Page MenuHomeVyOS Platform
Feed Advanced Search

Apr 18 2024

Viacheslav removed a project from T5153: OpenConnect route restriction via iptables is ignored: VyOS 1.4 Sagitta.
Apr 18 2024, 4:25 PM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.5 Circinus
Viacheslav changed the status of T6221: Enabling VRF breaks connectivity from Open to Needs testing.
Apr 18 2024, 2:25 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a project to T5471: Conntrack logging doesnt seem to be working: VyOS 1.5 Circinus.
Apr 18 2024, 1:44 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav added a comment to T5471: Conntrack logging doesnt seem to be working.

The old implementation used this script and https://github.com/vyos/vyatta-conntrack/blob/current/src/vyatta-conntrack-logging.c for the logging and it seems not impelemted for the current
At least there is not mention of the log

Apr 18 2024, 1:43 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav added a comment to T5549: Result of system audit by Lynis.

Without subtasks, it is going to be dead.
@Apachez It is not clear what you want to fix exactly. Fix all and do all working well could be related to any task.

Apr 18 2024, 12:11 PM · VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav edited projects for T5673: Enable `CONFIG_DEBUG_INFO_DWARF5` and `CONFIG_DEBUG_INFO_BTF` in the Linux kernel, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 18 2024, 12:07 PM · VyOS 1.5 Circinus
Viacheslav removed a project from T5731: Add ability to call config dependencies by canonical function instead of whole script: VyOS 1.4 Sagitta.
Apr 18 2024, 12:00 PM · VyOS 1.5 Circinus
Viacheslav edited projects for T5737: Eigrp #11301 - Configuration failed error type: validation, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 18 2024, 11:59 AM · VyOS 1.5 Circinus
Viacheslav closed T5755: Running set pki ca NAME certificate with a name with spaces breaks the config as Resolved N/A.

Not reproduced on VyOS 1.5-rolling-202404141045

vyos@r-left# set pki ca "my test ca name" certificate 'MIIDnTCCAoWgAwIBAgIUFvyB2rY0V1V6AaIpPWHCftGRwN8wDQYJKoZIhvcNAQELBQAwVzELMAkGA0IxEzARBgNVBAgMClNvbWUtU3RhdGUxEjAQBgNVBAcMCVNvbWUtQ2l0eTENMAsGA1UECgwEVnlPUzEQMA4GA1UEAwwHdnlvcy5pbzAeFw0yNDA0MTgxMTM3MzZaFw0yOTA0MzZaMFcxCzAJBgNVBAYTAkdCMRMwEQYDVQQIDApTb21lLVN0YXRlMRIwEAYDVQQHDAlTb21lLUNpdHkxDTALBgNVBAoMBFZ5T1MxEDAOBgNVBAMMB3Z5b3MuaW8wggEiMA0GCQEBAQUAA4IBDwAwggEKAoIBAQCKEVxs7gdzmnN4iMinvXN1vdGaT+v3TOnHSXbBkWHnt9YdWmo8UoqFpVqyVM3E8xmoT+3HOXJeWkKArEpMkGo93kWaGo0f25KGEFWbS2ttgNA9cqH9PGa42XTKyTY+5ZoIWaQQzNNiUSaIoslRrMSV4V2yQs90ECxR37ezlV2RAIHEhZ6mizUkMkuSmdjqRolh2tpF1MoisyhspFPXBC6lJ8d0jFZEi1tP3tlQjqVEWPjTvtddy34iOLFeUjBF5cOwfmpVLzWBVLbIxJr5ZHamGeQIabn36Jg1u0+/6p7hb8avqBW4dT0K8UykWVqgjQ4W4rM7AgMBAAGjYTBfMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATAdBgNVHQ4EFgQUxEx+IVaoLb7M/SW9AkCVRaXCNTUwDQYJKoZIhvcNAQELBQADggEBAGjV6WiH4Z+hfdANG8oWgY0xsHmUZg8dCjwqO5GMwjBVIuu8GuoZu0JobtLa097behWcgCkwjvKBffuwCu542WbFkxdXzBLZjSAc+K3itegZIuy4jqRO5z6Q0IbPSaFUhR4HhfwejwlyXgjNCFzEMzwoDL2/3PXjWyilkqthYyFcx092tgwiXtnfO9z9Xm/YQHQmRG2VWzLEwucOhV698xnqFgRJk3uKqcDN9KjF+5v32OQ0eis7GHn1aJim5aUee1nnCRFdQO0llNJRwF6fIaICzKLwa7zzMjF7HhRehh5kpwY8omcQX7xYz7GJag4='
Apr 18 2024, 11:43 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav added a project to T5755: Running set pki ca NAME certificate with a name with spaces breaks the config: VyOS 1.5 Circinus.
Apr 18 2024, 11:32 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
Viacheslav edited projects for T5756: L2TP RADIUS backup and weight settings, added: Restricted Project; removed VyOS 1.4 Sagitta.
Apr 18 2024, 11:30 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav removed projects from T5761: Allow PPPoE interface to be assigned IPv6 address via DHCPv6: VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta.

@dotAndy Is it still relevant?
Can you create a PR?

Apr 18 2024, 11:28 AM · VyOS 1.5 Circinus
Viacheslav edited projects for T5810: Add support for RPKI source ip, added: VyOS 1.5 Circinus, Restricted Project; removed VyOS 1.4 Sagitta.
Apr 18 2024, 11:23 AM · Restricted Project, VyOS 1.5 Circinus
Viacheslav removed a project from T5843: Rollback refactoring: VyOS 1.4 Sagitta.
Apr 18 2024, 11:19 AM · VyOS 1.5 Circinus
Viacheslav placed T2003: BGP FQDN capability has improper hostname after new image install up for grabs.
Apr 18 2024, 11:12 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav changed the status of T1790: OSPF Exchanged Routes marked as invalid when run through a GRE PTMP/PTP OSPF between peers from Open to Needs reporter action.

@SquirePug re-check please with the latest rolling image.

Apr 18 2024, 11:12 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav reopened T2003: BGP FQDN capability has improper hostname after new image install as "Needs reporter action".
Apr 18 2024, 11:10 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav closed T2003: BGP FQDN capability has improper hostname after new image install as Resolved.

@jmaslak can you check the latest rolling image?

Apr 18 2024, 11:09 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav changed the status of T2616: BFD Configuration causes flapping from Needs testing to Needs reporter action.
Apr 18 2024, 11:06 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a comment to T2616: BFD Configuration causes flapping.

@kroy can you re-test this case?

Apr 18 2024, 11:06 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA)
Viacheslav added a project to T3393: IPoE does not assign IPv6 PD or WAN address: VyOS 1.5 Circinus.
Apr 18 2024, 10:28 AM · VyOS 1.3 Equuleus (1.3.8), VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav added a comment to T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7.

Related topic https://github.com/Chion82/netfilter-full-cone-nat/issues/42

Apr 18 2024, 9:05 AM
Viacheslav added a comment to T6221: Enabling VRF breaks connectivity.

PR https://github.com/vyos/vyos-1x/pull/3326

Apr 18 2024, 7:39 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav lowered the priority of T5169: Add CGNAT Carrier-Grade NAT based on nftables from High to Normal.
Apr 18 2024, 6:02 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7.

. We need the feature regardless of the state of the repository.

Apr 18 2024, 4:11 AM

Apr 17 2024

Viacheslav added a subtask for T5169: Add CGNAT Carrier-Grade NAT based on nftables: T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7.
Apr 17 2024, 5:47 PM · VyOS 1.5 Circinus
Viacheslav added a parent task for T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7: T5169: Add CGNAT Carrier-Grade NAT based on nftables.
Apr 17 2024, 5:47 PM
Viacheslav removed a project from T6247: Add CGN "full cone" EIF support per RFC6888 REQ-7: VyOS 1.4 Sagitta.

We do not use iptables and their modules for new features.
Feel free to add PR for nftables or if you know which commands should be for nftables

Apr 17 2024, 5:43 PM
Viacheslav reopened T6221: Enabling VRF breaks connectivity as "Open".
Apr 17 2024, 3:00 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6246: Add support for server health checks to reverse proxy from Open to In progress.
Apr 17 2024, 12:38 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T6245: Unhandled exception in "show openvpn server".

Needs the original file with OpenVPN addresses/statistics which are parsed /run/openvpn/{interface}.status
Without it, it will be difficult to do something.

Apr 17 2024, 10:46 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 17 2024, 10:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network as Resolved.
Apr 17 2024, 10:42 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6221: Enabling VRF breaks connectivity as Invalid.

It is not related to VRF at all and is related to the policy routing logic:
Reproduced even on 1.3.2

set interfaces ethernet eth1 address '192.168.122.14/24'
Apr 17 2024, 10:30 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6244: Improve formatting in "show system uptime" as Wishlist priority.
Apr 17 2024, 9:02 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6237: IPSec remote access VPN: ability to set EAP ID of clients as Wishlist priority.
Apr 17 2024, 8:37 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5360: ddclient generating abuse as Resolved.
Apr 17 2024, 8:36 AM · VyOS 1.4 Sagitta

Apr 16 2024

Viacheslav changed the status of T6242: Add an option to disable certificate verification to reverse proxy from Open to Needs testing.
Apr 16 2024, 7:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from In progress to Needs testing.
Apr 16 2024, 4:33 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T6123: Limit NTP allow-client config to internal addresses by default from Open to Needs testing.
Apr 16 2024, 1:03 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
Viacheslav changed the status of T4915: Minisign verification failure == pass?? from Needs testing to Needs reporter action.

We'll close it if no response

Apr 16 2024, 12:40 PM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav edited projects for T4982: OpenConnect should have TLS 1.0 and TLS 1.1 disabled by default, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta (1.4.0-epa3), Restricted Project.
Apr 16 2024, 12:35 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5946: TASK [setup-root-partition : Create a fileystem on EFI partition] failing in Docker as Wontfix.

A docker container usually has issues with loop devices:
Use the VM or attach dev

Apr 16 2024, 10:10 AM · VyOS 1.4 Sagitta

Apr 15 2024

Viacheslav moved T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav moved T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Need Triage to Finished on the VyOS 1.5 Circinus board.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T5734: Unhandled exception when trying to configure OpenVPN server without dh-params as Resolved.
Apr 15 2024, 3:34 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Open to In progress.
Apr 15 2024, 3:32 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

PR https://github.com/vyos/vyos-1x/pull/3313
Add onlink option

set interfaces ethernet eth0 vif 10 address '10.20.30.1/32'
set protocols static route 10.20.30.0/32 interface eth0.10
Apr 15 2024, 3:31 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav triaged T6242: Add an option to disable certificate verification to reverse proxy as Wishlist priority.
Apr 15 2024, 1:58 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network.

It is more of a feature request than a bug due to specific kernel routes.
Feature to add onlink option

Apr 15 2024, 11:52 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav renamed T5722: Commit failure when trying to add a route in failover if the gateway is not in the same interface network from Failing to add route in failover to Failing to add route in failover if gateway not in the same interface network.
Apr 15 2024, 11:18 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5734: Unhandled exception when trying to configure OpenVPN server without dh-params.

PR https://github.com/vyos/vyos-1x/pull/3308

Apr 15 2024, 8:53 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the status of T5734: Unhandled exception when trying to configure OpenVPN server without dh-params from Confirmed to In progress.
Apr 15 2024, 8:47 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6240: Set interface ethernet eth1 bridge-group command missing as Invalid.

Read the documentation for the 1.5

Apr 15 2024, 7:36 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6241: Updating CRL in "pki" config does not update OpenVPN.

The same task https://vyos.dev/T3861

Apr 15 2024, 7:33 AM · VyOS 1.4 Sagitta (1.4.0-epa3)

Apr 14 2024

Viacheslav changed the status of T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf from Open to Needs reporter action.
Apr 14 2024, 1:38 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf .

I don't see those logs:

set service monitoring telegraf influxdb authentication organization 'vyos'
set service monitoring telegraf influxdb authentication token 'lxxx='
set service monitoring telegraf influxdb bucket 'vyos'
set service monitoring telegraf influxdb url 'http://192.168.122.14'
Apr 14 2024, 1:38 PM · VyOS 1.5 Circinus
Viacheslav reassigned T6210: Support configuring sys-nice capability for containers from Viacheslav to theflakes.
Apr 14 2024, 12:17 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav closed T6210: Support configuring sys-nice capability for containers as Resolved.
Apr 14 2024, 12:16 PM · VyOS 1.4 Sagitta (1.4.0-epa3), VyOS 1.5 Circinus
Viacheslav edited projects for T3968: Add network type ptp (veth) for containers, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 14 2024, 12:14 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

The dictionaries process the \n different way
environment.POSTGRES_HOST_AUTH_METHOD.value.
1.5

vyos@r4# commit
[ container ]
{'container_remove': ['c1', 'c2'],
 'name': {'test-postgres-master': {'allow_host_networks': {},
                                   'command': 'postgres -c wal_level=replica '
                                              '-c hot_standby=on -c '
                                              'max_wal_senders=10 -c '
                                              'max_replication_slots=10 -c '
                                              'hot_standby_feedback=on',
                                   'environment': {'POSTGRES_HOST_AUTH_METHOD': {'value': 'scram-sha-256\\nhost '
                                                                                          'replication '
                                                                                          'all '
                                                                                          '0.0.0.0/0 '
                                                                                          'md5'},
                                                   'POSTGRES_PASSWORD': {'value': 'password'}},
                                   'image': 'postgres:14-alpine',
                                   'memory': '512',
                                   'restart': 'always',
                                   'shared_memory': '64'}},
 'network': {'NET01': {'prefix': ['10.0.0.0/24']}},
 'registry': {'docker.io': {}, 'quay.io': {}}}
Apr 14 2024, 11:29 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5986: Container: Error on commit when environment variable value contains \n line break.

Diff
check --env "POSTGRES_HOST_AUTH_METHOD=. options
1.5

vyos@r4# cat /run/systemd/system/vyos-container-test-postgres-master.service | grep ExecStart -A2
ExecStartPre=/bin/rm -f %t/%n.pid %t/%n.cid
ExecStart=/usr/bin/podman run \
        --conmon-pidfile %t/%n.pid --cidfile %t/%n.cid --cgroups=no-conmon \
        --detach --interactive --tty --replace  --memory 512m --shm-size 64m --memory-swap 0 --restart always --name test-postgres-master      --env "POSTGRES_HOST_AUTH_METHOD=scram-sha-256\nhost replication all 0.0.0.0/0 md5" --env "POSTGRES_PASSWORD=password"   --net host  postgres:14-alpine postgres -c wal_level=replica -c hot_standby=on -c max_wal_senders=10 -c max_replication_slots=10 -c hot_standby_feedback=on
Apr 14 2024, 11:10 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav removed a project from T5986: Container: Error on commit when environment variable value contains \n line break: VyOS 1.5 Circinus.

Try the latest version

vyos@r4# set container name test-postgres-master environment POSTGRES_HOST_AUTH_METHOD value 'scram-sha-256\nhost replication all 0.0.0.0/0 md5'
[edit]
vyos@r4# commit
[edit]
vyos@r4# run show container 
CONTAINER ID  IMAGE                                 COMMAND               CREATED         STATUS         PORTS       NAMES
75a7fb610b57  localhost/gobgp-new:1                                       3 weeks ago     Created                    new
fdb74e9700e5  docker.io/library/alpine:3.19         /bin/sh               47 minutes ago  Up 47 minutes              c1
c05806fdb92c  docker.io/library/busybox:latest      sh                    39 minutes ago  Up 39 minutes              c2
1b5fc3d4a07b  docker.io/library/postgres:14-alpine  postgres -c wal_l...  24 seconds ago  Up 25 seconds              test-postgres-master
[edit]
vyos@r4# run show ver
Version:          VyOS 1.5-rolling-202404140022
Release train:    current
Apr 14 2024, 11:00 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav lowered the priority of T6233: Container configurations on VyOS 1.5 prevent containers from starting from Urgent! to Normal.
Apr 14 2024, 10:13 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6233: Container configurations on VyOS 1.5 prevent containers from starting.

Did you try another image (not hello-world)?
Tested on VyOS 1.5-rolling-202404140022

Apr 14 2024, 10:11 AM · VyOS 1.5 Circinus
Viacheslav added a comment to T6239: Would it be possible to implement an additional command/parameter to configure the vlan priority 0-7 on vif or vif-c+vif-s.

Does it work?

vyos@r4:~$ sudo cat /proc/net/vlan/eth2.100.200 
eth2.100.200  VID: 200	 REORDER_HDR: 1  dev->priv_flags: 81121
         total frames received            0
          total bytes received            0
      Broadcast/Multicast Rcvd            0
Apr 14 2024, 7:50 AM · VyOS 1.5 Circinus

Apr 13 2024

Viacheslav closed T6238: vyos-build Check pull request title requires the python script as Resolved.
Apr 13 2024, 11:12 AM · VyOS 1.4 Sagitta
Viacheslav closed T6235: Git check PR status: conflicts and resolution as Resolved.
Apr 13 2024, 11:09 AM · VyOS 1.4 Sagitta
Viacheslav claimed T6238: vyos-build Check pull request title requires the python script.
Apr 13 2024, 8:39 AM · VyOS 1.4 Sagitta
Viacheslav claimed T6235: Git check PR status: conflicts and resolution.

PR https://github.com/vyos/vyos-build/pull/561

Apr 13 2024, 8:39 AM · VyOS 1.4 Sagitta
Viacheslav added a comment to T6238: vyos-build Check pull request title requires the python script.

PR https://github.com/vyos/vyos-build/pull/560

Apr 13 2024, 8:23 AM · VyOS 1.4 Sagitta
Viacheslav created T6238: vyos-build Check pull request title requires the python script.
Apr 13 2024, 8:13 AM · VyOS 1.4 Sagitta
Viacheslav closed T2288: Include iprange package in Vyos as Wontfix.
Apr 13 2024, 3:30 AM · Restricted Project, VyOS 1.5 Circinus

Apr 12 2024

Viacheslav closed T344: Software basesd FastPath as Resolved.

Close it as we have nftables flowtable fastpath which works pretty good.
Reopen if required or if you have other ideas.
Thanks

Apr 12 2024, 7:00 PM · VyOS 1.5 Circinus
Viacheslav moved T6218: Container network interface in VRF fails to generate IPv6 link-local address from Need Triage to Finished on the VyOS 1.4 Sagitta (1.4.0-epa3) board.
Apr 12 2024, 4:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T6218: Container network interface in VRF fails to generate IPv6 link-local address as Resolved.

Looks working

Apr 12 2024, 4:28 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the subtype of T260: Redirect traffict between two L3 interfaces from "Task" to "Bug".
Apr 12 2024, 4:10 PM · VyOS 1.5 Circinus
Viacheslav reopened T5872: ipsec remote access VPN: support dhcp-interface as "Open".
Apr 12 2024, 3:26 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the subtype of T5657: Add VRF support for zabbix-agent from "Task" to "Feature Request".
Apr 12 2024, 3:23 PM · VyOS 1.5 Circinus
Viacheslav closed T5447: Allow static MACsec keys with peers as Resolved.

Already implemented

vyos@r4# set interfaces macsec macsec0 security static 
Possible completions:
   key                  MACsec static key
+> peer                 MACsec peer name
Apr 12 2024, 2:30 PM · VyOS 1.4 Sagitta
Viacheslav added a project to T5986: Container: Error on commit when environment variable value contains \n line break: VyOS 1.5 Circinus.
Apr 12 2024, 2:20 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav changed the subtype of T6072: https api cors allow-origin not applied from "Bug" to "Feature Request".
Apr 12 2024, 2:11 PM · VyOS 1.5 Circinus
Viacheslav added a project to T6082: BGP doesn't allow the same local AS and remote AS in peer groups: VyOS 1.5 Circinus.
Apr 12 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav updated subscribers of T6082: BGP doesn't allow the same local AS and remote AS in peer groups.
Apr 12 2024, 2:10 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T5289: Smart Queue Management.

@cuongdt1994 could you add an example of integration and configuration?

Apr 12 2024, 2:07 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf .

@Giggum yes you can choose which image will be booted

vyos@r4:~$ set system image default-boot 
The following images are available:
	1: 1.5-rolling-202404120636 (running) (default boot)
	2: 1.5-rolling-202404090019
Select an image to set as default:
Apr 12 2024, 2:05 PM · VyOS 1.5 Circinus
Viacheslav edited projects for T6099: Suppress unsupported interfaces from appearing in messages log by Telegraf , added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 12 2024, 2:02 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T6235: Git check PR status: conflicts and resolution.

PR https://github.com/vyos/vyos-1x/pull/3300

Apr 12 2024, 1:50 PM · VyOS 1.4 Sagitta
Viacheslav created T6235: Git check PR status: conflicts and resolution.
Apr 12 2024, 1:31 PM · VyOS 1.4 Sagitta
Viacheslav removed a project from T2818: Add the possibility to passthrough LLDP, LACP, etc.: VyOS 1.4 Sagitta.

The kernel still does not support it without patches

root@r4:/home/vyos# echo "65535" | tee /sys/class/net/br2/bridge/group_fwd_mask 
65535
tee: /sys/class/net/br2/bridge/group_fwd_mask: Invalid argument
root@r4:/home/vyos#
Apr 12 2024, 1:21 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T2288: Include iprange package in Vyos.

@tjh Do you still need this package? As it was relevant for ipset/iptables

iprange/stable 1.0.4+ds-2 amd64
  optimizing ipsets for iptables
Apr 12 2024, 1:04 PM · Restricted Project, VyOS 1.5 Circinus
Viacheslav edited projects for T2942: traffic-policy does not classify by VLAN, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta, vyatta-cfg-qos.
Apr 12 2024, 12:56 PM · VyOS 1.5 Circinus
Viacheslav removed a project from T3071: Display VLAN mode information on the network interface: VyOS 1.4 Sagitta.
Apr 12 2024, 12:55 PM · VyOS 1.5 Circinus
Viacheslav removed a project from T5389: add `ftps`: VyOS 1.4 Sagitta.
Apr 12 2024, 12:50 PM · VyOS 1.5 Circinus
Viacheslav edited projects for T6002: When using git as config-management commit-archive, comment is not used as commit message, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 12 2024, 12:48 PM · VyOS 1.5 Circinus
Viacheslav edited projects for T6040: Implement a firewall blacklisting solution, added: VyOS 1.5 Circinus; removed VyOS 1.4 Sagitta.
Apr 12 2024, 12:47 PM · VyOS 1.5 Circinus
Viacheslav reopened T5872: ipsec remote access VPN: support dhcp-interface as "Open".
Apr 12 2024, 12:41 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav added a comment to T4775: A new command for Interfaces debugging.

@m.korobeinikov It could be a part of the existing op-mode generate interfaces debug-archive
Can you extend this script to include the required options and create a PR?

Apr 12 2024, 12:25 PM · VyOS 1.5 Circinus
Viacheslav removed a project from T6226: Add "tcp-requece inspect-delay" to reverse proxy: VyOS 1.4 Sagitta.
Apr 12 2024, 12:07 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
Viacheslav closed T2081: Support Ethernet over IP (EoIP) as Wontfix.

Closes it as wontfix

Note "Note that RFC 1701 is mentioned in MikroTik's docs but there is nothing in common between the standard and the actual protocol used."
Apr 12 2024, 11:45 AM · VyOS 1.5 Circinus