Page MenuHomeVyOS Platform
Feed Advanced Search

Feb 6 2024

rherold added a comment to T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option..

thx for the backport @c-po runs fine on 1.3 rolling.

Feb 6 2024, 9:50 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Jan 30 2024

rherold added a comment to T5967: Multi-hop BFD connections can't be established; please add minimum-ttl option..

Can this be backported to 1.3 cause I run into the problem today on 1.3.5

Jan 30 2024, 4:24 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Aug 25 2023

rherold added a comment to T5160: Firewall refactor.

@Apachez I would also not want this. Example bgp on eth0 with one peer. I would not like to see to have the bgp port open for all source ips, only for the configured peers and not more.
To make it better to manage for the admins I would like to see a syntax like in junos:

Aug 25 2023, 2:00 PM · VyOS 1.4 Sagitta

Aug 21 2023

rherold added a comment to T5160: Firewall refactor.

I disagree with that. Cause only why bgp is running, we don't need the port to be reachable on all interfaces or for all source IP's.

Aug 21 2023, 12:30 AM · VyOS 1.4 Sagitta

Aug 20 2023

rherold added a comment to T4610: Firewall with 20K entries cannot load after reboot.

today I want test how fast firewall rules loading and changing in vyos performed. I took an vyos-1.4-rolling-202308180646-amd64.iso boot it as kvm guest.
Then I added some rules with:

Aug 20 2023, 10:14 PM · VyOS 1.4 Sagitta
rherold added a comment to T3509: No BCP38 for IPv6 on VyOS.

Looks like the Problem still exist in 1.4. Are there any plans?

Aug 20 2023, 8:59 PM · VyOS 1.4 Sagitta

Jul 6 2023

rherold added a comment to T5342: Bgp route-map will not configured in frr for the right protocol.

https://github.com/vyos/vyatta-cfg-quagga/pull/100 I have tried to fixed it. Works on my local system.
But need migration script.

Jul 6 2023, 11:25 AM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus
rherold created T5342: Bgp route-map will not configured in frr for the right protocol.
Jul 6 2023, 9:33 AM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project, VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus

Nov 14 2022

rherold created T4817: Please add support for RFC 9234.
Nov 14 2022, 3:13 PM · VyOS 1.4 Sagitta

Oct 28 2022

rherold added a comment to T1797: Implement DPDK Fast-Path using FRR's Alternate Forwarding Planes and VPP.

Is there some progress? VPP is available for AArch64 in meantime.
Here some news about VPP performance:

Oct 28 2022, 7:46 AM · VyOS 1.5 Circinus

Sep 29 2022

rherold added a comment to T3509: No BCP38 for IPv6 on VyOS.

After digging a step deeper we could also move the function into:

Sep 29 2022, 7:41 AM · VyOS 1.4 Sagitta
rherold added a comment to T3509: No BCP38 for IPv6 on VyOS.

Stumbled again about it and would ask if it is not possible to switch to the iptables extension so that rp filter will also work for IPv6.
From my point of view we must create in firewall setup a new chain RPFILTER in IPv4 and IPv6.

Sep 29 2022, 7:32 AM · VyOS 1.4 Sagitta

Mar 3 2022

Unknown Object (User) awarded T2683: no dual stack in system static-host-mapping host-name a Like token.
Mar 3 2022, 1:00 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Oct 24 2021

rherold added a comment to T3935: Update from rc5 to EPA2 failed.

vyos@gw-1:~$ show interfaces ethernet eth1 physical
Settings for eth1:

Supported ports: [ TP ]
Supported link modes:   10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Supported pause frame use: Symmetric
Supports auto-negotiation: Yes
Supported FEC modes: Not reported
Advertised link modes:  10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Advertised pause frame use: Symmetric
Advertised auto-negotiation: Yes
Advertised FEC modes: Not reported
Speed: 1000Mb/s
Duplex: Full
Port: Twisted Pair
PHYAD: 1
Transceiver: internal
Auto-negotiation: on
MDI-X: off (auto)
Supports Wake-on: pumbg
Wake-on: g

:...skipping...
Settings for eth1:

Supported ports: [ TP ]
Supported link modes:   10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Supported pause frame use: Symmetric
Supports auto-negotiation: Yes
Supported FEC modes: Not reported
Advertised link modes:  10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Advertised pause frame use: Symmetric
Advertised auto-negotiation: Yes
Advertised FEC modes: Not reported
Speed: 1000Mb/s
Duplex: Full
Port: Twisted Pair
PHYAD: 1
Transceiver: internal
Auto-negotiation: on
MDI-X: off (auto)
Supports Wake-on: pumbg
Wake-on: g
Current message level: 0x00000007 (7)
                       drv probe link
Link detected: yes

driver: igb
version: 5.6.0-k
firmware-version: 0. 6-1
expansion-rom-version:
bus-info: 0000:02:00.0
supports-statistics: yes
supports-test: yes
supports-eeprom-access: yes
supports-register-dump: yes
supports-priv-flags: yes
~
vyos@gw-1:~$ show interfaces ethernet eth2 physical
Settings for eth2:

Supported ports: [ TP ]
Supported link modes:   10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Supported pause frame use: Symmetric
Supports auto-negotiation: Yes
Supported FEC modes: Not reported
Advertised link modes:  10baseT/Half 10baseT/Full 
                        100baseT/Half 100baseT/Full 
                        1000baseT/Full 
Advertised pause frame use: Symmetric
Advertised auto-negotiation: Yes
Advertised FEC modes: Not reported
Speed: 100Mb/s
Duplex: Full
Port: Twisted Pair
PHYAD: 1
Transceiver: internal
Auto-negotiation: on
MDI-X: on (auto)
Supports Wake-on: pumbg
Wake-on: g
Current message level: 0x00000007 (7)
                       drv probe link
Link detected: yes

driver: igb
version: 5.6.0-k
firmware-version: 0. 6-1
expansion-rom-version:
bus-info: 0000:03:00.0
supports-statistics: yes
supports-test: yes
supports-eeprom-access: yes
supports-register-dump: yes
supports-priv-flags: yes
vyos@gw-1:~$

Oct 24 2021, 7:14 AM · VyOS 1.3 Equuleus (1.3.0)

Oct 23 2021

rherold added a comment to T3655: NAT doesn't work correctly with VRF.

anything new here?

Oct 23 2021, 3:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
rherold created T3935: Update from rc5 to EPA2 failed.
Oct 23 2021, 2:57 PM · VyOS 1.3 Equuleus (1.3.0)

Sep 21 2021

rherold created T3845: Add "show bgp nexthop" command.
Sep 21 2021, 10:49 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

Sep 13 2021

rherold added a comment to T3655: NAT doesn't work correctly with VRF.

Please take a look at the commit 9213ce6672582bc12f02c1530726fe97030d2cfe for kernel 5.13.

Sep 13 2021, 8:01 PM · VyOS 1.4 Sagitta (1.4.0-epa3)

Jun 30 2021

rherold added a comment to T3655: NAT doesn't work correctly with VRF.

It seems that what I thought is true:

Jun 30 2021, 2:17 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
rherold added a comment to T3655: NAT doesn't work correctly with VRF.

could this help https://patchwork.ozlabs.org/project/netfilter-devel/patch/776b8819c85c83088478b933a35691133055347a.1430733932.git.daniel@iogearbox.net ?

Jun 30 2021, 2:04 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
rherold added a comment to T3655: NAT doesn't work correctly with VRF.

as I wrote on slack, from my point of view it is a kernel problem. It seems that the conntrack in the kernel detects the packets eben if they come in on an input interface in default and so
the nat code won'T match cause for conntrack the outgoing interface is still eth0 which is in vrf OOBM instead pppoe0.

Jun 30 2021, 1:59 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Jun 28 2021

rherold added a comment to T3655: NAT doesn't work correctly with VRF.

As requested the config{F1499926}

Jun 28 2021, 2:42 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
rherold created T3655: NAT doesn't work correctly with VRF.
Jun 28 2021, 9:57 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

May 12 2021

rherold added a comment to T3538: Can't configure wireless as access-point.

thx for the fast feedback.

May 12 2021, 8:20 PM · VyOS 1.3 Equuleus (1.3.0)
rherold created T3538: Can't configure wireless as access-point.
May 12 2021, 8:15 AM · VyOS 1.3 Equuleus (1.3.0)

May 8 2021

rherold added a comment to T3512: set protocols static table creates wrong frr config.

@Viacheslav yes it was rc4 got the link some day's befor release via slack. I will setup a test lab next days, these boxes are now in production.

May 8 2021, 11:06 AM · VyOS 1.3 Equuleus (1.3.0)

May 6 2021

rherold created T3524: Please implement bgp graceful-shutdown.
May 6 2021, 4:46 PM · VyOS 1.2 Crux (VyOS 1.2.8)

May 2 2021

rherold created T3512: set protocols static table creates wrong frr config.
May 2 2021, 11:55 PM · VyOS 1.3 Equuleus (1.3.0)

May 1 2021

rherold created T3509: No BCP38 for IPv6 on VyOS.
May 1 2021, 2:49 PM · VyOS 1.4 Sagitta
rherold added a comment to T3507: Bond with mode LACP show u/u in show interfaces even if peer is not configured.

mii-mon was fine. Link was enabled on the switch and the link for the interface was up. But on the LACP was not enabled on the switch.
So I would exepect to see the sub interfaces from the bond as up but the bond has to be down.

May 1 2021, 2:45 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Apr 30 2021

rherold created T3507: Bond with mode LACP show u/u in show interfaces even if peer is not configured.
Apr 30 2021, 1:55 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Feb 10 2021

rherold created T3298: Unknown commands .
Feb 10 2021, 3:04 PM · Ready for Crux (1.2.x)

Oct 17 2020

rherold created T2988: ip source validation not working for ipv6 aka move it to netfilter.
Oct 17 2020, 7:10 PM · VyOS 1.2 Crux

Jul 4 2020

rherold created T2683: no dual stack in system static-host-mapping host-name .
Jul 4 2020, 8:49 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
rherold added a comment to T2678: High RAM usage on SSH logins with lots of IPv6 routes in the routing table..

for me it looks like a name lookup error. I have read the forum entry mentioned above. And they fixed it by disabling name lookup.

Jul 4 2020, 7:09 AM · VyOS 1.3 Equuleus (1.3.0)

Jun 8 2020

rherold created T2567: accel-ppp eats all memory with a small sstp config.
Jun 8 2020, 12:02 PM · VyOS 1.3 Equuleus (1.3.8)
rherold created T2566: sstp not able to run tunnels ipv6 only.
Jun 8 2020, 11:59 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

May 21 2020

njh awarded T1156: VyOS sticker templates a Like token.
May 21 2020, 8:24 PM · Restricted Project, Active contributors
njh awarded T1156: VyOS sticker templates a Love token.
May 21 2020, 8:24 PM · Restricted Project, Active contributors

Apr 23 2020

rherold created T2371: custom dyndns configuration lost after upgrade from 1.2.4-epa1 to 1.2.5.
Apr 23 2020, 3:56 PM · VyOS 1.2 Crux