Page MenuHomeVyOS Platform
Feed All Stories

Yesterday

Dmitry updated subscribers of T2236: DMVPN broken after tunnel rewrite to XML/Python.

@Unicron

vyos@R3# run show version all | match strongswan
ii  strongswan                       5.7.2-1                             all          IPsec VPN solution metapackage

But in this case, we have an issue with command

vyos@R3# sudo ip link add tun0 type gretap local 0.0.0.0
RTNETLINK answers: File exists

I think we need to ignore 0.0.0.0

Mon, Apr 6, 10:12 PM · VyOS 1.3 Equuleus
UnicronNL added a comment to T2236: DMVPN broken after tunnel rewrite to XML/Python.

@Dmitry @c-po is this an other version of strongswan? or is this the strongswan with dmvpn pathes in from vyos repo?

Mon, Apr 6, 10:07 PM · VyOS 1.3 Equuleus
Dmitry added a comment to T2236: DMVPN broken after tunnel rewrite to XML/Python.

The main reason for this issue - we can't create properly tunnel

set interfaces tunnel tun0 address 10.0.0.3/24
set interfaces tunnel tun0 encapsulation gre
set interfaces tunnel tun0 local-ip 0.0.0.0
set interfaces tunnel tun0 multicast enable
set interfaces tunnel tun0 parameters ip key 1
Mon, Apr 6, 9:52 PM · VyOS 1.3 Equuleus
jestabro added a comment to T2203: http api: "Failed to generate committed config" .

@fetzerms I am able to reproduce this, in a manner that's not completely clean, but which will allow me to investigate further. Feel free to add any other details you run across; thanks.

Mon, Apr 6, 9:36 PM
Dmitry claimed T2236: DMVPN broken after tunnel rewrite to XML/Python.

@cpo let me reproduce this locally, I will find an answer.

Mon, Apr 6, 8:31 PM · VyOS 1.3 Equuleus
c-po updated subscribers of T2236: DMVPN broken after tunnel rewrite to XML/Python.

@Dmitry maybe you have an idea why?

Mon, Apr 6, 6:54 PM · VyOS 1.3 Equuleus
c-po triaged T2236: DMVPN broken after tunnel rewrite to XML/Python as High priority.
Mon, Apr 6, 6:45 PM · VyOS 1.3 Equuleus
c-po created T2236: DMVPN broken after tunnel rewrite to XML/Python.
Mon, Apr 6, 6:44 PM · VyOS 1.3 Equuleus
jjakob triaged T2235: OpenVPN server client IP doesn't reserve that IP in the pool as Wishlist priority.
Mon, Apr 6, 4:28 PM · VyOS 1.3 Equuleus
jjakob added a comment to T2203: http api: "Failed to generate committed config" .

Re: logging, DANOS mounts a permanent /var/log at boot (I think it's shared by all images). If any work on logging is going to be done, /var/log should be mounted before any vyos config migration or load is done so it can be used as the destination for logging.

Mon, Apr 6, 3:31 PM
jjakob changed the status of T2234: Controlling whitespace in Jinja templates from Open to In progress.
Mon, Apr 6, 3:26 PM · VyOS 1.3 Equuleus
jestabro added a comment to T2203: http api: "Failed to generate committed config" .

Note, there is /opt/vyatta/etc/config/vyos-migrate.log (/config/vyos-migrate.log after image installation) that will list failed migration scripts, if any). This is created before /var/log is available, hence the non-canonical location.

Mon, Apr 6, 2:57 PM
jestabro added a comment to T2203: http api: "Failed to generate committed config" .

Regarding the first question, yes, cfg-stdout.log is cleared on reboot, unfortunately. The commit error logging is currently a mixture of (un-verbose) reporting from the backend, and limited reporting from python; improvements pending. Firstly, if there are migration errors, those need to be investigated; secondly, the error that you initially reported is (generally) related to stale information in the config hierarchy itself, but may be obscuring earlier errors.

Mon, Apr 6, 2:47 PM
Viacheslav added a comment to T2141: Static ARP is not applied on boot.

If you comment out this line, arp after reboot doesn't lose.

Mon, Apr 6, 2:30 PM · VyOS 1.3 Equuleus
jjakob added a comment to T2203: http api: "Failed to generate committed config" .

I couldn't find anything in /var/log/vyatta the last few times I've ran into boot-time commit errors. It seems like the python code doesn't log commit errors into a file or syslog, or at least I couldn't find it. I had to log into the console, go into config mode, load the config (usually pre-migration when there are migrator script errors) and commit it, then the errors are printed to the console. Someone can correct me if I'm wrong.

Mon, Apr 6, 2:09 PM
Viacheslav added a comment to T1926: poweroff in 5 displays an error message.

Latest rolling.

sever@vyos-1.3:~$ poweroff in 5
Poweroff is scheduled 2020-04-06 12:02:52
sever@vyos-1.3:~$
Mon, Apr 6, 12:04 PM
Viacheslav added a comment to T1406: MAC addresses cause invalid arguments in firewall.

I think we can close this task

Mon, Apr 6, 11:46 AM
Viacheslav added a comment to T1249: multiply PBR rules can set to a single interface.

@dongjunbo Can you send an example?

Mon, Apr 6, 11:25 AM · VyOS 1.3 Equuleus
zsdc assigned T1095: Connection tracking NAT / FIREWALL to g.skupien.
Mon, Apr 6, 10:10 AM
zsdc assigned T1114: VyOS 1.2 tftp issue, NAT client could not boot via tftp server, same setup on VyOS 1.1.8 works fine to g.skupien.
Mon, Apr 6, 10:10 AM
Viacheslav added a comment to T2156: PIM op-mode commands.

Commands were rewritten to:

$ reset ip igmp interfaces
$ reset ip multicast route
Mon, Apr 6, 9:19 AM · VyOS 1.3 Equuleus
Viacheslav added a comment to T2172: Enable conf VXLAN without remote address.

@c-po the second part of task.
An example, we can't execute analog of this command in the VyOS syntax:

sudo ip link add vxlan11 type vxlan id 11 dstport 8472 local 22.22.22.1 nolearning

We need to add commands for vxlan:

Mon, Apr 6, 8:46 AM · VyOS 1.3 Equuleus
fetzerms added a comment to T2203: http api: "Failed to generate committed config" .

Does this get cleared on each reboot? Because I usually rebooted after it "locked".

Mon, Apr 6, 2:59 AM

Sun, Apr 5

c-po closed T2230: Split out inlined Jina2 template to data/templates folder as Resolved.
Sun, Apr 5, 9:22 PM · VyOS 1.3 Equuleus
alainlamar claimed T2233: Typos in wlanX.cfg.
Sun, Apr 5, 8:10 PM · VyOS 1.3 Equuleus
alainlamar added a comment to T2233: Typos in wlanX.cfg.

Pull request: https://github.com/vyos/vyos-1x/pull/306

Sun, Apr 5, 7:48 PM · VyOS 1.3 Equuleus
alainlamar created T2233: Typos in wlanX.cfg.
Sun, Apr 5, 7:38 PM · VyOS 1.3 Equuleus
jestabro added a comment to T2203: http api: "Failed to generate committed config" .

In this failure case, there are some expected "failed" lines in /var/log/vyatta/cfg-stdout.log. Although they are not detailed log messages, they may help narrow down the source of the failure, if you could share those.

Sun, Apr 5, 7:35 PM
c-po claimed T2232: l2tpv3 interface can be deleted while it is still assigned to a bridge.
Sun, Apr 5, 7:24 PM · VyOS 1.3 Equuleus
c-po created T2232: l2tpv3 interface can be deleted while it is still assigned to a bridge.
Sun, Apr 5, 7:24 PM · VyOS 1.3 Equuleus
alainlamar closed T2212: vyos-1x: WiFi card antenna count not set accordingly as Resolved.
Sun, Apr 5, 6:36 PM · VyOS 1.3 Equuleus
teadur added a watcher for VyOS 1.3 Equuleus: teadur.
Sun, Apr 5, 4:44 PM
teadur created T2231: commit(-confirm) with illegal config does not stop the commit.
Sun, Apr 5, 4:21 PM · VyOS 1.3 Equuleus
c-po moved T2228: WireGuard does not allow ports < 1024 to be used from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 3:09 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po closed T2228: WireGuard does not allow ports < 1024 to be used as Resolved.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2069: PPPoE-client does not works with service-name option from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2100: BGP route adverisement wih checks rib from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T1884: Keeping VRRP transition-script native behaviour and adding stop-script from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2032: Monitor bandwidth bits from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2228: WireGuard does not allow ports < 1024 to be used from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Sun, Apr 5, 3:08 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po closed T2032: Monitor bandwidth bits as Resolved.
Sun, Apr 5, 3:04 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po added a project to T2032: Monitor bandwidth bits: Ready for Crux (1.2.x).
Sun, Apr 5, 3:01 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po reopened T2032: Monitor bandwidth bits as "Backport pending".
Sun, Apr 5, 3:01 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po changed the status of T2230: Split out inlined Jina2 template to data/templates folder from Open to In progress.
Sun, Apr 5, 2:32 PM · VyOS 1.3 Equuleus
c-po created T2230: Split out inlined Jina2 template to data/templates folder.
Sun, Apr 5, 2:32 PM · VyOS 1.3 Equuleus
Shakapon added a comment to T915: MPLS Support.

Thanks a lot!
I also connected ldp neighbor.

Sun, Apr 5, 2:31 PM · VyOS 1.3 Equuleus
syncer assigned T2229: PPPOE Default Queue type selection to Dmitry.
Sun, Apr 5, 2:00 PM · VyOS 1.3 Equuleus
skoenman created T2229: PPPOE Default Queue type selection.
Sun, Apr 5, 1:52 PM · VyOS 1.3 Equuleus
c-po moved T1586: OpenVPN add IPv6 support to tunnels from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T1823: l2tpv3 interface migration fails from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T1693: DNS Forwarding Services not responding with Allow-From from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T1988: Migrate wirelessmodem to new XML/Python style interface from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2028: Convert "interfaces tunnel" to new XML/Python representation from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2029: Switch to new syntax for config file component versions from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2052: Update vyos-merge-config.py for version string syntax change from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2053: Update vyos-load-config.py for version string syntax change from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2069: PPPoE-client does not works with service-name option from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2082: WireGuard broken after merging T2057 from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2095: Copy command errors out from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2104: ifconfig.py size from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2105: wireless: not possible to disabled wlan0 from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2150: SSTP ssl certificates can only be stored in /config/user-data/sstp from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:36 PM · VyOS 1.3 Equuleus
c-po moved T2157: Organize service https listen-address/listen-port/server-name under 'virtual-host' node from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2151: wireless: can't delete interface present in config but not present in system from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2160: Allow restricting HTTP API to specific virtual hosts from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2158: Commit fails if ethernet interface doesn't support flow control (pause) from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2162: migration script for router-advert sets link-mtu 0 on bridge interfaces from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2166: Broken proxy-arp on vif from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2164: Package libstrongswan-standard-plugins missing from image from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2169: Remove redundant use of show_config in vyos-merge-config from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2167: vyos.ifconfig.get_mac() broken from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2170: Add ability to create static route from default to VRF from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2172: Enable conf VXLAN without remote address from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2176: 'WiFiIf' object has no attribute 'set_state' from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2180: get_config_dict should be independent of CLI edit level from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2178: VRF interface don't get removed when VRF is deleted from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2181: Inter-VRF static routes are missing the command next-hop-interface from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2183: Number of bugs with wireguard script due to interface rearrangement. from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2208: vyos-1x: commit on interfaces wireless wlanX capabilities vht link-adaptation (both|unsolicited) fails from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2206: Split WireGuard endpoint into proper host and port nodes from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:35 PM · VyOS 1.3 Equuleus
c-po moved T2202: Update PowerDNS recursor to 4.2 series from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2200: Add VRF support on wirelessmodem interfaces from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2125: show interfaces wireguard wg0 - doesn't work from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T1831: Denest IPv6 router-advert from Interfaces to general service from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2219: VRF default route of PPPoE and WWAN interfaces do not get added into proper routing table from In Progress to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2100: BGP route adverisement wih checks rib from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2211: vyos-1x: VHT channel width not set accordingly from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2220: PPPoE option "default-route force" not existent in upstream Debian PPP version from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2221: Ability to remove a VRF that has a next-hop-vrf as target from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po moved T2222: openvpn: requires "multihome" option to listen on all addresses with udp protocol from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
c-po closed T2206: Split WireGuard endpoint into proper host and port nodes as Resolved.
Sun, Apr 5, 12:34 PM · VyOS 1.3 Equuleus
thomas-mangin updated the task description for T2226: unify all the ways commands are run.
Sun, Apr 5, 12:25 PM · VyOS 1.3 Equuleus
thomas-mangin renamed T2226: unify all the ways commands are run from unify all the ways command are run to unify all the ways commands are run.
Sun, Apr 5, 12:08 PM · VyOS 1.3 Equuleus
thomas-mangin renamed T2226: unify all the ways commands are run from remove duplication to unify all the ways command are run.
Sun, Apr 5, 12:07 PM · VyOS 1.3 Equuleus
c-po updated the task description for T2206: Split WireGuard endpoint into proper host and port nodes.
Sun, Apr 5, 11:43 AM · VyOS 1.3 Equuleus
c-po changed the status of T2228: WireGuard does not allow ports < 1024 to be used from In progress to Backport candidate.
Sun, Apr 5, 11:33 AM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po moved T2228: WireGuard does not allow ports < 1024 to be used from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Sun, Apr 5, 11:33 AM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po changed the status of T2228: WireGuard does not allow ports < 1024 to be used from Open to In progress.
Sun, Apr 5, 11:30 AM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
c-po created T2228: WireGuard does not allow ports < 1024 to be used.
Sun, Apr 5, 11:30 AM · VyOS 1.2 Crux (VyOS 1.2.5), VyOS 1.3 Equuleus
alainlamar claimed T2212: vyos-1x: WiFi card antenna count not set accordingly.
Sun, Apr 5, 10:03 AM · VyOS 1.3 Equuleus