Page MenuHomeVyOS Platform
Feed Advanced Search

Oct 26 2017

jbeisser added a comment to T428: Current 1.1.7 AMI doesn't fetch SSH public key from the EC2 environment.

Is there an argument against just using cloud-init for the AMI?

Oct 26 2017, 6:38 PM · VyOS 1.1.x (1.1.8)

Oct 21 2017

dmbaturin added a comment to T428: Current 1.1.7 AMI doesn't fetch SSH public key from the EC2 environment.

An AMI updated by hand was submitted to Amazon for testing.

Oct 21 2017, 11:47 AM · VyOS 1.1.x (1.1.8)
dmbaturin created T428: Current 1.1.7 AMI doesn't fetch SSH public key from the EC2 environment.
Oct 21 2017, 11:47 AM · VyOS 1.1.x (1.1.8)

Oct 18 2017

mpoublon added a comment to T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.

The proposed "maximum-paths" looks to set the maximum number of paths for equal cost routing and not limit the long AS path that causes the noted log entry. I used the following in a production network to work around the issue:

Oct 18 2017, 9:02 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Oct 17 2017

mickvav created T426: CVE-2017-13077 - Update wpa_supplicant.
Oct 17 2017, 5:36 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), wpa

Oct 16 2017

mmateuslima added a comment to T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.
  1. set protocols bgp 262766 maximum-paths ebgp 75
Oct 16 2017, 4:30 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Oct 15 2017

shidiq added a comment to T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.

i still confuse how to patch it, please explain more. thanks

Oct 15 2017, 9:32 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Oct 14 2017

mmateuslima added a comment to T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.

No, I got the patch for this patch, how should I proceed? I have some sessions with this problem.

Oct 14 2017, 4:19 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Oct 12 2017

tdale added a comment to T397: SNMPd - High load, doesnt work..

Works in nightly built but now Netflow is broken in the nightly build :(

Oct 12 2017, 2:22 AM · Invalid

Oct 11 2017

syncer added a project to T408: Improve the AMI build scripts: AWS Support.
Oct 11 2017, 10:08 PM · Community, Active contributors, AWS Support, build-ami
syncer updated the task description for T408: Improve the AMI build scripts.
Oct 11 2017, 10:07 PM · Community, Active contributors, AWS Support, build-ami
syncer moved T408: Improve the AMI build scripts from Need Triage to In Progress on the VyOS 1.2 Crux board.
Oct 11 2017, 10:06 PM · Community, Active contributors, AWS Support, build-ami
syncer moved T408: Improve the AMI build scripts from Need Triage to In Progress on the VyOS 1.1.x board.
Oct 11 2017, 10:06 PM · Community, Active contributors, AWS Support, build-ami
syncer edited projects for T408: Improve the AMI build scripts, added: VyOS 1.1.x; removed VyOS 1.1.x (1.1.8).
Oct 11 2017, 10:06 PM · Community, Active contributors, AWS Support, build-ami
syncer moved T232: Install fails if hard drive previously contained GPT label from Need Triage to Backlog on the VyOS 1.2 Crux board.
Oct 11 2017, 9:41 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer moved T232: Install fails if hard drive previously contained GPT label from Need Triage to Backlog on the VyOS 1.1.x board.
Oct 11 2017, 9:41 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer added a comment to T232: Install fails if hard drive previously contained GPT label.

@UnicronNL or better add this to installer part

Oct 11 2017, 9:41 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer closed T244: Issue with recursive static routing as Wontfix.
Oct 11 2017, 9:38 PM · Rejected
syncer reassigned T252: VTI tunnel SA is incorrectly displayed as down when it's in fact up from syncer to dmbaturin.

@dmbaturin now as we have bugzilla back, can you check this one ?

Oct 11 2017, 9:36 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)
syncer assigned T332: Keepalived Race Condition with Keepalived 1.2.2 on Vyos 1.1.7 to dmbaturin.

@dmbaturin can we update keepalived to fresh version in 1.1.x
or should we drop mark this as wontfix in 1.1.x?

Oct 11 2017, 9:07 PM · Rejected
JulesT added a comment to T337: 'show vpn ipsec sa' output wrong when remote or local prefix not in system subnet.

Certainly not fixed in 1.1.x - but I'll see what I can do with it. 1.2 has such completely different handling that I couldn't even guess what it does. I'll have to work out a lab to reproduce it. Might get to it at the weekend.

Oct 11 2017, 9:02 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc10)
syncer assigned T337: 'show vpn ipsec sa' output wrong when remote or local prefix not in system subnet to JulesT.

@c-po wondering if this something that was fixed by you previously?

Oct 11 2017, 8:51 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc10)
syncer closed T397: SNMPd - High load, doesnt work. as Invalid.

Got no follow up,
closing this

Oct 11 2017, 8:50 PM · Invalid
syncer moved T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6 from Need Triage to Backlog on the VyOS 1.2 Crux board.
Oct 11 2017, 8:49 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer assigned T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6 to Unknown Object (User).

Here is patch:
diff --git a/bgpd/bgp_aspath.c b/bgpd/bgp_aspath.c

Oct 11 2017, 8:49 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer moved T422: Packages server and downloads should be available via HTTPS from Need Triage to Backlog on the VyOS 1.1.x board.
Oct 11 2017, 7:59 PM · Infrastructure
beamerblvd added a comment to T422: Packages server and downloads should be available via HTTPS.

Comment by @beamerblvd on 2016-01-24:

Oct 11 2017, 7:17 PM · Infrastructure
beamerblvd created T422: Packages server and downloads should be available via HTTPS.
Oct 11 2017, 7:17 PM · Infrastructure

Oct 10 2017

syncer closed Q112: Can we please get a mapping, or redirects, from Bugzilla to Phabricator? as resolved.
Oct 10 2017, 11:55 PM · VyOS 1.1.x
beamerblvd asked Q112: Can we please get a mapping, or redirects, from Bugzilla to Phabricator?.
Oct 10 2017, 9:01 PM · VyOS 1.1.x
syncer closed T416: IKEv2 VTI Site-to-Site VPN between Cisco IOS-XE 16.3.1a and VyOS 1.1.7 not working (IKEv1 working ok) as Wontfix.

We will not address this in 1.1.x
please retest on 1.2. and reopen ticket or create new one

Oct 10 2017, 3:55 PM · Rejected

Oct 8 2017

syncer triaged T416: IKEv2 VTI Site-to-Site VPN between Cisco IOS-XE 16.3.1a and VyOS 1.1.7 not working (IKEv1 working ok) as Low priority.

I will advise to try latest rolling release from here
dev.packages.vyos.net/iso/current/amd64/

Oct 8 2017, 1:43 PM · Rejected
xomka686 created T416: IKEv2 VTI Site-to-Site VPN between Cisco IOS-XE 16.3.1a and VyOS 1.1.7 not working (IKEv1 working ok) .
Oct 8 2017, 1:37 PM · Rejected

Oct 4 2017

dponzone added a comment to T244: Issue with recursive static routing.

I see your point, but generally, you want to use uRPF by receiving a BGP feed with prefixes to block, with a specific next hop, so you need to statically route this nexthop to blackhole, so all the prefixes are blackholed and uRPF can kick in.

Oct 4 2017, 2:13 PM · Rejected
Unknown Object (User) added a comment to T244: Issue with recursive static routing.

As most of network internals inferred from Linux kernel, there is no direct way to achieve what you want.
You messing two different things as uRPF and recursive lookup. First works fine, second impossible.

Oct 4 2017, 1:52 PM · Rejected
dponzone added a comment to T244: Issue with recursive static routing.

Does that mean uRPF is useless in VyOS, or is there a workaround I failed to find ?

Oct 4 2017, 1:13 PM · Rejected
Unknown Object (User) added a comment to T244: Issue with recursive static routing.

@dponzone check this thread, https://superuser.com/questions/1229275/linux-static-recursive-routes-not-supported
it will not work in a way you willing to have

Oct 4 2017, 10:56 AM · Rejected
dponzone added a comment to T244: Issue with recursive static routing.

The version and the relevant lines of configuration are at the beginning.
Am I missing something ?

Oct 4 2017, 9:33 AM · Rejected
syncer added a comment to T244: Issue with recursive static routing.

No version
No config
You have some task to accomplish and it not works as you need.

Oct 4 2017, 9:29 AM · Rejected
dponzone reopened T244: Issue with recursive static routing as "Open".
Oct 4 2017, 5:52 AM · Rejected
dponzone added a comment to T244: Issue with recursive static routing.

I am sorry, this is bug, I hardly see why it should be a support question.

Oct 4 2017, 5:52 AM · Rejected

Oct 3 2017

jbrown created T410: dnsmasq in 1.1.x is outdated and vulnerable to many CVEs.
Oct 3 2017, 3:35 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1), VyOS 1.1.x (1.1.8)
jbrown closed Q111: Any plans to backport dnsmasq? as resolved.
Oct 3 2017, 3:34 PM · VyOS 1.1.x
syncer added a comment to Q111: Any plans to backport dnsmasq?.

new one, not sure if you can edit T403

Oct 3 2017, 8:13 AM · VyOS 1.1.x

Oct 2 2017

jbrown added a comment to Q111: Any plans to backport dnsmasq?.

Do you want me to add it to T403 or make a new ticket?

Oct 2 2017, 7:26 PM · VyOS 1.1.x
syncer added a comment to Q111: Any plans to backport dnsmasq?.

Can you submit bug report please

Oct 2 2017, 7:22 PM · VyOS 1.1.x
jbrown updated the question details for Q111: Any plans to backport dnsmasq?.
Oct 2 2017, 7:21 PM · VyOS 1.1.x
jbrown asked Q111: Any plans to backport dnsmasq?.
Oct 2 2017, 7:20 PM · VyOS 1.1.x
rcit added a comment to T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.

This patch should also be included in 1.2.x, as i have seem similar behaviour with nightly builds.

Oct 2 2017, 10:49 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
unixro created T407: BGP type 2 length 3294 is too large, attribute total length is 2303. attr_endp is 0x7f9e0bbb56cd. endp is 0x7f9e0bbb52e6.
Oct 2 2017, 7:24 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Sep 23 2017

syncer created T403: Outstanding CVEs - Other.
Sep 23 2017, 4:01 AM · VyOS 1.1.x (1.1.8)

Sep 18 2017

leonardogutierres added a comment to T17: Fix SNMP errors for Intel 10G cards (82599EB) using ixgbe (interface_dot3stats_get_errorcounters: got data from IFLA_STATS).

l# dpkg -l | grep snmpd
ii snmpd 5.7.2+vyos1+helium2 SNMP (Simple Network Management Protocol) agents

Sep 18 2017, 4:35 PM · VyOS 1.1.x
syncer closed T221: Pmmact bug as Invalid.
Sep 18 2017, 3:31 PM · Invalid

Sep 17 2017

syncer added a comment to T397: SNMPd - High load, doesnt work..

Please check with latest night build
Not likely that we will spend time on this in 1.1. x series

Sep 17 2017, 5:15 PM · Invalid
tdale added a comment to T17: Fix SNMP errors for Intel 10G cards (82599EB) using ixgbe (interface_dot3stats_get_errorcounters: got data from IFLA_STATS).

dpkg -l | grep snmpd and it says 5.7.2+vyos1+helium2 Which is what is already on /tmp/khagen/snmp .. I downloaded the packages and installed them but same issue with timeouts and high load on the system. 82599EB

Sep 17 2017, 7:11 AM · VyOS 1.1.x
tdale updated the task description for T397: SNMPd - High load, doesnt work..
Sep 17 2017, 7:09 AM · Invalid
tdale created T397: SNMPd - High load, doesnt work..
Sep 17 2017, 7:00 AM · Invalid

Sep 12 2017

c-po added a comment to T389: Virtio SCSI is missing in kernel.

I can verify that it now also boots on OVH.net VPS.

Sep 12 2017, 8:53 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Sep 11 2017

leonardogutierres added a comment to T17: Fix SNMP errors for Intel 10G cards (82599EB) using ixgbe (interface_dot3stats_get_errorcounters: got data from IFLA_STATS).
In T17#5090, @audreez wrote:

can someone tell me how to properly apply this patch? thank you!

Sep 11 2017, 6:58 PM · VyOS 1.1.x
adrianceleste added a comment to T389: Virtio SCSI is missing in kernel.

@UnicronNL @syncer Using the latest beta ISO I can happily report everything seems to install + boot just fine!

Sep 11 2017, 4:19 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Sep 10 2017

syncer moved T389: Virtio SCSI is missing in kernel from Backlog to In Progress on the VyOS 1.2 Crux board.
Sep 10 2017, 9:04 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer moved T389: Virtio SCSI is missing in kernel from Backlog to In Progress on the VyOS 1.1.x board.

@UnicronNL applied changes in both 1.1.x and 1.2.x

Sep 10 2017, 9:03 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
c-po added a comment to T389: Virtio SCSI is missing in kernel.

Maybe this is the reason why we also can't boot a VyOS instance on VPSs rentet from OVH.net

Sep 10 2017, 7:53 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer triaged T389: Virtio SCSI is missing in kernel as Normal priority.
Sep 10 2017, 1:02 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer moved T389: Virtio SCSI is missing in kernel from Need Triage to Backlog on the VyOS 1.2 Crux board.
Sep 10 2017, 11:12 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer assigned T389: Virtio SCSI is missing in kernel to UnicronNL.

@UnicronNL please add this when you have time

Sep 10 2017, 11:12 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer created T389: Virtio SCSI is missing in kernel.
Sep 10 2017, 11:11 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Sep 9 2017

iworn added a watcher for VyOS 1.1.x: iworn.
Sep 9 2017, 9:31 PM

Sep 1 2017

msc added a comment to T376: DHCP-relay problems with OpenVPN uplink.

Ok I will submit a feature request.

Sep 1 2017, 5:24 PM · Rejected
syncer closed T376: DHCP-relay problems with OpenVPN uplink as Wontfix.

There is no plans to use this packages in VyOS
This will not be fixed in 1.1.x

Sep 1 2017, 5:13 PM · Rejected
msc reopened T376: DHCP-relay problems with OpenVPN uplink as "Open".
Sep 1 2017, 5:10 PM · Rejected
syncer closed T376: DHCP-relay problems with OpenVPN uplink as Wontfix.

No such plans,
but you may want to submit this as feature request to 1.2.x project instead
If you can also add references for this limitations and any additional info
this will helps a lot

Sep 1 2017, 5:04 PM · Rejected
msc updated the task description for T376: DHCP-relay problems with OpenVPN uplink.
Sep 1 2017, 5:02 PM · Rejected
msc updated the task description for T376: DHCP-relay problems with OpenVPN uplink.
Sep 1 2017, 4:59 PM · Rejected
msc created T376: DHCP-relay problems with OpenVPN uplink.
Sep 1 2017, 9:08 AM · Rejected

Aug 29 2017

syncer closed Q102: IKEv2 Bugs? as resolved.
Aug 29 2017, 10:47 AM · VyOS 1.1.x
syncer closed Q104: When commit fails, the corresponding service (ipsec/vrrp) fails as well as invalid.
Aug 29 2017, 10:45 AM · VyOS 1.1.x

Aug 25 2017

babak created T366: SNMP Query for BGP Tunnels Returns IPv4 Tunnels Only.
Aug 25 2017, 4:08 PM · VyOS 1.4 Sagitta
hiroyuki-sato added a comment to T252: VTI tunnel SA is incorrectly displayed as down when it's in fact up.

@syncer thanks!.

Aug 25 2017, 12:09 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)

Aug 24 2017

syncer updated subscribers of T252: VTI tunnel SA is incorrectly displayed as down when it's in fact up.

@hiroyuki-sato maybe 1.2 is not affected with that issue,
i will check with @dmbaturin

Aug 24 2017, 11:40 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)
hiroyuki-sato added a comment to T252: VTI tunnel SA is incorrectly displayed as down when it's in fact up.

@syncer Sorry late reply.

Aug 24 2017, 11:30 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)

Aug 21 2017

syncer closed T349: Does the IKEv1 Dead-peer-detection work? as Wontfix.

this will be not addressed in 1.1.x

Aug 21 2017, 3:39 AM · Rejected
syncer closed T273: Vpn l2tp ipsec as Invalid.

Invalid configuration

Aug 21 2017, 3:04 AM · Invalid
syncer updated subscribers of T252: VTI tunnel SA is incorrectly displayed as down when it's in fact up.
Aug 21 2017, 3:01 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)
syncer assigned T232: Install fails if hard drive previously contained GPT label to UnicronNL.

@UnicronNL can this be added with impact?

Aug 21 2017, 2:59 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer merged task T211: show DHCP issue into T186: DHCP with VRRP.
Aug 21 2017, 2:55 AM · VyOS 1.1.x
syncer assigned T198: l2tpv3 instance not reconfigured when changing session-id or tunnel-id parameters to UnicronNL.
Aug 21 2017, 2:47 AM · VyOS 1.1.x (1.1.8)
syncer added a comment to T174: Not completed pptp session when disconnected by the client.

Should we investigate this on 1.2 or drop this?

Aug 21 2017, 2:33 AM · Rejected
syncer changed the edit policy for T174: Not completed pptp session when disconnected by the client.
Aug 21 2017, 2:32 AM · Rejected
syncer closed T151: Prepare generic presentation/talk as Invalid.

There was no interest on this, closing as invalid

Aug 21 2017, 2:29 AM · Invalid
syncer changed the edit policy for T145: Fix PXE boot in helium.
Aug 21 2017, 2:27 AM · VyOS 1.1.x (1.1.8)
syncer closed T127: Double quotes in openvpn-option as Invalid.

No additional information was provided

Aug 21 2017, 2:22 AM · Invalid
syncer added a comment to T109: VyOS Can Lose Parts Of Its Config On Reboot - In Certain Situations.

@jhendryUK is this also affects 1.2.x ?

Aug 21 2017, 2:06 AM · VyOS 1.3 Equuleus (1.3.3)
syncer updated subscribers of T109: VyOS Can Lose Parts Of Its Config On Reboot - In Certain Situations.
Aug 21 2017, 2:05 AM · VyOS 1.3 Equuleus (1.3.3)
syncer changed the edit policy for T55: Qos documentation on http://vyos.net/wiki/QoS.
Aug 21 2017, 1:30 AM · Restricted Project
syncer assigned T52: Q26 pull request seems to be tested at least. to UnicronNL.

Looks simple, moving to backlog for 1.1.8

Aug 21 2017, 1:26 AM · VyOS 1.1.x (1.1.8)
syncer changed the edit policy for T52: Q26 pull request seems to be tested at least..
Aug 21 2017, 1:25 AM · VyOS 1.1.x (1.1.8)
syncer changed the edit policy for T51: Add support for an included dns recursor.
Aug 21 2017, 1:23 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
syncer closed T44: Unexpected kernel related errors as Invalid.

Marking this as invalid
info provided not sufficient

Aug 21 2017, 1:22 AM · Invalid
syncer changed the edit policy for T44: Unexpected kernel related errors.
Aug 21 2017, 1:21 AM · Invalid