Page MenuHomeVyOS Platform
Feed All Stories

Aug 8 2020

jestabro closed T1974: Allow route-map to set administrative distance as Resolved.
Aug 8 2020, 3:46 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
jestabro closed T2501: Cannot recover from failed boot config load as Resolved.

Addressed in T2568.

Aug 8 2020, 3:40 PM · VyOS 1.3 Equuleus (1.3.0)
jestabro closed T2497: Cache config string during commit as Resolved.

This was an early experiment which contributed some ideas towards T2582; closed as superseded by that task.

Aug 8 2020, 3:37 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) closed T2716: Shaper-HFSC shapes but does not control latency correctly as Resolved.

I am giving up with HFSC. I have been studying it for a long time, I have tested it in many different ways, without VyOS too. The only thing I have found is that this is is not a problem of VyOS.

Aug 8 2020, 3:12 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux
kabaga created T2774: Bridge interface randomly disable itself.
Aug 8 2020, 12:05 AM · VyOS 1.3 Equuleus (1.3.0)

Aug 7 2020

Unknown Object (User) created T2773: EIGRP support for VRF.
Aug 7 2020, 8:03 PM · VyOS 1.4 Sagitta
Unknown Object (User) added a comment to T2772: BGP Route Distinguisher & Route Target Extended Community.

Route Distinguisher & Route Targets are, in general, configured under VRF proccess. Below a sample of how this configurations would looks like:

Aug 7 2020, 7:57 PM · VyOS 1.3 Equuleus (1.3.5)
Unknown Object (User) updated subscribers of T2772: BGP Route Distinguisher & Route Target Extended Community.
Aug 7 2020, 7:55 PM · VyOS 1.3 Equuleus (1.3.5)
Unknown Object (User) created T2772: BGP Route Distinguisher & Route Target Extended Community.
Aug 7 2020, 7:53 PM · VyOS 1.3 Equuleus (1.3.5)
Unknown Object (User) added a comment to T2771: BGP VPNv4 & VPNv6 Address Family Support.

Bellow a sample of how BGP VPNv4 and VPNv6 AF configuration looks like:

Aug 7 2020, 7:46 PM · VyOS 1.3 Equuleus (1.3.5)
Unknown Object (User) created T2771: BGP VPNv4 & VPNv6 Address Family Support.
Aug 7 2020, 7:38 PM · VyOS 1.3 Equuleus (1.3.5)
ajgnet added a comment to T2747: "enable-local-traffic" has no effect in load-balancing to redirect local traffic.

Sure thing. Note my configuration contains some table maps that I have set up to route VPN traffic, and certain source IPs through specific interfaces. But there is no effect on the load-balancer when these sections are removed. Thank you.

Aug 7 2020, 4:08 PM · VyOS 1.5 Circinus
Unknown Object (User) added a comment to T2747: "enable-local-traffic" has no effect in load-balancing to redirect local traffic.

Could you please provide full configuration or at least protocol section configuration?

Aug 7 2020, 3:57 PM · VyOS 1.5 Circinus
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

GNS3 virtualization network verification passed

Aug 7 2020, 3:24 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
thomas-mangin added a comment to T2623: Creating sit tunnel fails with “Can not set “local” for tunnel sit tun1 at tunnel creation”.

I will have a look as this was not supported by vyatta and therefore not added to the code when converted to python

Aug 7 2020, 1:01 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
zsdc reassigned T2623: Creating sit tunnel fails with “Can not set “local” for tunnel sit tun1 at tunnel creation” from SrividyaA to c-po.
Aug 7 2020, 12:59 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
zsdc created T2770: Allow any character to be used in the SNMP community field.
Aug 7 2020, 12:49 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.5 Circinus
thomas-mangin added a comment to T2768: Define a high level HTTP API.

Coming with a syntax which is not ultimately going to be as complex as the cli may be an impossible challenge. Changing the API to include in the XML what is path vs payload may indeed lead to indeed a better API tho. The example given use the word create in the path when REST would use POST.

Aug 7 2020, 12:40 PM · VyOS 1.5 Circinus
zsdc created T2769: Add VRF support for syslog.
Aug 7 2020, 12:07 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dmbaturin created T2768: Define a high level HTTP API.
Aug 7 2020, 11:33 AM · VyOS 1.5 Circinus
jack9603301 created T2767: The interface cannot be disabled for network enabled configuration.
Aug 7 2020, 8:34 AM · VyOS 1.3 Equuleus (1.3.0)

Aug 6 2020

SrividyaA added a comment to T2623: Creating sit tunnel fails with “Can not set “local” for tunnel sit tun1 at tunnel creation”.

The commit fails when the local-ip option is included only with the 6RD prefix options (without 6RD option, 6in4 tunnel is created). In the tunnel.py script, local value is not defined as result stack trace is received

Aug 6 2020, 10:03 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
runar added a comment to T2766: vyos-build: build-config: arm64 is not a valid architecture.

PR: https://github.com/vyos/vyos-build/pull/116

Aug 6 2020, 9:33 PM
runar created T2766: vyos-build: build-config: arm64 is not a valid architecture.
Aug 6 2020, 9:29 PM
runar closed T2765: vyatta-cfg-system: arm: vyatta-cfg-system is dependent on a amd64 only package as Resolved.

PR Merged

Aug 6 2020, 9:21 PM
runar added a comment to T2765: vyatta-cfg-system: arm: vyatta-cfg-system is dependent on a amd64 only package.

PR: https://github.com/vyos/vyatta-cfg-system/pull/127

Aug 6 2020, 9:12 PM
zsdc assigned T2760: In a load-balanced multi-wan configuration with DHCP assigned addresses, IPsec "dhcp-interface" does not work to SrividyaA.
Aug 6 2020, 9:00 PM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.8), Restricted Project
runar created T2765: vyatta-cfg-system: arm: vyatta-cfg-system is dependent on a amd64 only package.
Aug 6 2020, 8:44 PM
runar closed T2422: arm: docker: Unable to build docker container for ARM and ARM64 as Resolved.

Container fixed, closing this ticket

Aug 6 2020, 5:59 PM
runar closed T1927: Extend main docker container to support arm builds as Resolved.

The CI is now extended to build arm containers by default. they are also exported to dockerhub. closing this ticket

Aug 6 2020, 5:58 PM
jjakob changed the status of T2764: Increase maximum number of NAT rules from Open to In progress.
Aug 6 2020, 3:37 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
jestabro added a comment to T2688: add xml definition to router.

Discussion updated in PR 513.
https://github.com/vyos/vyos-1x/pull/513

Aug 6 2020, 3:25 PM · VyOS 1.5 Circinus
c-po added a comment to T2764: Increase maximum number of NAT rules.

This will be a oneliner in the new XML implementation. Just send PR

Aug 6 2020, 1:16 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
jjakob triaged T2764: Increase maximum number of NAT rules as Normal priority.
Aug 6 2020, 11:35 AM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
jack9603301 updated the task description for T2723: Support tcptraceroute.
Aug 6 2020, 9:31 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2677: Proposal for clearer DHCPv6-PD configuration options.

Reading the UBNT source code I see:

Aug 6 2020, 9:27 AM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2723: Support tcptraceroute.

https://github.com/vyos/vyos-1x/pull/522

Aug 6 2020, 9:11 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2763: New SNMP resource request - SNMP over TCP.

I find the above mentioned syntax to clumsy:

Aug 6 2020, 6:47 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
Viacheslav added a comment to T2763: New SNMP resource request - SNMP over TCP.

@srgabrieltelecon create please Pull Request.

Aug 6 2020, 6:30 AM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Aug 5 2020

Unknown Object (User) added a comment to T2748: "show vpn ike sa" shows state "down" when tunnel is up.

I´ve used the version of the software: VyOS 1.3-rolling-202007300117.
As I´ve used GRE tunnels it does not simulates the same scenario reported, which uses pure IPsec. I will configure IPsec tunnels over physical interfaces and log the results here again.

Aug 5 2020, 11:35 PM · VyOS 1.3 Equuleus (1.3.0)
srgabrieltelecon triaged T2763: New SNMP resource request - SNMP over TCP as Normal priority.
Aug 5 2020, 8:19 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
ajgnet added a comment to T2748: "show vpn ike sa" shows state "down" when tunnel is up.

I suspect this could be related to displaying a peer with a hostname that contains a dash, such as, "abc-peer12.dyndns.org." Or, possibly a string matching error getting thrown off by "AES_GCM_16_128/MODP_2048"

Aug 5 2020, 5:38 PM · VyOS 1.3 Equuleus (1.3.0)
ajgnet added a comment to T2748: "show vpn ike sa" shows state "down" when tunnel is up.

The IKE SA appears down in your second example?

Aug 5 2020, 5:02 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T2748: "show vpn ike sa" shows state "down" when tunnel is up.

vyos@HUB-2# sh vpn
ipsec {

esp-group MyESPGroup {
    proposal 1 {
        encryption aes256
        hash md5
    }
}
ike-group MyIKEGroup {
    proposal 1 {
        dh-group 2
        encryption aes256
        hash md5
    }
}
ipsec-interfaces {
    interface eth0.100
}
site-to-site {
    peer 169.254.100.1 {
        authentication {
            mode pre-shared-secret
            pre-shared-secret MYSECRETKEY
        }
        default-esp-group MyESPGroup
        ike-group MyIKEGroup
        local-address 169.254.100.6
        tunnel 20 {
            protocol gre
        }
    }
}

}
[edit]

Aug 5 2020, 4:59 PM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T2748: "show vpn ike sa" shows state "down" when tunnel is up.

I´ve configured a simple P-2P IPsec/GRE Tunnel and the command shows IKE and IPsec SAs UP:

Aug 5 2020, 4:58 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2723: Support tcptraceroute.

Dependency and VRF support for tcptraceroute6 will be submitted in the next few days

Aug 5 2020, 2:05 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 changed the status of T2723: Support tcptraceroute, a subtask of T2714: A collection of utilities supporting IPv6 or ipv4, from Needs testing to In progress.
Aug 5 2020, 2:03 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 changed the status of T2723: Support tcptraceroute from Needs testing to In progress.
Aug 5 2020, 2:03 PM · VyOS 1.3 Equuleus (1.3.0)
thomas-mangin added a comment to T2759: validate-value prints error messages from validators that fail even if overall validation succeeds.

I would have expected the output generated to be an OR of the validators or regexes and allow the output if any would have passed it

Aug 5 2020, 10:08 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po changed Difficulty level from unknown to normal on T2762: VRF: when SSHd is VRF bound all commands are executed in VRF context.
Aug 5 2020, 9:15 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.8), Restricted Project
c-po created T2762: VRF: when SSHd is VRF bound all commands are executed in VRF context.
Aug 5 2020, 9:15 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.8), Restricted Project
c-po created T2761: Extend "show vrrp" op-mode command with router priority.
Aug 5 2020, 8:14 AM · VyOS 1.3 Equuleus (1.3.0)

Aug 4 2020

c-po renamed T2651: Generate CLI abstraction for options passed to CURL and SSH client from Generate CLI abstraction for options passed to CURL to Generate CLI abstraction for options passed to CURL and SSH client.
Aug 4 2020, 8:33 PM · VyOS 1.3 Equuleus (1.3.0)
Viacheslav added a comment to T2759: validate-value prints error messages from validators that fail even if overall validation succeeds.

Before adding "<defaultValue>" it was working but not now.

Aug 4 2020, 5:52 PM · VyOS 1.3 Equuleus (1.3.0-epa1)
Viacheslav closed T2637: Vlan is not removed from the system, a subtask of T2353: Interface [conf_mode] errors parent task, as Resolved.
Aug 4 2020, 4:26 PM · VyOS 1.3 Equuleus (1.3.6)
Viacheslav closed T2637: Vlan is not removed from the system as Resolved.

Fixed, VyOS 1.3-rolling-202008040823

Aug 4 2020, 4:26 PM · VyOS 1.3 Equuleus (1.3.0)
jjakob added a comment to T2750: Use m4 as a template processor.

I wasn't trying to solve any specific issue. I was working on some other project, trying to use GCC as a preprocessor, the same way as it's used here, and ran into those obstacles I listed in the original description, which are present here too. I was made aware m4 is much more suitable to template processing than GCC as it was actually designed and made for it.
As for using any self-made code to do this, I have no problem with that as long as it's well known this is what is now used, is documented, and then an effort made to port all preprocessing to it. I see no sense using two or three different preprocessors.

Aug 4 2020, 2:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jack9603301 added a comment to T2724: Support for IPv6 Toolset.

Update document

Aug 4 2020, 2:14 PM · VyOS 1.3 Equuleus (1.3.0)
thomas-mangin added a comment to T2518: Add support for IPv6 NAT (NPTv6).

Thank you for writing some testing code using the smoketest repository. It may take a few working days for anyone to come back to you.

Aug 4 2020, 1:50 PM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po added a comment to T2651: Generate CLI abstraction for options passed to CURL and SSH client.

SSH only supports "source-address" via its BindAddress option

Aug 4 2020, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
c-po updated the task description for T2651: Generate CLI abstraction for options passed to CURL and SSH client.
Aug 4 2020, 12:54 PM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T2651: Generate CLI abstraction for options passed to CURL and SSH client.
Aug 4 2020, 12:53 PM · VyOS 1.3 Equuleus (1.3.0)
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

smoketest for nptv6

Aug 4 2020, 11:03 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
ajgnet created T2760: In a load-balanced multi-wan configuration with DHCP assigned addresses, IPsec "dhcp-interface" does not work.
Aug 4 2020, 10:14 AM · VyOS 1.4 Sagitta (1.4.0-GA), VyOS 1.3 Equuleus (1.3.8), Restricted Project
c-po created T2759: validate-value prints error messages from validators that fail even if overall validation succeeds.
Aug 4 2020, 8:22 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
jack9603301 updated the task description for T2518: Add support for IPv6 NAT (NPTv6).
Aug 4 2020, 8:20 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po closed T2758: router-advert: 'infinity' is not a valid integer number as Resolved.
Aug 4 2020, 8:19 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2741: DHCPv6-PD breaks interface config if it refers to VLAN interfaces.

Welcome! Thanks for beeing an early adopter / tester.

Aug 4 2020, 7:58 AM
gadams closed T2741: DHCPv6-PD breaks interface config if it refers to VLAN interfaces as Resolved.

I am very happy to report that the issue id resolved. The router now boots up fully without intervention once again.

Aug 4 2020, 7:52 AM
c-po updated the task description for T2758: router-advert: 'infinity' is not a valid integer number.
Aug 4 2020, 7:44 AM · VyOS 1.3 Equuleus (1.3.0)
c-po claimed T2758: router-advert: 'infinity' is not a valid integer number.
Aug 4 2020, 7:29 AM · VyOS 1.3 Equuleus (1.3.0)
c-po created T2758: router-advert: 'infinity' is not a valid integer number.
Aug 4 2020, 7:29 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2741: DHCPv6-PD breaks interface config if it refers to VLAN interfaces.

Completed!

Aug 4 2020, 7:10 AM
gadams added a comment to T2741: DHCPv6-PD breaks interface config if it refers to VLAN interfaces.

Awesome! That's really quick turnaround! I'll give it a try when the newer build appears.

Aug 4 2020, 7:06 AM
c-po closed T1287: No DHCPv6 leases reported for "show dhcpv6 client leases" as Resolved.
Aug 4 2020, 6:50 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T1287: No DHCPv6 leases reported for "show dhcpv6 client leases".

Unfortunately this is not possible with WIDE DHCPv6 client

Aug 4 2020, 6:50 AM · VyOS 1.3 Equuleus (1.3.0)
c-po added a comment to T2741: DHCPv6-PD breaks interface config if it refers to VLAN interfaces.

I just started a new ISO build - should be done in 40 minutes!

Aug 4 2020, 6:44 AM
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

I have consulted some documents of vyos about DNAT of IPv4, and I don't understand why there seems to be SNAT content in the DNAT IPv4 syntax of vyos, and what is the meaning of supporting the prefix format address setting of dsddr in DNAT syntax? Is there something wrong with me?

Aug 4 2020, 6:31 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
jack9603301 added a comment to T2518: Add support for IPv6 NAT (NPTv6).

Use cases for sNPT testing

Aug 4 2020, 6:29 AM · VyOS 1.4 Sagitta (1.4.0-epa3)
c-po moved T1194: cronjob is being setup even if not saved from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:10 AM · VyOS 1.2 Crux (VyOS 1.2.6)
c-po moved T1486: Unknown LLDP version reported to peers from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1414: equuleus: buster: 10-unmountfs.chroot fail under apply from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T770: Bonded interfaces get updated with incorrect hw-id in config. from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T1076: SSH: make configuration (sshd_config) volatile and store it to /run from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0-epa1)
c-po moved T1826: Misleading message on "reboot at" command from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1754: DHCPv6 client is impossible to restart from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1511: Rewrite ethernet setup scripts to python from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1600: Convert 'ping' operation from vyatta-op to new syntax from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:09 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T2724: Support for IPv6 Toolset from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:06 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1973: Allow route-map to match on BGP local preference value from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:06 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6), vyatta-cfg-quagga
c-po moved T2067: pppoe-server: Add possibility set multiple service-name from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0), Ready for Crux (1.2.x)
c-po moved T1983: Expose route-map when BGP routes are programmed in to FIB from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6)
c-po moved T1956: PPPoE server: support PADO-delay from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6)
c-po moved T2576: "show interfaces" does not return VTI from In Progress to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T2241: Changing settings on an interface causes it to fall out of bridge from Backlog to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T2486: DNS records set via 'system static-host-mapping' return NXDOMAIN from 'service dns forwarding' after a request to a forwarded zone from In Progress to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T1953: DDNS service name validation rejects valid service names from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6)
c-po moved T2000: strongSwan does not install routes to table 220 in certain cases from Backport Candidates to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.2 Crux (VyOS 1.2.6)
c-po moved T2678: High RAM usage on SSH logins with lots of IPv6 routes in the routing table. from In Progress to Finished on the VyOS 1.3 Equuleus board.
Aug 4 2020, 6:05 AM · VyOS 1.3 Equuleus (1.3.0)
c-po closed T1194: cronjob is being setup even if not saved as Resolved.
Aug 4 2020, 6:02 AM · VyOS 1.2 Crux (VyOS 1.2.6)