basic configuration :
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
Advanced Search
Jul 5 2023
Jul 4 2023
Jun 21 2023
you are right , I seems to be working :
I've tested it, but it works partially... if you have more than a match (for example, the same class id if necessary to match more than one DSCP),it brakes the configuration again :
Jun 15 2023
I've found the reason why this command fails, it' happens because the logic to match the dscp parameter is missing. So, it tries to apply the basic policy with the tc filter parameters by default :
Jun 9 2023
Jun 7 2023
Jun 1 2023
this issues was resolved on https://vyos.dev/T5127. It happens when FRR tries to calculate the auto-rd per vrf . it can be solved by using router-id on each vrf or interface dummy in the VRFs ,
May 24 2023
Thanks Viacheslav , for this clarification . Veths /Netns are strong powerful , using this technology we can use to join different hypervisor or bridge technology . leave some example namespaces /veth / bridging.
May 23 2023
May 17 2023
I've done test , regarding the original issues that it was nat+route-leaking (default + foo) , which is working on the last rolling (VyOS 1.4-rolling-202305140317). however, I've tried some test using two vrf+route-leaking and NAT , I can replicated the issue:
May 8 2023
May 6 2023
thanks for the contribution , I've done some test , it seems to work like a champ . @dmbaturin @c-po this script to do the steps necessary to compile the kernel module to use ovpn-dco . Could you check if it's correct or something needs to be improved :
Apr 21 2023
bfd is able to monitoring static routes , using profiles and multi-hop to reached a peer :
Apr 14 2023
Apr 13 2023
Thanks for clarifying. Yes , I also saw the possibility of extending role based IAM to add on-premise image (that could be interesting for VyOS).
Could you share configuration ? where attached RM and BGP settings:
@unity when you need AWS credential , will they be automatically deployed from SSM or will we have to add those credentials in the virtual machine? ? shouldn't aws-cli be integrated?
Apr 12 2023
Apr 11 2023
Yes, I forgot to add this task. I'll make the PR
Mar 31 2023
merge done, it fixed the issues :
sorry , but it seems files doesn't share .
Mar 30 2023
confirm, it's working :
I would like to make some question. this prefix 10.0.0.0/24 on PE2 is a connected network or learned from another routing protocol (static or BGP)
Mar 29 2023
cool , it could be useful.
I don't see it as bug , this information can be obtained from OSPF database using LSA or summary:
frr 8.5 LSP is working as expected:
this fix was added 8.5 :
vyos@cust-pe2:~$ show bgp ipv4 vpn 172.16.80.0/24 BGP routing table entry for 1:2:172.16.80.0/24, version 0 not allocated Paths: (1 available, no best path) Not advertised to any peer Local 0.0.0.0 from 0.0.0.0 (1.1.1.1) vrf customer(6) announce-nh-self Origin IGP, metric 0, weight 32768, invalid, sourced, local Extended Community: RT:1:2 Originator: 1.1.1.1 Remote label: 80 Last update: Wed Mar 29 13:17:24 202
Mar 17 2023
Mar 8 2023
Great project! As I understand it, you're using BGP label-unicast to transport labels, and I'm curious about the operating systems your PEs/Ps are running on - are they Cisco, Juniper, or other vendors? I'm particularly interested in learning about the interoperability between different vendors so that I can incorporate it into my testing. @aserkin
Mar 3 2023
it doesn't seem the same problem as here, this logic that was applied over this version was vrf not on the table . Could you share full configuration ? there is some point over vrfs / vrf default /leaking that are not clear. So I can replicate the scenery and we see what is going on .
Mar 2 2023
Could we use something like Dannil proposes? https://vyos.dev/T4883 , as you said FRR staticd don't allow this option but it could be useful when we have different mtu over the interface.
Mar 1 2023
Add another feature that is improved if we're thinking of moving to KEA :
Feb 25 2023
including information about Netopee2/sysrepo services, how to integrate it with FRR, where we can utilize the advantages netconf/yang :
Feb 23 2023
@ordex nice your reply here , we're planning to introduce it in our last upgrade version( we need to upgrade openvpn version to work with opvn-dco ) , Di you try it on Debian 12? My current environment was over Debian 11, if you have any suggestion it will good to know.
Feb 1 2023
pfsense implements it , however , they explain that it has some limitations :
Jan 19 2023
Jan 18 2023
VyOS 1.4.x
VyOS config 1.3.2 :
######### Router 01: master #########
Jan 17 2023
I've testing this command , it works as we expected . At this point I think we should add PR in 1.4 with new section :
it seems the issue is related no-preemt and interfaces bond , based on keepalived documentation :
Jan 16 2023
Jan 2 2023
Dec 27 2022
it looks good, maybe @zsdc could you help us ?
Dec 20 2022
I did some extra test , I've missed a command , this solution works as expected . FRR backport 8.4.1
Dec 19 2022
using 8.5-dev ....it doesn't work ...even is worgs than the initial case, it's not able to show any local prefix on l3vpn bgp :
Dec 16 2022
FRR fixed it , it seems the issues were associate with next-hop tracking protocol when a prefix is imported using network command (if we used redistributed connected next-hop tracking will not be done):
Dec 15 2022
yes, it's already configured , share here my full configuration on FRR :
Dec 14 2022
FRR issues regarding this incorrect behavior ,