Page MenuHomeVyOS Platform
Feed All Stories

Jun 13 2021

c-po moved T3621: PPPoE interface does not validate if password is supplied when username is set from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 5:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3622: WWAN: add support for APN authentication from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 5:56 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3622: WWAN: add support for APN authentication, a subtask of T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface, from Open to In progress.
Jun 13 2021, 5:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3622: WWAN: add support for APN authentication from Open to In progress.
Jun 13 2021, 5:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3622: WWAN: add support for APN authentication.
Jun 13 2021, 5:37 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po triaged T3621: PPPoE interface does not validate if password is supplied when username is set as Low priority.
Jun 13 2021, 5:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po changed the status of T3621: PPPoE interface does not validate if password is supplied when username is set from Open to In progress.
Jun 13 2021, 5:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3621: PPPoE interface does not validate if password is supplied when username is set.
Jun 13 2021, 5:31 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3408: vyos 1.4 not delivering ipv6 to devices via PPPOE from Need Triage to Backlog on the VyOS 1.4 Sagitta board.
Jun 13 2021, 5:05 PM · VyOS 1.4 Sagitta
c-po moved T3568: Add XML for firewall conf-mode from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 3:22 PM · VyOS 1.4 Sagitta
c-po moved T3577: Generating vpn x509 key pair fails with command not found from Need Triage to Backlog on the VyOS 1.4 Sagitta board.
Jun 13 2021, 3:22 PM · VyOS 1.3 Equuleus (1.3.4), VyOS 1.4 Sagitta
c-po moved T3579: Rewrite vyatta-conntrack in new XML and Python flavour from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 3:22 PM · VyOS 1.4 Sagitta
c-po moved T3586: Tunnel/Wireguard/VTI: replace random get_mac function with addrgenmode from Need Triage to Backlog on the VyOS 1.4 Sagitta board.
Jun 13 2021, 2:42 PM · VyOS 1.4 Sagitta
c-po added a subtask for T3587: Intel QAT support is broken on VyOS 1.4 due to a Kernel Crash: T3484: Kernel panic when QAT uses.
Jun 13 2021, 2:42 PM · VyOS 1.4 Sagitta
c-po added a parent task for T3484: Kernel panic when QAT uses: T3587: Intel QAT support is broken on VyOS 1.4 due to a Kernel Crash.
Jun 13 2021, 2:42 PM · VyOS 1.4 Sagitta
c-po moved T3587: Intel QAT support is broken on VyOS 1.4 due to a Kernel Crash from Need Triage to Backlog on the VyOS 1.4 Sagitta board.
Jun 13 2021, 2:41 PM · VyOS 1.4 Sagitta
c-po changed Difficulty level from unknown to easy on T3606: SNMP unknown notification OID.
Jun 13 2021, 2:23 PM · VyOS 1.4 Sagitta
c-po closed T3606: SNMP unknown notification OID as Resolved.
Jun 13 2021, 2:23 PM · VyOS 1.4 Sagitta
c-po moved T3217: Save FRR configuration on each commit from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0-epa1), VyOS 1.4 Sagitta
c-po moved T3582: 'delete log file' does not work from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.2 Crux (VyOS 1.2.8)
c-po moved T2947: Nat translation many-many with prefix does not map 1-1. from Need Triage to Backport Candidates on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.4 Sagitta
c-po moved T3351: Installer checking MD5 checksums on the ISO image from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.4 Sagitta
c-po moved T3561: router-advert: support advertising specific routes from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.4 Sagitta
c-po moved T1866: Commit archive over SFTP doesn't work with non-standard ports from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T2669: DHCP-server overlapping ranges. from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3461: OpenConnect Server redundancy check from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T2645: Editing route-map action requires adding a new rule from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3518: Warning messages when using SCP commit-archive from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.4 Sagitta
c-po moved T1944: FRR: Invalid route in BGP causes update storm, memory leak, and failure of Zebra from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3233: Interface redirect to dum0 from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:24 AM · VyOS 1.4 Sagitta
c-po moved T3358: VRRP: Is it necessary to support switches between master and backup with script? from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3585: Fix NHRP module for updated interfaces tunnel syntax from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T3588: IPSec: migrate no longer available options from CLI which are now hardcoded/enabled in strongSwan from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T3595: Cannot create new VTI interface from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T3611: WWAN interface (MC7710) no longer works on Kernel 5.10 from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T3614: Container network name with hyphen fail from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T1534: IPSec w/ IKEv2 Invalid local-address "any" from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T2173: Add the ability to use VRF on VTI interfaces from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.4 Sagitta
c-po moved T3455: system users can not be added in "edit" from Backport Candidates to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface from In Progress to Finished on the VyOS 1.4 Sagitta board.
Jun 13 2021, 11:23 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po added a comment to T3619: Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage.

can you tell us a bot more of your configuration? Like is PPPoE used?

Jun 13 2021, 11:22 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3135: BFD configurations fail to be applied from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:21 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3103: Rewrite parts of vyos\frr.py for readability, logging and to fix mulitiline regex "bugs" from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:21 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3358: VRRP: Is it necessary to support switches between master and backup with script? from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3602: Renaming BGP Peer Groups Leaves Router Broken from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3609: BGP Peer Group Changes Slow from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0)
c-po moved T3619: Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage from Need Triage to In Progress on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface from Need Triage to Finished on the VyOS 1.3 Equuleus board.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface as Resolved.
Jun 13 2021, 11:20 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po moved T3598: DMVPN/IPSec does not work with upstream Strongswan 5.9 from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta (1.4.0-epa1), Restricted Project
c-po moved T3599: Migrate NHRP to XML/Python from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta
c-po moved T3606: SNMP unknown notification OID from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta
c-po moved T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface from Need Triage to In Progress on the VyOS 1.4 Sagitta board.
Jun 13 2021, 9:27 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T2173: Add the ability to use VRF on VTI interfaces, a subtask of T2579: The root task for VRF features, as Resolved.
Jun 13 2021, 9:27 AM · VyOS 1.3 Equuleus (1.3.6)
c-po closed T2173: Add the ability to use VRF on VTI interfaces, a subtask of T1888: Update to StrongSwan 5.9.1, as Resolved.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta
c-po closed T2173: Add the ability to use VRF on VTI interfaces, a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta
c-po closed T2173: Add the ability to use VRF on VTI interfaces as Resolved.
Jun 13 2021, 9:27 AM · VyOS 1.4 Sagitta
c-po added a comment to T2173: Add the ability to use VRF on VTI interfaces.

@zsdc thanks for confirming. Re-added CLI node

Jun 13 2021, 9:26 AM · VyOS 1.4 Sagitta

Jun 12 2021

c-po closed T1534: IPSec w/ IKEv2 Invalid local-address "any", a subtask of T2816: Rewrite IPsec scripts with the new XML/Python approach, as Resolved.
Jun 12 2021, 9:13 PM · VyOS 1.4 Sagitta
c-po closed T1534: IPSec w/ IKEv2 Invalid local-address "any" as Resolved.
Jun 12 2021, 9:13 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T1501: VPN Commit Errors.

PR: https://github.com/vyos/vyos-1x/pull/875

Jun 12 2021, 7:21 PM · VyOS 1.3 Equuleus (1.3.0), test
c-po changed the status of T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface from Open to In progress.
Jun 12 2021, 5:36 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3611: WWAN interface (MC7710) no longer works on Kernel 5.10, a subtask of T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface, as Resolved.
Jun 12 2021, 5:35 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po closed T3611: WWAN interface (MC7710) no longer works on Kernel 5.10 as Resolved.
Jun 12 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po added a comment to T3611: WWAN interface (MC7710) no longer works on Kernel 5.10.

Works with implementation of T3620

Jun 12 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po added a parent task for T3611: WWAN interface (MC7710) no longer works on Kernel 5.10: T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface.
Jun 12 2021, 5:35 PM · VyOS 1.4 Sagitta
c-po added a subtask for T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface: T3611: WWAN interface (MC7710) no longer works on Kernel 5.10.
Jun 12 2021, 5:35 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po created T3620: Rename WWAN interface from wirelessmodem to wwan to use QMI interface.
Jun 12 2021, 5:34 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
jestabro moved T3616: Update to FastAPI causes regression in vyos-http-api-server from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jun 12 2021, 5:21 PM · VyOS 1.4 Sagitta
jestabro changed Difficulty level from unknown to normal on T3616: Update to FastAPI causes regression in vyos-http-api-server.
Jun 12 2021, 5:03 PM · VyOS 1.4 Sagitta
jestabro closed T3616: Update to FastAPI causes regression in vyos-http-api-server as Resolved.
Jun 12 2021, 5:03 PM · VyOS 1.4 Sagitta
jestabro updated the task description for T3616: Update to FastAPI causes regression in vyos-http-api-server.
Jun 12 2021, 5:02 PM · VyOS 1.4 Sagitta
jestabro updated the task description for T3616: Update to FastAPI causes regression in vyos-http-api-server.
Jun 12 2021, 5:01 PM · VyOS 1.4 Sagitta
srnoth created T3619: Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage.
Jun 12 2021, 4:24 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
c-po claimed T3606: SNMP unknown notification OID.
Jun 12 2021, 3:45 PM · VyOS 1.4 Sagitta
trae32566 closed T3609: BGP Peer Group Changes Slow as Resolved.

This appears to be fixed in the most recent rolling releases; I'm not sure how, but it's fixed.

Jun 12 2021, 7:20 AM · VyOS 1.3 Equuleus (1.3.0)
gmzamz updated gmzamz.
Jun 12 2021, 4:11 AM

Jun 11 2021

sarthurdev added a comment to T645: Allow multiple prefixes in ipsec tunnel.

Included in PR: https://github.com/vyos/vyos-1x/pull/881

Jun 11 2021, 8:45 PM · VyOS 1.4 Sagitta
acrane1 added a subtask for T2816: Rewrite IPsec scripts with the new XML/Python approach: Unknown Object (Maniphest Task).
Jun 11 2021, 7:47 PM · VyOS 1.4 Sagitta
jestabro lowered the priority of T3616: Update to FastAPI causes regression in vyos-http-api-server from Urgent! to High.
Jun 11 2021, 7:43 PM · VyOS 1.4 Sagitta
zsdc raised the priority of T2173: Add the ability to use VRF on VTI interfaces from Normal to High.

It also works with the current VTI interfaces (sudo ip l set vti1 vrf VRF1).

Jun 11 2021, 7:33 PM · VyOS 1.4 Sagitta
acrane1 merged task T3618: generate invalid configuration files into Restricted Maniphest Task.
Jun 11 2021, 7:12 PM
acrane1 changed the status of T3618: generate invalid configuration files from Open to Confirmed.
Jun 11 2021, 7:11 PM
jestabro added a comment to T3616: Update to FastAPI causes regression in vyos-http-api-server.
Jun 11 2021, 6:58 PM · VyOS 1.4 Sagitta
jestabro triaged T3616: Update to FastAPI causes regression in vyos-http-api-server as Urgent! priority.
Jun 11 2021, 6:49 PM · VyOS 1.4 Sagitta
krox2 added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

It's a bit confusing, I can create a tunnel with 0.0.0.0/0 if I need it. That how it is also done on PaloAlto FW and Fortigate. Anyway, it is just my opinion. Thanks for picking up this request so quickly.

Jun 11 2021, 5:15 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

I've left vti esp-group to keep backwards compatibility with current behaviour when vti is configured without any tunnels (when it uses 0.0.0.0/0), in that scenario it would still use the group specified.

Jun 11 2021, 5:00 PM · VyOS 1.4 Sagitta
krox2 added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

@sdev That makes sense, you can also get rid of "esp-group" under vti as it will be specified per tunnel.
I like that we can specify multiple prefixes under one tunnel but also can configure multiple tunnels for more complex scenarios.

Jun 11 2021, 4:43 PM · VyOS 1.4 Sagitta
Viacheslav closed T3614: Container network name with hyphen fail as Resolved.
Jun 11 2021, 4:34 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

I wonder if instead it should just use the existing tunnel node for this. So if VTI is set on a peer, all configured tunnels get marked for the VTI interface. Current VyOS behaviour allows only for tunnels, or VTI - not both.

Jun 11 2021, 4:27 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T3614: Container network name with hyphen fail.

PR https://github.com/vyos/vyos-1x/pull/873

Jun 11 2021, 12:46 PM · VyOS 1.4 Sagitta
Viacheslav claimed T3614: Container network name with hyphen fail.
Jun 11 2021, 12:22 PM · VyOS 1.4 Sagitta
Viacheslav created T3614: Container network name with hyphen fail.
Jun 11 2021, 12:21 PM · VyOS 1.4 Sagitta
krox2 added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

@sdev Yes, this can be done identically as the tunnel definition.

Jun 11 2021, 12:19 PM · VyOS 1.4 Sagitta
sarthurdev added a comment to T3613: Selectors for route-based IPsec tunnel (vti).

@krox2 Oh I think I understand what you mean. You'd want to also be able to create multiple child SAs each with unique left/right subnets?

Jun 11 2021, 11:45 AM · VyOS 1.4 Sagitta
trae32566 reopened T3563: commit-archive breaks with IPv6 source addresses, a subtask of T3356: Script for remote file transfers, as Open.
Jun 11 2021, 9:45 AM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
trae32566 reopened T3563: commit-archive breaks with IPv6 source addresses as "Open".

This does not appear to be fixed; I think it's something specific to 1.4:

trae@cr01a-vyos# commit
Using source address fd52:d62e:8011:fffe:192:168:253:2
Archiving config...
  sftp://stor01z-rh8.int.trae32566.org:/int/cr01a-vyos Traceback (most recent call last):
  File "<string>", line 1, in <module>
  File "/usr/lib/python3/dist-packages/vyos/remote.py", line 287, in upload
    upload_sftp(local_path, url.hostname, url.path, username, password, port, source, progressbar)
  File "/usr/lib/python3/dist-packages/vyos/remote.py", line 166, in upload_sftp
    transfer_sftp('upload', *args, **kwargs)
  File "/usr/lib/python3/dist-packages/vyos/remote.py", line 162, in transfer_sftp
    sock.shutdown()
TypeError: shutdown() takes exactly one argument (0 given)
[edit policy route-map BGP-BACKBONE-OUT]
trae@cr01a-vyos# run show ver
Jun 11 2021, 9:45 AM · VyOS 1.4 Sagitta
trae32566 added a comment to T3378: commit-archive source-address broken for IPv6 addresses.

I have a similar problem, but different, in T3563. I've reopened it and added information, but basically 1.4 still has the issue reported in that bug report.

Jun 11 2021, 9:43 AM · VyOS 1.3 Equuleus (1.3.0)
Unknown Object (User) added a comment to T3195: Add support for cisco style GRE keepalives.

See [1] from the previous post:

Note: If you don't want to install anything and don't care about some potential security problems, just enable the following 2 options to get native GRE keepalive support on Linux: […]

I care. Setting these sysctl parameters allows for relaying arbitrary traffic through the router.

Jun 11 2021, 9:43 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta