I don't see this fix having been backported to Equuleus.
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
Advanced Search
Feb 23 2024
Jan 20 2024
Jan 11 2024
Jan 8 2024
Dec 25 2023
Dec 17 2023
Oct 29 2023
Oct 12 2023
Sep 25 2023
Aug 28 2023
Aug 17 2023
PR for 1.3.4 https://github.com/vyos/vyos-1x/pull/2153
Aug 14 2023
What is the purpose of:
Aug 5 2023
PR for 1.3 https://github.com/vyos/vyos-1x/pull/2134
PR for 1.3 https://github.com/vyos/vyos-1x/pull/2134
Fixed in the latest rolling release
Bug present in 1.3.3 as well
Jul 20 2023
Jul 12 2023
@Viacheslav @SrividyaA can you see if that is present in 1.3/1.4 and if we can add it to documentation
@zoenan7 thanks for getting back to me
it looks like it is now fixed in upstream so I will close this ticket
I did not report it to the upstream, but another vendor helped me to report it to the upstream and gave me the relevant CVE number. You can check the following link about netsnmp: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1016139
Jul 11 2023
Why is this closed? If you don't want the functionality, fine, but don't leave broken functionality in the installer....at least take it out so you're not confusing your users when it doesn't work.
outdated
outdated, no follow ups
limitations of old backend
may come back to this later after new backend live
@zoenan7 have you managed to report to upstream?
@zsdc was this ever backported to 1.3?
Closing this task since it has been in "Needs Testing" status for more than one year, for both 1.3 and 1.4 projects.
As said in previous comments, login banner is available, both on 1.3 and 1.4
I think this task can be marked as resolved
Jul 10 2023
Jul 7 2023
I tested this feature with the following firewall config:
set firewall group domain-group DG_TEST address 'nu.nl' set firewall group domain-group DG_TEST address 'www.nu.nl' set firewall interface eth1 out name 'ETH1_OUT' set firewall name ETH1_OUT default-action 'accept' set firewall name ETH1_OUT rule 10 action 'drop' set firewall name ETH1_OUT rule 10 destination group domain-group 'DG_TEST'
Jul 6 2023
Hi @marekm - Hope you are well.
Jun 28 2023
Jun 25 2023
Actually this uncovered a "bug" that there is no verify() section that validates if the configured interfaces actually have an IP address configured.
Jun 24 2023
if len(config.get('interface', [])) < 2 or len(config.get('interface', [])) > 2: raise ConfigError('Only two interfaces are required for udp broadcast relay "{instance}"')
Jun 23 2023
Just tested again with 1.3.3. When setting set firewall send-redirects enable, ICMP redirects work fine until I reboot the router.
Before rebooting:
root@vyos:~# sysctl -a | grep send_redirect net.ipv4.conf.all.send_redirects = 1 net.ipv4.conf.default.send_redirects = 0 net.ipv4.conf.eth0.send_redirects = 0 net.ipv4.conf.eth1.send_redirects = 0 net.ipv4.conf.eth2.send_redirects = 0 net.ipv4.conf.eth3.send_redirects = 0 net.ipv4.conf.lo.send_redirects = 0 net.ipv4.conf.wg0.send_redirects = 0
After rebooting:
root@vyos:~# sysctl -a | grep send_redirect net.ipv4.conf.all.send_redirects = 0 net.ipv4.conf.default.send_redirects = 0 net.ipv4.conf.eth0.send_redirects = 0 net.ipv4.conf.eth1.send_redirects = 0 net.ipv4.conf.eth2.send_redirects = 0 net.ipv4.conf.eth3.send_redirects = 0 net.ipv4.conf.lo.send_redirects = 1 net.ipv4.conf.wg0.send_redirects = 0