Page MenuHomeVyOS Platform

fernando (maidana)
User

Projects

User Details

User Since
May 11 2021, 12:36 PM (59 w, 3 d)

Recent Activity

Tue, Jun 28

fernando added a comment to T4490: BGP- warning message that AFI/SAFI is needed to establish the neighborship.

@Viacheslav thanks

Tue, Jun 28, 12:15 PM · VyOS 1.4 Sagitta
fernando changed the status of T4490: BGP- warning message that AFI/SAFI is needed to establish the neighborship from Open to In progress.
Tue, Jun 28, 12:13 PM · VyOS 1.4 Sagitta

Mon, Jun 27

fernando created T4490: BGP- warning message that AFI/SAFI is needed to establish the neighborship.
Mon, Jun 27, 9:11 PM · VyOS 1.4 Sagitta
fernando changed the status of T4489: MPLS sysctl not persistent for tunnel interfaces from Open to Confirmed.
Mon, Jun 27, 2:05 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta
fernando added a comment to T4489: MPLS sysctl not persistent for tunnel interfaces.

it's a common behavior when you want to set sysctl variable and bash-cli is used ( vyos-cli by default when restart the vm set this value in 0 ) . however , it's possible to configure it with this command :

Mon, Jun 27, 2:03 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Thu, Jun 16

fernando closed T4352: wan-load balance - priority traffic rule doesn't work as Resolved.

i've checked this issues, it seems to be solved . I think that it was solved for another task. I used the following vyos version :

Thu, Jun 16, 10:30 PM · VyOS 1.4 Sagitta

May 31 2022

fernando added a comment to T3976: Missing prefix-list and access-list option from ipv6 route-map.

yes, it was added on this version vyos-1.4-rolling-202205311706, please check again

May 31 2022, 11:13 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)
fernando added a comment to T3976: Missing prefix-list and access-list option from ipv6 route-map.

We've added this feature in our latest nightly building release, could you check it ?

May 31 2022, 1:50 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)
fernando changed the status of T3976: Missing prefix-list and access-list option from ipv6 route-map from Open to Needs testing.
May 31 2022, 1:40 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)

May 27 2022

fernando added a comment to T3976: Missing prefix-list and access-list option from ipv6 route-map.

PR for 1.4 Sagitta branch https://github.com/vyos/vyos-1x/pull/1337

May 27 2022, 9:27 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)
fernando claimed T3976: Missing prefix-list and access-list option from ipv6 route-map.
May 27 2022, 5:59 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus (1.3.0-epa3)

May 20 2022

fernando closed T4436: BGP/VRF - not enable peer on address-family as Resolved N/A.
May 20 2022, 7:05 PM · VyOS 1.4 Sagitta
fernando created T4436: BGP/VRF - not enable peer on address-family .
May 20 2022, 6:40 PM · VyOS 1.4 Sagitta

Apr 28 2022

fernando added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

I've tried with a new spoke and I can't seem to register using `reload-or-restart', although it resolved the lost connectivity issues the opennhrp process needs a full restart. however, if you restart opennhrp daemon it causes different issues and usually the spoke loses connection.

## hub
Apr 28 2022, 8:57 PM · VyOS 1.4 Sagitta
fernando changed the status of T4399: nhrp - add or delete nhrp tunnel restart opennhrp process from Open to Needs testing.
Apr 28 2022, 11:51 AM · VyOS 1.4 Sagitta

Apr 27 2022

fernando added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

PR: https://github.com/vyos/vyos-1x/pull/1306

Apr 27 2022, 9:11 PM · VyOS 1.4 Sagitta
fernando claimed T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.
Apr 27 2022, 8:30 PM · VyOS 1.4 Sagitta
fernando added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

I did this change as you mentioned and it worked, , example:

Apr 27 2022, 8:29 PM · VyOS 1.4 Sagitta
fernando added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

Hub basic setting :

Apr 27 2022, 12:41 PM · VyOS 1.4 Sagitta
fernando added a comment to T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.

Yes ,you need to reload the services and it works , here's an basic example with the current configuration :

Apr 27 2022, 12:38 PM · VyOS 1.4 Sagitta

Apr 26 2022

fernando created T4399: nhrp - add or delete nhrp tunnel restart opennhrp process.
Apr 26 2022, 9:31 PM · VyOS 1.4 Sagitta

Apr 21 2022

fernando changed the status of T4360: Issues on MPLS L3VPN Service Label from Open to Confirmed.
Apr 21 2022, 11:57 PM · VyOS 1.4 Sagitta
fernando added a comment to T4360: Issues on MPLS L3VPN Service Label.

sorry for my late reply , I've been testing this case and I could replicate the same behavior

Apr 21 2022, 11:56 PM · VyOS 1.4 Sagitta

Apr 11 2022

fernando added a comment to T4352: wan-load balance - priority traffic rule doesn't work .

regarding this behavior , I found a similar task where there was a bug with chain VYOS_PRE_SNAT_HOOK that jumps to WANLOADBALANCE ,although it was solved .
However , policy traffic rule seems to be affected with this issues(the main difference is that now there is a pass on this chain/ POSTROUTING) , below I'll share the task just to know where you can find the problem.

Apr 11 2022, 3:43 PM · VyOS 1.4 Sagitta
fernando created T4352: wan-load balance - priority traffic rule doesn't work .
Apr 11 2022, 1:07 PM · VyOS 1.4 Sagitta

Apr 4 2022

fernando added a comment to T2580: Support for ip pools for ippoe.

I've been testing , the feature works as expected . IPOE assigns different ip by dhcp using ip-pool :

[email protected]:~$ show ipoe-server sessions
ifname     | username |    calling-sid    |     ip     | rate-limit | type | comp | state  |  uptime
---------------+----------+-------------------+------------+------------+------+------+--------+----------
 eth3.1000.140 |          | aa:bb:cc:00:60:00 | 10.10.10.0 |            | ipoe |      | active | 00:03:44
 eth3.1000.130 |          | aa:bb:cc:00:50:00 | 10.10.10.2 |            | ipoe |      | active | 00:
Apr 4 2022, 6:30 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Apr 2 2022

fernando added a comment to T2580: Support for ip pools for ippoe.

there is another possible to achieve the desired result , it's using this radius-option:

Apr 2 2022, 1:06 PM · VyOS 1.3 Equuleus (1.3.2), VyOS 1.4 Sagitta

Mar 21 2022

fernando closed T4304: [OSPF]import/export filter inter-area prefix as Resolved.
# applied filter on area-ospf
Mar 21 2022, 11:48 AM · VyOS 1.4 Sagitta

Mar 19 2022

fernando added a comment to T4163: [BMP-BGP] Routing monitoring feature.

I've been testing , now we are able to configure BMP with load configuration .in latest version 8.2.2(they solved these issues)

Mar 19 2022, 7:52 PM · VyOS 1.4 Sagitta

Mar 17 2022

fernando added a comment to T4304: [OSPF]import/export filter inter-area prefix.

PR https://github.com/vyos/vyos-1x/pull/1250

Mar 17 2022, 5:45 PM · VyOS 1.4 Sagitta

Mar 16 2022

fernando claimed T4304: [OSPF]import/export filter inter-area prefix.
Mar 16 2022, 8:35 PM · VyOS 1.4 Sagitta
fernando created T4304: [OSPF]import/export filter inter-area prefix.
Mar 16 2022, 7:56 PM · VyOS 1.4 Sagitta

Mar 15 2022

fernando closed T4293: Add "set ip-next-hop unchanged" in route-map as Resolved.
Mar 15 2022, 11:28 AM · VyOS 1.4 Sagitta

Mar 10 2022

fernando reassigned T4293: Add "set ip-next-hop unchanged" in route-map from fernando to plett.
Mar 10 2022, 7:05 PM · VyOS 1.4 Sagitta
fernando claimed T4293: Add "set ip-next-hop unchanged" in route-map.
Mar 10 2022, 1:44 PM · VyOS 1.4 Sagitta

Mar 8 2022

fernando reassigned T4293: Add "set ip-next-hop unchanged" in route-map from fernando to plett.
Mar 8 2022, 11:09 PM · VyOS 1.4 Sagitta
fernando claimed T4293: Add "set ip-next-hop unchanged" in route-map.
Mar 8 2022, 9:45 PM · VyOS 1.4 Sagitta
fernando changed the status of T4293: Add "set ip-next-hop unchanged" in route-map from Open to Confirmed.
Mar 8 2022, 8:25 PM · VyOS 1.4 Sagitta

Feb 23 2022

fernando added a comment to T4163: [BMP-BGP] Routing monitoring feature.

this issue with frr.reload.py keeps happening with stable/8.1 , we'll try it when 8.2 is stable.

Feb 23 2022, 6:22 PM · VyOS 1.4 Sagitta

Feb 18 2022

fernando added a comment to T4258: [DHCP-SERVER] error parameter on Failover.

PR :https://github.com/vyos/vyos-1x/pull/1228

Feb 18 2022, 9:29 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
fernando claimed T4258: [DHCP-SERVER] error parameter on Failover.
Feb 18 2022, 8:23 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
fernando renamed T4258: [DHCP-SERVER] error parameter on Failover from [DHCP-SERVER] error paramater on Failover to [DHCP-SERVER] error parameter on Failover.
Feb 18 2022, 6:37 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta
fernando created T4258: [DHCP-SERVER] error parameter on Failover.
Feb 18 2022, 6:29 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Feb 14 2022

fernando added a comment to T4243: Nat log - Add translated data to nat logs.

I think it is necessary to show this kind information . it should use tools/service as netflow/ipfix . for example:

Feb 14 2022, 5:48 PM · VyOS 1.4 Sagitta

Feb 9 2022

fernando added a comment to T4163: [BMP-BGP] Routing monitoring feature.

we found an error when we tried to upload the configuration using the frr.reload.py . I did an issues request to FRR with this problem ,here is the case:

Feb 9 2022, 8:29 PM · VyOS 1.4 Sagitta

Feb 4 2022

fernando added a comment to T4214: [DHCP] static route dhcp-interface issues.

I think there is a bit of confusion here. nowadays 1.4 it's works as you mention , but 1.3 doesn't remove static (so we can see both static in the RIB) . however, In my personal opinion , it should show both static in our cli (same also on FRR) , because it's possible that you may need a different prefix ,it'll be installed with a different next-hop .

Feb 4 2022, 2:44 PM · VyOS 1.3 Equuleus

Jan 27 2022

fernando created T4214: [DHCP] static route dhcp-interface issues.
Jan 27 2022, 7:53 PM · VyOS 1.3 Equuleus

Jan 19 2022

fernando added a comment to T4195: [OSPF-ECMP]enable set maximun-path.

PR : https://github.com/vyos/vyos-1x/pull/1179

Jan 19 2022, 4:11 PM · VyOS 1.4 Sagitta
fernando created T4195: [OSPF-ECMP]enable set maximun-path.
Jan 19 2022, 4:00 PM · VyOS 1.4 Sagitta

Jan 14 2022

fernando renamed T4185: [VPN-IPSEC] not boot config after reboot from [VPN-IPSEC] no boot config after reboot to [VPN-IPSEC] not boot config after reboot.
Jan 14 2022, 9:50 PM · VyOS 1.3 Equuleus
fernando created T4185: [VPN-IPSEC] not boot config after reboot.
Jan 14 2022, 9:44 PM · VyOS 1.3 Equuleus

Jan 13 2022

fernando added a comment to T4181: Firewall ipv6-network-group - incorrect description on helper .

PR: https://github.com/vyos/vyos-1x/pull/1168/

Jan 13 2022, 7:22 PM · VyOS 1.4 Sagitta
fernando created T4181: Firewall ipv6-network-group - incorrect description on helper .
Jan 13 2022, 6:54 PM · VyOS 1.4 Sagitta

Jan 12 2022

fernando added a comment to T4144: Firewall address-group - Improve error messages.

yes, you are right:

Jan 12 2022, 1:38 PM · VyOS 1.4 Sagitta

Jan 11 2022

fernando added a comment to T4144: Firewall address-group - Improve error messages.

yes , i'm using this version :

Jan 11 2022, 8:38 PM · VyOS 1.4 Sagitta
fernando added a comment to T4144: Firewall address-group - Improve error messages.

I've checked with this new build , it works with validator ranges/port :

Jan 11 2022, 8:06 PM · VyOS 1.4 Sagitta
fernando closed T4149: [Firewall-IPV6] Error delete Fw rules on VIF/INT as Resolved.
Jan 11 2022, 6:34 PM · VyOS 1.4 Sagitta
fernando added a comment to T4149: [Firewall-IPV6] Error delete Fw rules on VIF/INT.

I've been testing and it works :

Jan 11 2022, 6:33 PM · VyOS 1.4 Sagitta
fernando added a comment to T4163: [BMP-BGP] Routing monitoring feature.

well , I think it should be something like this :

Jan 11 2022, 12:48 PM · VyOS 1.4 Sagitta

Jan 10 2022

fernando added a comment to T4163: [BMP-BGP] Routing monitoring feature.

this PR https://github.com/vyos/vyos-1x/pull/1088 only include how to enable daemon , but it doesn't add VyOS-cli commands in BGP (the daemon only allows you to enable it).

Jan 10 2022, 8:43 PM · VyOS 1.4 Sagitta
fernando created T4163: [BMP-BGP] Routing monitoring feature.
Jan 10 2022, 8:05 PM · VyOS 1.4 Sagitta

Jan 6 2022

fernando created T4149: [Firewall-IPV6] Error delete Fw rules on VIF/INT.
Jan 6 2022, 9:39 PM · VyOS 1.4 Sagitta

Dec 31 2021

fernando added a comment to T4125: Feature Request: bridge STP BPDU translation.

I want to leave a comment , it's also common that customers don't know that PVST is enabled by default (and send bpdu peer VLANS), So it's possible to mitigate it also using nf rules , below leave a example:

Dec 31 2021, 2:59 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus ( 1.3.1)

Dec 28 2021

fernando added a comment to T4110: [IPV6-SSH/DNS} enable IPv6 link local adresses as listen-address %eth0.

thanks you @Viacheslav

Dec 28 2021, 5:21 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Dec 27 2021

fernando created T4110: [IPV6-SSH/DNS} enable IPv6 link local adresses as listen-address %eth0.
Dec 27 2021, 2:35 PM · VyOS 1.3 Equuleus ( 1.3.1), VyOS 1.4 Sagitta

Dec 10 2021

fernando renamed T4066: [IPsec] Tuning options from [IPsec} tunning options to [IPsec] Tuning options.
Dec 10 2021, 3:54 PM · VyOS 1.4 Sagitta
fernando created T4066: [IPsec] Tuning options.
Dec 10 2021, 3:20 PM · VyOS 1.4 Sagitta

Nov 2 2021

fernando added a comment to T3959: MPLS L3VPN IPv6 address-family over IPv4 MPLS backbone.

Yes, It seems that rfc doesn't work , also I found this issues :
https://github.com/FRRouting/frr/issues/5824

Nov 2 2021, 1:37 PM · VyOS 1.4 Sagitta

Oct 19 2021

fernando updated the task description for T3915: Create op-mode top-level wrapper for ssh/scp command -VyOS 1.4.
Oct 19 2021, 5:45 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
fernando created T3915: Create op-mode top-level wrapper for ssh/scp command -VyOS 1.4.
Oct 19 2021, 5:22 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Oct 15 2021

fernando added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

In the real-world to avoid it they used cluster-id / a session BGP between them , it's the idea of RR :

Oct 15 2021, 3:48 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Oct 8 2021

fernando added a comment to T3655: NAT Problem with VRF.

not yet , we 've been trying with different CT but it's not solve the main problem . I understand that disabling conntrack is not possible because is used for nat.

Oct 8 2021, 5:22 PM · VyOS 1.3 Equuleus (1.3.0), Known issue, VyOS 1.4 Sagitta

Oct 7 2021

fernando added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

and It's the way to set on Vyos:

set protocols bgp <asn> parameters cluster-id <id>
Oct 7 2021, 6:50 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta
fernando added a comment to T3892: BGP Route Reflects to all neighbors when one neighbor has route-reflect-client.

there is a recommendation that if you use RR in the same hierarchy and avoid loop , we need to set 'cluster-id'

Oct 7 2021, 6:35 PM · VyOS 1.3 Equuleus (1.3.0), VyOS 1.4 Sagitta

Oct 6 2021

fernando added a comment to T3655: NAT Problem with VRF.

yes, It is an issues related with the conntrack+ nat/vrf leak , I share something where the problem is clearer :

Oct 6 2021, 5:59 PM · VyOS 1.3 Equuleus (1.3.0), Known issue, VyOS 1.4 Sagitta

Sep 12 2021

fernando created T3825: [DHCP]removes default route .
Sep 12 2021, 4:24 PM · VyOS 1.2 Crux (VyOS 1.2.9)

Aug 19 2021

fernando added a comment to T3759: [L3VPN] VPNv4/VPNv6 add commands .

I have a good news, we already able to setting vpnv4 on Vyos ! thanks for your support , I was testing it and didn't have problems .let me show:

Aug 19 2021, 3:44 PM · VyOS 1.4 Sagitta

Aug 17 2021

fernando added a comment to T3759: [L3VPN] VPNv4/VPNv6 add commands .

@c-po Thanks!!! :)

Aug 17 2021, 8:44 PM · VyOS 1.4 Sagitta
fernando changed Version from - to - VyOS 1.4-rolling-202108081830 on T3759: [L3VPN] VPNv4/VPNv6 add commands .
Aug 17 2021, 1:44 PM · VyOS 1.4 Sagitta
fernando added a project to T3759: [L3VPN] VPNv4/VPNv6 add commands : VyOS 1.4 Sagitta.
Aug 17 2021, 1:43 PM · VyOS 1.4 Sagitta
fernando created T3759: [L3VPN] VPNv4/VPNv6 add commands .
Aug 17 2021, 1:41 PM · VyOS 1.4 Sagitta

Aug 11 2021

fernando added a comment to T3741: [BGP] default no-ipv4-unicast - by default.

Thanks for you comment ! it's good consider that options

Aug 11 2021, 9:46 PM · VyOS 1.4 Sagitta
fernando created T3741: [BGP] default no-ipv4-unicast - by default.
Aug 11 2021, 7:02 PM · VyOS 1.4 Sagitta

Aug 10 2021

fernando added a comment to T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.

i've been testing this new feature in our last release and it works well :

Aug 10 2021, 9:16 PM · VyOS 1.4 Sagitta
fernando added a comment to T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.

Sure ! i'll test this feature and let you know !

Aug 10 2021, 12:31 PM · VyOS 1.4 Sagitta

Jul 28 2021

fernando created T3709: Snmp: Allow enable MIDs/OIDs ipCidrRouteTable.
Jul 28 2021, 7:44 PM · VyOS 1.4 Sagitta

Jul 19 2021

fernando updated subscribers of T3655: NAT Problem with VRF.

thanks for your comment , we are testing first with @rherold , I understand that your case is similar but it's not the same (you have an explicit route-leaking between default vrf and vrf X ). So we also need to test it and try to sure the version solved it .

Jul 19 2021, 3:30 PM · VyOS 1.3 Equuleus (1.3.0), Known issue, VyOS 1.4 Sagitta

Jul 15 2021

fernando triaged T3684: Bridge doesn't show stp states / macs as Low priority.
Jul 15 2021, 9:57 PM · VyOS 1.4 Sagitta

Jul 12 2021

fernando added a comment to T3661: [vrf} route-leaking missing command.

good lab, thanks for your time! I want to leave a comment , I used the syntax that you recommend and it worked well ( VyOS 1.3.0-rc5):

Jul 12 2021, 1:55 PM · VyOS 1.3 Equuleus
fernando added a comment to T3661: [vrf} route-leaking missing command.
Jul 12 2021, 1:34 PM · VyOS 1.3 Equuleus

Jul 7 2021

fernando created T3666: VRF bind-to-all - it doesn't apply the settings ..
Jul 7 2021, 4:24 PM · VyOS 1.3 Equuleus

Jul 5 2021

fernando added a comment to T3661: [vrf} route-leaking missing command.

yes , but when you use 'set protocols static route 10.0.0.0/8 next-hop 1.1.1.1 next-hop-vrf red' it doesn't install the prefix in the default table :

Jul 5 2021, 1:25 PM · VyOS 1.3 Equuleus

Jul 2 2021

fernando created T3661: [vrf} route-leaking missing command.
Jul 2 2021, 10:57 PM · VyOS 1.3 Equuleus

Jun 30 2021

fernando added a comment to T3655: NAT Problem with VRF.

Hi ruben

Jun 30 2021, 10:52 PM · VyOS 1.3 Equuleus (1.3.0), Known issue, VyOS 1.4 Sagitta
fernando added a comment to T3655: NAT Problem with VRF.

Hi ruben,

Jun 30 2021, 12:21 AM · VyOS 1.3 Equuleus (1.3.0), Known issue, VyOS 1.4 Sagitta

Jun 28 2021

fernando added a comment to T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.
In T3657#97243, @c-po wrote:

I wonder why you use ebgp multihop wirh link local addresses?

I used it only for testing (but this command increment ttl in two).

Jun 28 2021, 7:39 PM · VyOS 1.4 Sagitta
fernando added a comment to T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.

I add an extra commentary , it is config on FRR:

Jun 28 2021, 2:47 PM · VyOS 1.4 Sagitta
fernando created T3657: BGP neighbors ipv6 not able to establish with IPv6 link-local addresses.
Jun 28 2021, 1:45 PM · VyOS 1.4 Sagitta

Jun 22 2021

fernando added a comment to T3638: Passwords With Dollar Sign Set Incorrectly.

yes, I am using the following version :

Jun 22 2021, 7:28 PM · VyOS 1.4 Sagitta

Jun 21 2021

fernando added a comment to T3638: Passwords With Dollar Sign Set Incorrectly.

I 've been checking this behavior with a different password , also I used the same password as you . But I couldn't reproduce the issue , both cases i add $ in the word and change the hash, let me show :

Jun 21 2021, 11:20 PM · VyOS 1.4 Sagitta