Page MenuHomeVyOS Platform
Feed All Stories

Feb 1 2023

fernando added a comment to T4974: OpenVPN- Data Channel Offload(DCO).

pfsense implements it , however , they explain that it has some limitations :

Feb 1 2023, 9:30 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4974: OpenVPN- Data Channel Offload(DCO).

There are some limitations

In particular, this is a list (may not be complete) of features that are not available when using ovpn-dco:
Feb 1 2023, 7:58 PM · VyOS 1.4 Sagitta
fernando created T4974: OpenVPN- Data Channel Offload(DCO).
Feb 1 2023, 7:14 PM · VyOS 1.4 Sagitta
jestabro closed T4970: pin OCaml pcre package to avoid JIT support as Resolved.
Feb 1 2023, 2:40 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav changed the status of T4737: FRRouting/zebra 7.5.1 does not redistribute routes to other protocols from In progress to Needs testing.
Feb 1 2023, 12:04 PM · VyOS 1.3 Equuleus (1.3.3)
Viacheslav added a comment to T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols.

accel-ppp doesn't support FQDN for RADIUS https://docs.accel-ppp.org/en/latest/configuration/radius.html#radius
So it is impossible until it is available in the accep-ppp

Feb 1 2023, 11:21 AM · VyOS 1.5 Circinus
Jimz created T4973: show dhcp server leases error for lease time 4294967295.
Feb 1 2023, 12:04 AM · VyOS 1.4 Sagitta

Jan 31 2023

syncer assigned T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols to Viacheslav.
Jan 31 2023, 11:05 PM · VyOS 1.5 Circinus
jestabro added a comment to T4970: pin OCaml pcre package to avoid JIT support.

PR for Equuleus:
https://github.com/vyos/vyos-build/pull/303

Jan 31 2023, 10:18 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro moved T4970: pin OCaml pcre package to avoid JIT support from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jan 31 2023, 10:13 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
dmbaturin created T4972: Support FQDN and IPv6 addresses for RADIUS servers in accel-ppp-backed protocols.
Jan 31 2023, 8:41 PM · VyOS 1.5 Circinus
fernandolcx created T4971: Radius attribute "Framed-Pool" for PPPoE.
Jan 31 2023, 5:38 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro added a comment to T4970: pin OCaml pcre package to avoid JIT support.

PR for Sagitta:
https://github.com/vyos/vyos-build/pull/301

Jan 31 2023, 5:29 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro added a project to T4970: pin OCaml pcre package to avoid JIT support: VyOS 1.3 Equuleus (1.3.3).
Jan 31 2023, 5:18 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro updated the task description for T4970: pin OCaml pcre package to avoid JIT support.
Jan 31 2023, 5:15 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
jestabro triaged T4970: pin OCaml pcre package to avoid JIT support as Normal priority.
Jan 31 2023, 5:11 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
zsdc changed the status of T4737: FRRouting/zebra 7.5.1 does not redistribute routes to other protocols from Confirmed to In progress.

PR for 1.3: https://github.com/vyos/vyos-build/pull/300

Jan 31 2023, 4:59 PM · VyOS 1.3 Equuleus (1.3.3)
Viacheslav closed T4157: Add jinja2 to pip test requirements as Resolved.
Jan 31 2023, 1:59 PM · VyOS 1.4 Sagitta
n.fort closed T4780: Firewall - Add interface group as Resolved.
Jan 31 2023, 11:04 AM · VyOS 1.4 Sagitta
daniil added a comment to T4969: QoS Policy - Unable to set class match mark number.

PR https://github.com/vyos/vyos-1x/pull/1792

Jan 31 2023, 9:43 AM · vyatta-cfg-qos, VyOS 1.4 Sagitta
daniil created T4969: QoS Policy - Unable to set class match mark number.
Jan 31 2023, 9:08 AM · vyatta-cfg-qos, VyOS 1.4 Sagitta
Viacheslav moved T4958: Add OpenConnect RADIUS Accounting support from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jan 31 2023, 8:43 AM · VyOS 1.4 Sagitta
Viacheslav closed T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working as Resolved.
Jan 31 2023, 8:39 AM · VyOS 1.4 Sagitta

Jan 30 2023

PeppyH closed T4958: Add OpenConnect RADIUS Accounting support as Resolved.

Going to close this task as the PR has been merged into vyos-1x, and documentation has been merged also - https://docs.vyos.io/en/latest/configuration/vpn/openconnect.html#configuring-radius-accounting

Jan 30 2023, 11:32 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working from In progress to Needs testing.

Will be fixed in the next rolling release

Jan 30 2023, 5:15 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4959: Add container registry authentication config for containers from Open to In progress.
Jan 30 2023, 2:07 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

PR https://github.com/vyos/vyos-1x/pull/1791

Jan 30 2023, 1:21 PM · VyOS 1.4 Sagitta
Viacheslav closed T4118: IPsec syntax overhaul as Resolved.
Jan 30 2023, 12:20 PM · VyOS 1.4 Sagitta
zsdc closed T4954: DNS cannot be configured via Network-Config v1 received from ConfigDrive / Cloud-Init as Resolved.
Jan 30 2023, 11:35 AM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
Viacheslav created T4968: VPN IPsec check dpd and close action for empty values.
Jan 30 2023, 10:48 AM · VyOS 1.4 Sagitta
Viacheslav created T4967: Ability to set hostname for the container.
Jan 30 2023, 10:21 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4966: UDEV deadlock on interface name shuffle from Open to Needs testing.
Jan 30 2023, 9:00 AM
Viacheslav changed the status of T4916: Rewrite IPsec authentication from In progress to Needs testing.
Jan 30 2023, 8:58 AM · VyOS 1.4 Sagitta
PeppyH updated PeppyH.
Jan 30 2023, 6:20 AM
ahovda added a comment to T4516: Rewrite system image manipulation tools in Python.

Is it possible to also add some logic to populate boot entries using https://uapi-group.org/specifications/specs/boot_loader_specification/ ? I have been experimenting with systemd-boot, and it's working fine apart from the missing loader files. Those files look something like this:
/usr/lib/live/mount/persistence/loader/entries/1.4-rolling-202210050218-vty.conf

title     "VyOS 1.4-rolling-202210050218 (KVM console)"
version   1.4-rolling-202210050218
options   boot=live quiet rootdelay=5 noautologin net.ifnames=0 biosdevname=0 vyos-union=/boot/1.4-rolling-202210050218 console=tty0
linux     boot/1.4-rolling-202210050218/vmlinuz
initrd    boot/1.4-rolling-202210050218/initrd.img

There will be similar files for serial and USB console.

Jan 30 2023, 1:33 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta

Jan 29 2023

sempervictus added a comment to T4966: UDEV deadlock on interface name shuffle.

Proposed fix in - https://github.com/vyos/vyos-build/pull/299

Jan 29 2023, 6:54 PM
sempervictus created T4966: UDEV deadlock on interface name shuffle.
Jan 29 2023, 6:49 PM
sarthurdev closed T4965: empty description in firewall group causes configuration error on migration as Resolved.

Fixed in commit: https://github.com/vyos/vyos-1x/commit/6eea12512e59cc28f5c2e5ca5ec7e9e7b21731da

Jan 29 2023, 9:39 AM · VyOS 1.4 Sagitta

Jan 28 2023

jestabro closed T4961: Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default as Resolved.
Jan 28 2023, 2:21 PM · VyOS 1.4 Sagitta
florin renamed T4965: empty description in firewall group causes configuration error on migration from empty description in firewall group causes configuration error to empty description in firewall group causes configuration error on migration.
Jan 28 2023, 2:13 PM · VyOS 1.4 Sagitta
florin created T4965: empty description in firewall group causes configuration error on migration.
Jan 28 2023, 2:07 PM · VyOS 1.4 Sagitta
Alfa80 awarded T4962: Fix typo in regex in vyos.config_mgmt compare function a Love token.
Jan 28 2023, 5:42 AM · VyOS 1.4 Sagitta

Jan 27 2023

jestabro added a comment to T4961: Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default.

Error reporting: PR's
https://github.com/vyos/vyos-1x/pull/1789
https://github.com/vyos/vyos1x-config/pull/12 (merged)
https://github.com/vyos/libvyosconfig/pull/6 (merged)

Jan 27 2023, 8:04 PM · VyOS 1.4 Sagitta
zsdc moved T4954: DNS cannot be configured via Network-Config v1 received from ConfigDrive / Cloud-Init from Need Triage to Backport Candidates on the VyOS 1.4 Sagitta board.

Backport PR https://github.com/vyos/vyos-cloud-init/pull/60

Jan 27 2023, 3:32 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
zsdc moved T4960: Bugs in `cc_vyos.py` code (Cloud-Init) from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jan 27 2023, 3:15 PM · VyOS 1.4 Sagitta
zsdc closed T4960: Bugs in `cc_vyos.py` code (Cloud-Init) as Resolved.

Fixed in the https://github.com/vyos/vyos-cloud-init/pull/58

Jan 27 2023, 3:14 PM · VyOS 1.4 Sagitta
zsdc changed the status of T4954: DNS cannot be configured via Network-Config v1 received from ConfigDrive / Cloud-Init from Open to Backport pending.

Fix for 1.4: https://github.com/vyos/vyos-cloud-init/pull/59
It must be backported to 1.3 now.

Jan 27 2023, 3:12 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
daniil added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

If I don't use advertise-all-vni I get an error

This command is only supported under EVPN VRF

Please use

advertise-all-vni
Jan 27 2023, 1:54 PM · VyOS 1.4 Sagitta
daniil added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

My full bgp config:

Jan 27 2023, 12:34 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

Ok I'll re-check with the latest rolling.

r14# show version 
FRRouting 8.4.2 (r14) on Linux(6.1.6-amd64-vyos).
Copyright 1996-2005 Kunihiro Ishiguro, et al.
Jan 27 2023, 12:30 PM · VyOS 1.4 Sagitta
daniil added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

hmm, very strange.

Jan 27 2023, 12:21 PM · VyOS 1.4 Sagitta
Viacheslav added a comment to T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.

The Original FRR log
This command is only supported under EVPN VRF

r14# conf t
r14(config)# router bgp 65000
r14(config-router)# address-family l2vpn evpn 
r14(config-router-af)# 
r14(config-router-af)# vni 100
r14(config-router-af-vni)# 
r14(config-router-af-vni)# route-target import 65000:100
This command is only supported under EVPN VRF
r14(config-router-af-vni)#
Jan 27 2023, 12:13 PM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working from Open to In progress.
Jan 27 2023, 11:25 AM · VyOS 1.4 Sagitta
daniil created T4964: FRR bgp address-family l2vpn-evpn route-target export/import not working.
Jan 27 2023, 11:15 AM · VyOS 1.4 Sagitta
Viacheslav moved T4912: Rewrite the IGMP op mode in the new style from Need Triage to Finished on the VyOS 1.4 Sagitta board.
Jan 27 2023, 10:25 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4963: vyos.ethtool: improve/fix driver name detection from In progress to Needs testing.
Jan 27 2023, 10:23 AM · VyOS 1.4 Sagitta
Zen3515 renamed T4959: Add container registry authentication config for containers from Container registry authentication to Add container registry authentication config for containers.
Jan 27 2023, 10:16 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Zen3515 renamed T4959: Add container registry authentication config for containers from Add a way to pull private registry for containers to Container registry authentication.
Jan 27 2023, 10:15 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4905: Convert show nhrp tunnel to tabulate format, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, from Open to In progress.
Jan 27 2023, 9:45 AM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4905: Convert show nhrp tunnel to tabulate format from Open to In progress.
Jan 27 2023, 9:45 AM · VyOS 1.4 Sagitta
a.apostoliuk claimed T4905: Convert show nhrp tunnel to tabulate format.
Jan 27 2023, 9:45 AM · VyOS 1.4 Sagitta
PeppyH updated the task description for T4958: Add OpenConnect RADIUS Accounting support.
Jan 27 2023, 6:17 AM · VyOS 1.4 Sagitta
PeppyH updated the task description for T4958: Add OpenConnect RADIUS Accounting support.
Jan 27 2023, 6:16 AM · VyOS 1.4 Sagitta
PeppyH added a comment to T4958: Add OpenConnect RADIUS Accounting support.

In testing this I found that ocserv validates its config on startup and using radius accounting without radius authentication fails to validate and the service will not start. As a result i'm not treating OpenConnect accounting as dependant on the radius as the authentication mode.

Jan 27 2023, 6:15 AM · VyOS 1.4 Sagitta
PeppyH updated the task description for T4958: Add OpenConnect RADIUS Accounting support.
Jan 27 2023, 6:11 AM · VyOS 1.4 Sagitta
PeppyH updated the task description for T4958: Add OpenConnect RADIUS Accounting support.
Jan 27 2023, 6:10 AM · VyOS 1.4 Sagitta

Jan 26 2023

MartB changed the status of T4963: vyos.ethtool: improve/fix driver name detection from Open to In progress.
Jan 26 2023, 11:59 PM · VyOS 1.4 Sagitta
jestabro updated the task description for T4961: Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default.
Jan 26 2023, 11:43 PM · VyOS 1.4 Sagitta
jestabro closed T4962: Fix typo in regex in vyos.config_mgmt compare function as Resolved.
Jan 26 2023, 10:05 PM · VyOS 1.4 Sagitta
n.fort closed T4886: Firewall and Policy - Add connection mark as Resolved.
Jan 26 2023, 9:54 PM · VyOS 1.4 Sagitta
n.fort changed the status of T4939: VRRP command no-preempt not work as expected from Confirmed to Needs testing.
Jan 26 2023, 9:48 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3)
jestabro triaged T4962: Fix typo in regex in vyos.config_mgmt compare function as Normal priority.
Jan 26 2023, 9:21 PM · VyOS 1.4 Sagitta
jestabro lowered the priority of T4961: Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default from High to Normal.

migration script modified in current; lower task priority to test error reporting from libvyoconfig.

Jan 26 2023, 7:39 PM · VyOS 1.4 Sagitta
jestabro triaged T4961: Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default as High priority.
Jan 26 2023, 7:00 PM · VyOS 1.4 Sagitta
josephm added a comment to T2518: Support NAT for ipv6(NPT).

Yeah, in my case as well, NPTv6 is mostly only useful if it it works with a dynamic (from DHCPv6-PD) prefix, since that's how my ISP provides addresses (AFAIK I'd have to pay for a business connection to get a static prefix, though I haven't actually called and asked myself). I'm tempted to play with hacking something together by building from source myself with some tweaks to auto-update the nat rules when it gets a new PD prefix.

Jan 26 2023, 6:44 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta (1.4.0)
zsdc created T4960: Bugs in `cc_vyos.py` code (Cloud-Init).
Jan 26 2023, 5:17 PM · VyOS 1.4 Sagitta
erkin closed T4912: Rewrite the IGMP op mode in the new style, a subtask of T4564: Root task for rewriting [op-mode] to vyos.opmode format, as Resolved.
Jan 26 2023, 2:07 PM · VyOS 1.5 Circinus, VyOS 1.4 Sagitta
erkin closed T4912: Rewrite the IGMP op mode in the new style as Resolved.
Jan 26 2023, 2:07 PM · VyOS 1.4 Sagitta
Zen3515 updated the task description for T4959: Add container registry authentication config for containers.
Jan 26 2023, 11:50 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Zen3515 created T4959: Add container registry authentication config for containers.
Jan 26 2023, 11:45 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
Zen3515 added a comment to T4014: Add “command” and “arg” configuration options for containers.

I've created a pull request which add support for this, and yes, it does use raw command.
I know that here we want to avoid "raw options" but I think this is one of the most needed feature and I don't see any other way else to do this. Until a better option is found, I think my PR should do just fine.

Jan 26 2023, 11:21 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4958: Add OpenConnect RADIUS Accounting support from Open to In progress.
Jan 26 2023, 10:31 AM · VyOS 1.4 Sagitta
Viacheslav changed the status of T4951: Add an op mode exception for cases when operations fail due to insufficient system resources from Open to Needs testing.
Jan 26 2023, 8:48 AM · VyOS 1.4 Sagitta (1.4.0-epa1)
Viacheslav changed the status of T4956: 'show hardware cpu' issue on arm64 from Open to Needs testing.
Jan 26 2023, 8:46 AM · VyOS 1.4 Sagitta
a.apostoliuk changed the status of T4955: Openconnect radiusclient.conf generating with extra authserver from Open to In progress.
Jan 26 2023, 8:04 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
a.apostoliuk claimed T4955: Openconnect radiusclient.conf generating with extra authserver.
Jan 26 2023, 7:43 AM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
PeppyH created T4958: Add OpenConnect RADIUS Accounting support.
Jan 26 2023, 6:24 AM · VyOS 1.4 Sagitta
jestabro closed T4957: config-mgmt should not attempt to archive config at boot, a subtask of T4942: Rewrite vyatta-config-mgmt to Python/XML, as Resolved.
Jan 26 2023, 2:25 AM · VyOS 1.4 Sagitta
jestabro closed T4957: config-mgmt should not attempt to archive config at boot as Resolved.
Jan 26 2023, 2:25 AM · VyOS 1.4 Sagitta
jestabro added a subtask for T4942: Rewrite vyatta-config-mgmt to Python/XML: T4957: config-mgmt should not attempt to archive config at boot.
Jan 26 2023, 2:20 AM · VyOS 1.4 Sagitta
jestabro added a parent task for T4957: config-mgmt should not attempt to archive config at boot: T4942: Rewrite vyatta-config-mgmt to Python/XML.
Jan 26 2023, 2:20 AM · VyOS 1.4 Sagitta
jestabro triaged T4957: config-mgmt should not attempt to archive config at boot as High priority.
Jan 26 2023, 2:20 AM · VyOS 1.4 Sagitta
MartB created T4956: 'show hardware cpu' issue on arm64.
Jan 26 2023, 1:49 AM · VyOS 1.4 Sagitta

Jan 25 2023

Viacheslav added projects to T4955: Openconnect radiusclient.conf generating with extra authserver: VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.3).
Jan 25 2023, 11:57 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
PeppyH created T4955: Openconnect radiusclient.conf generating with extra authserver.
Jan 25 2023, 11:50 PM · VyOS 1.3 Equuleus (1.3.3), VyOS 1.4 Sagitta
SrividyaA added a comment to T4853: OpenVPN: unable to commit changes when the interface is down/unknown state.

Tested in a server/client setup:

Jan 25 2023, 8:13 PM · VyOS 1.3 Equuleus (1.3.7)
zsdc created T4954: DNS cannot be configured via Network-Config v1 received from ConfigDrive / Cloud-Init.
Jan 25 2023, 6:52 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
Viacheslav changed the status of T1297: Add GARP settings to VRRP/keepalived from On hold to Needs testing.
Jan 25 2023, 4:52 PM · VyOS 1.3 Equuleus (1.3.6), VyOS 1.4 Sagitta
Viacheslav changed the status of T4815: Fix various name server config issues from Open to Needs testing.
Jan 25 2023, 8:20 AM · VyOS 1.4 Sagitta
Viacheslav closed T4941: Accel-ppp IPoE incompatibility with kernel 6.1 as Resolved.
Jan 25 2023, 8:08 AM · VyOS 1.4 Sagitta