dmbaturin (Daniil Baturin)Administrator
User

Today

  • Clear sailing ahead.

Tomorrow

  • Clear sailing ahead.

Sunday

  • Clear sailing ahead.

User Details

User Since
Feb 7 2016, 4:09 PM (127 w, 5 d)
Roles
Administrator
Availability
Available

Recent Activity

Today

dmbaturin added a comment to T750: Hostname defaults to "debian" after applying rolling update.

There was one or two 1.2.0 images that did have a hostname problem due to a problem in the new implementation of the system host-name command, but I fixed it. I wonder if your problem might be carried over from one of those images.

Fri, Jul 20, 11:11 AM · VyOS 1.2.x
dmbaturin added a comment to T750: Hostname defaults to "debian" after applying rolling update.

Could you try updating some test machine from 1.1.8?

Fri, Jul 20, 10:48 AM · VyOS 1.2.x
dmbaturin added a comment to T750: Hostname defaults to "debian" after applying rolling update.

You get this when you upgrade from a previous rolling release, or from 1.1.8? If the former, which one?

Fri, Jul 20, 10:43 AM · VyOS 1.2.x

Tue, Jul 17

dmbaturin triaged T749: Create a library with common initial setup functions that we can use in installation and virtual/cloud platform first boot scripts as High priority.
Tue, Jul 17, 11:31 PM · VyOS 1.2.x

Wed, Jul 11

dmbaturin added a comment to T740: User UID not properly set when add/deleting users.

Should we delete user home dirs when deleting a user then?

Wed, Jul 11, 8:05 PM · VyOS 1.1.x

Tue, Jul 10

dmbaturin added a comment to T696: Rewrite conntrack sync to XML.

I think new version should still be able to sync with the old versions, since people will be upgrading routers in their HA pairs one by one, and loss of functionality during upgrades isn't a very nice situation.

Tue, Jul 10, 11:07 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T696: Rewrite conntrack sync to XML.

@hagbard Migration scripts are no longer that much of a problem (though they still need to be carefully written). See http://blog.vyos.net/writing-migration-scripts-and-manipulating-vyos-config-files-outside-vyos-just-got-easier

Tue, Jul 10, 8:10 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T666: Define new VRRP syntax.

https://github.com/vyos/vyos-1x/blob/new-vrrp/interface-definitions/vrrp.xml The new syntax draft.

Tue, Jul 10, 6:56 PM · VyOS 1.2.x

Thu, Jul 5

dmbaturin added a comment to T734: Restart dns forwarding broken?.

That's my punishment for the sin of only testing op mode commands from conf mode.

Thu, Jul 5, 3:46 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Tue, Jul 3

dmbaturin created T728: Do not reference vyatta in the name of the postconfig script.
Tue, Jul 3, 10:07 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin triaged T727: Add support for pre-config script as Normal priority.
Tue, Jul 3, 9:51 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Fri, Jun 29

dmbaturin triaged T723: Add support for first boot or installation time saved config modification as Normal priority.
Fri, Jun 29, 10:31 AM · VyOS 1.2.x

Tue, Jun 26

dmbaturin triaged T712: Simplify building VyOS images with custom packages as Normal priority.
Tue, Jun 26, 12:00 PM · VyOS 1.2.x

Sun, Jun 24

dmbaturin triaged T710: Move the contents of the vyatta-util package to vyatta-cfg-system as Normal priority.
Sun, Jun 24, 3:06 PM · VyOS 1.2.x
dmbaturin closed T146: 'show system image' odd behavior when console is ttyS1 as Resolved.

The pull request was merged.

Sun, Jun 24, 12:02 PM · VyOS 1.2.x

Sat, Jun 23

dmbaturin created T709: FRR testing and migration.
Sat, Jun 23, 7:03 PM · VyOS 1.2.x

Fri, Jun 22

dmbaturin added a comment to T689: Converting simple op-mode commands from vyatta-op to new syntax.

@runar Found an issue: show-raid.xml refers to ${vyos_op_scripts_dir}/show_raid.sh file, but that file does not exist.

Fri, Jun 22, 10:30 PM · VyOS 1.2.x
dmbaturin created T707: Do not use sudo by default for op mode commands.
Fri, Jun 22, 10:24 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin closed T706: sh version failed as Resolved.

Yes, it's been fixed a while ago.

Fri, Jun 22, 7:12 PM · VyOS 1.2.x

Thu, Jun 21

dmbaturin added a parent task for T704: Firewall SNMP trap script no longer works: T652: Rewrite service snmp in new style XML interface definition.
Thu, Jun 21, 10:34 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a subtask for T652: Rewrite service snmp in new style XML interface definition: T704: Firewall SNMP trap script no longer works.
Thu, Jun 21, 10:34 PM · VyOS 1.2.x
dmbaturin created T704: Firewall SNMP trap script no longer works.
Thu, Jun 21, 10:33 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T427: Wireguard support.

@c-po I've rebuilt those newer packages from source (typically by using apt-get source). Due to different libc and all they indeed cannot be installed directly.

Thu, Jun 21, 8:52 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 20 2018

dmbaturin closed T669: Get rid of intfwatchd and set the net.ipv6.conf.default.keep_addr_on_down sysctl option to 1 by default as Resolved.
Jun 20 2018, 2:56 PM · VyOS 1.2.x
dmbaturin closed T636: Show VRRP leads to warning message as Resolved.
Jun 20 2018, 2:23 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin closed T684: Rewrite the config to set commands convertor as Resolved.

Appears to work fine now.

Jun 20 2018, 2:22 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T696: Rewrite conntrack sync to XML.

@hagbard If rewrite can be done in a reasonable time (days to a couple of weeks), I think trying to clean up old code is more trouble than it's worth.
With big stuff that cannot be easily rewritten, it may be worthwhile.

Jun 20 2018, 12:06 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 19 2018

dmbaturin added a comment to T696: Rewrite conntrack sync to XML.

@hagbard If you are working on it, by all means, assign it to yourself. We do not have a formal assignment policy, it's more like "I'm working on it" flag for coordination.

Jun 19 2018, 8:51 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T689: Converting simple op-mode commands from vyatta-op to new syntax.

@runar The sudo wrapper is mostly due to the fact that the op mode convertor is largely a clone of the conf mode convertor. This also interfers with operator level users' ability to run anything at all, so this is a good point.
We likely need to switch to adding sudo where needed instead, but we need to test which commands break from it when run by non-admin users.

Jun 19 2018, 7:55 PM · VyOS 1.2.x
dmbaturin changed the status of T700: Add support for VRRP health check script from Open to In progress.
Jun 19 2018, 7:53 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin triaged T700: Add support for VRRP health check script as High priority.
Jun 19 2018, 5:39 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 14 2018

dmbaturin added a parent task for T640: Images no longer work when built without "recommended" packages: T697: Clean up and sanitize package dependencies.
Jun 14 2018, 7:35 PM · VyOS 1.2.x
dmbaturin added a subtask for T697: Clean up and sanitize package dependencies: T640: Images no longer work when built without "recommended" packages.
Jun 14 2018, 7:35 PM · VyOS 1.2.x
dmbaturin created T697: Clean up and sanitize package dependencies.
Jun 14 2018, 7:35 PM · VyOS 1.2.x

Jun 8 2018

dmbaturin closed T460: VRRP transition scripts no longer get executed as Resolved.

Seems to work fine now, reopen if necessary.

Jun 8 2018, 7:34 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin updated the task description for T644: Revamp the directory structure.
Jun 8 2018, 5:34 AM · VyOS 1.2.x

Jun 7 2018

dmbaturin triaged T688: Move component versions used for config migration purposes into vyos-1x as Normal priority.
Jun 7 2018, 10:56 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 6 2018

dmbaturin moved T686: 'run show openvpn client-status' is not displaying local tunnel address from Needs Triage to Backlog on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 6 2018, 6:50 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin created T686: 'run show openvpn client-status' is not displaying local tunnel address.
Jun 6 2018, 6:50 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 5 2018

dmbaturin triaged T684: Rewrite the config to set commands convertor as Normal priority.
Jun 5 2018, 3:56 PM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 4 2018

dmbaturin added a comment to T615: DSA-4115-1 quagga -- security update.

@syncer @higebu Yes, stock quagga is missing many things that ours has. We have no choice other than to integrate the patches by hand.

Jun 4 2018, 5:02 PM · VyOS 1.2.x, VyOS 1.1.x, vyatta-quagga
dmbaturin closed T506: Support CIDR notation in firewall address-group as Invalid.

It was just an error in the help. Someone probably copied it from somewhere else (e.g. the address option of firewall rules) and forgot to edit.

Jun 4 2018, 12:52 PM · VyOS 1.2.x
dmbaturin added a comment to T679: SNMPv3 tsm Warning: Unknown token: localCert.

Interesting. Perhaps the config format has changed in newer versions? What do the docs say?

Jun 4 2018, 3:43 AM · VyOS 1.3.x

Jun 3 2018

dmbaturin moved T678: PPPoE client doesn't start after upgrade to ppp 2.4.7 from Needs Triage to In Progress on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 3 2018, 9:39 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin moved T677: Build ppp 2.4.7 with patches for interface renaming support from Needs Triage to In Progress on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 3 2018, 9:39 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T676: 'run show vpn remote-access' no longer works..

After installing pppd from T677, it seems to work again.

Jun 3 2018, 9:25 AM · VyOS 1.2.x
dmbaturin created T678: PPPoE client doesn't start after upgrade to ppp 2.4.7.
Jun 3 2018, 9:07 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin created T677: Build ppp 2.4.7 with patches for interface renaming support.
Jun 3 2018, 9:04 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T676: 'run show vpn remote-access' no longer works..

Found the issue. First, renaming is hadled in a pre-up script that was in the ppp package rather than vyatta-ravpn, so it is not included in 1.2.0.

Jun 3 2018, 6:25 AM · VyOS 1.2.x
dmbaturin moved T676: 'run show vpn remote-access' no longer works. from Need Triage to In Progress on the VyOS 1.2.x board.
Jun 3 2018, 4:20 AM · VyOS 1.2.x
dmbaturin moved T460: VRRP transition scripts no longer get executed from Needs Triage to Finished on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 3 2018, 4:17 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin edited projects for T460: VRRP transition scripts no longer get executed, added: VyOS 1.2.x (VyOS 1.2.0-rc1); removed VyOS 1.2.x.
Jun 3 2018, 4:17 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T460: VRRP transition scripts no longer get executed.

State files are updated properly after keepalived upgrade, no need for this workaround anymore.

Jun 3 2018, 4:17 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin moved T671: Identify and remove dead code from Need Triage to Wishlist on the VyOS 1.2.x board.
Jun 3 2018, 3:44 AM · VyOS 1.2.x
dmbaturin moved T656: Rewrite wirelessmodem in new style XML interface definition from Need Triage to Wishlist on the VyOS 1.2.x board.

When we get to it, we should also get rid of built-in support for a handful of north american wireless providers (which is likely very out of date by now) and add support for custom connection strings etc.

Jun 3 2018, 3:43 AM · VyOS 1.2.x
dmbaturin assigned T599: Bind NTP service to specific interface to c-po.
Jun 3 2018, 3:38 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin edited projects for T599: Bind NTP service to specific interface, added: VyOS 1.2.x (VyOS 1.2.0-rc1); removed VyOS 1.2.x, VyConf.
Jun 3 2018, 3:38 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin moved T674: IPsec script neither sets a default DH group for IKE nor warns that it should be set from Needs Triage to Finished on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 3 2018, 3:37 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin edited projects for T674: IPsec script neither sets a default DH group for IKE nor warns that it should be set, added: VyOS 1.2.x (VyOS 1.2.0-rc1); removed VyOS 1.2.x.
Jun 3 2018, 3:36 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin moved T661: Show a warning if router going to reboot soon (due to "commit-confirm" command) from Need Triage to Wishlist on the VyOS 1.2.x board.
Jun 3 2018, 3:00 AM · VyOS 1.2.x
dmbaturin moved T636: Show VRRP leads to warning message from Needs Triage to Finished on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
Jun 3 2018, 2:58 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin added a comment to T636: Show VRRP leads to warning message.

The root cause was here:

Jun 3 2018, 2:57 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

Jun 2 2018

dmbaturin added a comment to T671: Identify and remove dead code.

Completely dead:

Jun 2 2018, 12:05 PM · VyOS 1.2.x
dmbaturin added a comment to T628: StrongSwan requires configuration change for proper routing over VTI..

Just verified that install_routes = no has no adverse effect on L2TP/IPsec.

Jun 2 2018, 2:36 AM · VyOS 1.2.x
dmbaturin created T676: 'run show vpn remote-access' no longer works..
Jun 2 2018, 2:03 AM · VyOS 1.2.x
dmbaturin moved T675: L2TP/IPsec VPN no longer working from Need Triage to In Progress on the VyOS 1.2.x board.

Downgraded packages are in the latest nightly build.

Jun 2 2018, 1:57 AM · VyOS 1.2.x
dmbaturin added a comment to T675: L2TP/IPsec VPN no longer working.

Correction: 5.5, not 5.2.

Jun 2 2018, 12:49 AM · VyOS 1.2.x
dmbaturin added a comment to T675: L2TP/IPsec VPN no longer working.

No amount of messing up with the config in 5.6 fixed this, but when I downgraded strongswan to 5.2 (from stretch-security), it just worked. I'm downgrading it in the repositories.

Jun 2 2018, 12:43 AM · VyOS 1.2.x

Jun 1 2018

dmbaturin claimed T674: IPsec script neither sets a default DH group for IKE nor warns that it should be set.
Jun 1 2018, 2:36 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin renamed T674: IPsec script neither sets a default DH group for IKE nor warns that it should be set from IPsec script neither sets a default DH group for IKE neither warns that it should be set to IPsec script neither sets a default DH group for IKE nor warns that it should be set.
Jun 1 2018, 2:36 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin created T674: IPsec script neither sets a default DH group for IKE nor warns that it should be set.
Jun 1 2018, 2:35 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)

May 31 2018

dmbaturin triaged T671: Identify and remove dead code as Low priority.
May 31 2018, 4:17 AM · VyOS 1.2.x
dmbaturin closed T286: Fix resolv-file configuration problem as Resolved.

Should be working now in the code rewritten for pdns, and dnsmasq is gone so issues specific to it will not be a problem anymore.

May 31 2018, 4:03 AM · VyOS 1.2.x
dmbaturin closed T551: IPsec logs do not appear in the system log as Resolved.

Should be working now that we've added syslog forwarding to journald.

May 31 2018, 4:00 AM · VyOS 1.2.x
dmbaturin moved T628: StrongSwan requires configuration change for proper routing over VTI. from Need Triage to In Progress on the VyOS 1.2.x board.
May 31 2018, 3:59 AM · VyOS 1.2.x
dmbaturin moved T666: Define new VRRP syntax from Need Triage to In Progress on the VyOS 1.2.x board.

@aopdal I agree it would be nice to have RFC compatibility, but when it was introduced, it relied upon a kernel hack that never made it into the mainline. If mainline keepalived and kernel do not support it, and we cannot add support for it that can be merged into the mainline, then it's more trouble than it's worth I think.
Cross-vendor VRRP is more of a hypothetical situation than a common setup.

May 31 2018, 3:59 AM · VyOS 1.2.x
dmbaturin moved T616: Migrate to keepalived 1.3.x (including IPv6 VRRP) from Backlog to In Progress on the VyOS 1.2.x board.
May 31 2018, 3:50 AM · VyOS 1.2.x
dmbaturin added a comment to T629: Migration scripts insert "commit-revisions 20" into system config-management even if commit-revisions option is already present.

The fault was in XorpConfigParser, whose "set" function behaves as if all nodes were multi nodes, so it was adding a value where none was needed (that's on top of the fact that it didn't properly check if it exists).

May 31 2018, 1:43 AM · VyOS 1.2.x
dmbaturin moved T629: Migration scripts insert "commit-revisions 20" into system config-management even if commit-revisions option is already present from Need Triage to In Progress on the VyOS 1.2.x board.
May 31 2018, 1:42 AM · VyOS 1.2.x
dmbaturin claimed T629: Migration scripts insert "commit-revisions 20" into system config-management even if commit-revisions option is already present.
May 31 2018, 1:41 AM · VyOS 1.2.x
dmbaturin closed T13: Make a new beta (1.2.0-beta3) as Wontfix.

The new task should be to make 1.2.0-rc1. :)

May 31 2018, 12:58 AM · VyOS 1.2.x (VyOS 1.2.0-rc1)
dmbaturin moved T232: Install fails if hard drive previously contained GPT label from Backlog to In Progress on the VyOS 1.2.x board.
May 31 2018, 12:46 AM · VyOS 1.2.x
dmbaturin edited projects for T232: Install fails if hard drive previously contained GPT label, added: VyOS 1.2.x; removed VyOS 1.2.x (VyOS 1.2.0-rc1).
May 31 2018, 12:46 AM · VyOS 1.2.x
dmbaturin edited projects for T628: StrongSwan requires configuration change for proper routing over VTI., added: VyOS 1.2.x; removed VyOS 1.2.x (VyOS 1.2.0-rc1).
May 31 2018, 12:42 AM · VyOS 1.2.x
dmbaturin moved T628: StrongSwan requires configuration change for proper routing over VTI. from Needs Triage to In Progress on the VyOS 1.2.x (VyOS 1.2.0-rc1) board.
May 31 2018, 12:42 AM · VyOS 1.2.x
dmbaturin moved T28: Add auto provisioning from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:39 AM · VyOS 1.2.x
dmbaturin merged T105: VRRPv3 support (VRRP for IPv6) into T616: Migrate to keepalived 1.3.x (including IPv6 VRRP).
May 31 2018, 12:38 AM · VyOS 1.2.x
dmbaturin merged task T105: VRRPv3 support (VRRP for IPv6) into T616: Migrate to keepalived 1.3.x (including IPv6 VRRP).
May 31 2018, 12:38 AM · VyOS 1.2.x
dmbaturin moved T122: Control over which users have ssh access from Need Triage to In Progress on the VyOS 1.2.x board.
May 31 2018, 12:37 AM · VyOS 1.2.x
dmbaturin closed T258: Can not configure wan load-balancing on vyos-1.2 as Resolved.

I've setup a minimal WLB config and it worked for me.

May 31 2018, 12:33 AM · VyOS 1.2.x
dmbaturin moved T169: Image install should put correct serial console device in created grub menuentry from Need Triage to Wishlist on the VyOS 1.2.x board.

Serial is, sadly, a hard problem, especially on machines that need it most, i.e. those without any graphical console. Since it's impossible to automatically find out the correct port and speed/parity settings, it will always need some manual configuration I suppose.

May 31 2018, 12:27 AM · VyOS 1.2.x
dmbaturin moved T57: Make it possible to disable the entire IPsec peer from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:16 AM · VyOS 1.2.x
dmbaturin moved T362: Proper target dependencies and error checking in the vyos-build makefile from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:16 AM · VyOS 1.2.x
dmbaturin moved T377: DHCP-relay agent package replacement from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:16 AM · VyOS 1.2.x
dmbaturin closed T555: add tools/submod-mk to vyos-build repository as Resolved.

I have reservations about actually using it though. The whole point of the vyos-1x package is to stop multiplying submodules and consolidate everything instead. ;)

May 31 2018, 12:14 AM · VyOS 1.2.x
dmbaturin moved T611: Static route syntax should reflect `ip` command routing capabilities, if possible. from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:12 AM · VyOS 1.2.x
dmbaturin moved T645: Vyos 1.2 multiple prefixes in ipsec tunnel from Need Triage to Wishlist on the VyOS 1.2.x board.
May 31 2018, 12:11 AM · VyOS 1.2.x
dmbaturin moved T651: Split CI'ed, VyOS-specific packages and other packages into separate repos from Need Triage to In Progress on the VyOS 1.2.x board.
May 31 2018, 12:11 AM · VyOS 1.2.x
dmbaturin moved T668: /config/config.boot gets out of sync with /opt/vyatta/etc/config/config.boot from Need Triage to In Progress on the VyOS 1.2.x board.
May 31 2018, 12:11 AM · VyOS 1.2.x

May 30 2018

dmbaturin edited projects for T232: Install fails if hard drive previously contained GPT label, added: VyOS 1.2.x (VyOS 1.2.0-rc1); removed VyOS 1.2.x.
May 30 2018, 11:16 PM · VyOS 1.2.x