Page MenuHomeVyOS Platform
Feed All Stories

Jan 21 2020

xrobau closed T1979: 'set nat destination' incorrectly requires inbound-interface as Invalid.

Turns out that 'destination-interface any' works, and I just hadn't read the help.

Jan 21 2020, 10:39 PM · vyatta-nat
xrobau created T1979: 'set nat destination' incorrectly requires inbound-interface.
Jan 21 2020, 10:29 PM · vyatta-nat
hagbard changed Difficulty level from normal to hard on T563: webproxy: migrate 'service webproxy' to get_config_dict().
Jan 21 2020, 9:28 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard raised the priority of T563: webproxy: migrate 'service webproxy' to get_config_dict() from Low to High.
Jan 21 2020, 9:08 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard added a comment to T563: webproxy: migrate 'service webproxy' to get_config_dict().
  • trafficserver (buster native - 19.7 MB of additional disk space will be used)
  • looks like squidguard can't be integrated (removing it entirely?)
Jan 21 2020, 9:06 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard claimed T563: webproxy: migrate 'service webproxy' to get_config_dict().
Jan 21 2020, 9:00 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard closed T1977: webproxy error on fresh install as Resolved.

fixed in https://downloads.vyos.io/rolling/current/amd64/vyos-1.3-rolling-202001211723-amd64.iso.

Jan 21 2020, 6:42 PM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1900: Enable SNMP for VRRP. from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jan 21 2020, 5:55 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po added a comment to T1900: Enable SNMP for VRRP..

If this is always enabled "hardcoded" and SNMPd is not running the following will happen:

Jan 21 2020, 5:53 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po changed Is it a breaking change? from none to behavior on T1900: Enable SNMP for VRRP..
Jan 21 2020, 5:44 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard changed the status of T1977: webproxy error on fresh install from Confirmed to In progress.
Jan 21 2020, 5:23 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard added a comment to T563: webproxy: migrate 'service webproxy' to get_config_dict().

https://phabricator.vyos.net/T1977

Jan 21 2020, 4:21 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
hagbard changed Difficulty level from unknown to normal on T1977: webproxy error on fresh install.
Jan 21 2020, 3:57 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard changed the status of T1977: webproxy error on fresh install from Open to Confirmed.
Jan 21 2020, 3:45 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard claimed T1977: webproxy error on fresh install.
Jan 21 2020, 3:42 PM · VyOS 1.3 Equuleus (1.3.0)
danfoster2 added a comment to T1978: dhcp-relay doesn't need multiple interfaces.

I've created a PR in the vyos/vyos-1x repy for the config verification fix: https://github.com/vyos/vyos-1x/pull/208

Jan 21 2020, 3:30 PM · Restricted Project, vyatta-cfg-dhcp-relay
danfoster2 added a comment to T1978: dhcp-relay doesn't need multiple interfaces.

I've created a PR in the vyos/vyos-documentation repo for the documentation fix: https://github.com/vyos/vyos-documentation/pull/190

Jan 21 2020, 3:24 PM · Restricted Project, vyatta-cfg-dhcp-relay
danfoster2 created T1978: dhcp-relay doesn't need multiple interfaces.
Jan 21 2020, 3:16 PM · Restricted Project, vyatta-cfg-dhcp-relay
c-po closed T1784: DMVPN with IPSec does not work in HUB mode as Resolved.
Jan 21 2020, 1:27 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1784: DMVPN with IPSec does not work in HUB mode.

This was only a problem in rolling and is fixed

Jan 21 2020, 1:27 PM · VyOS 1.3 Equuleus (1.3.0)
c-po removed a project from T1784: DMVPN with IPSec does not work in HUB mode: VyOS 1.2 Crux (VyOS 1.2.5).
Jan 21 2020, 1:27 PM · VyOS 1.3 Equuleus (1.3.0)
lrots created T1977: webproxy error on fresh install.
Jan 21 2020, 11:55 AM · VyOS 1.3 Equuleus (1.3.0)
MapleWang created T1976: deleting address-family under neighbor will disable neighbor.
Jan 21 2020, 3:53 AM · VyOS 1.3 Equuleus (1.3.7), test

Jan 20 2020

bbs2web added a comment to T915: MPLS Support.

Many thanks again, I much prefer having interface specific settings in a single place instead of arbitrary script locations.

Jan 20 2020, 8:23 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
runar added a comment to T1970: Correct adding interfaces on boot.

PR for this fix: https://github.com/vyos/vyatta-cfg/pull/20

Jan 20 2020, 7:31 PM · VyOS 1.2 Crux (VyOS 1.2.5)
freelancer created T1975: OpenVPN tap devices won't come up automatically.
Jan 20 2020, 4:59 PM · VyOS 1.3 Equuleus (1.3.0), openvpn
Viacheslav added a comment to T915: MPLS Support.

@bbs2web you can try use sysctl params from set

Jan 20 2020, 3:32 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
bbs2web added a comment to T915: MPLS Support.

This is working nicely, many thanks!

Jan 20 2020, 3:15 PM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
bbs2web changed the status of T1973: Allow route-map to match on BGP local preference value from Open to Needs testing.
Jan 20 2020, 2:47 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web changed the status of T1974: Allow route-map to set administrative distance from Open to Needs testing.
Jan 20 2020, 2:46 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web added a comment to T1974: Allow route-map to set administrative distance.

I've attached a simple patch to expose FRRouting's built-in capability of being able to set a prefix's local administrative distance to VyOS.

Jan 20 2020, 2:44 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web added a comment to T1973: Allow route-map to match on BGP local preference value.

I've attached a simple patch to expose FRRouting's built-in capability of being able to match on prefix's BGP local preference to VyOS.

Jan 20 2020, 2:43 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web created T1974: Allow route-map to set administrative distance.
Jan 20 2020, 1:38 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web added a project to T1973: Allow route-map to match on BGP local preference value: vyatta-cfg-quagga.
Jan 20 2020, 1:17 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
bbs2web created T1973: Allow route-map to match on BGP local preference value.
Jan 20 2020, 1:15 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
c-po added a comment to T1957: PPPoE server: maintenance mode.

I like the idea, but unfortunately I do not understand why there needs to be a cancel node? If maintenance mode is not activated shouldnt this be enough?

Jan 20 2020, 12:39 PM · VyOS 1.2 Crux (VyOS 1.2.7)
syncer moved T1780: Adding ipsec ike closeaction from Needs Triage to Backlog on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 20 2020, 11:48 AM · VyOS 1.2 Crux (VyOS 1.2.5)
syncer reopened T1780: Adding ipsec ike closeaction as "Backport pending".
Jan 20 2020, 11:47 AM · VyOS 1.2 Crux (VyOS 1.2.5)
_mrplow created T1972: Allow setting interface name for virtual_ipaddress in VRRP VRID.
Jan 20 2020, 8:59 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Jan 19 2020

Unknown Object (User) added a project to T1971: Missing modules in initrd.img for PXE boot: VyOS 1.3 Equuleus.
Jan 19 2020, 6:02 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) created T1971: Missing modules in initrd.img for PXE boot.
Jan 19 2020, 6:01 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) created T1970: Correct adding interfaces on boot.
Jan 19 2020, 5:21 PM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po added a comment to T1969: OSPF with WireGuard cause Route Inactive.

FRR build triggered, please try next rolli g

Jan 19 2020, 3:24 PM · VyOS 1.3 Equuleus (1.3.0)
rob created T1969: OSPF with WireGuard cause Route Inactive.
Jan 19 2020, 3:13 PM · VyOS 1.3 Equuleus (1.3.0)

Jan 18 2020

jjakob added a comment to T421: Add Pv6 prefix delegation support.

No, work would be needed to add the necessary logic to VyOS scripts.
This wasn't possible before the version of isc-dhcpd VyOS uses was
updated to one that supported PD length. But now it is at least
possible, before it wasn't possible at all.

Jan 18 2020, 5:26 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
kroy moved T1940: EFI Fresh Install fails to boot, 4K Sector Drives Fail to boot EFI from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jan 18 2020, 2:29 PM · VyOS 1.3 Equuleus (1.3.0)
syncer closed T1830: 1.3-rolling boots to GRUB prompt post-install on UEFI systems, a subtask of T1940: EFI Fresh Install fails to boot, 4K Sector Drives Fail to boot EFI, as Resolved.
Jan 18 2020, 2:28 PM · VyOS 1.3 Equuleus (1.3.0)
syncer closed T1830: 1.3-rolling boots to GRUB prompt post-install on UEFI systems as Resolved.
Jan 18 2020, 2:27 PM · VyOS 1.3 Equuleus (1.3.0)
kroy closed T1940: EFI Fresh Install fails to boot, 4K Sector Drives Fail to boot EFI as Resolved.
Jan 18 2020, 2:24 PM · VyOS 1.3 Equuleus (1.3.0)
CRCinAU added a comment to T421: Add Pv6 prefix delegation support.

With the above change, some 2 years later, are we able to finally use a DHCP PD for IPv6? ie does it actually work?

Jan 18 2020, 2:46 AM · VyOS 1.3 Equuleus (1.3.0-epa1)

Jan 17 2020

hagbard changed the status of T1899: Unionfs metadata folder is copied to the active configuration directory from In progress to Confirmed.
Jan 17 2020, 10:49 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard added a comment to T1899: Unionfs metadata folder is copied to the active configuration directory.

Ack, I have already after step 5 an issue. The uids shouldn't be an issue, since the users should be all in the same group and the group has r/w permissions.

Jan 17 2020, 10:49 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro moved T1376: Incorrect DHCP lease counting from Backlog to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 17 2020, 9:14 PM · VyOS 1.2 Crux (VyOS 1.2.5)
kroy added a comment to T1899: Unionfs metadata folder is copied to the active configuration directory.

I hacked through how to reproduce.

Jan 17 2020, 9:07 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro edited projects for T1185: Firewall rulesets are ignored in RFC-compliant VRRP setups, added: VyOS 1.2 Crux (VyOS 1.2.6); removed VyOS 1.2 Crux (VyOS 1.2.5).
Jan 17 2020, 8:21 PM · VyOS 1.3 Equuleus (1.3.7)
jestabro moved T1452: accel-pppoe - add vendor option to shaper from Needs Triage to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 17 2020, 8:19 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard moved T1899: Unionfs metadata folder is copied to the active configuration directory from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Jan 17 2020, 8:11 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard claimed T1899: Unionfs metadata folder is copied to the active configuration directory.

@kroy Can you please test with the latest rolling? I can't reproduce the issue.

Jan 17 2020, 8:11 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard changed the status of T1899: Unionfs metadata folder is copied to the active configuration directory from Confirmed to In progress.
Jan 17 2020, 8:10 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard changed the status of T1899: Unionfs metadata folder is copied to the active configuration directory from Open to Confirmed.
Jan 17 2020, 8:04 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard added a comment to T1882: OpenVPN certificate not found warning.

@max1e6 Did you have a chance to test?

Jan 17 2020, 8:01 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro moved T1341: Adding rate-limiter for pppoe server users from Backlog to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 17 2020, 7:54 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) added a comment to T1967: BGP parameter "enforce-first-as" does not work anymore.

PR https://github.com/vyos/vyatta-cfg-quagga/pull/40 also need add script migration


I built package for 1.2.4 with fix. Now enforce-first-as sets per neighbour. e,g.

set protocols bgp 65535 neighbor 192.168.255.10 enforce-first-as
Jan 17 2020, 7:17 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) created T1968: Allow multiple static routes in dhcp-server.
Jan 17 2020, 6:21 PM · VyOS 1.4 Sagitta
Unknown Object (User) changed the subtype of T1967: BGP parameter "enforce-first-as" does not work anymore from "Task" to "Bug".
Jan 17 2020, 5:31 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) changed the status of T1967: BGP parameter "enforce-first-as" does not work anymore from Open to Confirmed.

Look like FRR changes commands for this feature, now this option per neighbour.

Jan 17 2020, 5:30 PM · VyOS 1.2 Crux (VyOS 1.2.5)
MichaelK created T1967: BGP parameter "enforce-first-as" does not work anymore.
Jan 17 2020, 3:55 PM · VyOS 1.2 Crux (VyOS 1.2.5)
MapleWang created T1966: segfault of configuration lead to disaster in router.
Jan 17 2020, 5:57 AM · VyOS 1.2 Crux (VyOS 1.2.4)

Jan 16 2020

hagbard changed the status of T1964: SNMP Script-extensions allows names with spaces, but commit fails from Backport candidate to Needs testing.
Jan 16 2020, 7:55 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard changed the status of T1964: SNMP Script-extensions allows names with spaces, but commit fails from In progress to Backport candidate.

https://github.com/vyos/vyos-1x/commit/742da889afa4375d5b6cb98dada7f2d3ec2f0326
@Xesxen http://dev.packages.vyos.net/repositories/current/pool/main/v/vyos-1x/vyos-1x_1.3.0-16_all.deb addresses that issue for the rolling release.

Jan 16 2020, 7:52 PM · VyOS 1.2 Crux (VyOS 1.2.5)
dmbaturin added a comment to T637: Replace tshark with tcpdump.

We took other steps that allows us to take the image back to a manageable size, and this task lost its immediate relevance.

Jan 16 2020, 6:15 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
jestabro moved T1827: Increase default gc_thresh from Backlog to Finished on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 16 2020, 5:01 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard reassigned T1341: Adding rate-limiter for pppoe server users from hagbard to jestabro.
Jan 16 2020, 4:35 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard added a comment to T1341: Adding rate-limiter for pppoe server users.

@jestabro yup, go ahead please and let me know when I can close it or if you can you can close as well.

Jan 16 2020, 4:35 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard closed T1880: "A stop job is running for live-tools - System Support Scripts" hangs, times out when shutting down equuleus live iso as Resolved.
Jan 16 2020, 4:34 PM · VyOS 1.3 Equuleus (1.3.0)
hagbard moved T1964: SNMP Script-extensions allows names with spaces, but commit fails from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Jan 16 2020, 4:14 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard changed the status of T1964: SNMP Script-extensions allows names with spaces, but commit fails from Open to In progress.
Jan 16 2020, 4:14 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard triaged T1964: SNMP Script-extensions allows names with spaces, but commit fails as Normal priority.
Jan 16 2020, 3:48 PM · VyOS 1.2 Crux (VyOS 1.2.5)
jestabro added a comment to T1827: Increase default gc_thresh.

Yes, thanks, c-po; the revised settings (above) are consistent with defaults and behaviour for both crux and equuleus.

Jan 16 2020, 3:47 PM · VyOS 1.2 Crux (VyOS 1.2.5)
hagbard claimed T1964: SNMP Script-extensions allows names with spaces, but commit fails.
Jan 16 2020, 3:47 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Sarsen added a comment to T1880: "A stop job is running for live-tools - System Support Scripts" hangs, times out when shutting down equuleus live iso.

Issue looks to be fixed in rolling version you've stated. Reboot now immediate without any hang. Thanks.

Jan 16 2020, 1:58 PM · VyOS 1.3 Equuleus (1.3.0)
fahadysf updated the task description for T1965: VyOS-1.3: ping no longer supports specifying interface or source .
Jan 16 2020, 1:10 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T125: Missing PPPoE interfaces in l2tp configuration.

I propose in this case use set vpn l2tp remote-access outside-address 0.0.0.0. It works in current rolling.

Jan 16 2020, 1:06 PM · VyOS 1.2 Crux (VyOS 1.2.6)
fahadysf created T1965: VyOS-1.3: ping no longer supports specifying interface or source .
Jan 16 2020, 1:06 PM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1827: Increase default gc_thresh.

As I recently rewrote this part in XML/Python please also check the default values in the Python script

Jan 16 2020, 8:27 AM · VyOS 1.2 Crux (VyOS 1.2.5)
c-po added a comment to T1964: SNMP Script-extensions allows names with spaces, but commit fails.

This should be restricted by a regex

Jan 16 2020, 8:22 AM · VyOS 1.2 Crux (VyOS 1.2.5)
trae32566 added a comment to T1869: Install and Boot from RAID Doesn't Work.

@kroy I tried just now with vyos-1.3-rolling-202001160217 in UEFI mode (even forced UEFI boot only in the BIOS to make sure) and am still having the same problem.

Jan 16 2020, 6:52 AM · VyOS 1.3 Equuleus (1.3.7)

Jan 15 2020

jestabro added a comment to T1341: Adding rate-limiter for pppoe server users.

I will backport this, unless objections ...

Jan 15 2020, 9:56 PM · VyOS 1.2 Crux (VyOS 1.2.5)
jestabro edited projects for T1622: Add failsafe and back trace to boot config loader, added: VyOS 1.2 Crux (VyOS 1.2.6); removed VyOS 1.2 Crux (VyOS 1.2.5).
Jan 15 2020, 7:47 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro moved T1827: Increase default gc_thresh from Needs Triage to Backlog on the VyOS 1.2 Crux (VyOS 1.2.5) board.
Jan 15 2020, 7:45 PM · VyOS 1.2 Crux (VyOS 1.2.5)
jestabro closed T1827: Increase default gc_thresh as Resolved.
Jan 15 2020, 7:43 PM · VyOS 1.2 Crux (VyOS 1.2.5)
jestabro added a comment to T1827: Increase default gc_thresh.

For consistency with the relative sizes set by CLI in the conf_mode script (system-ip.py), the default params should be:

Jan 15 2020, 5:20 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Xesxen created T1964: SNMP Script-extensions allows names with spaces, but commit fails.
Jan 15 2020, 4:34 PM · VyOS 1.2 Crux (VyOS 1.2.5)
jestabro added a comment to T1827: Increase default gc_thresh.

The size of an ARP cache entry is 384 bytes (x86-64), so the change will add ~720k -- ~3 MiB, which seems reasonable. I will add the suggested settings to sysctl defaults.

Jan 15 2020, 4:33 PM · VyOS 1.2 Crux (VyOS 1.2.5)
Unknown Object (User) changed the status of T1957: PPPoE server: maintenance mode from Needs testing to Backport candidate.

Works in 1.3-rolling-202001150217, propose cherry-pick in to crux.

Jan 15 2020, 10:39 AM · VyOS 1.2 Crux (VyOS 1.2.7)
Unknown Object (User) closed T1959: Error message when adding IPSec VPN as Resolved.

Resolved in 1.3-rolling-202001150217

Jan 15 2020, 9:36 AM · VyOS 1.3 Equuleus (1.3.0)
Harliff renamed T1963: Can't copy or rename a node from Can't rename a node to Can't copy or rename a node.
Jan 15 2020, 9:03 AM · VyOS 1.5 Circinus
Harliff added a comment to T1963: Can't copy or rename a node.

Copy failed too.

Jan 15 2020, 9:03 AM · VyOS 1.5 Circinus
Harliff created T1963: Can't copy or rename a node.
Jan 15 2020, 9:02 AM · VyOS 1.5 Circinus
hagbard moved T1891: Router announcements broken on boot from In Progress to Finished on the VyOS 1.3 Equuleus board.
Jan 15 2020, 1:02 AM · VyOS 1.2 Crux (VyOS 1.2.5)