Submitted PR: https://github.com/vyos/vyos-1x/pull/1251
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
All Stories
Mar 18 2022
Thanks, Not really sure what happened, but I deleted config.boot and rebooted, Now it works to add a policy again.
Error implies that firewall failed to configure on boot as mangle table is missing. Any logs/config trace from boot?
Can you share configuration that you are deleting? So far, I can't reproduce error
Mar 17 2022
Mar 16 2022
My guess, looking now at commit logs, is that T4250 broke this. It looks like we attempted to move the settings to system logs, but the rsyslog part of the config still remains in system syslog, where the default does not match the new logrotate template (and the settings between rsyslog and logrotate can get out of sync).
Note: Equuleus still uses the C preprocessor. // substrings (otherwise interpreted as comments) were escaped as \/\/ in op-mode-definitions/generate-public-key-command.xml.in in Equuleus and should be converted back eventually.
Hi all,
FRRouting Release 8.2.2 was relased, when we will see this implemented?
Mar 15 2022
The same issue with set interfaces bonding bond0 arp-monitor interval 'X' option. Also extra conversion between variable types.
Added the fix to the same PR.
The PR is merged with the wrong Task number. This can be closed.
Mar 14 2022
IKEv2 has a different working behavior compared to the IKEv1. IKEv2 provides proper inline rekeying of IKE SAs by use of CREATE_CHILD_SA exchanges. This means that new keys may be established without any interruption of the existing IKE and IPsec SAs.
Mar 13 2022
Update download URL -> PR: https://github.com/vyos/vyos-vm-images/pull/26
Mar 12 2022
PR for 1.4: https://github.com/vyos/vyos-1x/pull/1247
Mar 11 2022
You are correct, my config is not correct.
emmm, I know it.
In T4288#119770, @chesskuo wrote:I found the swanctl.conf.
The config does not match the vyso config.I set the close_action as restart, but config does not show this line.
Your configuration should be like:
Mar 10 2022
A simplified validator that rejects non-ipv6 address range (still lacks of 1st ipv6 minor than 2nd address validator):
Re-open to investigate failure in vyos-configtest.
Re-open to investigate failure in vyos-configtest.
Re-open to investigate failure in vyos-configtest.
For 1.4, problem is in ipv6-range validator, which accepts lots of values that should be considered as invalid:
I'm going to be experimenting with Jinja 2 to see if we can incorporate it into our template processor.
Actually, let's leave it in 1.3 but backport the warning and generate public-key-command.
@zsdc Do you have any idea for CLI configuration mode?