Page MenuHomeVyOS Platform
Feed All Stories

Dec 16 2024

c-po committed rVYOSONEX2fcd45e22537: Debian: T6746: bump required FRR version to >= 10.2.
Dec 16 2024, 9:25 PM
GitHub <[email protected]> committed rVYOSONEX86b528863585: Merge pull request #4238 from c-po/T6613-tacacs (authored by c-po).
Dec 16 2024, 6:51 PM
c-po committed rVYOSONEXa1332024816b: tacacs: T6613: dynamically build exclude_users list to avoid TACACS traffic.
Dec 16 2024, 6:51 PM
gsggage added a comment to T6950: Migration Error for Dynamic DNS "Service dns dynamic address" doesn't exist.

Seems the following fixed it in the code. At the very least it didn't error anymore. I'll happily try to make a merge request for it but I've never done that on a project of this scale before so I'd like some guidance.

# Copyright 2023-2024 VyOS maintainers and contributors <[email protected]>
#
# This library is free software; you can redistribute it and/or
# modify it under the terms of the GNU Lesser General Public
# License as published by the Free Software Foundation; either
# version 2.1 of the License, or (at your option) any later version.
#
# This library is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
# Lesser General Public License for more details.
#
# You should have received a copy of the GNU Lesser General Public License
# along with this library.  If not, see <http://www.gnu.org/licenses/>.
Dec 16 2024, 4:47 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
nvollmar created T6953: Group prometheus exporter config options.
Dec 16 2024, 3:43 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
natali-rs1985 created T6952: Enable exFAT in the kernel config.
Dec 16 2024, 12:54 PM · VyOS 1.5 Circinus, VyOS Rolling
natali-rs1985 committed rVYOSONEXb490dd420138: static: T4214: Allow several dhcp-interfaces to the same static rote.
Dec 16 2024, 11:43 AM
GitHub <[email protected]> committed rVYOSONEX4e5c65dd40fb: Merge pull request #4211 from natali-rs1985/T4214 (authored by dmbaturin).
Dec 16 2024, 11:43 AM
GitHub <[email protected]> committed rVYOSONEXd08a51ab1011: Merge pull request #4219 from natali-rs1985/T6628 (authored by dmbaturin).
Dec 16 2024, 11:43 AM
natali-rs1985 committed rVYOSONEXa4bf498d77b5: ipoe_server: T6628: Add option to assign static IP address to end users.
Dec 16 2024, 11:43 AM
dmbaturin updated the task description for T6951: Add a configuration command for ethertypes that bridge firewalls should always accept.
Dec 16 2024, 11:20 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), Restricted Project, VyOS Rolling
dmbaturin created T6951: Add a configuration command for ethertypes that bridge firewalls should always accept.
Dec 16 2024, 11:18 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), Restricted Project, VyOS Rolling
Viacheslav added a comment to T6896: OpenVPN change CRL revoke without restart.

Clients cannot connect with empty crl file

# vyos@r14:~$ sudo cat /run/openvpn/vtun10_crl.pem 
# vyos@r14:~$
Dec 16 2024, 10:43 AM · VyOS Rolling
Viacheslav triaged T6950: Migration Error for Dynamic DNS "Service dns dynamic address" doesn't exist as Normal priority.
Dec 16 2024, 9:15 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T6949: blackbox_exporter for probing endpoints as Wishlist priority.
Dec 16 2024, 9:14 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
gsggage created T6950: Migration Error for Dynamic DNS "Service dns dynamic address" doesn't exist.
Dec 16 2024, 5:31 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling

Dec 15 2024

c-po renamed T6945: bfd: fix invalid generated template when no multi-hop profile is defined from bfd: missing verify stage when adding a static-multihop entry without a profile to bfd: fix invalid generated template when no multi-hop profile is defined.
Dec 15 2024, 6:40 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2)
kumvijaya <[email protected]> committed rVYOSONEX77ecda5e5330: T6940: added pr mirror sync caller workflows (revised), and cleaned up old….
Dec 15 2024, 6:12 PM
GitHub <[email protected]> committed rVYOSONEX221b384ff009: Merge pull request #4239 from kumvijaya/current (authored by c-po).
Dec 15 2024, 6:12 PM
nvollmar added a comment to T6949: blackbox_exporter for probing endpoints.

Blackbox exporter requires a config file for modules that should be used (for example ping over IPv4 or IPv6, DNS for A or AAAA).

Dec 15 2024, 4:25 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
nvollmar created T6949: blackbox_exporter for probing endpoints.
Dec 15 2024, 4:23 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
nvollmar added a comment to T973: Create Prometheus Exporter for VyOS .

This feature is missing documentation: https://docs.vyos.io/en/latest/configuration/service/monitoring.html

Dec 15 2024, 3:55 PM · VyOS Rolling, VyOS 1.5 Circinus
c-po added a comment to T6613: VyOS local system users TACACS+ authorization requests do not work correctly.

https://github.com/vyos/vyos-1x/pull/4238
https://github.com/vyos/libnss-tacplus/pull/1

Dec 15 2024, 8:35 AM · VyOS 1.4 Sagitta (1.4.2), VyOS 1.5 Circinus, VyOS Rolling
c-po added a comment to T6613: VyOS local system users TACACS+ authorization requests do not work correctly.

The exclude_users string can not have an infinite length.

Dec 15 2024, 8:20 AM · VyOS 1.4 Sagitta (1.4.2), VyOS 1.5 Circinus, VyOS Rolling

Dec 14 2024

c-po updated the task description for T6747: frr: upgrade routing suite to 10.2.
Dec 14 2024, 3:08 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q3), VyOS Rolling
c-po closed T6908: Avahi: add option to define mdns-repeater max-cache entries as Resolved.
Dec 14 2024, 3:07 PM · VyOS 1.4 Sagitta (1.4.1), VyOS Rolling, VyOS 1.5 Circinus
c-po moved T6908: Avahi: add option to define mdns-repeater max-cache entries from Backport Candidates to Completed on the VyOS Rolling board.
Dec 14 2024, 3:07 PM · VyOS 1.4 Sagitta (1.4.1), VyOS Rolling, VyOS 1.5 Circinus

Dec 13 2024

GitHub <[email protected]> committed rVYOSONEXeecf5daea2c2: Merge pull request #4222 from natali-rs1985/T6860 (authored by c-po).
Dec 13 2024, 6:24 PM
natali-rs1985 committed rVYOSONEXe513333ed56b: op_mode: T6860: Display the EULA in "run show license".
Dec 13 2024, 6:24 PM
c-po added a project to T6747: frr: upgrade routing suite to 10.2: VyOS 1.5 Circinus.
Dec 13 2024, 4:52 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q3), VyOS Rolling
c-po added a comment to T6747: frr: upgrade routing suite to 10.2.

https://github.com/vyos/vyos-1x/pull/4227
https://github.com/vyos/vyos-build/pull/853

Dec 13 2024, 4:52 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q3), VyOS Rolling
Viacheslav raised the priority of T6896: OpenVPN change CRL revoke without restart from Normal to High.
Dec 13 2024, 4:41 PM · VyOS Rolling
Viacheslav added a comment to T6896: OpenVPN change CRL revoke without restart.

Some thoughts.

Dec 13 2024, 4:08 PM · VyOS Rolling
jestabro committed rVYOSONEX184e24b7f0a2: vyconf: T6718: start vyconfd from vyos-router.
Dec 13 2024, 2:24 PM
GitHub <[email protected]> committed rVYOSONEX6a7766ec1fbb: Merge pull request #4176 from jestabro/vyconf-minimal (authored by jestabro).
Dec 13 2024, 2:24 PM
jestabro committed rVYOSONEX40f3a86e697f: vyconf: T6718: set log-file.
Dec 13 2024, 2:24 PM
jestabro committed rVYOSONEX6999f85b2fc1: vyconf: T6718: use vy_set/delete in configsession and util.
Dec 13 2024, 2:24 PM
jestabro committed rVYOSONEX0c4d653fc2db: vyconf: T6718: add boot configs.
Dec 13 2024, 2:24 PM
jestabro committed rVYOSONEXbab186b49314: vyconf: T6718: add reftree internal cache.
Dec 13 2024, 2:24 PM
Viacheslav triaged T6948: DHCP records out of sync with vyos hostd state after system restart as Normal priority.
Dec 13 2024, 1:50 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
indrajitr updated the task description for T6948: DHCP records out of sync with vyos hostd state after system restart.
Dec 13 2024, 11:02 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
indrajitr claimed T6948: DHCP records out of sync with vyos hostd state after system restart.
Dec 13 2024, 10:51 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
indrajitr created T6948: DHCP records out of sync with vyos hostd state after system restart.
Dec 13 2024, 10:50 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
opswill added a comment to T6918: PPPoE traffic is classified as invalid.

Based on your suggestion, I submitted a PR to accept the traffic for the PPPoE session. However,I'm not sure how to accept these STP traffic , so the STP was not included.

Dec 13 2024, 8:05 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
evgmol added a comment to T6822: vyos_bgp_global setting neighbor passive causes module to try configuring neighbhr next-hop-self .

The fix is now a part of https://github.com/vyos/vyos.vyos/pull/367

Dec 13 2024, 3:40 AM · Bugs, VyOS Ansible Collection
evgmol claimed T6822: vyos_bgp_global setting neighbor passive causes module to try configuring neighbhr next-hop-self .
Dec 13 2024, 3:11 AM · Bugs, VyOS Ansible Collection

Dec 12 2024

zsdc changed the status of T6947: Add Oracle Linux Virtualization Manager (OLVM) flavor from Open to In progress.
Dec 12 2024, 10:37 PM · VyOS Rolling
zsdc created T6947: Add Oracle Linux Virtualization Manager (OLVM) flavor.
Dec 12 2024, 10:36 PM · VyOS Rolling
nvollmar committed rVYOSONEX2de9fc6c1c0e: T6927: add name server validation.
Dec 12 2024, 8:24 PM
GitHub <[email protected]> committed rVYOSONEX4221687fc7a0: Merge pull request #4232 from nvollmar/T6927 (authored by c-po).
Dec 12 2024, 8:24 PM
GitHub <[email protected]> committed rVYOSONEX678c6cd00412: T6863: Fix default distance for PPPoE (#4229) (authored by HollyGurza).
Dec 12 2024, 7:14 PM
Vijayakumar changed the status of T6850: Update mirror sync to use revised approach (mirror and repo-sync) - vyos-1x from Open to In progress.
Dec 12 2024, 5:02 PM · Restricted Project, GitHub Infrastructure
Vijayakumar changed the status of T6850: Update mirror sync to use revised approach (mirror and repo-sync) - vyos-1x, a subtask of T6707: Implement a new build and release workflow based on GitHub Actions, from Open to In progress.
Dec 12 2024, 5:02 PM · GitHub Infrastructure
Vijayakumar renamed T6850: Update mirror sync to use revised approach (mirror and repo-sync) - vyos-1x from Update mirror sync to use git format-patch to Update mirror sync to use revised approach (mirror and repo-sync).
Dec 12 2024, 5:02 PM · Restricted Project, GitHub Infrastructure
Vijayakumar renamed T6940: Update vyos-1x owners using usernames from Update vyos-1x current owners to Update vyos-1x owners using usernames.
Dec 12 2024, 5:01 PM · GitHub Infrastructure
Vijayakumar closed T6897: add codeowners for vyos-nerworks/vyos-1x as Resolved.
Dec 12 2024, 5:00 PM · GitHub Infrastructure
Vijayakumar closed T6897: add codeowners for vyos-nerworks/vyos-1x, a subtask of T6707: Implement a new build and release workflow based on GitHub Actions, as Resolved.
Dec 12 2024, 5:00 PM · GitHub Infrastructure
Vijayakumar closed T6885: add pr template and codeowners for vyos.vyos, a subtask of T6707: Implement a new build and release workflow based on GitHub Actions, as Resolved.
Dec 12 2024, 4:59 PM · GitHub Infrastructure
Vijayakumar closed T6885: add pr template and codeowners for vyos.vyos as Resolved.
Dec 12 2024, 4:59 PM · GitHub Infrastructure
Vijayakumar closed T6901: vyos-networks/vyos-1x: move workflows from git-actions to standard branches, a subtask of T6707: Implement a new build and release workflow based on GitHub Actions, as Resolved.
Dec 12 2024, 4:57 PM · GitHub Infrastructure
Vijayakumar closed T6901: vyos-networks/vyos-1x: move workflows from git-actions to standard branches as Resolved.
Dec 12 2024, 4:57 PM · GitHub Infrastructure
Viacheslav changed the status of T6013: Add support for SSH certificate configuration from Open to In progress.
Dec 12 2024, 9:05 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T6945: bfd: fix invalid generated template when no multi-hop profile is defined as Normal priority.
Dec 12 2024, 9:03 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2)
HollyGurza added a comment to T6792: Autocomplete for "show arp interface" is missing non-ethernet interfaces.

https://github.com/vyos/vyos-utils/pull/28

Dec 12 2024, 3:38 AM · VyOS 1.4 Sagitta (1.4.3), VyOS 1.5 Circinus, VyOS Rolling
takehaya added a comment to T6013: Add support for SSH certificate configuration.

https://github.com/vyos/vyos-1x/pull/4234
Development has begun! :)

Dec 12 2024, 2:50 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
TheSin- added a comment to T4797: External address/network lists for firewall (Local and remote).

I’ve been using it as is since I posted this, it’s been working fantastically

Dec 12 2024, 2:40 AM · VyOS Rolling

Dec 11 2024

evgmol added a comment to T6888: vyos_bgp_address_family doesn't implement config when omitting optional args.

the PR to fix this is https://github.com/vyos/vyos.vyos/pull/367

Dec 11 2024, 11:50 PM · Bugs, VyOS Ansible Collection
evgmol added a comment to T6892: BGP configuration doesn't work with Vyos 1.4.x.

The PR tp fix this https://github.com/vyos/vyos.vyos/pull/367

Dec 11 2024, 11:50 PM · Bugs, VyOS Ansible Collection
jestabro added a subtask for T6718: Use vyconf daemon for validation of set commands: T6946: Add initial commit algorithm to vyconf.
Dec 11 2024, 5:51 PM · VyOS Rolling
jestabro added a parent task for T6946: Add initial commit algorithm to vyconf: T6718: Use vyconf daemon for validation of set commands.
Dec 11 2024, 5:51 PM · VyOS Rolling
jestabro created T6946: Add initial commit algorithm to vyconf.
Dec 11 2024, 5:51 PM · VyOS Rolling
takehaya added a comment to T6013: Add support for SSH certificate configuration.

hi,I am interested in this issue and would like to work on it.
If there are any relevant code references or examples, please let me know.

Dec 11 2024, 4:11 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
c-po claimed T6945: bfd: fix invalid generated template when no multi-hop profile is defined.
Dec 11 2024, 3:24 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2)
c-po updated the task description for T6945: bfd: fix invalid generated template when no multi-hop profile is defined.
Dec 11 2024, 3:24 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2)
c-po created T6945: bfd: fix invalid generated template when no multi-hop profile is defined.
Dec 11 2024, 3:23 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.2)
Viacheslav triaged T6944: allow switching interface to switchdev mode as Normal priority.
Dec 11 2024, 11:12 AM · VyOS Rolling, VyOS 1.5 Circinus
nvollmar created T6944: allow switching interface to switchdev mode.
Dec 11 2024, 10:59 AM · VyOS Rolling, VyOS 1.5 Circinus
HollyGurza added a comment to T6934: Add preshared keys for zabbix-agent monitoring service.

https://github.com/vyos/vyos-1x/pull/4233

Dec 11 2024, 7:08 AM · VyOS Rolling
dongjunbo added a comment to T4797: External address/network lists for firewall (Local and remote).

Any update about this feature?

Dec 11 2024, 6:07 AM · VyOS Rolling

Dec 10 2024

GitHub <[email protected]> committed rVYOSONEX466c6ad3762f: Merge pull request #4231 from natali-rs1985/T6368 (authored by c-po).
Dec 10 2024, 7:05 PM
natali-rs1985 committed rVYOSONEX609069f4005a: pki: T6368: Add ability for acme to listen on IPv6 addresses.
Dec 10 2024, 7:05 PM
natali-rs1985 moved T3501: Allow using more than one tuned profile from Backlog - Feature Requests to Backport Candidates on the VyOS Rolling board.
Dec 10 2024, 9:13 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
sempervictus updated subscribers of T6943: OpenVPN OTP Breaks Connection After One Hour.

This looks promising:

Connected Since
------------ 
 2024-12-09 18:36:18
Dec 10 2024, 2:21 AM · VyOS Rolling

Dec 9 2024

GitHub <[email protected]> committed rVYOSONEX3ed6f02a66fd: Merge pull request #4218 from nvollmar/T6927 (authored by c-po).
Dec 9 2024, 9:16 PM
nvollmar committed rVYOSONEX1db8a48a8b9d: T6927: adds option to set container name server.
Dec 9 2024, 9:16 PM
nvollmar committed rVYOSONEXf9ddf3f68f42: T6927: adds option to set container name server.
Dec 9 2024, 9:16 PM
sempervictus added a comment to T6943: OpenVPN OTP Breaks Connection After One Hour.

Per TimH in slack:

https://openvpn.net/community-resources/reference-manual-for-openvpn-2-4/
--auth-gen-token [lifetime]
After successful user/password authentication, the OpenVPN server will with this option generate a temporary authentication token and push that to client. On the following renegotiations, the OpenVPN client will pass this token instead of the users password. On the server side the server will do the token authentication internally and it will NOT do any additional authentications against configured external user/password authentication mechanisms.The lifetime argument defines how long the generated token is valid. The lifetime is defined in seconds. If lifetime is not set or it is set to 0, the token will never expire.This feature is useful for environments which is configured to use One Time Passwords (OTP) as part of the user/password authentications and that authentication mechanism does not implement any auth-token support.
OpenVPNOpenVPN
Reference Manual For OpenVPN 2.4 | OpenVPN
Because OpenVPN tries to be a universal VPN tool offering a great deal of flexibility, there are a lot of options on this reference page for OpenVPN 2.4
Dec 9 2024, 6:42 PM · VyOS Rolling
Viacheslav changed the subtype of T6943: OpenVPN OTP Breaks Connection After One Hour from "Task" to "Bug".
Dec 9 2024, 3:41 PM · VyOS Rolling
sempervictus created T6943: OpenVPN OTP Breaks Connection After One Hour.
Dec 9 2024, 3:37 PM · VyOS Rolling
Viacheslav updated the task description for T6896: OpenVPN change CRL revoke without restart.
Dec 9 2024, 11:04 AM · VyOS Rolling
Viacheslav updated the task description for T6896: OpenVPN change CRL revoke without restart.
Dec 9 2024, 10:59 AM · VyOS Rolling
HollyGurza changed the status of T6934: Add preshared keys for zabbix-agent monitoring service from Open to In progress.
Dec 9 2024, 10:10 AM · VyOS Rolling
HollyGurza claimed T6934: Add preshared keys for zabbix-agent monitoring service.
Dec 9 2024, 10:10 AM · VyOS Rolling
HollyGurza changed the status of T6792: Autocomplete for "show arp interface" is missing non-ethernet interfaces from Open to In progress.

https://github.com/vyos/vyos-1x/pull/4230

Dec 9 2024, 10:05 AM · VyOS 1.4 Sagitta (1.4.3), VyOS 1.5 Circinus, VyOS Rolling
HollyGurza changed the status of T6863: The default route distance for PPPoE (210) in the migration script is incorrect and may break server availability from Open to In progress.
Dec 9 2024, 7:12 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.2), VyOS Rolling
HollyGurza added a comment to T6863: The default route distance for PPPoE (210) in the migration script is incorrect and may break server availability.

https://github.com/vyos/vyos-1x/pull/4229

Dec 9 2024, 7:12 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS 1.4 Sagitta (1.4.2), VyOS Rolling

Dec 8 2024

sskaje added a comment to T4930: Allow using domain names for WireGuard peer addresses.
In T4930#209720, @runar wrote:

Routgh idea:

If peer is created with hostname over IP, do not add it during commit

I would insist only not adding endpoint, let peer be ready if they have configured with hostname endpoint.

The peer should be pre-provisioned with everything needed to be accessible externally for a remote peer to reconnect prior to dns resolution.
To allow for this the peer can be added with a endpoint of 0.0.0.0. (if a wireguard peer is not able to be provisioned without a endpoint at least)
This can then be used to "abort" a DNS resolution if the remote end has reconnected.
Only the "resolve dns" part should then be the blocking part, and only that part needs to be moved out of the commit loop.

Dec 8 2024, 1:58 PM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling
Viacheslav triaged T6939: Add DNS-01 challenge for ACME as Wishlist priority.
Dec 8 2024, 8:54 AM · VyOS Rolling
GitHub <[email protected]> committed rVYOSONEX6733ebcf1291: T6940: updated codeowners with user list to support sync (#4228) (authored by Vijayakumar A <[email protected]>).
Dec 8 2024, 8:34 AM
runar added a comment to T4930: Allow using domain names for WireGuard peer addresses.

Routgh idea:

If peer is created with hostname over IP, do not add it during commit

I would insist only not adding endpoint, let peer be ready if they have configured with hostname endpoint.

Dec 8 2024, 7:32 AM · VyOS 1.5 Circinus (1.5-stream-2025-Q2), VyOS Rolling