed rVYOSONEX131bb134ec7f: Merge pull request #3314 from vyos/mergify/bp/sagitta/pr-3311 (authored by c-po).
Apr 15 2024, 6:39 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXc976d71110df: pki: T6241: Fix dependency updates on PKI changes (authored by sarthurdev).
Apr 15 2024, 6:14 PM
sarthurdev committed rVYOSONEX9f9891a20995: pki: T6241: Fix dependency updates on PKI changes.
Apr 15 2024, 6:12 PM
GitHub <[email protected]> committed rVYOSONEX42082cba2f0e: Merge pull request #3311 from sarthurdev/T6241 (authored by jestabro).
Apr 15 2024, 6:12 PM
Viacheslav moved T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Open to Finished on the VyOS 1.5 Circinus board.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5734: Unhandled exception when trying to configure OpenVPN server without dh-params as Resolved.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Open to In progress.
Apr 15 2024, 3:32 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

PR https://github.com/vyos/vyos-1x/pull/3313
Add onlink option

set interfaces ethernet eth0 vif 10 address '10.20.30.1/32'
set protocols static route 10.20.30.0/32 interface eth0.10
Apr 15 2024, 3:31 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
sarthurdev closed T6174: can't view dhcp server leases if logged in as a tacacs account as Resolved.
Apr 15 2024, 2:48 PM · VyOS 1.5 Circinus
sarthurdev closed T6163: kea-dhcp4-server crashes due to incorrect lease file permissions after 1.5-rolling-202403120022 -> 1.5-rolling-202403230018 upgrade as Resolved.
Apr 15 2024, 2:48 PM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX534a037ffdf0: Merge pull request #3312 from vyos/mergify/bp/sagitta/pr-3308 (authored by dmbaturin).
Apr 15 2024, 2:45 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX9cd746491a4d: T5734: OpenVPN check PKI DH name exists if DH configured (authored by Viacheslav).
Apr 15 2024, 2:43 PM
sarthurdev changed the status of T6241: Updating CRL in "pki" config does not update OpenVPN from Open to Needs testing.

PR: https://github.com/vyos/vyos-1x/pull/3311

Apr 15 2024, 2:43 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX67bc10841f08: T5535: firewall: migrate command <set system ip disable-directed-broadcast> to… (authored by n.fort).
Apr 15 2024, 2:41 PM
n.fort committed rVYOSONEX76dcecafca97: T5535: firewall: migrate command <set system ip disable-directed-broadcast> to….
Apr 15 2024, 2:40 PM
GitHub <[email protected]> committed rVYOSONEXf3d45223da40: Merge pull request #3309 from nicolas-fort/T5535 (authored by dmbaturin).
Apr 15 2024, 2:40 PM
Viacheslav committed rVYOSONEX95cd743c24c6: T5734: OpenVPN check PKI DH name exists if DH configured.
Apr 15 2024, 2:39 PM
GitHub <[email protected]> committed rVYOSONEX8528764c97a5: Merge pull request #3308 from sever-sever/T5734 (authored by dmbaturin).
Apr 15 2024, 2:39 PM
n.fort added a comment to T5535: Move disable-directed-broadcast to firewall global-options.

PR: https://github.com/vyos/vyos-1x/pull/3309

Apr 15 2024, 2:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6242: Add an option to disable certificate verification to reverse proxy as Wishlist priority.
Apr 15 2024, 1:58 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Embezzle claimed T6242: Add an option to disable certificate verification to reverse proxy.
Apr 15 2024, 12:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

It is more of a feature request than a bug due to specific kernel routes.
Feature to add onlink option

Apr 15 2024, 11:52 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav renamed T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Failing to add route in failover to Failing to add route in failover if gateway not in the same interface network.
Apr 15 2024, 11:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Embezzle created T6242: Add an option to disable certificate verification to reverse proxy.
Apr 15 2024, 10:25 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
n.fort changed the status of T5535: Move disable-directed-broadcast to firewall global-options from Open to Confirmed.
Apr 15 2024, 10:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5734: Unhandled exception when trying to configure OpenVPN server without dh-params.

PR https://github.com/vyos/vyos-1x/pull/3308

Apr 15 2024, 8:53 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Confirmed to In progress.
Apr 15 2024, 8:47 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk moved T6100: NAT config migration error in 1.4.0-epa1 if invalid address/network defined in 1.3.6 version from Open to Finished on the VyOS 1.5 Circinus board.
Apr 15 2024, 7:47 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk closed T6100: NAT config migration error in 1.4.0-epa1 if invalid address/network defined in 1.3.6 version as Resolved.
Apr 15 2024, 7:47 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk closed T6100: NAT config migration error in 1.4.0-epa1 if invalid address/network defined in 1.3.6 version, a subtask of T5938: Migration fail root task for 1.4-rc, as Resolved.
Apr 15 2024, 7:47 AM · VyOS Rolling, Bugs
a.apostoliuk added a project to T6100: NAT config migration error in 1.4.0-epa1 if invalid address/network defined in 1.3.6 version: VyOS 1.5 Circinus.
Apr 15 2024, 7:47 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
lucasec added a comment to T6241: Updating CRL in "pki" config does not update OpenVPN.

I even commented on that issue…
It would seem my memory ages out after 3 years 🤣

Apr 15 2024, 7:41 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6240: Set interface ethernet eth1 bridge-group command missing as Invalid.

Read the documentation for the 1.5

Apr 15 2024, 7:36 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6241: Updating CRL in "pki" config does not update OpenVPN.

The same task https://vyos.dev/T3861

Apr 15 2024, 7:33 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
adestis added a comment to T6040: Implement a firewall blacklisting solution.

I probably can continue here in summer at first.

Apr 15 2024, 6:26 AM · VyOS Rolling
HollyGurza claimed T4248: There isn't a way to remove the only rule from the (traffic-policy) class..
Apr 15 2024, 4:35 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
jestabro moved T3574: Add constraintGroup for combining validators with logical AND from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa1) board.
Apr 15 2024, 12:10 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
jestabro moved T3474: Revisit storing syntax version of interface definitions in XML file from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa1) board.
Apr 15 2024, 12:10 AM · VyOS 1.4 Sagitta (1.4.0-epa1)

Apr 14 2024

lucasec created T6241: Updating CRL in "pki" config does not update OpenVPN.
Apr 14 2024, 11:55 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
lucasec renamed T6177: Intel QAT causes CPU runaway/stall with ipsec VPN from CPU runaway/stall possibly related to Strongswan to Intel QAT causes CPU runaway/stall with ipsec VPN.
Apr 14 2024, 11:36 PM · VyOS Rolling, Bugs
lucasec added a comment to T6177: Intel QAT causes CPU runaway/stall with ipsec VPN.

My system finally crashed again today. I found a workload that generates enough traffic over the VPN to reliably re-produce.

Apr 14 2024, 7:20 PM · VyOS Rolling, Bugs
Unknown Object (User) closed T5155: restart bgp daemon throws route-map error as Invalid.

Seems like its either fixed or was a quirk in that specific version.

Apr 14 2024, 3:54 PM · VyOS 1.4 Sagitta
garconklin created T6240: Set interface ethernet eth1 bridge-group command missing.
Apr 14 2024, 2:04 PM · VyOS 1.5 Circinus
Viacheslav changed the status of T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf from Open to Needs reporter action.
Apr 14 2024, 1:38 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf .

I don't see those logs:

set service monitoring telegraf influxdb authentication organization 'vyos'
set service monitoring telegraf influxdb authentication token 'lxxx='
set service monitoring telegraf influxdb bucket 'vyos'
set service monitoring telegraf influxdb url 'http://192.168.122.14'
Apr 14 2024, 1:38 PM · VyOS 1.5 Circinus
Viacheslav reassigned T6210: Support configuring sys-nice capability for containers from Viacheslav to theflakes.
Apr 14 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav closed T6210: Support configuring sys-nice capability for containers as Resolved.
Apr 14 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav edited projects for T3968: Add network type ptp (veth) for containers, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 14 2024, 12:14 PM · VyOS Rolling
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

The dictionaries process the \n different way
environment.POSTGRES_HOST_AUTH_METHOD.value.
1.5

vyos@r4# commit
[ container ]
{'container_remove': ['c1', 'c2'],
 'name': {'test-postgres-master': {'allow_host_networks': {},
                                   'command': 'postgres -c wal_level=replica '
                                              '-c hot_standby=on -c '
                                              'max_wal_senders=10 -c '
                                              'max_replication_slots=10 -c '
                                              'hot_standby_feedback=on',
                                   'environment': {'POSTGRES_HOST_AUTH_METHOD': {'value': 'scram-sha-256\\nhost '
                                                                                          'replication '
                                                                                          'all '
                                                                                          '0.0.0.0/0 '
                                                                                          'md5'},
                                                   'POSTGRES_PASSWORD': {'value': 'password'}},
                                   'image': 'postgres:14-alpine',
                                   'memory': '512',
                                   'restart': 'always',
                                   'shared_memory': '64'}},
 'network': {'NET01': {'prefix': ['10.0.0.0/24']}},
 'registry': {'docker.io': {}, 'quay.io': {}}}
Apr 14 2024, 11:29 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

Diff
check --env "POSTGRES_HOST_AUTH_METHOD=. options
1.5

vyos@r4# cat /run/systemd/system/vyos-container-test-postgres-master.service | grep ExecStart -A2
ExecStartPre=/bin/rm -f %t/%n.pid %t/%n.cid
ExecStart=/usr/bin/podman run \
        --conmon-pidfile %t/%n.pid --cidfile %t/%n.cid --cgroups=no-conmon \
        --detach --interactive --tty --replace  --memory 512m --shm-size 64m --memory-swap 0 --restart always --name test-postgres-master      --env "POSTGRES_HOST_AUTH_METHOD=scram-sha-256\nhost replication all 0.0.0.0/0 md5" --env "POSTGRES_PASSWORD=password"   --net host  postgres:14-alpine postgres -c wal_level=replica -c hot_standby=on -c max_wal_senders=10 -c max_replication_slots=10 -c hot_standby_feedback=on
Apr 14 2024, 11:10 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav removed a project from T5986: Container: Error on commit when environment variable value contains \n line break: VyOS 1.5 Circinus.

Try the latest version

vyos@r4# set container name test-postgres-master environment POSTGRES_HOST_AUTH_METHOD value 'scram-sha-256\nhost replication all 0.0.0.0/0 md5'
[edit]
vyos@r4# commit
[edit]
vyos@r4# run show container 
CONTAINER ID  IMAGE                                 COMMAND               CREATED         STATUS         PORTS       NAMES
75a7fb610b57  localhost/gobgp-new:1                                       3 weeks ago     Created                    new
fdb74e9700e5  docker.io/library/alpine:3.19         /bin/sh               47 minutes ago  Up 47 minutes              c1
c05806fdb92c  docker.io/library/busybox:latest      sh                    39 minutes ago  Up 39 minutes              c2
1b5fc3d4a07b  docker.io/library/postgres:14-alpine  postgres -c wal_l...  24 seconds ago  Up 25 seconds              test-postgres-master
[edit]
vyos@r4# run show ver
Version:          VyOS 1.5-rolling-202404140022
Release train:    current
Apr 14 2024, 11:00 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav lowered the priority of T6233: Container configurations on VyOS 1.5 prevent containers from starting from Urgent! to Normal.
Apr 14 2024, 10:13 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6233: Container configurations on VyOS 1.5 prevent containers from starting.

Did you try another image (not hello-world)?
Tested on VyOS 1.5-rolling-202404140022

Apr 14 2024, 10:11 AM · VyOS 1.5 Circinus
rleinfelder added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

Apachez, the QOS-MAPPING is FROM:TO, which means egress-priority 0 will be mapped to 2, egress-priority 2 will be mapped to 3. In my case i need only 0:3 or 0:5 on vif-s or vif-c because priority 0 is used by default for iperf application. Hope this helps for your understanding...

Apr 14 2024, 9:53 AM · Restricted Project, VyOS Rolling
Apachez added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

How is this supposed to work?

Apr 14 2024, 9:41 AM · Restricted Project, VyOS Rolling
rleinfelder added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

Viacheslav, YES it works, THANK YOU so much, now it's possible to set the priority on vif-c and vif-s. This is a great step forward to have this opportunity in my lab.
Now i have two questions:
-Is there a possibility to make the setting permanent ?
-And do you think, someone in the community is willing to implement a command/parameter to configure the priority on vif-c and vif-s also CLI ?. As i wrote I would pay for this implementation so everyone in the community can use this feature in VyOS.

Apr 14 2024, 8:56 AM · Restricted Project, VyOS Rolling
Viacheslav added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

Does it work?

vyos@r4:~$ sudo cat /proc/net/vlan/eth2.100.200 
eth2.100.200  VID: 200	 REORDER_HDR: 1  dev->priv_flags: 81121
         total frames received            0
          total bytes received            0
      Broadcast/Multicast Rcvd            0
Apr 14 2024, 7:50 AM · Restricted Project, VyOS Rolling
Giggum added a comment to T4909: Rewrite the NTP op mode in the new format.

@dmbaturin PR is here https://github.com/vyos/vyos-1x/pull/3307

Apr 14 2024, 7:39 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
Giggum added a comment to T4909: Rewrite the NTP op mode in the new format.

@dmbaturin hope you don't mind but this looked like a good task for a beginner and with it being low priority thought I'd give it a go.

Apr 14 2024, 7:38 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-GA)
drw_08 added a comment to T6226: Add "tcp-requece inspect-delay" to reverse proxy.

can we also include this change into sagitta epa3?

Apr 14 2024, 4:37 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
drw_08 added a comment to T6226: Add "tcp-requece inspect-delay" to reverse proxy.

PR: https://github.com/vyos/vyos-1x/pull/3342

Apr 14 2024, 4:05 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Apachez added a comment to T5694: NTP should always be allowed from localhost and bindaddress/binddevice can only exist once.

Will a migrationsscript be included so that users who used the default of:

Apr 14 2024, 3:54 AM · VyOS Rolling
Apachez added a comment to T6123: Limit NTP allow-client config to internal addresses by default.

Will a migrationsscript be included so that users who used the default of:

Apr 14 2024, 3:54 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus

Apr 13 2024

rleinfelder added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

The priorisation for data traffic on our DSLAM access network is based on 802.1q because this are mainly Layer2 devices. The network between the DSLAMs prioritize also the data traffic based on 802.1q header. At the moment we need Layer2 ethernet tester which allow us to set the COS bit (0-7) on vif and vif-c+vif-s to measure the QoS through the network. The reason for my request was, to ask some VyOS community member, if this would be possible with VyOS + iperf like we do it today with the Layer2 ethernet tester.

Apr 13 2024, 6:34 PM · Restricted Project, VyOS Rolling
chenxiaolong added a comment to T6163: kea-dhcp4-server crashes due to incorrect lease file permissions after 1.5-rolling-202403120022 -> 1.5-rolling-202403230018 upgrade.

Thanks for the quick fix! I intentionally messed with the file ownership and can confirm that VyOS 1.5-rolling-202404130016 will correct them to the proper values.

Apr 13 2024, 6:06 PM · VyOS 1.5 Circinus
Apachez added a comment to T6239: command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

You can do the QoS priority on the VyOS by matching the traffic based on VLAN ID and then set the DSCP (TOS) using "set-dscp" according to the manuals below:

Apr 13 2024, 6:04 PM · Restricted Project, VyOS Rolling