Page MenuHomeVyOS Platform
Feed Advanced Search

Apr 3 2023

Viacheslav added a comment to T4081: VRRP health-check script stops working when setting up a sync group.

@lcrockett Add please a new bug report.

Apr 3 2023, 9:08 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Mar 31 2023

lcrockett added a comment to T4081: VRRP health-check script stops working when setting up a sync group.

Running '1.4-rolling-202303270317' i'm experiencing the opposite behaviour. A VRRP health-check script in a VRRP group that is a member of a VRRP sync group stops working (VRRP group immediately transitions to 'FAULT' state upon start of keepalived). If i take out the 'track_script' block in the produced '/run/keepalived/keepalived.conf' and restart keepalived (sudo systemctl restart keepalived) the health-check script functions as expected again. Any pointers ? Or shall I create a new issue containing the appropriate details ?

Mar 31 2023, 3:29 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Aug 30 2022

syncer moved T4100: Firewall increase maximum number of rules from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:31 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
syncer moved T4169: INVALID from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:31 PM · VyOS 1.3 Equuleus ( 1.3.1)
syncer moved T4310: CVE-2022-0778: infinite loop in OpenSSL certificate parsing from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:31 PM · VyOS 1.3 Equuleus ( 1.3.1)
syncer archived VyOS 1.3 Equuleus ( 1.3.1).
Aug 30 2022, 2:30 PM
syncer moved T4311: CVE-2021-4034: local privilege escalation in PolKit from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:30 PM · VyOS 1.3 Equuleus ( 1.3.1)
syncer moved T4377: generate tech-support archive includes previous archives from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:30 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
syncer moved T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1 from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:30 PM · VyOS 1.3 Equuleus ( 1.3.1)
syncer moved T4476: Next steps after installation is not communicated properly to new users from Need Triage to Finished on the VyOS 1.3 Equuleus ( 1.3.1) board.
Aug 30 2022, 2:30 PM · VyOS 1.3 Equuleus ( 1.3.1)

Aug 26 2022

initramfs updated the task description for T4648: PPPoE: Ignore default router from RA when PPPoE default-route is set to none.
Aug 26 2022, 1:55 AM · VyOS 1.3 Equuleus (1.3.3)
initramfs created T4648: PPPoE: Ignore default router from RA when PPPoE default-route is set to none.
Aug 26 2022, 1:37 AM · VyOS 1.3 Equuleus (1.3.3)

Aug 14 2022

dmbaturin closed T4260: Extend vyos.configdict.node_changed() to support recursiveness, a subtask of T4203: Reconfigure DHCP client interface causes brief outages, as Resolved.
Aug 14 2022, 6:16 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Aug 11 2022

danhusan closed T4476: Next steps after installation is not communicated properly to new users as Resolved.
Aug 11 2022, 7:04 PM · VyOS 1.3 Equuleus ( 1.3.1)

Aug 1 2022

Viacheslav changed the status of T4582: Router-advert: Preferred lifetime cannot equal valid lifetime in PIOs from Open to Needs testing.
Aug 1 2022, 7:54 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Jul 31 2022

initramfs updated the task description for T4582: Router-advert: Preferred lifetime cannot equal valid lifetime in PIOs.
Jul 31 2022, 10:28 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
initramfs updated the task description for T4582: Router-advert: Preferred lifetime cannot equal valid lifetime in PIOs.
Jul 31 2022, 10:16 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
initramfs created T4582: Router-advert: Preferred lifetime cannot equal valid lifetime in PIOs.
Jul 31 2022, 10:12 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Jul 30 2022

Viacheslav added a comment to T4423: `reset dns forwarding all` can't clear all dns cache.

@dongjunbo What do you mean?
Could you send a real example? I don't see any issues (VyOS 1.3-stable-202207280515).

Jul 30 2022, 1:53 PM · VyOS 1.3 Equuleus (1.3.5)

Jul 25 2022

Viacheslav added a comment to T4271: bgp: show ipv6 bgp summary doesn't display neighbor information.

@NikolayP Try the next command:

Jul 25 2022, 9:32 AM · VyOS 1.3 Equuleus (1.3.5)

Jul 18 2022

c-po closed T4228: bond: OS error thrown when two bonds use the same member as Resolved.
Jul 18 2022, 11:21 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Jul 10 2022

c-po reopened T4228: bond: OS error thrown when two bonds use the same member as "In progress".
Jul 10 2022, 7:55 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Jul 6 2022

Viacheslav changed the status of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command from In progress to Needs testing.
Jul 6 2022, 4:09 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk claimed T4513: Webproxy monitor commands do not work.
Jul 6 2022, 8:21 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
a.apostoliuk created T4513: Webproxy monitor commands do not work.
Jul 6 2022, 8:21 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Jun 30 2022

Unknown Object (User) added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

Maybe it depends on the version of accel-ppp.
In 1.2.8:

Jun 30 2022, 7:56 AM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 28 2022

Viacheslav closed T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1 as Invalid.
Jun 28 2022, 8:38 AM · VyOS 1.3 Equuleus ( 1.3.1)
e.khudiyev added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.
In T4457#124584, @NikolayP wrote:

The problem seems to be in these lines:

set vpn l2tp remote-access authentication local-users username test static-ip '172.25.255.1'
set vpn l2tp remote-access client-ip-pool start '172.25.255.1'
set vpn l2tp remote-access client-ip-pool stop '172.25.255.14'

Replacing "static IP" with 172.25.255.2 makes it work in VyOS 1.3.1

set vpn l2tp remote-access authentication local-users username test static-ip '172.25.255.2'

Full corrected config for 1.3.1 from the first post:

set interfaces dummy dum4 address '4.4.4.4/32'
set interfaces ethernet eth0 address 'dhcp'
set interfaces ethernet eth1 address '192.168.6.31/24'
set service ssh
set vpn ipsec ipsec-interfaces interface 'eth1'
set vpn ipsec nat-networks allowed-network 0.0.0.0/0
set vpn ipsec nat-traversal 'enable'
set vpn l2tp remote-access authentication local-users username test password 'test'
set vpn l2tp remote-access authentication local-users username test static-ip '172.25.255.2'
set vpn l2tp remote-access authentication mode 'local'
set vpn l2tp remote-access authentication require 'mschap-v2'
set vpn l2tp remote-access client-ip-pool start '172.25.255.1'
set vpn l2tp remote-access client-ip-pool stop '172.25.255.14'
set vpn l2tp remote-access idle '1800'
set vpn l2tp remote-access ipsec-settings authentication mode 'pre-shared-secret'
set vpn l2tp remote-access ipsec-settings authentication pre-shared-secret 'test'
set vpn l2tp remote-access ipsec-settings ike-lifetime '3600'
set vpn l2tp remote-access ipsec-settings lifetime '3600'
set vpn l2tp remote-access outside-address '192.168.6.31'
Jun 28 2022, 8:29 AM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 22 2022

dongjunbo updated the task description for T4479: generate wireguard client command prompt has some error.
Jun 22 2022, 10:51 AM · VyOS 1.3 Equuleus (1.3.4)
dongjunbo created T4479: generate wireguard client command prompt has some error.
Jun 22 2022, 10:50 AM · VyOS 1.3 Equuleus (1.3.4)

Jun 21 2022

danhusan created T4476: Next steps after installation is not communicated properly to new users.
Jun 21 2022, 12:31 PM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 12 2022

Unknown Object (User) added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

The problem seems to be in these lines:

Jun 12 2022, 3:56 AM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 11 2022

dmbaturin changed Why the issue appeared? from none to implementation-mistake on T3686: Bridging OpenVPN tap with no local-address breaks.
Jun 11 2022, 8:38 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dmbaturin renamed T3380: "show vpn ike sa" does not display IPv6 peers from Show vpn ike sa with IPv6 remote peer to "show vpn ike sa" does not display IPv6 peers.
Jun 11 2022, 8:37 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Jun 10 2022

n.fort added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

Same as Viacheslav. No issues on my tests in Ubuntu.

Jun 10 2022, 12:56 PM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 6 2022

Viacheslav added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

Don't have any issues with Ubuntu

set interfaces dummy dum0 address '192.0.2.1/32'
set interfaces dummy dum4 address '203.0.113.1/24'
set interfaces ethernet eth0 address '192.168.122.11/24'
set interfaces ethernet eth0 description 'WAN'
set vpn ipsec ipsec-interfaces interface 'eth0'
set vpn l2tp remote-access authentication local-users username test password 'test'
set vpn l2tp remote-access authentication mode 'local'
set vpn l2tp remote-access client-ip-pool start '192.168.255.2'
set vpn l2tp remote-access client-ip-pool stop '192.168.255.254'
set vpn l2tp remote-access ipsec-settings authentication mode 'pre-shared-secret'
set vpn l2tp remote-access ipsec-settings authentication pre-shared-secret 'secret'
set vpn l2tp remote-access outside-address '192.0.2.1'
Jun 6 2022, 10:03 AM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 5 2022

Unknown Object (User) added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

@NikolayP , Looks like MTU and MPPE issue. Stoping daemon does not related to this I think.

Jun 5 2022, 6:56 PM · VyOS 1.3 Equuleus ( 1.3.1)
kajiuray created T4459: API service with VRF doesn't work in 1.3.1.
Jun 5 2022, 9:39 AM · VyOS 1.3 Equuleus (1.3.4)

Jun 3 2022

Unknown Object (User) added a comment to T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1.

Not sure if this is relevant to the task.
But once when shutting down a VM with VyOS 1.3.1-S1, it took a long time to shut down:

image.png (117×1 px, 10 KB)

Jun 3 2022, 2:42 PM · VyOS 1.3 Equuleus ( 1.3.1)
Unknown Object (User) triaged T4457: L2TP/IPSec Remote Access VPN does not work as expected in 1.3.1-S1 as High priority.
Jun 3 2022, 2:31 PM · VyOS 1.3 Equuleus ( 1.3.1)

Jun 1 2022

marekm updated the task description for T4453: dhclient fails to renew DHCP lease with VRF.
Jun 1 2022, 3:39 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
marekm created T4453: dhclient fails to renew DHCP lease with VRF.
Jun 1 2022, 8:38 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

May 16 2022

jestabro added a comment to T4396: HTTP API no response after several days restarted.

The current discussion has taken place in the vyos-api-discussion channel; results will be summarized here.

May 16 2022, 5:36 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4396: HTTP API no response after several days restarted.

Firstly, is there any info in the logs ?

May 16 2022, 12:40 PM · VyOS 1.4 Sagitta
jestabro added a comment to T4396: HTTP API no response after several days restarted.

As discussed in the slack channel today, let us follow up here, as I'd like to run through some analysis, and set up a reproducer if possible.

May 16 2022, 12:32 PM · VyOS 1.4 Sagitta
m.korobeinikov closed T4377: generate tech-support archive includes previous archives as Resolved.

The command works well.

May 16 2022, 1:29 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
m.korobeinikov added a comment to T4377: generate tech-support archive includes previous archives.
vyos@vyos:~$ show version
May 16 2022, 1:28 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

May 13 2022

Viacheslav added a project to T4377: generate tech-support archive includes previous archives: VyOS 1.4 Sagitta.
May 13 2022, 9:06 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Viacheslav changed the status of T4377: generate tech-support archive includes previous archives from Open to Needs testing.
May 13 2022, 9:06 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

May 12 2022

n.fort closed T4100: Firewall increase maximum number of rules as Resolved.
May 12 2022, 5:14 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dongjunbo created T4423: `reset dns forwarding all` can't clear all dns cache.
May 12 2022, 10:04 AM · VyOS 1.3 Equuleus (1.3.5)

May 10 2022

Viacheslav closed T1972: Allow setting interface name for virtual_ipaddress in VRRP VRID as Resolved.
May 10 2022, 10:37 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
Viacheslav changed the status of T4405: DHCP client sometimes ignores `no-default-route` option of an interface from Open to Backport candidate.
May 10 2022, 10:26 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 9 2022

dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

It may be a good idea to cherry-pick this for 1.4.x branch.

May 9 2022, 3:48 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 5 2022

Viacheslav added a comment to T4315: Telegraf - Output to prometheus.

PR for 1.3 https://github.com/vyos/vyos-1x/pull/1315

May 5 2022, 4:21 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav moved T4315: Telegraf - Output to prometheus from Need Triage to Finished on the VyOS 1.4 Sagitta board.
May 5 2022, 12:30 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

I've creatred a pull request for the above - https://github.com/vyos/vyos-1x/pull/1313

May 5 2022, 5:55 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 4 2022

dtoux updated the task description for T4405: DHCP client sometimes ignores `no-default-route` option of an interface.
May 4 2022, 6:38 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav changed the status of T4315: Telegraf - Output to prometheus from In progress to Needs testing.
May 4 2022, 4:15 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 3 2022

dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

Also, these routes getting an administrative distance of 1, which is impossible to override. I believe the default route from DHCP normally has 210 which is manageable. So, the quick workaround could be increasing distance of these routes.

May 3 2022, 2:28 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.
r24:/home/dtoubelis# cat /var/lib/dhcp/dhclient_eth4.leases
lease {
  interface "eth4";
  fixed-address 100.123.57.53;
  option subnet-mask 255.192.0.0;
  option relay-agent-information 1:4:0:0:4:cf:5:4:64:40:0:1:97:8:1:0:14:ed:0:0:14:ed:98:0;
  option dhcp-lease-time 300;
  option routers 100.64.0.1;
  option dhcp-message-type 5;
  option domain-name-servers 1.1.1.1,8.8.8.8;
  option dhcp-server-identifier 100.64.0.1;
  option interface-mtu 1500;
  option rfc3442-classless-static-routes 32,192,168,100,1,0,0,0,0,32,34,120,255,244,0,0,0,0,0,100,64,0,1;
  renew 2 2022/05/03 12:42:00;
  rebind 2 2022/05/03 12:44:26;
  expire 2 2022/05/03 12:45:04;
}
lease {
  interface "eth4";
  fixed-address 100.123.57.53;
  option subnet-mask 255.192.0.0;
  option relay-agent-information 1:4:0:0:4:cf:5:4:64:40:0:1:97:8:1:0:14:ed:0:0:14:ed:98:0;
  option dhcp-lease-time 300;
  option routers 100.64.0.1;
  option dhcp-message-type 5;
  option domain-name-servers 1.1.1.1,8.8.8.8;
  option dhcp-server-identifier 100.64.0.1;
  option interface-mtu 1500;
  option rfc3442-classless-static-routes 32,192,168,100,1,0,0,0,0,32,34,120,255,244,0,0,0,0,0,100,64,0,1;
  renew 2 2022/05/03 12:46:34;
  rebind 2 2022/05/03 12:48:50;
  expire 2 2022/05/03 12:49:28;
}
lease {
  interface "eth4";
  fixed-address 100.123.57.53;
  option subnet-mask 255.192.0.0;
  option relay-agent-information 1:4:0:0:4:cf:5:4:64:40:0:1:97:8:1:0:14:ed:0:0:14:ed:98:0;
  option dhcp-lease-time 300;
  option routers 100.64.0.1;
  option dhcp-message-type 5;
  option domain-name-servers 1.1.1.1,8.8.8.8;
  option dhcp-server-identifier 100.64.0.1;
  option interface-mtu 1500;
  option rfc3442-classless-static-routes 32,192,168,100,1,0,0,0,0,32,34,120,255,244,0,0,0,0,0,100,64,0,1;
  renew 2 2022/05/03 12:51:33;
  rebind 2 2022/05/03 12:53:25;
  expire 2 2022/05/03 12:54:03;
}
...
}
May 3 2022, 2:22 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T4315: Telegraf - Output to prometheus.

Prometheus server pulls information correctly

prometheus.png (1×2 px, 1 MB)

May 3 2022, 9:58 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

Could you also provide cat /var/lib/dhcp/dhclient_eth4.leases ?
no-default-route ignore just option routers and don't touch other options like classless-static-routes
https://github.com/vyos/vyos-1x/blob/2c29a3b3b46c7570f4a509f413b208348c0ce647/data/templates/dhcp-client/ipv4.tmpl#L18-L19

May 3 2022, 7:08 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dtoux added a comment to T4405: DHCP client sometimes ignores `no-default-route` option of an interface.

Below is a packet capture from DHCP exchange:


It seems that option 121 has more than one route. Could this be causing the abnormal behavior?

May 3 2022, 4:44 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
dtoux created T4405: DHCP client sometimes ignores `no-default-route` option of an interface.
May 3 2022, 4:16 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

May 2 2022

Viacheslav added a comment to T4315: Telegraf - Output to prometheus.

PR
https://github.com/vyos/vyos-1x/pull/1310

May 2 2022, 7:40 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav changed the status of T4315: Telegraf - Output to prometheus from Open to In progress.
May 2 2022, 12:51 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Apr 29 2022

n.fort reassigned T4377: generate tech-support archive includes previous archives from n.fort to m.korobeinikov.
Apr 29 2022, 10:31 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
n.fort claimed T4377: generate tech-support archive includes previous archives.
Apr 29 2022, 10:19 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
m.korobeinikov added a comment to T4377: generate tech-support archive includes previous archives.

https://github.com/vyos/vyatta-op/pull/55

Apr 29 2022, 3:23 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

Apr 27 2022

c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.188 / 5.10.111 to Update Linux Kernel to v5.4.191 / 5.10.113.
Apr 27 2022, 7:51 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
SrividyaA claimed T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command.
Apr 27 2022, 10:50 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Apr 26 2022

jestabro claimed T4396: HTTP API no response after several days restarted.
Apr 26 2022, 11:26 AM · VyOS 1.4 Sagitta
Viacheslav added a project to T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command: VyOS 1.4 Sagitta.
Apr 26 2022, 1:07 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Apr 25 2022

dongjunbo created T4396: HTTP API no response after several days restarted.
Apr 25 2022, 4:05 PM · VyOS 1.4 Sagitta

Apr 22 2022

m.korobeinikov added a comment to T4377: generate tech-support archive includes previous archives.

We can solve this problem in three ways.
Now the script (https://github.com/vyos/vyatta-op/blob/29703664633a20385a077083b4393738bdcb7409/scripts/tech-support-archive) creates up to 5 versions of support archives, after which it starts deleting the previous one. The problem is that each new version of the archives contains from 1 to 4 old archives. As a result, the archive can take up a lot of space.

Apr 22 2022, 1:46 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

Apr 20 2022

SrividyaA changed the status of T4381: OpenVPN: Add "Tunnel IP" column in "show openvpn server" operational command from Open to In progress.
Apr 20 2022, 5:52 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta

Apr 19 2022

Viacheslav added a comment to T4377: generate tech-support archive includes previous archives.

It should exclude it https://github.com/vyos/vyatta-op/blob/dfbfeafb1362a2c6934575a984a78fd2524d5720/scripts/tech-support-archive#L54

Apr 19 2022, 1:24 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Unknown Object (User) created T4377: generate tech-support archive includes previous archives.
Apr 19 2022, 12:39 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

Apr 14 2022

c-po renamed T3318: Update Linux Kernel to v5.4.208 / 5.10.142 from Update Linux Kernel to v5.4.185 / 5.10.106 to Update Linux Kernel to v5.4.188 / 5.10.111.
Apr 14 2022, 7:28 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Apr 5 2022

Viacheslav added a comment to T4315: Telegraf - Output to prometheus.

@NceAirport do you have a minimum required configuration?
As I see it should be something like:

set service monitoring xxx prometheus authentication login xxx
set service monitoring xxx prometheus authentication password xxx
set service monitoring xxx prometheus port 9273
set service monitoring xxx prometheus network 192.0.2.0/24
Apr 5 2022, 7:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Mar 30 2022

freelancer added a comment to T3686: Bridging OpenVPN tap with no local-address breaks.

Thank you. I can confirm it works as expected in 1.3.1-S1.

Mar 30 2022, 3:56 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Mar 29 2022

Viacheslav closed T3686: Bridging OpenVPN tap with no local-address breaks as Resolved.
Mar 29 2022, 9:20 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
n.fort added a comment to T3686: Bridging OpenVPN tap with no local-address breaks.

Hi @freelancer . PR mentioned by @Viacheslav was merged on February 17, so fix should be included in 1.3.1

Mar 29 2022, 12:17 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
freelancer added a comment to T3686: Bridging OpenVPN tap with no local-address breaks.

Is this fixed in the released 1.3.1? It looks like it was merged into equuleus, but I don't see it in the 1.3.1 changelog at https://blog.vyos.io/vyos-1.3.1-release.

Mar 29 2022, 11:20 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Mar 24 2022

syncer triaged T4315: Telegraf - Output to prometheus as Normal priority.
Mar 24 2022, 11:38 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
syncer assigned T4315: Telegraf - Output to prometheus to Viacheslav.
Mar 24 2022, 11:37 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
NceAirport created T4315: Telegraf - Output to prometheus.
Mar 24 2022, 9:15 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Mar 21 2022

dmbaturin edited projects for T4311: CVE-2021-4034: local privilege escalation in PolKit, added: VyOS 1.3 Equuleus ( 1.3.1); removed VyOS 1.3 Equuleus (1.3.0).
Mar 21 2022, 7:18 PM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin closed T4310: CVE-2022-0778: infinite loop in OpenSSL certificate parsing as Resolved.
Mar 21 2022, 12:12 PM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin renamed T4310: CVE-2022-0778: infinite loop in OpenSSL certificate parsing from CVE-2022-0778 to CVE-2022-0778: infinite loop in OpenSSL certificate parsing.
Mar 21 2022, 12:06 PM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin created T4310: CVE-2022-0778: infinite loop in OpenSSL certificate parsing.
Mar 21 2022, 12:06 PM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin changed Issue type from unspecified to bug on T4241: ocserv openconnect looks broken in recent bulds of 1.3 Equuleus.
Mar 21 2022, 11:58 AM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin changed Issue type from unspecified to bug on T4234: Show firewall partly broken in 1.3.x.
Mar 21 2022, 11:57 AM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin renamed T4168: IPsec VPN is impossible to restart when DMVPN is configured from Does not possible to reset VPN properly when DMVPN configured to IPsec VPN is impossible to restart when DMVPN is configured.
Mar 21 2022, 11:56 AM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin renamed T4165: Custom conntrack rules cannot be deleted from Delete custom conntrack timeout firewall bug to Custom conntrack rules cannot be deleted.
Mar 21 2022, 11:55 AM · VyOS 1.3 Equuleus ( 1.3.1)
dmbaturin changed Why the issue appeared? from none to implementation-mistake on T4152: NHRP shortcut-target holding-time does not work.
Mar 21 2022, 8:11 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dmbaturin changed Why the issue appeared? from none to implementation-mistake on T4142: Input ifbX interfaces not displayed in op-mode.
Mar 21 2022, 8:10 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dmbaturin changed Issue type from unspecified to bug on T4081: VRRP health-check script stops working when setting up a sync group.
Mar 21 2022, 8:09 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
dmbaturin renamed T3914: VRRP rfc3768-compatibility doesn't work with unicast peers from vrrp rfc3768-compatibility doesn't work with unicast peers to VRRP rfc3768-compatibility doesn't work with unicast peers.
Mar 21 2022, 8:08 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta