In T2664#126031, @Viacheslav wrote:As we have the 1.3 LTS release (where it is fixed) I propose to close it.
It is a big change for 1.2 that we should avoid.
- Feed Queries
- All Stories
- Search
- Feed Search
- Transactions
- Transaction Logs
Feed All Stories
All Stories
All Stories
Jul 8 2022
Jul 8 2022
As we have the 1.3 LTS release (where it is fixed) I propose to close it.
It is a big change for 1.2 that we should avoid.
Viacheslav changed the status of T4518: Add XML for CLI conf mode load-balancing wan , a subtask of T4470: Rewrite load-balancing wan to XML/Python, from Open to In progress.
Viacheslav changed the status of T4518: Add XML for CLI conf mode load-balancing wan from Open to In progress.
GitHub <[email protected]> committed rVYOSONEX44b1bdd3273d: Merge pull request #1401 from sever-sever/T4411 (authored by c-po).
I downloaded
Jul 7 2022
Jul 7 2022
Viacheslav changed the status of T4503: Prevent op mode scripts from restarting services if there's a commit in progress from Open to Needs testing.
Output plugins that we use in 1.4
"github.com/influxdata/telegraf/plugins/outputs/azure_data_explorer" "github.com/influxdata/telegraf/plugins/outputs/influxdb_v2" "github.com/influxdata/telegraf/plugins/outputs/prometheus_client" "github.com/influxdata/telegraf/plugins/outputs/http"
GitHub <[email protected]> committed rVYOSONEXff2665175fe5: Merge pull request #1397 from sever-sever/T4503 (authored by c-po).
GitHub <[email protected]> committed rVYOSONEX7b998593c931: Merge pull request #1390 from c-po/t4456-ntp-equuleus (authored by c-po).
GitHub <[email protected]> committed rVYOSONEX5b563a78e1bd: Merge pull request #1400 from c-po/t4509-pdns-6to4-equuleus (authored by c-po).
Viacheslav updated the task description for T4411: Add migration for service monitoring telegraf influxdb.
Feature backport: https://github.com/vyos/vyos-1x/pull/1400
c-po moved T4509: Feature Request: DNS64 from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
GitHub <[email protected]> committed rVYOSONEXf5e66a451dcd: Merge pull request #1399 from sarthurdev/T4500 (authored by c-po).
@dsummers I strongly believe we should not publish bleeding edge HEAD revisions and stick bleeding edge releases only.
Jul 6 2022
Jul 6 2022
After doing some research, it appears this is a known bug in PowerDNS Recursor 4.7 (amazing to me).
This feature would be very helpfull for hairpin nat as we can see from the mentions.
Might also be helpfull for ipv6 as well.
I am aware its a different product but edgeos from ubiquiti does something like this (looks to be a managed address group that populates dynamically) for nat and fw:
Confirmed working on "current" branch.
Is anyone else seeing this same problem? It is keeping me from being able to use VyOS in an IPv6-only environment.
OK, I just noticed the merge to "current" branch.
I'd be glad to help test it, but I checked the repos and didn't see where it got merged in?
Viacheslav changed the status of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command from In progress to Needs testing.
GitHub <[email protected]> committed rVYOSONEX46f72030cdf0: Merge pull request #1398 from sarthurdev/T4500 (authored by c-po).
I think there's still a problem possible with /var/log/messages handling:
I re-created a new VM and it is Not reproducing
I closed it
Interface virtio
vyos@r1# run show interfaces ethernet eth1 physical
Settings for eth1:
Supported ports: [ ]
Supported link modes: Not reported
Supported pause frame use: No
Supports auto-negotiation: No
Supported FEC modes: Not reported
Advertised link modes: Not reported
Advertised pause frame use: No
Advertised auto-negotiation: No
Advertised FEC modes: Not reported
Speed: Unknown!
Duplex: Unknown! (255)
Port: Other
PHYAD: 0
Transceiver: internal
Auto-negotiation: off
Link detected: yes
Ring parameters for eth1:
Pre-set maximums:
RX: 256
RX Mini: 0
RX Jumbo: 0
TX: 256
Current hardware settings:
RX: 256
RX Mini: 0
RX Jumbo: 0
TX: 256Confirmed issue, seems to be a problem in rsyslog/logrotate. Possibly related to T4250
Viacheslav updated subscribers of T3933: The firewall does not filter incoming traffic on the interface with vrf..
In T3933#124952, @sandwichdoge wrote:@Viacheslav I tested your fix in my environment. The inbound filtering worked as expected after the fix. However it did not work correctly for the case we where we want both inbound and outbound firewalls on a single vrf member interface (or any case that has more than 2 directions on the same interface).
table ip filter { chain VYOS_FW_LOCAL { type filter hook input priority filter; policy accept; oifname "ONE" counter packets 63 bytes 6024 jump NAME_FOO # <<< Problem here, oifname should be eth0, not vrf name iifname "ONE" counter packets 63 bytes 6024 jump NAME_FOO jump VYOS_POST_FW } ... chain NAME_FOO { ip saddr 8.8.8.8 counter packets 79 bytes 6636 drop comment "FOO-10" counter packets 3 bytes 984 return comment "FOO default-action accept" } }
Jul 6 2022, 12:47 PM · Bugs, VyOS 1.3 Equuleus (1.3.9), VyOS 1.4 Sagitta (1.4.0-GA), Restricted Project
Viacheslav moved T4513: Webproxy monitor commands do not work from Need Triage to Finished on the VyOS 1.3 Equuleus (1.3.2) board.
Viacheslav moved T4513: Webproxy monitor commands do not work from Open to Finished on the VyOS 1.4 Sagitta board.
GitHub <[email protected]> committed rVYOSONEX484350192470: Merge pull request #1396 from aapostoliuk/T4513-equuleus (authored by zdc <[email protected]>).
@a.apostoliuk Could you create PR for 1.3?
Viacheslav edited projects for T4513: Webproxy monitor commands do not work, added: VyOS 1.3 Equuleus (1.3.2); removed VyOS 1.3 Equuleus.
GitHub <[email protected]> committed rVYOSONEXc548d1c7bac0: Merge pull request #1395 from aapostoliuk/T4513 (authored by Viacheslav).
a.apostoliuk changed the status of T4513: Webproxy monitor commands do not work from Open to In progress.
a.apostoliuk edited projects for T4513: Webproxy monitor commands do not work, added: VyOS 1.3 Equuleus; removed VyOS 1.3 Equuleus ( 1.3.1).
I see that the pull request was accepted. I just tested it with the latest rolling and it seems to work as expected.
Thanks a lot!
Jul 5 2022
Jul 5 2022
sarthurdev closed T478: Firewall address group (multi and nesting), a subtask of T2199: Rewrite firewall in new XML/Python style, as Resolved.
GitHub <[email protected]> committed rVYOSONEX2010c7de9e1f: Merge pull request #1394 from sarthurdev/zone_default_log (authored by c-po).
GitHub <[email protected]> committed rVYOSONEXf794ed27e399: Merge pull request #1393 from sarthurdev/firewall_migrate (authored by c-po).
dsummers added a comment to T4510: set system static-host-mapping doesn't allow IPv4 and IPv6 for same name..
Confirmed that issue is resolved.
sarthurdev changed the status of T4512: enable-default-log on zone-policy from In progress to Needs testing.
Viacheslav moved T4507: IPoE-server add multiplier option for shaper from Open to Finished on the VyOS 1.4 Sagitta board.
Viacheslav added a project to T4507: IPoE-server add multiplier option for shaper: VyOS 1.3 Equuleus (1.3.2).
Viacheslav moved T4373: PPPoE-server add multiplier option for shaper from Open to Finished on the VyOS 1.4 Sagitta board.
PR for 1.3 https://github.com/vyos/vyos-1x/pull/1392
PR for 1.3 https://github.com/vyos/vyos-1x/pull/1392
Viacheslav added a project to T4373: PPPoE-server add multiplier option for shaper: VyOS 1.3 Equuleus (1.3.2).