Page MenuHomeVyOS Platform
Feed Advanced Search

Feb 26 2024

olofl added a comment to T4316: Update save-config/load-config.

On 1.4.0-epa1, there is no longer an indication that configuration file actually has been saved.

Feb 26 2024, 11:14 AM · VyOS 1.4 Sagitta

Oct 18 2023

olofl added a comment to T5665: radius user not working.

vyos logs

Oct 18 14:16:41 sshd[24197]: pam_succeed_if(sshd:auth): requirement "service = sudo" not met by user "olofl"
Oct 18 14:16:41 sshd[24197]: pam_succeed_if(sshd:account): requirement "service = sudo" not met by user "olofl"
Oct 18 14:16:41 sshd[24197]: Accepted password for olofl from 10.6.10.89 port 47110 ssh2
Oct 18 14:16:41 sshd[24197]: pam_succeed_if(sshd:session): requirement "service = sudo" not met by user "olofl"
Oct 18 14:16:41 sshd[24197]: pam_unix(sshd:session): session opened for user olofl(uid=1001) by (uid=0)
Oct 18 14:16:41 systemd[1]: Created slice user-1001.slice - User Slice of UID 1001.
Oct 18 14:16:41 systemd[1]: Starting [email protected] - User Runtime Directory /run/user/1001...
Oct 18 14:16:41 systemd-logind[1259]: New session 129 of user olofl.
Oct 18 14:16:41 systemd[1]: Finished [email protected] - User Runtime Directory /run/user/1001.
Oct 18 14:16:41 systemd[1]: Starting [email protected] - User Manager for UID 1001...
Oct 18 14:16:41 (systemd)[24203]: pam_succeed_if(systemd-user:account): requirement "service = sudo" not met by user "olofl"
Oct 18 14:16:41 (systemd)[24203]: pam_succeed_if(systemd-user:session): requirement "service = sudo" not met by user "olofl"
Oct 18 14:16:41 (systemd)[24203]: pam_unix(systemd-user:session): session opened for user olofl(uid=1001) by (uid=0)
Oct 18 14:16:41 rsyslogd[11051]:  message repeated 69 times: [-- MARK --]
Oct 18 14:16:41 rsyslogd[11051]: child process (pid 24200) exited with status 1 [v8.2302.0]
Oct 18 14:16:41 systemd[24203]: Queued start job for default target default.target.
Oct 18 14:16:41 systemd[24203]: Reached target paths.target - Paths.
Oct 18 14:16:41 systemd[24203]: Reached target sockets.target - Sockets.
Oct 18 14:16:41 systemd[24203]: Reached target timers.target - Timers.
Oct 18 14:16:41 systemd[24203]: Reached target basic.target - Basic System.
Oct 18 14:16:41 systemd[24203]: Reached target default.target - Main User Target.
Oct 18 14:16:41 systemd[24203]: Startup finished in 64ms.
Oct 18 14:16:41 systemd[1]: Started [email protected] - User Manager for UID 1001.
Oct 18 14:16:41 systemd[1]: Started session-129.scope - Session 129 of User olofl.
Oct 18 14:16:41 systemd[1]: opt-vyatta-config-tmp-new_config_24226.mount: Deactivated successfully.
Oct 18 14:16:41 sshd[24197]: pam_env(sshd:session): deprecated reading of user environment enabled

testing another radius user

Oct 18 14:19:32 sshd[24610]: pam_succeed_if(sshd:auth): requirement "service = sudo" not met by user "oxidized"
Oct 18 14:19:32 sshd[24610]: pam_succeed_if(sshd:account): requirement "service = sudo" not met by user "oxidized"
Oct 18 14:19:32 sshd[24610]: Accepted password for oxidized from 10.6.10.89 port 58054 ssh2
Oct 18 14:19:32 sshd[24610]: pam_succeed_if(sshd:session): requirement "service = sudo" not met by user "oxidized"
Oct 18 14:19:32 sshd[24610]: pam_unix(sshd:session): session opened for user oxidized(uid=1001) by (uid=0)
Oct 18 14:19:32 systemd-logind[1259]: New session 132 of user olofl.
Oct 18 14:19:32 systemd[1]: Started session-132.scope - Session 132 of User olofl.
Oct 18 14:19:32 systemd[1]: opt-vyatta-config-tmp-new_config_24614.mount: Deactivated successfully.
Oct 18 14:19:32 sshd[24610]: pam_env(sshd:session): deprecated reading of user environment enabled
Oct 18 2023, 2:27 PM · VyOS 1.4 Sagitta
olofl added a comment to T5665: radius user not working.

My radius user was not called admin, but local user called admin was configured before I tried.
I removed local admin user, and tried once again, and I get the same reults.

Oct 18 2023, 9:47 AM · VyOS 1.4 Sagitta
olofl added a comment to T5665: radius user not working.
Oct 18 2023, 9:44 AM · VyOS 1.4 Sagitta

Oct 17 2023

olofl created T5665: radius user not working.
Oct 17 2023, 3:37 PM · VyOS 1.4 Sagitta
olofl created T5664: 1.4 user has no permissions?.
Oct 17 2023, 3:33 PM · VyOS 1.4 Sagitta

Mar 3 2022

olofl added a comment to T1753: Configuring `ip source-validation loose` doesn't properly configure `sysctl`.

1.3.0:
Still generating the same config

Mar 3 2022, 2:26 PM · VyOS 1.5 Circinus

Feb 23 2022

olofl added a comment to T3771: DHCPv6 server prefix delegation - dynamically add route to delegated prefix via requesting router.

If VyOS goes for Kea, it might be a better idea to invest time in Kea DHCPv6, as it has hook libraries which might resolve this task neater.

Feb 23 2022, 9:28 AM · VyOS 1.5 Circinus

Feb 14 2022

olofl updated subscribers of T3977: dhcp-relay-agent uses "physical" IP instead of vrrp IP.

@sever https://kea.readthedocs.io/en/kea-2.0.1/arm/dhcp4-srv.html#using-a-specific-relay-agent-for-a-subnet

Feb 14 2022, 7:11 PM · VyOS 1.3 Equuleus (1.3.6)

Dec 29 2021

olofl created T4122: interface ip address config missing after upgrade from 1.2.8 to 1.3.0 (when redirect is configured?).
Dec 29 2021, 8:13 PM · VyOS 1.3 Equuleus (1.3.3)
olofl created T4115: reboot in <x> not working as expected.
Dec 29 2021, 11:38 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Nov 8 2021

olofl added a comment to T3977: dhcp-relay-agent uses "physical" IP instead of vrrp IP.

Just want to know, did you try rfc3768-compatibility?

It probably works that way.
Unfortunately that breaks other parts of our setup.

Nov 8 2021, 6:02 PM · VyOS 1.3 Equuleus (1.3.6)
olofl updated the task description for T3977: dhcp-relay-agent uses "physical" IP instead of vrrp IP.
Nov 8 2021, 3:27 PM · VyOS 1.3 Equuleus (1.3.6)
olofl created T3977: dhcp-relay-agent uses "physical" IP instead of vrrp IP.
Nov 8 2021, 3:20 PM · VyOS 1.3 Equuleus (1.3.6)

Nov 3 2021

olofl added a comment to T3963: Deleting "le 64" from prefix-list6 does render any change.

Im not sure its possible to delete the "le" part from vtysh cli? I tried running no ipv6 prefix-list PUBLIC-IPV6 seq 10 permit 2001:db8::/32 le 64 from vtysh, but it never removed le part.

Nov 3 2021, 9:16 AM · VyOS 1.3 Equuleus (1.3.6)
olofl created T3963: Deleting "le 64" from prefix-list6 does render any change.
Nov 3 2021, 9:03 AM · VyOS 1.3 Equuleus (1.3.6)

Oct 26 2021

olofl created T3944: VRRP fails over when adding new group to master.
Oct 26 2021, 12:43 PM · VyOS 1.3 Equuleus (1.3.0-epa3), VyOS 1.4 Sagitta
olofl created T3943: "netflow source-ip" prevents image upgrades if IP address does not exist locally.
Oct 26 2021, 7:35 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)

Aug 23 2021

olofl updated the task description for T3771: DHCPv6 server prefix delegation - dynamically add route to delegated prefix via requesting router.
Aug 23 2021, 8:42 PM · VyOS 1.5 Circinus
olofl added a comment to T3771: DHCPv6 server prefix delegation - dynamically add route to delegated prefix via requesting router.

More info:

Aug 23 2021, 9:28 AM · VyOS 1.5 Circinus
olofl created T3771: DHCPv6 server prefix delegation - dynamically add route to delegated prefix via requesting router.
Aug 23 2021, 9:01 AM · VyOS 1.5 Circinus
olofl closed T2824: VPN tunnel is marked as up, even though vti0 is down. as Resolved.

@Viacheslav this ticket can be closed.

Aug 23 2021, 8:29 AM · VyOS 1.2 Crux

Jul 13 2021

olofl created T3677: "sipcalc" not included in 1.3.
Jul 13 2021, 8:08 AM · VyOS 1.3 Equuleus (1.3.0), test

May 12 2021

olofl added a comment to T3536: Unable to list all available routes.

Yes the point of "longer-prefixes" is to find smaller routes within a bigger netmask, so if you're leaving out prefix, it doesn't make sense.

May 12 2021, 11:46 AM · VyOS 1.3 Equuleus (1.3.5), VyOS 1.4 Sagitta

May 9 2021

olofl created T3531: policy: prefix-list and route-map names do not allow underscores in names (FRR does).
May 9 2021, 9:05 AM · VyOS 1.2 Crux (VyOS 1.2.8)

May 4 2021

olofl created T3515: Successful upgrade 1.2.x to 1.3.0-rc - configuration used.
May 4 2021, 11:15 AM

Apr 12 2021

olofl added a comment to T3467: cannot set vrrp virtual-address with /31 mask when router uses networkaddress..

@Viacheslav 1.2.7.

Apr 12 2021, 9:42 AM · VyOS 1.2 Crux (VyOS 1.2.9)
olofl changed Version from - to 1.2.7 on T3467: cannot set vrrp virtual-address with /31 mask when router uses networkaddress..
Apr 12 2021, 9:41 AM · VyOS 1.2 Crux (VyOS 1.2.9)

Apr 9 2021

olofl created T3467: cannot set vrrp virtual-address with /31 mask when router uses networkaddress..
Apr 9 2021, 6:09 PM · VyOS 1.2 Crux (VyOS 1.2.9)

Mar 29 2021

olofl created T3443: Deleting VRRP-VIP and adding the same address to physical interface in one commit fails.
Mar 29 2021, 11:53 AM · VyOS 1.2 Crux

Mar 11 2021

olofl added a comment to T1753: Configuring `ip source-validation loose` doesn't properly configure `sysctl`.

just tested - 1.2.6-S1 - it is still working as described by ciprian.craciun

Mar 11 2021, 2:28 PM · VyOS 1.5 Circinus

Mar 2 2021

olofl added a comment to T1097: Make firewall groups work everywhere that's appropropriate.

ipsec policys, policy prefix-lists,

Mar 2 2021, 10:46 AM · VyOS 1.4 Sagitta

Mar 1 2021

olofl added a comment to T3344: Per VRF dynamic routing support.

I vote for option 1.

Mar 1 2021, 9:38 PM · VyOS 1.4 Sagitta

Feb 18 2021

olofl added a comment to T3341: Wrong behavior of the "reset vpn ipsec-peer XXX tunnel XXX" command.

I believe this is the behavior in 1.2.6 aswell?
And I think its not even possible to reset one peer?
So, reset vpn ipsec-peer XXX is broken
as well as reset vpn ipsec-peer XXX tunnel YYY

Feb 18 2021, 10:45 PM · VyOS 1.2 Crux (VyOS 1.2.9), VyOS 1.3 Equuleus (1.3.0-epa3)

Sep 25 2020

olofl added a comment to T2899: remote syslog server migration error on update.

I would also like to add that wouldn't it make more sense to set the protocol mode under host aswell rather behind "facility".

Sep 25 2020, 1:56 PM · Restricted Project

Sep 21 2020

olofl added a comment to T2806: ipsec generates false warning on commit when local prefix is sourced from loopback.

Notice how my loopback interface with mask /32 does *not* show /32 in route table local.

Sep 21 2020, 1:22 PM · VyOS 1.2 Crux (VyOS 1.2.8)
olofl added a comment to T2806: ipsec generates false warning on commit when local prefix is sourced from loopback.

@Viacheslav does that PR check for x.x.x.x/32 ? Because the ip route show table local does not contain the netmask /32. While ip route show table 254 actually shows the prefixes with /cidr notation.

Sep 21 2020, 9:27 AM · VyOS 1.2 Crux (VyOS 1.2.8)

Aug 26 2020

olofl added a comment to T2824: VPN tunnel is marked as up, even though vti0 is down..

Is probably fixed in https://phabricator.vyos.net/T1291 according to cpo on slack

Aug 26 2020, 1:55 PM · VyOS 1.2 Crux

Aug 25 2020

olofl created T2824: VPN tunnel is marked as up, even though vti0 is down..
Aug 25 2020, 7:02 AM · VyOS 1.2 Crux

Aug 17 2020

olofl added a comment to T2327: Unable to create syslog server entry with different port.

This is not solved in 1.2.6-epa1. Will this be solved in 1.2.6?

Aug 17 2020, 9:17 AM · VyOS 1.2 Crux (VyOS 1.2.6)

Jun 25 2020

olofl added a comment to T2641: Rewrite vpn ipsec OP commands in new style XML syntax.

Going to mention this in here:

Jun 25 2020, 8:24 AM · VyOS 1.4 Sagitta

Jun 24 2020

olofl created T2639: sort output of show vpn ipsec sa .
Jun 24 2020, 2:56 PM · VyOS 1.3 Equuleus (1.3.0)

Jun 15 2020

olofl added a comment to T109: VyOS Can Lose Parts Of Its Config On Reboot - In Certain Situations.

This config was lost after first boot. Ping T2598
VyOS 1.2.3

Jun 15 2020, 9:53 AM · VyOS 1.3 Equuleus (1.3.3)
olofl added a comment to T2598: Error when commiting firewall groups.

When googling on the error given, T109 shows up where I had posted about this in 2018. I'm not sure it's related to this. Im not sure any configuration has been lost on reboot.

Jun 15 2020, 9:22 AM · VyOS 1.2 Crux
olofl created T2598: Error when commiting firewall groups.
Jun 15 2020, 9:20 AM · VyOS 1.2 Crux

Feb 21 2020

olofl created T2061: protocol logs not sent to remote syslog.
Feb 21 2020, 10:36 AM · VyOS 1.2 Crux (VyOS 1.2.7)

Jan 7 2020

olofl created T1947: Cannot delete flow-accounting interfaces.
Jan 7 2020, 8:09 AM · Rejected

Nov 22 2019

olofl added a comment to T1817: BGP next-hop-self not working..

From CPO on Slack:

Nov 22 2019, 9:08 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)

Nov 21 2019

olofl updated the task description for T1817: BGP next-hop-self not working..
Nov 21 2019, 1:17 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)
olofl updated the task description for T1817: BGP next-hop-self not working..
Nov 21 2019, 1:16 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)
olofl updated the task description for T1817: BGP next-hop-self not working..
Nov 21 2019, 1:15 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)
olofl created T1817: BGP next-hop-self not working..
Nov 21 2019, 1:02 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.9)

Nov 13 2019

olofl awarded T439: local PBR support a Like token.
Nov 13 2019, 11:56 AM · VyOS 1.4 Sagitta

Oct 10 2019

olofl added a comment to T1720: support for more 'show ip route' commands .

@hagbard via a route-map for example. set policy route-map TAG rule 10 set tag 33

Oct 10 2019, 5:21 PM · VyOS 1.3 Equuleus (1.3.0)
olofl created T1720: support for more 'show ip route' commands .
Oct 10 2019, 11:29 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 4 2019

olofl added a comment to T1123: Inconsistency in community-list naming validation.

Any reason extcommunity-list and community-list doesnt support the same naming scheme?

Oct 4 2019, 8:04 AM · VyOS 1.3 Equuleus (1.3.0-epa1), test

Aug 12 2019

olofl added a comment to T1576: show arp interface <interface> does not work.

@Dmitry, thanks for reply.

Aug 12 2019, 6:40 PM · VyOS 1.2 Crux (VyOS 1.2.3)
olofl created T1576: show arp interface <interface> does not work.
Aug 12 2019, 12:49 PM · VyOS 1.2 Crux (VyOS 1.2.3)

May 3 2019

olofl added a comment to T1363: output from "show vpn ipsec sa" bugged.

As per request from dmbaturin on slack:

May 3 2019, 9:21 AM

May 2 2019

olofl created T1363: output from "show vpn ipsec sa" bugged.
May 2 2019, 8:07 PM

Nov 15 2018

olofl created T1013: tshark capture filter not working.
Nov 15 2018, 8:06 AM · Rejected

Nov 13 2018

olofl added a comment to T109: VyOS Can Lose Parts Of Its Config On Reboot - In Certain Situations.

there's a problem when naming firewall network groups and port groups to the same name, and then later deleting one of them. Maybe thats related to this one.

Nov 13 2018, 11:03 AM · VyOS 1.3 Equuleus (1.3.3)
olofl added a comment to T409: VyOS OSPF doesn't send LS update on flapping interface.

this seem to be solved since moving to frr.

Nov 13 2018, 10:46 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)

Jul 12 2018

olofl added a comment to T740: User UID not properly set when add/deleting users.

Should we delete user home dirs when deleting a user then?

Jul 12 2018, 12:27 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc7)

Jul 10 2018

olofl added a comment to T740: User UID not properly set when add/deleting users.

Thanks for pointing that out, I tested manually aswell again on both 1.1.7 and 1.1.5.

Jul 10 2018, 1:19 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc7)
olofl updated the task description for T740: User UID not properly set when add/deleting users.
Jul 10 2018, 12:59 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc7)
olofl created T740: User UID not properly set when add/deleting users.
Jul 10 2018, 12:54 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc7)

Nov 16 2017

olofl created T464: network groups with same name. .
Nov 16 2017, 8:51 AM · Rejected

Nov 7 2017

olofl created T446: Flow accounting enhancements: pre/post NAT, ingress/egress.
Nov 7 2017, 7:54 AM · VyOS 1.4 Sagitta

Nov 3 2017

olofl added a comment to T409: VyOS OSPF doesn't send LS update on flapping interface.

I just ran a test on http://dev.packages.vyos.net/tmp/vyos-1.2.0-alpha-frr-test.iso
OSPF now works as intended in this particular setup. The ABR now sends LS Update type 3 into core.

Nov 3 2017, 2:45 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)

Oct 3 2017

olofl created T409: VyOS OSPF doesn't send LS update on flapping interface.
Oct 3 2017, 11:20 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc8)

Sep 12 2017

olofl added a comment to T386: VyOS boot grub timeout in beta image?.
In T386#7593, @c-po wrote:

I guess that you are referring to the installation of VyOS, as a proper installed system will automatically boot up. At least last nights build does.

Sep 12 2017, 7:31 AM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)

Sep 7 2017

olofl created T386: VyOS boot grub timeout in beta image?.
Sep 7 2017, 9:51 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)