OpenVPN now runs as user openvpn with the above helper script. Please also test this new implementation, it will be in the rolling ISO which is building right now.
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Sep 6 2019
Persistent tunnel is a configuration option set interfaces openvpn vtun10 persistent-tunnel
Sep 5 2019
Huh? Which perl script?
As the bonding interface has been completely rewritten this should not be an issue as I do not touch underlaying interface MAC addresses
Why not specify the keys or the key file location via CLI like other VPN implementations do it?
Sep 4 2019
You could use quoting like mentioned in T1129.
Rewrite was tested using:
I like the openvpn:openvpn ownership idea
The documentation is also correct. Please not that there are two git branches for the documentation, current and equuleus. You send me the VyOS 1.2.2 crux link. I gave you the upcoming VyOS 1.2 equuleus link.
This is actually a duplicate of T1617.
The bahavior has changed, see https://vyos.readthedocs.io/en/equuleus/interfaces/bridging.html and T1556
1.3 rolling is not recommended for users - its pre-alpha.
@jdevincentis is this a custom build? Using VyOS 1.2-rolling-201909040337 I can not reproduce the issue with:
Sep 3 2019
The config generator would need to be adopted https://github.com/vyos/vyos-1x/blob/current/src/conf_mode/interface-openvpn.py and the wrapper script added. I have no time before tomorrow, sorry
Please test with latest rolling and not a custom build.
When the site looses connection and thus a SIGUSR21 is sent to OpenVPN to restart internally the priviledges have dropped and yes, /sbin/ip can't be called again.
Sep 2 2019
Should be fixed in next rolling release by: https://github.com/vyos/vyatta-cfg/commit/710728ee8eb6def82f9a142468960f6985dcf4e8