Page MenuHomeVyOS Platform
Feed All Stories

May 2 2024

a.apostoliuk added a project to T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names: VyOS 1.5 Circinus.
May 2 2024, 2:13 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6273: Hyphens and underscores are considered invalid in PPPoE access-concentrator names from In progress to Needs testing.
May 2 2024, 2:12 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
a.apostoliuk changed the status of T6272: PPPoE configuration does not load after deleting a PPPoE interface from the system from In progress to Needs testing.
May 2 2024, 2:09 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
HollyGurza added a comment to T6225: Unhandled exception when configuring random-detect QoS policy.

also dsmark qdisc was removed

May 2 2024, 1:43 PM · VyOS 1.4 Sagitta (1.4.0-GA)
0xThiebaut added a comment to T751: IDS and IPS (suricata).

PR: https://github.com/vyos/vyos-1x/pull/3399

May 2 2024, 11:55 AM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEX44008b19c5e8: Merge pull request #3395 from vyos/mergify/bp/sagitta/pr-3307 (authored by dmbaturin).
May 2 2024, 10:59 AM
GitHub <[email protected]> committed rVYOSONEX087a04327ca3: Merge pull request #3398 from vyos/mergify/bp/equuleus/pr-3300 (authored by dmbaturin).
May 2 2024, 10:57 AM
Viacheslav renamed T4811: Webproxy bypassing CLI whitelist command is missing from Webproxy bypassing cli command missing to Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 10:23 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav added a comment to T4811: Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 10:22 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav renamed T6292: Unable to update webproxy blacklist as they use captcha from Unable to update webproxy blacklist to Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:43 AM · VyOS Rolling, Bugs
Viacheslav updated the task description for T6292: Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:41 AM · VyOS Rolling, Bugs
Viacheslav renamed T6292: Unable to update webproxy blacklist as they use captcha from Unabme update webproxy blacklist to Unable to update webproxy blacklist.
May 2 2024, 9:37 AM · VyOS Rolling, Bugs
Viacheslav triaged T6292: Unable to update webproxy blacklist as they use captcha as Normal priority.
May 2 2024, 9:36 AM · VyOS Rolling, Bugs
Viacheslav created T6292: Unable to update webproxy blacklist as they use captcha.
May 2 2024, 9:36 AM · VyOS Rolling, Bugs
Viacheslav updated the task description for T4811: Webproxy bypassing CLI whitelist command is missing.
May 2 2024, 9:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav changed the status of T6141: Trying to set PADO delay in PPPoE server without also configuring the session options causes a commit failure from In progress to Needs testing.
May 2 2024, 9:05 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav added a comment to T6141: Trying to set PADO delay in PPPoE server without also configuring the session options causes a commit failure.

@natali-rs1985 Can you check and close it?

May 2 2024, 9:05 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta (1.4.0-epa2)
Viacheslav moved T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 2 2024, 9:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path as Resolved.
May 2 2024, 9:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart as Unknown Status.
May 2 2024, 8:56 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Viacheslav moved T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart from Open to Finished on the VyOS 1.5 Circinus board.
May 2 2024, 8:56 AM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX9a99f1ddf129: T6235: Git update actions-label-merge-conflict version (authored by Viacheslav).
May 2 2024, 8:40 AM
Viacheslav committed rVYOSONEX637e5faaa0af: T6056: Change static-host-mapping shold not restart snmpd.
May 2 2024, 8:32 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXe35b91858d76: T6056: Change static-host-mapping shold not restart snmpd (authored by Viacheslav).
May 2 2024, 6:16 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX781109ec44fa: T6056: Change static-host-mapping shold not restart snmpd (authored by Viacheslav).
May 2 2024, 6:15 AM
Viacheslav added a comment to T6288: policy route ipv4 rule order behaviour.

@e.pc.yuan Read please https://blog.vyos.io/feature-requests-and-bug-reports-guidelines

A sequence of configuration commands or a complete configuration file is required to recreate a setup where the bug occurs. Please avoid partial configs: a sequence of commands is easy to paste into the console, a complete config is easy to load in a VM, and a partial config is neither! At least not until we implement a "merge from the CLI" feature that allows pasting config file chunks into a session.
May 2 2024, 6:03 AM · VyOS 1.5 Circinus
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXe2f0643d7b2a: ntp: T4909: Rewrite NTP op mode in new format (authored by Giggum).
May 2 2024, 5:46 AM
Giggum committed rVYOSONEXd2a82c30695c: ntp: T4909: Rewrite NTP op mode in new format.
May 2 2024, 5:46 AM
GitHub <[email protected]> committed rVYOSONEXf97a3254c9e9: Merge pull request #3307 from Giggum/vyos-1x-T4909 (authored by c-po).
May 2 2024, 5:45 AM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX389a26b2af89: T6269: policy: ensure correct rule parsing when using, and when not using <set… (authored by n.fort).
May 2 2024, 5:44 AM
n.fort committed rVYOSONEXd518386d74ab: T6269: policy: ensure correct rule parsing when using, and when not using <set….
May 2 2024, 5:43 AM
GitHub <[email protected]> committed rVYOSONEX958e9ac4d1eb: Merge pull request #3367 from nicolas-fort/T6269 (authored by c-po).
May 2 2024, 5:43 AM
Viacheslav closed T5278: custome firewall network-group and update CIDR from a file as Invalid.

You can ask on the forum
Close the task as duplicate

May 2 2024, 4:44 AM · VyOS 1.5 Circinus
jestabro committed rVYOSONEXa1f4404739e0: pppoe-server: T6234: fix permissions on migration script.
May 2 2024, 2:25 AM

May 1 2024

e.pc.yuan added a comment to T5278: custome firewall network-group and update CIDR from a file.

Something like set policy route PBR rule 1 destination group network-group us such that PBR is able to route towards a GEOIP network group will be awesome. I believe it is available in firewall already.

May 1 2024, 11:08 PM · VyOS 1.5 Circinus
e.pc.yuan updated the task description for T6288: policy route ipv4 rule order behaviour.
May 1 2024, 9:57 PM · VyOS 1.5 Circinus
e.pc.yuan updated the task description for T6288: policy route ipv4 rule order behaviour.
May 1 2024, 9:56 PM · VyOS 1.5 Circinus
GitHub <[email protected]> committed rVYOSONEXe019155e3d7a: Merge pull request #3388 from vyos/mergify/bp/sagitta/pr-3364 (authored by c-po).
May 1 2024, 7:28 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX45897d149473: bgp: T6189: explicitly call vtysh to remove VRF L3VNI configuration (authored by c-po).
May 1 2024, 7:28 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX1fb8c0445f01: vrf: T6189: render FRR L3VNI configuration when creating VRF instance (authored by c-po).
May 1 2024, 7:28 PM
c-po committed rVYOSONEXe7bb65894f86: vrf: T6189: render FRR L3VNI configuration when creating VRF instance.
May 1 2024, 7:27 PM
c-po committed rVYOSONEX7b46172a4aec: bgp: T6189: explicitly call vtysh to remove VRF L3VNI configuration.
May 1 2024, 7:27 PM
GitHub <[email protected]> committed rVYOSONEX4387d096d15e: Merge pull request #3392 from c-po/bgp-evpn-T6189 (authored by c-po).
May 1 2024, 7:27 PM
GitHub <[email protected]> committed rVYOSONEXc37bbccf18b8: Merge pull request #3391 from vyos/mergify/bp/sagitta/pr-3390 (authored by c-po).
May 1 2024, 7:27 PM
c-po committed rVYOSONEX387e23e2806a: smoketest: T6199: remove redundant code when unpacking Kernel GZ config.
May 1 2024, 7:09 PM
c-po added a comment to T6189: BGP L3VPN connectivity is broken after re-enabling VRF.

https://github.com/vyos/vyos-1x/pull/3392

May 1 2024, 7:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX50eb645be7a5: smoketest: T6199: remove redundant code when unpacking Kernel GZ config (authored by c-po).
May 1 2024, 7:04 PM
c-po committed rVYOSONEX6bcb201a0e7e: smoketest: T6199: remove redundant code when unpacking Kernel GZ config.
May 1 2024, 7:03 PM
GitHub <[email protected]> committed rVYOSONEX986743cd67f5: Merge pull request #3390 from c-po/kernel-smoketest (authored by c-po).
May 1 2024, 7:03 PM
Viacheslav moved T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 5:37 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default: VyOS 1.4 Sagitta (1.4.0-epa3).
May 1 2024, 5:36 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Embezzle closed T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default as Resolved.

Tested as working in: VyOS 1.5-rolling-202405010020

May 1 2024, 5:31 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian added a comment to T6291: Add op mode commands for displaying LACP information for bonding interfaces.

Added PR: https://github.com/vyos/vyos-1x/pull/3389

May 1 2024, 4:36 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6291: Add op mode commands for displaying LACP information for bonding interfaces as Normal priority.
May 1 2024, 4:32 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian updated the task description for T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 4:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T6281: Wireguard does not pass traffic if VRFs are used.

Well looks like you hit a WireGuard limitation here (route-leaking the default nexthop to another VRF)

May 1 2024, 3:50 PM · VyOS 1.5 Circinus
c-po closed T6257: Add op mode commands for dynamic firewall address groups as Resolved.
May 1 2024, 3:48 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po moved T6257: Add op mode commands for dynamic firewall address groups from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 3:48 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po closed T6162: ixgbe: Add 1000BASE-BX support as Resolved.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po moved T6162: ixgbe: Add 1000BASE-BX support from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
c-po moved T6257: Add op mode commands for dynamic firewall address groups from In Progress to Finished on the VyOS 1.5 Circinus board.
May 1 2024, 3:47 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0891817c6f0b: pppoe-server: T6234: PPPoE-server pado-delay refactoring (authored by natali-rs1985).
May 1 2024, 3:35 PM
natali-rs1985 committed rVYOSONEX107ee099e823: pppoe-server: T6234: PPPoE-server pado-delay refactoring.
May 1 2024, 3:34 PM
GitHub <[email protected]> committed rVYOSONEX6872b3f1a3f3: Merge pull request #3364 from natali-rs1985/T6234-current (authored by dmbaturin).
May 1 2024, 3:34 PM
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX65e894bd20f5: T6287: Config-sync add the ability to configure API port (authored by Viacheslav).
May 1 2024, 3:27 PM
Viacheslav committed rVYOSONEXa7c3f202ffea: T6287: Config-sync add the ability to configure API port.
May 1 2024, 3:23 PM
GitHub <[email protected]> committed rVYOSONEXe80e54cbece7: Merge pull request #3384 from sever-sever/T6287 (authored by dmbaturin).
May 1 2024, 3:23 PM
Viacheslav committed rVYOSONEX4f1db505791d: T6056: Change static-host-mapping shold not restart snmpd.
May 1 2024, 3:22 PM
GitHub <[email protected]> committed rVYOSONEX3286835c3167: Merge pull request #3386 from sever-sever/T6056 (authored by dmbaturin).
May 1 2024, 3:22 PM
L0crian claimed T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 2:54 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
L0crian created T6291: Add op mode commands for displaying LACP information for bonding interfaces.
May 1 2024, 2:35 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6056: Applying 'system static-host-mapping' command calls unnecessary snmpd restart.

PR https://github.com/vyos/vyos-1x/pull/3386

May 1 2024, 1:50 PM · VyOS 1.4 Sagitta (1.4.0-epa1), VyOS 1.3 Equuleus (1.3.7)
GitHub <[email protected]> committed rVYOSONEXf69604da0a06: Merge pull request #3385 from vyos/mergify/bp/sagitta/pr-3369 (authored by c-po).
May 1 2024, 12:21 PM
Viacheslav triaged T6290: SNMPD show logs systemstats_linux: unexpected header length as Normal priority.
May 1 2024, 12:18 PM · VyOS Rolling, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav updated the task description for T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:12 PM · VyOS Rolling, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav updated the task description for T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:11 PM · VyOS Rolling, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
Viacheslav created T6290: SNMPD show logs systemstats_linux: unexpected header length.
May 1 2024, 12:10 PM · VyOS Rolling, VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.1)
rchrist added a comment to T6281: Wireguard does not pass traffic if VRFs are used.
In T6281#185620, @c-po wrote:

You probably should get the wireguard interface running in your default VRF first and see if traffic properly passes - once that's working for oyu you can move it into a VRF. Please not only the decrypted side of the WireGuard interface will reside in the VRF. The side passing encrypted packets ALWAYS is in the default VRF (Linux Kernel)

May 1 2024, 9:28 AM · VyOS 1.5 Circinus
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

Thanks for the hints, that makes sense. Let's see how that can be implemented :)

May 1 2024, 9:26 AM · VyOS Rolling, Bugs
Apachez added a comment to T2468: Passwords with special characters fail in commit-archive.

For added service when typing just:

May 1 2024, 9:16 AM · VyOS Rolling, Bugs
c-po added a comment to T6281: Wireguard does not pass traffic if VRFs are used.

You probably should get the wireguard interface running in your default VRF first and see if traffic properly passes - once that's working for oyu you can move it into a VRF. Please not only the decrypted side of the WireGuard interface will reside in the VRF. The side passing encrypted packets ALWAYS is in the default VRF (Linux Kernel)

May 1 2024, 9:16 AM · VyOS 1.5 Circinus
Apachez added a comment to T2468: Passwords with special characters fail in commit-archive.

You would still be limited to not be able to use " as part of your password.

May 1 2024, 9:15 AM · VyOS Rolling, Bugs
Viacheslav added a comment to T2468: Passwords with special characters fail in commit-archive.

There should also be migration scripts, as CLI will be changed.

May 1 2024, 9:13 AM · VyOS Rolling, Bugs
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

Proposal:

set system config-management commit-archive uri "stor01z-cs.int.trae32566.org/cr01b-vyos"
set system config-management commit-archive scheme "sftp"
set system config-management commit-archive username "cr01b"
set system config-management commit-archive password "$T3$TP@$$W0^%"
May 1 2024, 8:15 AM · VyOS Rolling, Bugs
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEX0460076d8be1: firewall: T6257: Show member information for dynamic groups in op-mode (authored by sarthurdev).
May 1 2024, 8:14 AM
sarthurdev committed rVYOSONEX456419c79304: firewall: T6257: Show member information for dynamic groups in op-mode.
May 1 2024, 8:13 AM
GitHub <[email protected]> committed rVYOSONEX91c1a8556eed: Merge pull request #3369 from sarthurdev/T6257 (authored by c-po).
May 1 2024, 8:13 AM
GitHub <[email protected]> committed rVYOSONEXc7d4126ab20d: Merge pull request #3383 from vyos/mergify/bp/sagitta/pr-3382 (authored by c-po).
May 1 2024, 8:11 AM
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

We could improve it by breaking up configuration, having the user providing a URI, Protocol and optional username/password as separate values.
Then we can properly encode username/password. This would also give more flexibility how username/password are handled and passed on.

May 1 2024, 8:06 AM · VyOS Rolling, Bugs
nvollmar added a comment to T2468: Passwords with special characters fail in commit-archive.

In both cases it is kind of an user error, the password would have to be properly url encoded if provided in one (@ should be %40 in an URI, a ! should be %21).

May 1 2024, 8:04 AM · VyOS Rolling, Bugs
Viacheslav edited projects for T6287: Add API destination port number for secondary firewall in config sync, added: VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0-epa3); removed VyOS 1.4 Sagitta.
May 1 2024, 7:26 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path: VyOS 1.4 Sagitta (1.4.0-epa3).
May 1 2024, 7:16 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6179: Incorrect HAProxy config generated for reverse-proxy rules with url-path from Open to Needs testing.
May 1 2024, 7:16 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6287: Add API destination port number for secondary firewall in config sync from Open to In progress.
May 1 2024, 7:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6287: Add API destination port number for secondary firewall in config sync.

PR https://github.com/vyos/vyos-1x/pull/3384

set service config-sync secondary address '192.168.122.11'
set service config-sync secondary port '8443'
May 1 2024, 7:12 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Mergify <37929162+mergify[bot]@users.noreply.github.com> committed rVYOSONEXfbc33054f635: haproxy: T6179: fix rule generation (authored by nvollmar).
May 1 2024, 6:14 AM
nvollmar committed rVYOSONEX0be0cdb932ca: haproxy: T6179: fix rule generation.
May 1 2024, 6:13 AM
GitHub <[email protected]> committed rVYOSONEX3580bbb054a5: Merge pull request #3382 from nvollmar/T6179 (authored by c-po).
May 1 2024, 6:13 AM
Viacheslav moved T6267: Improve commit failure messages for wireless interface configuration from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
May 1 2024, 5:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6267: Improve commit failure messages for wireless interface configuration as Resolved.
May 1 2024, 5:43 AM · VyOS 1.4 Sagitta (1.4.0-epa3)