Page MenuHomeVyOS Platform
Feed All Stories

Dec 31 2020

nadeu added a comment to T3159: L2TP MTU mismatch between client and server.
vyos@oobm:~$ cat  /var/run/accel-pppd/l2tp.conf
### generated by accel_l2tp.py ###
[modules]
log_syslog
l2tp
chap-secrets
auth_mschap_v2
Dec 31 2020, 3:49 PM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
jack9603301 renamed T3169: Reimplement smoke test of span (mirror) from Re implement smoke test of span (mirror) to Re implement smoke test of span (mirror) and fix dependency issues.
Dec 31 2020, 3:39 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3169: Reimplement smoke test of span (mirror).
Dec 31 2020, 3:26 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 updated the task description for T3169: Reimplement smoke test of span (mirror).
Dec 31 2020, 3:14 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin updated the task description for T3151: Decide on the final list of packages for 1.3.
Dec 31 2020, 2:54 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin added a comment to T3151: Decide on the final list of packages for 1.3.

@alainlamar We aren't going to remove web proxy support! I was only talking about the old package specifically—it's been rewritten in the new style.

Dec 31 2020, 2:54 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin added a comment to T2759: validate-value prints error messages from validators that fail even if overall validation succeeds.

We can add a new <constraintGroup> element. If you put multiple <constraint> elements inside a <constraintGroup>, they work like logical AND.

Dec 31 2020, 2:43 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po claimed T3171: Add CLI option to enable RPS (Receive Packet Steering).
Dec 31 2020, 2:36 PM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3171: Add CLI option to enable RPS (Receive Packet Steering).
Dec 31 2020, 2:36 PM · VyOS 1.3 Equuleus (1.3.0)
dmbaturin created T3170: Add a sanity check for empty node.def files.
Dec 31 2020, 2:26 PM · VyOS 1.3 Equuleus (1.3.0)
drac closed T3166: MPLS partially enabled when not configured plus log spam as Invalid.

Looks like it's not an issue anymore in latest iso.

Dec 31 2020, 1:44 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 moved T3169: Reimplement smoke test of span (mirror) from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Dec 31 2020, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 changed the status of T3169: Reimplement smoke test of span (mirror) from Open to In progress.
Dec 31 2020, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 created T3169: Reimplement smoke test of span (mirror).
Dec 31 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
drac added a comment to T3166: MPLS partially enabled when not configured plus log spam.

show mpls table was outputting data.

Dec 31 2020, 12:49 PM · VyOS 1.3 Equuleus (1.3.0)
drac added a comment to T3166: MPLS partially enabled when not configured plus log spam.

I've never configured MPLS on anything.
I've loaded the latest release from yesterday, and I'm no longer seeing the issue?
That's v.odd.

Dec 31 2020, 12:49 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3168: Update Linux Kernel to v5.4.86 as Resolved.
Dec 31 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T3168: Update Linux Kernel to v5.4.86, a subtask of T3145: Update Linux Kernel to v5.4.85, as Resolved.
Dec 31 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T3168: Update Linux Kernel to v5.4.86.
Dec 31 2020, 10:52 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2195: Support for encrypted DNS: dnscrypt, DoH, DoT, anonymized DNS.

As for encrypted DNS, it should cover standard solutions rather than be limited to a certain service provider. The standard solutions are as follows (although in general, there may not be many people using encrypted recursive DNS)

Dec 31 2020, 10:17 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta
yun added a comment to T2195: Support for encrypted DNS: dnscrypt, DoH, DoT, anonymized DNS.

I used dnsdist and dnscrypt-proxy before but currently I settled with:

Dec 31 2020, 10:13 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.4 Sagitta
Unknown Object (User) closed T3162: Wrong PPPoE server pado-delay parameter added to config as Resolved.
Dec 31 2020, 8:33 AM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 31 2020, 8:32 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
Unknown Object (User) closed T3160: PPPoE server called-sid option defined in wrong section as Resolved.
Dec 31 2020, 8:24 AM · VyOS 1.3 Equuleus (1.3.0)
drac added a comment to T3159: L2TP MTU mismatch between client and server.

On server, what is in /var/run/accel-pppd/l2tp.conf ?
The setting should read ppp-max-mtu=1454 under l2tp section

Dec 31 2020, 3:40 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
drac added a comment to T3159: L2TP MTU mismatch between client and server.

Also I'd expect something is wrong on the client side, can you see the PPP config options the Teltonika is using?

Dec 31 2020, 3:27 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
drac added a comment to T3159: L2TP MTU mismatch between client and server.

The MTU setting is well described "max-mtu", i.e. a lower one can be negotiated.
Can you capture the LCP stage of PPP negotiation from either the client or server, it sounds like it's negotiating a smaller one for some reason.

Dec 31 2020, 3:14 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Dec 30 2020

Cheeze_It added a comment to T3166: MPLS partially enabled when not configured plus log spam.

I am wondering if these are Zebra errors as they *seem* like Zebra errors.

Dec 30 2020, 9:53 PM · VyOS 1.3 Equuleus (1.3.0)
drac added a project to T3166: MPLS partially enabled when not configured plus log spam: VyOS 1.3 Equuleus.
Dec 30 2020, 9:29 PM · VyOS 1.3 Equuleus (1.3.0)
drac created T3167: Recurring bugs in Intel NIC drivers.
Dec 30 2020, 9:06 PM · VyOS 1.3 Equuleus (1.3.0)
drac created T3166: MPLS partially enabled when not configured plus log spam.
Dec 30 2020, 8:21 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro triaged T3161: Consider removing ConfigLoad.pm as Normal priority.
Dec 30 2020, 7:10 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro triaged T1398: Remove vyatta-config-migrate package as Normal priority.
Dec 30 2020, 7:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro changed the status of T1398: Remove vyatta-config-migrate package, a subtask of T805: Drop config compatibility with Vyatta Core older than 6.5, from Open to Needs testing.
Dec 30 2020, 7:09 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
jestabro changed the status of T1398: Remove vyatta-config-migrate package from Open to Needs testing.

vyatta-config-migrate removed in branches referenced in:
T3161 Consider removing ConfigLoad.pm
In testing.

Dec 30 2020, 7:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro changed the status of T3161: Consider removing ConfigLoad.pm, a subtask of T1398: Remove vyatta-config-migrate package, from Open to Needs testing.
Dec 30 2020, 7:02 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro changed the status of T3161: Consider removing ConfigLoad.pm from Open to Needs testing.

Changes in branches here:
https://github.com/vyos/vyatta-cfg/compare/current...jestabro:T3161
https://github.com/vyos/vyatta-cfg-system/compare/current...jestabro:T3161
https://github.com/vyos/vyatta-wanloadbalance/compare/current...jestabro:T3161
This will need reasonable testing before commit, although all pieces had previously been implemented

Dec 30 2020, 7:02 PM · VyOS 1.3 Equuleus (1.3.0)
sempervictus added a comment to T2884: Upstream Kernel Patches from Semper Victus Linux Hardened Tree.

I've added the two binary defense components oustanding:

Dec 30 2020, 5:51 PM · VyOS 1.5 Circinus
Viacheslav added a comment to T1519: Firewall get's confused when using the same network-group name for IPv4 and IPv6.

Similar task T2045

Dec 30 2020, 5:16 PM · VyOS 1.3 Equuleus (1.3.7), test
c-po updated the task description for T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 30 2020, 3:32 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po updated the task description for T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 30 2020, 2:51 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po updated the task description for T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 30 2020, 2:12 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po added a parent task for T2555: XML op-mode generation scripts silently discard XML nodes: T3165: Split node.def generation process into "generic" and "specific" stages.
Dec 30 2020, 2:02 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po added a subtask for T3165: Split node.def generation process into "generic" and "specific" stages: T2555: XML op-mode generation scripts silently discard XML nodes.
Dec 30 2020, 2:02 PM
dmbaturin created T3165: Split node.def generation process into "generic" and "specific" stages.
Dec 30 2020, 1:43 PM
Unknown Object (User) changed the status of T3162: Wrong PPPoE server pado-delay parameter added to config from In progress to Needs testing.

PR https://github.com/vyos/vyos-1x/pull/664

Dec 30 2020, 1:39 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2874: Add MTU and TCP-MSS discovery tool.

@jack9603301 if you mean option "--clamp-mss-to-pmtu" so it was in wrong chain/hook T2868

Dec 30 2020, 11:47 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2874: Add MTU and TCP-MSS discovery tool.

Is there a way to support pmtu in interface configuration

Dec 30 2020, 11:30 AM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2874: Add MTU and TCP-MSS discovery tool.

Fix typo in script description
PR https://github.com/vyos/vyos-1x/pull/663

Dec 30 2020, 11:28 AM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 30 2020, 9:33 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

Dec 29 2020

c-po claimed T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 29 2020, 11:12 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po created T3164: console-server ssh does not work with RADIUS PAM auth.
Dec 29 2020, 11:12 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)
c-po closed T1466: Add EAPOL login support, a subtask of T1637: Rewrite ethernet interface in new style XML syntax, as Resolved.
Dec 29 2020, 10:13 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1466: Add EAPOL login support as Resolved.
Dec 29 2020, 10:13 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a comment to T3161: Consider removing ConfigLoad.pm.

Taras confirms that the functionality of

vyatta-cfg-system/etc/init.d/ec2-vyos-init

is replaced by that of cloud-init tools, so this legacy invocation will be removed, allowing for the removal of ConfigLoad.pm, since the other scripts have already been rewritten.

Dec 29 2020, 10:07 PM · VyOS 1.3 Equuleus (1.3.0)
Codec added a comment to T1466: Add EAPOL login support.

Tested and working for me today on VyOS 1.3-rolling-202012291104.

Dec 29 2020, 9:53 PM · VyOS 1.3 Equuleus (1.3.0)
c-po assigned T3163: ethernet ring-buffer can be set with an invalid value to Unknown Object (User).
Dec 29 2020, 9:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3163: ethernet ring-buffer can be set with an invalid value.
Dec 29 2020, 9:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro updated the task description for T3161: Consider removing ConfigLoad.pm.
Dec 29 2020, 6:58 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) changed the status of T3162: Wrong PPPoE server pado-delay parameter added to config from Open to In progress.
Dec 29 2020, 6:40 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T3162: Wrong PPPoE server pado-delay parameter added to config.
Dec 29 2020, 6:40 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro updated the task description for T3161: Consider removing ConfigLoad.pm.
Dec 29 2020, 6:34 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) changed the status of T3160: PPPoE server called-sid option defined in wrong section from Open to In progress.

PR https://github.com/vyos/vyos-1x/pull/661

Dec 29 2020, 6:31 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a subtask for T1398: Remove vyatta-config-migrate package: T3161: Consider removing ConfigLoad.pm.
Dec 29 2020, 6:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a parent task for T3161: Consider removing ConfigLoad.pm: T1398: Remove vyatta-config-migrate package.
Dec 29 2020, 6:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro created T3161: Consider removing ConfigLoad.pm.
Dec 29 2020, 6:09 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T3082: multi_to_list must distinguish between values and defaults, a subtask of T2956: Add support for list of defaultValues, as Resolved.
Dec 29 2020, 2:53 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T3082: multi_to_list must distinguish between values and defaults, a subtask of T3081: get_config_dict() does not honor whitespaces in the CLI values field, as Resolved.
Dec 29 2020, 2:53 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T3082: multi_to_list must distinguish between values and defaults as Resolved.
Dec 29 2020, 2:53 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro added a comment to T1398: Remove vyatta-config-migrate package.

This was discussed briefly in last week's meeting: we would like to drop this package, however, the problem remains that the two scripts in vyatta-cfg-system

Dec 29 2020, 2:52 PM · VyOS 1.3 Equuleus (1.3.0)
jpbede closed T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style, a subtask of T2174: Rewrite protocol BGP to new XML/Python style, as Resolved.
Dec 29 2020, 1:23 PM · VyOS 1.3 Equuleus (1.3.0)
jpbede closed T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style as Resolved.
Dec 29 2020, 1:23 PM
c-po changed the status of T1466: Add EAPOL login support, a subtask of T1637: Rewrite ethernet interface in new style XML syntax, from In progress to Needs testing.
Dec 29 2020, 11:05 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T1466: Add EAPOL login support from In progress to Needs testing.
Dec 29 2020, 11:05 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) claimed T3160: PPPoE server called-sid option defined in wrong section.
Dec 29 2020, 10:50 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) created T3160: PPPoE server called-sid option defined in wrong section.
Dec 29 2020, 10:50 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1466: Add EAPOL login support.

EAPoL will be part of any rolling release after vyos-1.3-rolling-202012290217-amd64.iso, please give this a spin and feedback any change requests.

Dec 29 2020, 10:45 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T1466: Add EAPOL login support, a subtask of T1637: Rewrite ethernet interface in new style XML syntax, from Open to In progress.
Dec 29 2020, 10:08 AM · VyOS 1.3 Equuleus (1.3.0)
c-po changed the status of T1466: Add EAPOL login support from Open to In progress.
Dec 29 2020, 10:08 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T3030: Support ERSPAN Tunnel Protocol.

@c-po Can we consider reviewing it again

Dec 29 2020, 9:38 AM · VyOS 1.4 Sagitta
jpbede updated the task description for T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style.
Dec 29 2020, 8:05 AM
nadeu assigned T3159: L2TP MTU mismatch between client and server to Unknown Object (User).

Here you have mate. :)

Dec 29 2020, 1:16 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta
nadeu created T3159: L2TP MTU mismatch between client and server.
Dec 29 2020, 1:15 AM · VyOS 1.3 Equuleus (1.3.7), VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Dec 28 2020

Codec added a comment to T1466: Add EAPOL login support.

My ISP uses EAP-TLS. I have a script in firstboot.d that sets up auth on eth0 (my WAN). Its worked for the past year of rolling releases (up to at least VyOS 1.3-rolling-202012260217 that I am currently on.)

Dec 28 2020, 11:09 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1466: Add EAPOL login support.

Please share the content of your myconfig.conf file, lets see of we can finally add this.

Dec 28 2020, 10:29 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2666: Packet Processing with eBPF and XDP as Resolved.
Dec 28 2020, 8:30 PM · VyOS 1.3 Equuleus (1.3.0)
jpbede added a subtask for T2174: Rewrite protocol BGP to new XML/Python style: T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style.
Dec 28 2020, 8:10 PM · VyOS 1.3 Equuleus (1.3.0)
jpbede added a parent task for T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style: T2174: Rewrite protocol BGP to new XML/Python style.
Dec 28 2020, 8:10 PM
jpbede changed the status of T3158: Rewrite protocol BGP IPv6 [op-mode] to new XML/Python style from Open to In progress.
Dec 28 2020, 8:09 PM
c-po added a comment to T1770: webproxy breaks commit and http access on routed client.

Please try again with latest rolling

Dec 28 2020, 7:16 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po changed the status of T3151: Decide on the final list of packages for 1.3 from Open to In progress.
Dec 28 2020, 7:15 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T3151: Decide on the final list of packages for 1.3.
Dec 28 2020, 7:15 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1732: Removing vyatta-webproxy module.

We keep the proxy for authentication and filtering

Dec 28 2020, 7:15 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1732: Removing vyatta-webproxy module, a subtask of T563: webproxy: migrate 'service webproxy' to get_config_dict(), as Resolved.
Dec 28 2020, 7:14 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po closed T1732: Removing vyatta-webproxy module as Resolved.
Dec 28 2020, 7:14 PM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T2581: webproxy: implement proxy chaining, a subtask of T563: webproxy: migrate 'service webproxy' to get_config_dict(), as Resolved.
Dec 28 2020, 7:08 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po closed T2581: webproxy: implement proxy chaining as Resolved.
Dec 28 2020, 7:08 PM · VyOS 1.3 Equuleus (1.3.0), vyatta-webproxy
c-po closed T563: webproxy: migrate 'service webproxy' to get_config_dict() as Resolved.
Dec 28 2020, 7:08 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
aficustree added a comment to T1466: Add EAPOL login support.

need to use wpa_supplicant on a wired interface. Currently running on 1.3 rolling 2020-08-01 and used a manual entry in /etc/network/interfaces 'wpa-driver wired' . Attempted on rolling 2020-12-24 and it seems that VyOS no longer respects settings in /etc/network/interfaces so would require this capability. On boot, running sudo /usr/sbin/wpa_supplicant -Dwired -ieth0 -c /config/myconfig.conf works but no survivable on reboot

Dec 28 2020, 6:52 PM · VyOS 1.3 Equuleus (1.3.0)

Dec 27 2020

maznu added a comment to T922: OSPF - Process Crash after peer reboot.

We had problems with ospf6d crashing on VyOS 1.3 using FRR 7.3 (from around August 2020). However, according to FRR #6086 and FRR #6735 this might have been fixed in FRR 7.5 (which is in latest/current VyOS 1.3).

Dec 27 2020, 8:17 PM · VyOS 1.3 Equuleus (1.3.6)