Page MenuHomeVyOS Platform
Feed Search

Jun 4 2021

c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.123 / 5.10.41 to Update Linux Kernel to v5.4.124 / 5.10.42.
Jun 4 2021, 12:55 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
c-po moved T3195: Add support for cisco style GRE keepalives from Open to Backlog on the VyOS 1.4 Sagitta board.
Jun 4 2021, 12:52 PM · VyOS Rolling
c-po changed the status of T3195: Add support for cisco style GRE keepalives from Open to Needs testing.
Jun 4 2021, 12:52 PM · VyOS Rolling
c-po moved T3195: Add support for cisco style GRE keepalives from Need Triage to Backlog on the VyOS 1.3 Equuleus board.
Jun 4 2021, 12:51 PM · VyOS Rolling
c-po moved T3592: Set default TTL 64 for tunnels from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 4 2021, 12:51 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3592: Set default TTL 64 for tunnels from Open to Finished on the VyOS 1.4 Sagitta board.
Jun 4 2021, 12:50 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3594: Disable by default service strongswan-starter from Open to Finished on the VyOS 1.4 Sagitta board.
Jun 4 2021, 12:50 PM · VyOS 1.4 Sagitta
c-po closed T3592: Set default TTL 64 for tunnels as Resolved.
Jun 4 2021, 12:50 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3132: Enable egress flow accounting from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 4 2021, 12:39 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a project to T3132: Enable egress flow accounting: VyOS 1.3 Equuleus.
Jun 4 2021, 12:32 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Jun 3 2021

fernando added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).

Sorry for confusing with the status of the ticket , I wanted to put in pending . I was trying to replicate the issues in a lab environment but it wasn't possible , let me show :

Jun 3 2021, 10:52 PM · VyOS 1.4 Sagitta
rpeterson changed the status of T3233: Interface redirect to dum0 from Invalid to Resolved.

I got it to work with version 1.4-rolling-202105291042. Here's the configuration that works:

Jun 3 2021, 9:59 PM · VyOS 1.4 Sagitta
jpbede added a comment to T3132: Enable egress flow accounting.

@tuxis-ie found the issue. Used the wrong iptables chain. See https://github.com/vyos/vyos-1x/pull/864

Jun 3 2021, 4:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 edited a custom field on T3116: Support back-end L4 level load balancing.
Jun 3 2021, 4:10 PM · VyOS 1.4 Sagitta
dmbaturin changed Is it a breaking change? from none to behavior on T3592: Set default TTL 64 for tunnels.
Jun 3 2021, 3:59 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sarthurdev created T3598: DMVPN/IPSec does not work with upstream Strongswan 5.9.
Jun 3 2021, 2:32 PM · VyOS 1.4 Sagitta (1.4.0-GA)
jpbede added a comment to T3132: Enable egress flow accounting.

@tuxis-ie thanks for testing this out. Will check this.

Jun 3 2021, 1:57 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) closed T3593: PPPoE server called-sid format does not work as Unknown Status.

Please, backport it to 1.3 rolling https://phabricator.vyos.net/rVYOSONEX4b646c1fb31a1a9f9c9d1658734d478fed5f19f1

Jun 3 2021, 12:36 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
RyVolodya added a comment to T3593: PPPoE server called-sid format does not work.

This bag is present in VyOS version 1.3-beta-202105271929

Jun 3 2021, 12:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 changed the subtype of T3596: Support wide-dhcp6-relay from "Bug" to "Feature Request".
Jun 3 2021, 11:21 AM
jack9603301 changed the subtype of T3596: Support wide-dhcp6-relay from "Feature Request" to "Bug".
Jun 3 2021, 10:45 AM
vindenesen added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

I tried to create a custom timeout rule for tcp port 80. First I assumed that everything was fine since the first commit succeeded without error messages. But when I wanted to alter the rule, it failed. Below you see an example where I first create a rule, and then try to delete it. Afterwards any commits regarding custom timeouts fails.

Jun 3 2021, 8:30 AM · VyOS 1.4 Sagitta
c-po added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

Yes, also this part will be migrated in the next couple of weeks as we plan to get rid of all legacy code in the 1.4 release cycle.

Jun 3 2021, 7:42 AM · VyOS 1.4 Sagitta
c-po changed the status of T3595: Cannot create new VTI interface, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, from Open to Confirmed.
Jun 3 2021, 7:40 AM · VyOS 1.4 Sagitta
c-po changed the status of T3595: Cannot create new VTI interface from Open to Confirmed.
Jun 3 2021, 7:40 AM · VyOS 1.4 Sagitta
c-po claimed T3595: Cannot create new VTI interface.
Jun 3 2021, 7:38 AM · VyOS 1.4 Sagitta
jack9603301 closed T3384: Support UDP bandwidth testing as Resolved.
Jun 3 2021, 6:53 AM · VyOS 1.4 Sagitta
vindenesen added a comment to T3579: Rewrite vyatta-conntrack in new XML and Python flavour.

Will the custom timeout feature also be implemented in the python code? This is an option in the perl flavour (but doesn't actually work in 1.3 RC4).

Jun 3 2021, 6:37 AM · VyOS 1.4 Sagitta

Jun 2 2021

Viacheslav added a comment to T3595: Cannot create new VTI interface.

It seems after that commit
but it is not a root case

Jun 2 2021, 7:54 PM · VyOS 1.4 Sagitta
Viacheslav added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: T3595: Cannot create new VTI interface.
Jun 2 2021, 7:52 PM · VyOS 1.4 Sagitta
Viacheslav added a parent task for T3595: Cannot create new VTI interface: T2816: Rewrite IPsec scripts with the new XML/Python approach.
Jun 2 2021, 7:52 PM · VyOS 1.4 Sagitta
Viacheslav edited projects for T3595: Cannot create new VTI interface, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.
Jun 2 2021, 7:51 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T3597: Add tunnels FOO over UDP (FOU).
Jun 2 2021, 7:33 PM
Viacheslav created T3597: Add tunnels FOO over UDP (FOU).
Jun 2 2021, 5:08 PM
jack9603301 changed the subtype of T3596: Support wide-dhcp6-relay from "Task" to "Feature Request".
Jun 2 2021, 4:46 PM
jack9603301 claimed T3596: Support wide-dhcp6-relay.
Jun 2 2021, 2:54 PM
jack9603301 created T3596: Support wide-dhcp6-relay.
Jun 2 2021, 2:53 PM
erkin changed the status of T3556: Commit-archive via scp causes 100% CPU on boot from Open to Needs testing.
Jun 2 2021, 9:57 AM · VyOS 1.4 Sagitta
erkin changed the status of T3556: Commit-archive via scp causes 100% CPU on boot, a subtask of T3356: Script for remote file transfers, from Open to Needs testing.
Jun 2 2021, 9:57 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin changed the status of T3563: commit-archive breaks with IPv6 source addresses, a subtask of T3356: Script for remote file transfers, from Needs testing to In progress.
Jun 2 2021, 9:53 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
erkin changed the status of T3563: commit-archive breaks with IPv6 source addresses from Needs testing to In progress.
Jun 2 2021, 9:53 AM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T3546: Add support for running scripts on PPPoE server session events.

Extended scripts receive from PPPoE daemon the following variables:

$1 - Interface name
$4 - Tunnel GW IP address
$5 - Delegated IP address to the client
$6 - Calling Station ID (MAC)

For example, how to get received RADIUS attributes
note: In this case, Filter-Id attribute used as an indicator for block user adding to ipset

configure
set firewall group address-group blocked 
commit
Jun 2 2021, 8:44 AM · VyOS 1.3 Equuleus (1.3.4)
erkin changed the status of T2855: disabled vti interfaces still working from Open to Needs testing.

Waiting for T3595 to clear up before I can test this on rolling release.

Jun 2 2021, 8:40 AM · VyOS 1.2 Crux (VyOS 1.2.8)
erkin changed the status of T2911: new pppoe warnings recently from Open to Needs testing.
Jun 2 2021, 7:38 AM
erkin closed T3233: Interface redirect to dum0 as Invalid.

I cannot replicate this bug in a clean install of 1.4-rolling-202105291042.

vyos@vyos# set interfaces dummy dum0 address 192.168.201.1/24
[edit]
vyos@vyos# commit
[edit]

Either there's something in your config meddling with the interface creation or (most likely) this bug was solved in the main branch since then.

Jun 2 2021, 7:34 AM · VyOS 1.4 Sagitta
tuxis-ie added a comment to T3132: Enable egress flow accounting.

We upgraded to 1.3.0-rc4 last night and enabled enable-egress, which indeed sends out egress traffic as well. However, the macaddresses are all zero:

Jun 2 2021, 7:06 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Jun 1 2021

c-po added a subtask for T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan: T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords.
Jun 1 2021, 8:46 PM · VyOS 1.4 Sagitta
ernstjo added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).

I can reproduce the issue on our productive route in following way:

Jun 1 2021, 7:42 PM · VyOS 1.4 Sagitta
c-po added a comment to T3195: Add support for cisco style GRE keepalives.

Why not use the mentioned method of sysctl`

Jun 1 2021, 7:16 PM · VyOS Rolling
c-po added a comment to T3214: OpenVPN IPv6 fixes.

@shaferstockton can you please post your entire generated openvpn.conf file?

Jun 1 2021, 7:12 PM · VyOS 1.5 Circinus
c-po closed T3585: Fix NHRP module for updated interfaces tunnel syntax as Resolved.
Jun 1 2021, 7:11 PM · VyOS 1.4 Sagitta
c-po closed T3594: Disable by default service strongswan-starter, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 1 2021, 7:09 PM · VyOS 1.4 Sagitta
c-po closed T3594: Disable by default service strongswan-starter as Resolved.
Jun 1 2021, 7:09 PM · VyOS 1.4 Sagitta
c-po added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).

I can not reproduce the issue using the following command sequence using VyOS 1.4-rolling-202106010417:

Jun 1 2021, 7:08 PM · VyOS 1.4 Sagitta
ernstjo reopened T3578: Prefix-List(6) update cause empty prefix-list(6) as "Open".
Jun 1 2021, 4:36 PM · VyOS 1.4 Sagitta
ernstjo added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).

Why you closing the issue? Bug or issue is not resolved.

Jun 1 2021, 4:36 PM · VyOS 1.4 Sagitta
Viacheslav updated the task description for T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 2:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav updated the task description for T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 2:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
sarthurdev changed the status of T3594: Disable by default service strongswan-starter, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, from Open to In progress.
Jun 1 2021, 1:28 PM · VyOS 1.4 Sagitta
sarthurdev changed the status of T3594: Disable by default service strongswan-starter from Open to In progress.

PR: https://github.com/vyos/vyos-build/pull/168

Jun 1 2021, 1:28 PM · VyOS 1.4 Sagitta
Viacheslav renamed T3594: Disable by default service strongswan-starter from Disable by defaul service strongswan-starter to Disable by default service strongswan-starter.
Jun 1 2021, 1:10 PM · VyOS 1.4 Sagitta
Viacheslav changed the subtype of T3594: Disable by default service strongswan-starter from "Task" to "Bug".
Jun 1 2021, 1:10 PM · VyOS 1.4 Sagitta
Viacheslav triaged T3594: Disable by default service strongswan-starter as Normal priority.
Jun 1 2021, 1:09 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3592: Set default TTL 64 for tunnels.

PR https://github.com/vyos/vyos-1x/pull/861

Jun 1 2021, 12:01 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T3546: Add support for running scripts on PPPoE server session events.

PR https://github.com/vyos/vyos-1x/pull/860
To provide the possibility to read RADIUS attribute by script, also need to define radattr=/run/radattr param

Jun 1 2021, 11:30 AM · VyOS 1.3 Equuleus (1.3.4)
Unknown Object (User) changed the status of T3593: PPPoE server called-sid format does not work from Open to In progress.
Jun 1 2021, 10:55 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) created T3593: PPPoE server called-sid format does not work.
Jun 1 2021, 10:55 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Viacheslav added a comment to T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.

https://phabricator.vyos.net/T842

Jun 1 2021, 10:13 AM · VyOS 1.4 Sagitta
Viacheslav created T3592: Set default TTL 64 for tunnels.
Jun 1 2021, 10:04 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
Unknown Object (User) changed the status of T3546: Add support for running scripts on PPPoE server session events from Open to In progress.
Jun 1 2021, 9:02 AM · VyOS 1.3 Equuleus (1.3.4)
Viacheslav closed T406: VPN configuration error: IPv6 over IPv4 IPsec is not supported when using IPv6 ONLY tunnel., a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 1 2021, 8:51 AM · VyOS 1.4 Sagitta
UnicronNL renamed T3583: Overwrite default config ntp settings when custom ntp servers are provided. from Set default vyos ntp in vmware ova if the options are left empty. to Overwrite default config ntp settings when custom ntp servers are provided..
Jun 1 2021, 8:36 AM
mTx87 added a comment to T3591: OpenVPN with/without VRF not working (NordVPN).

@Viacheslav
I can spin up a working example without VRF.

Jun 1 2021, 8:32 AM · VyOS 1.4 Sagitta
Viacheslav renamed T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan from IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in stringSwan to IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan.
Jun 1 2021, 7:08 AM · VyOS 1.4 Sagitta

May 31 2021

fernando closed T3578: Prefix-List(6) update cause empty prefix-list(6) as Resolved.
May 31 2021, 10:38 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3591: OpenVPN with/without VRF not working (NordVPN).

@mTx87 Do you have a working example in Linux?
Maybe it also needs OpenVPN >= 2.5.0
https://blog.sdn.clinic/2018/12/openvpn-and-vrfs/

May 31 2021, 8:07 PM · VyOS 1.4 Sagitta
mTx87 created T3591: OpenVPN with/without VRF not working (NordVPN).
May 31 2021, 12:26 PM · VyOS 1.4 Sagitta
shaneshort added a comment to T2315: Ability to have right address-family for BGP peers..

just wanting to chime in here, I think I've been bitten by what appears to be a similar cause.

May 31 2021, 10:25 AM · VyOS 1.4 Sagitta
fernando added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).

Hi

I tried to replicate that issue with the same version but I couldn't , let me show

vyos@vipv6-lp# run show version

Version: VyOS 1.4-rolling-202104270417
Release Train: sagitta

Built by: [email protected]
Built on: Wed 28 Apr 2021 01:17 UTC

May 31 2021, 12:04 AM · VyOS 1.4 Sagitta
fernando added a comment to T3578: Prefix-List(6) update cause empty prefix-list(6).
May 31 2021, 12:00 AM · VyOS 1.4 Sagitta

May 30 2021

c-po closed T3524: Please implement bgp graceful-shutdown as Resolved.
May 30 2021, 8:07 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po moved T3524: Please implement bgp graceful-shutdown from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.8) board.
May 30 2021, 8:07 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po moved T3524: Please implement bgp graceful-shutdown from Need Triage to Finished on the VyOS 1.3 Equuleus board.
May 30 2021, 8:07 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po claimed T3524: Please implement bgp graceful-shutdown.
May 30 2021, 8:06 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po added a comment to T3524: Please implement bgp graceful-shutdown.

Turns out this was actually a very small change in the old framework - implemented also on 1.3 and backported to 1.2.8

May 30 2021, 8:06 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po moved T3524: Please implement bgp graceful-shutdown from Open to Finished on the VyOS 1.4 Sagitta board.
May 30 2021, 7:58 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po moved T2641: Rewrite vpn ipsec OP commands in new style XML syntax from Open to Finished on the VyOS 1.4 Sagitta board.
May 30 2021, 7:58 PM · VyOS 1.4 Sagitta
c-po moved T3093: Add xml for vpn ipsec from Open to Finished on the VyOS 1.4 Sagitta board.
May 30 2021, 7:58 PM · VyOS 1.4 Sagitta
c-po moved T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer from Open to Finished on the VyOS 1.4 Sagitta board.
May 30 2021, 7:58 PM · VyOS 1.4 Sagitta
c-po updated the task description for T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer.
May 30 2021, 7:58 PM · VyOS 1.4 Sagitta
c-po closed T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer as Resolved.
May 30 2021, 7:41 PM · VyOS 1.4 Sagitta
c-po created T3590: bgp: add option for limiting maximum number of prefixes to be sent to a peer.
May 30 2021, 7:41 PM · VyOS 1.4 Sagitta
SrividyaA added a comment to T3582: 'delete log file' does not work.

thank you for the suggestion, I will work on this.

May 30 2021, 4:36 PM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po closed T2641: Rewrite vpn ipsec OP commands in new style XML syntax, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
May 30 2021, 12:22 PM · VyOS 1.4 Sagitta
c-po closed T2641: Rewrite vpn ipsec OP commands in new style XML syntax as Resolved.
May 30 2021, 12:22 PM · VyOS 1.4 Sagitta
c-po edited projects for T3093: Add xml for vpn ipsec, added: VyOS 1.4 Sagitta; removed VyOS 1.3 Equuleus.
May 30 2021, 12:21 PM · VyOS 1.4 Sagitta
c-po closed T3093: Add xml for vpn ipsec, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
May 30 2021, 12:21 PM · VyOS 1.4 Sagitta
c-po added a comment to T3582: 'delete log file' does not work.

Maybe a completion helper could work here, too?

May 30 2021, 11:59 AM · VyOS 1.2 Crux (VyOS 1.2.8)
SrividyaA closed T3582: 'delete log file' does not work as Invalid.

When the following command "set system syslog file <filename> facility <keyword> level <keyword>" is applied, then the files are stored in the /var/log/user directory. These files can be deleted using the command "delete log file <text>"

May 30 2021, 11:58 AM · VyOS 1.2 Crux (VyOS 1.2.8)
erkin changed the status of T3506: Migrate loadkey command to op-mode, a subtask of T3355: Remove all remaining legacy Vyatta code, from Open to In progress.
May 30 2021, 10:21 AM · VyOS Rolling