Page MenuHomeVyOS Platform

zsdc ( )
User

Projects

User Details

User Since
Sep 10 2018, 3:30 PM (149 w, 4 d)

Recent Activity

Tue, Jun 29

zsdc assigned T3655: NAT Problem with VRF to fernando.
Tue, Jun 29, 12:06 PM · VyOS 1.3 Equuleus

Jun 11 2021

zsdc raised the priority of T2173: Add the ability to use VRF on VTI interfaces from Normal to High.

It also works with the current VTI interfaces (sudo ip l set vti1 vrf VRF1).

Jun 11 2021, 7:33 PM · VyOS 1.4 Sagitta

May 28 2021

zsdc added a comment to T3583: Overwrite default config ntp settings when custom ntp servers are provided..

@UnicronNL I would like to put default values in the config.boot file, and overwrite them from Cloud-init if a customer provides custom values.

May 28 2021, 10:10 AM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Apr 28 2021

zsdc changed the status of T3505: Commits do not respect changes in FRR that are not stored in a config from Open to Confirmed.
Apr 28 2021, 2:41 PM · VyOS 1.4 Sagitta
zsdc created T3505: Commits do not respect changes in FRR that are not stored in a config.
Apr 28 2021, 10:28 AM · VyOS 1.4 Sagitta

Apr 22 2021

hard awarded T1083: Implement "--persistent" option to NAT rules a Like token.
Apr 22 2021, 8:58 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Apr 13 2021

zsdc created T3471: DHCP hook is not able to detect all running DHCP instances.
Apr 13 2021, 6:14 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
zsdc changed Difficulty level from unknown to normal on T3430: Cloud-init failing with “Unable to render networking” on VyOS 1.3.
Apr 13 2021, 5:29 PM · VyOS 1.4 Sagitta
zsdc changed the status of T3430: Cloud-init failing with “Unable to render networking” on VyOS 1.3 from Open to Needs testing.

The issue exists because the ifupdown package that is required for the eni renderer was removed by the https://github.com/vyos/vyatta-cfg-system/commit/3dd837f2d3518b7ddcf8e1ab68d8ab9f3eff0968
To not take back it again for all the platforms, the problem was resolved by the https://github.com/vyos/vyos-vm-images/commit/090e5367dc6df9b49c037e0b60f7adfafdf54a53 , so all the images created with the vyos-vm-images should not contain the problem with the renderer.

Apr 13 2021, 5:28 PM · VyOS 1.4 Sagitta
zsdc added a comment to T200: Automated config deployment from a removable drive at installation time.

This task must be obsoleted by the https://phabricator.vyos.net/T2116

Apr 13 2021, 5:21 PM · VyOS 1.4 Sagitta
zsdc changed the status of T694: netboot PXE/gPXE/iPXE support, a subtask of T692: TFTP server functionality, from Open to In progress.
Apr 13 2021, 5:11 PM · VyOS-1.2.0-GA, VyOS 1.2 Crux (VyOS 1.2.0-rc1)
zsdc changed the status of T694: netboot PXE/gPXE/iPXE support from Open to In progress.

Just a small update on this.
PXE boot service for all 1.2 / 1.3 / 1.4 versions is up and running in private testing.

Apr 13 2021, 5:11 PM · VyOS 1.4 Sagitta
zsdc added a parent task for T2523: Upgrade from 1.2.5 to 1.3-rolling-202005261512 results in broken network config on second boot: T2838: Ethernet device names changing, multiple hw-id being added.
Apr 13 2021, 5:04 PM · VyOS 1.3 Equuleus
zsdc added a subtask for T2838: Ethernet device names changing, multiple hw-id being added: T2523: Upgrade from 1.2.5 to 1.3-rolling-202005261512 results in broken network config on second boot.
Apr 13 2021, 5:04 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Mar 23 2021

zsdc changed the status of T3425: Scripts from the /config/scripts/ folder do not run on live system from Open to In progress.
Mar 23 2021, 9:03 PM · VyOS 1.2 Crux, VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
zsdc created T3425: Scripts from the /config/scripts/ folder do not run on live system.
Mar 23 2021, 7:49 PM · VyOS 1.2 Crux, VyOS 1.3 Equuleus, VyOS 1.4 Sagitta

Mar 22 2021

zsdc changed Is it a breaking change? from none to syntax-incomp on T3350: OpenVPN config file generation broken.
Mar 22 2021, 11:41 PM · VyOS 1.3 Equuleus
zsdc changed the status of T3350: OpenVPN config file generation broken from Open to Confirmed.

The root of the problem here is changed place for custom options and the ability to configure options that should be applied differently, depending on the place. In other words, "Additional OpenVPN options" becomes "Additional OpenVPN options. You must use the syntax of openvpn.conf in this text-field", but actually these variants are not fully equal and cannot be converted directly.

Mar 22 2021, 11:24 PM · VyOS 1.3 Equuleus

Mar 15 2021

zsdc changed the status of T3410: Unsafe processing of special characters in CLI autocomplete from Open to Confirmed.
Mar 15 2021, 12:22 PM · VyOS 1.2 Crux, VyOS 1.3 Equuleus, VyOS 1.4 Sagitta
zsdc created T3410: Unsafe processing of special characters in CLI autocomplete.
Mar 15 2021, 12:20 PM · VyOS 1.2 Crux, VyOS 1.3 Equuleus, VyOS 1.4 Sagitta

Mar 11 2021

zsdc changed Difficulty level from unknown to normal on T905: The command show remote-config does not work for remote-platform openvpn.
Mar 11 2021, 9:10 PM · VyOS 1.4 Sagitta
zsdc changed the status of T905: The command show remote-config does not work for remote-platform openvpn from Open to Confirmed.

Still does not work in 1.4-rolling-202102060218

Mar 11 2021, 9:10 PM · VyOS 1.4 Sagitta
zsdc closed T899: Tunnels cannot be moved from one bridge to another as Resolved.

Moving tunnels between bridges works well in:
1.3-beta-202103110443
1.4-rolling-202102060218

Mar 11 2021, 9:05 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to lunatic on T893: Add support for VPP .
Mar 11 2021, 8:51 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to lunatic on T880: What do you think about softether VPN server?.
Mar 11 2021, 8:50 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to lunatic on T861: add secure boot support.
Mar 11 2021, 7:08 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T858: Full UEFI support.
Mar 11 2021, 7:08 PM · VyOS 1.3 Equuleus
zsdc added a comment to T858: Full UEFI support.

Both UEFI and MBR boot modes are supported currently.
As a replacement for keys from Microsoft, it is possible to use our keys and ask users to install CA into a MOK database.

Mar 11 2021, 7:07 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to normal on T842: Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords.
Mar 11 2021, 7:00 PM · VyOS 1.4 Sagitta
zsdc changed Difficulty level from unknown to hard on T840: VRRP V3 backup router sending ND RA.
Mar 11 2021, 6:59 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T839: Add options for DHCPD OMAPI.
Mar 11 2021, 6:51 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to normal on T788: Nightly builds are not signed.
Mar 11 2021, 6:44 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T786: new style xml and conf-mode scripts: posibillity to add tagNode value as parameter to conf-script.
Mar 11 2021, 5:40 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T766: Implement support for the Tinc VPN daemon.
Mar 11 2021, 5:34 PM · VyOS 1.3 Equuleus
zsdc changed the status of T763: Wireless hw_mode=a with ACS , not working from Open to Needs testing.
Mar 11 2021, 5:28 PM · VyOS 1.3 Equuleus
zsdc added a comment to T762: Include rulseset in firewall.

Most likely this should be done (after firewall rewrite) as jump statements.

Mar 11 2021, 5:23 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T762: Include rulseset in firewall.
Mar 11 2021, 5:22 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to lunatic on T760: Allow named interfaces.
Mar 11 2021, 5:15 PM · VyOS 1.3 Equuleus
zsdc closed T745: Document the process to build and test kernel images as Resolved.

Kernel related part is located here: https://github.com/vyos/vyos-build/tree/current/packages/linux-kernel
The rest is here: https://docs.vyos.io/en/latest/contributing/build-vyos.html

Mar 11 2021, 5:14 PM · vyos-build, Restricted Project, vyos-kernel
zsdc changed Difficulty level from unknown to normal on T738: Add local-port and resolver port options for powerdns in CLI configuration tree.
Mar 11 2021, 5:10 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T732: Netflow: generate ASNs from the uacctd BGP thread..
Mar 11 2021, 5:09 PM · VyOS 1.3 Equuleus
zsdc added a comment to T732: Netflow: generate ASNs from the uacctd BGP thread..

The idea stays actual, but unfortunately, it needs now to be rewritten according to the new config implementation.

Mar 11 2021, 5:09 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T711: ClearFog build is broken.
Mar 11 2021, 5:05 PM · VyOS 1.4 Sagitta
zsdc changed Difficulty level from unknown to hard on T696: Rewrite conntrack sync to XML.
Mar 11 2021, 4:59 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T695: Address-group commits with duplicate, but fails when adding rule later..
Mar 11 2021, 4:58 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to normal on T693: net-snmp-cert missing in rolling release.
Mar 11 2021, 4:56 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to normal on T690: openvpn push-route allow different metric.
Mar 11 2021, 2:22 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T688: Move component versions used for config migration purposes into vyos-1x.
Mar 11 2021, 2:21 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T685: Python environment lacks definition of vyos_libexec_dir when calling os.system().
Mar 11 2021, 2:19 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T671: Identify and remove dead code.
Mar 11 2021, 2:15 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T548: BGP IPv6 multipath support.
Mar 11 2021, 2:13 PM · VyOS 1.3 Equuleus
zsdc changed Difficulty level from unknown to hard on T521: Network services may fail if vyatta-router.service startup takes longer than a few seconds.
Mar 11 2021, 2:05 PM · VyOS 1.3 Equuleus

Feb 19 2021

zsdc changed the status of T3338: Some Cloud-Init configurations can prevent login on the router from Open to Confirmed.

I would like to solve this in the next way. I will:

  1. Add verification to our config module to avoid impossible configurations.
  2. Add IPv6 gateway processing (how could I miss this? Cannot imagine...).
Feb 19 2021, 11:29 PM · VyOS 1.4 Sagitta
zsdc added a comment to T3337: Add possibility to serve static DNS zones from the router.

I saw multiple times configs with a firewall section that contains about a thousand lines, so I do not think that DNS records are something size-critical that deserves additional config files.
I believe that keeping config parts outside the config.boot is a bad idea in general that against our main benefit - single config for everything.

Feb 19 2021, 10:45 PM · VyOS 1.4 Sagitta

Feb 18 2021

zsdc created T3341: Wrong behavior of the "reset vpn ipsec-peer XXX tunnel XXX" command.
Feb 18 2021, 7:39 PM · VyOS 1.4 Sagitta
zsdc claimed T3338: Some Cloud-Init configurations can prevent login on the router.

Can you share details about your hypervisor and datasource? Also as the full Cloud-init log (/var/log/cloud-init.log)?
Either datasource generates a wrong config, either the format is not well described in the Cloud-init documentation - there noted that: "gateway: IPv4 address of the default gateway for this subnet". I more believe in the wrong documentation, but would be better to check.
Independently of this all, the situation is not good, because we need to verify values that put into config. So, this will be fixed in one or another way (proper adding or drop), when we figure out details.

Feb 18 2021, 7:35 PM · VyOS 1.4 Sagitta

Feb 15 2021

zsdc created T3314: Udev rules try to rename active interfaces in some environments.
Feb 15 2021, 8:13 PM · VyOS 1.3 Equuleus, VyOS 1.4 Sagitta

Feb 13 2021

zsdc changed the status of T3309: dhclient started by Cloud-init stays alive forever from Open to Needs testing.

https://github.com/vyos/vyos-cloud-init/pull/31

Feb 13 2021, 9:25 PM · VyOS 1.2 Crux
zsdc created T3309: dhclient started by Cloud-init stays alive forever.
Feb 13 2021, 9:10 PM · VyOS 1.2 Crux
zsdc closed T1775: Cloud-init not running userdata runcmd as Resolved.

This was resolved via:
https://github.com/vyos/vyos-cloud-init/commit/1607eec32641ad93ea211e447336b3366c28de06
https://github.com/vyos/vyos-cloud-init/commit/3980057ce140ea6896cd3f7cd4299cfd29cf234a

Feb 13 2021, 8:03 PM · VyOS 1.3 Equuleus
zsdc added a comment to T3096: Add a build option to disallow live CD boot.

I am suggesting switching to https://github.com/vyos/vyos-vm-images for everything, except ISO images. This will solve the problem automatically. It is already able to create images for QEMU, VMware, Hyper-V, GCE, AWS, OpenStack, Oracle, Packet, and more not mentioned in the https://github.com/vyos/vyos-build. The only what I have not tried yet is Azure.

Feb 13 2021, 7:59 PM · VyOS 1.3 Equuleus
zsdc closed T2403: Full support for networking config in Cloud-init as Resolved.

Setting Ethernet interfaces addresses, routes, and name servers are supported in both versions now. Advanced features like bonding, bridges, VLANs could be added later on-demand.

Feb 13 2021, 7:50 PM · VyOS 1.3 Equuleus
zsdc closed T1987: A default route can be deleted by dhclient-script in some cases as Resolved.

This was resolved via dhclient hooks - there is a protection mechanism now, which allows deleting only routes with tag 210 that set by hooks to all DHCP routes.

Feb 13 2021, 7:47 PM · VyOS 1.3 Equuleus
zsdc closed T723: Add support for first boot or installation time saved config modification as Resolved.
Feb 13 2021, 7:41 PM · VyOS 1.3 Equuleus
zsdc closed T3056: Password option does not work in OVA images as Resolved.

Resolved in https://github.com/vyos/vyos-cloud-init/commit/92f43f79574bffb8b5731a09aea6def3ed9551dc

Feb 13 2021, 7:39 PM · VyOS 1.2 Crux
zsdc closed T2309: Wrong host-name value breaks the whole configuration in images with Cloud-init as Resolved.

The config module without this problem is available in the crux, should be released in the 1.2.7 version.

Feb 13 2021, 7:35 PM · VyOS 1.2 Crux
zsdc closed T1389: Add support for NoCloud cloud-init datasource as Resolved.
Feb 13 2021, 7:33 PM · VyOS 1.3 Equuleus
zsdc closed T2703: VMWare OVA won't deploy an ed25519 key, a subtask of T2726: Allow to use all supported SSH key types in Cloud-init, as Resolved.
Feb 13 2021, 7:32 PM · VyOS 1.3 Equuleus
zsdc closed T2703: VMWare OVA won't deploy an ed25519 key as Resolved.

The config module backported to the crux, should be available with 1.2.7 release.

Feb 13 2021, 7:32 PM · VyOS 1.2 Crux
zsdc closed T2726: Allow to use all supported SSH key types in Cloud-init as Resolved.
Feb 13 2021, 7:31 PM · VyOS 1.3 Equuleus
zsdc closed T2867: Cleanup DataSourceOVF.py in the Cloud-init as Resolved.

Resolved in https://github.com/vyos/vyos-cloud-init/commit/12a4c9c500695e160b4543f6c93a87c333f0a8ae

Feb 13 2021, 7:30 PM · VyOS 1.3 Equuleus
zsdc closed T3028: Create a default user when metadata is not available (for Cloud-init builds) as Resolved.
Feb 13 2021, 7:27 PM · VyOS 1.3 Equuleus
zsdc moved T2310: vyos-cloud-init use global config to configure pass and ssh login from In Progress to Finished on the VyOS 1.2 Crux (VyOS 1.2.7) board.
Feb 13 2021, 7:26 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.3 Equuleus
zsdc closed T2310: vyos-cloud-init use global config to configure pass and ssh login as Resolved.

Backported to the crux branch, should be released with 1.2.7.

Feb 13 2021, 7:25 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.3 Equuleus

Feb 10 2021

zsdc created T3299: Webproxy is prohibited from listening on all IP addresses.
Feb 10 2021, 5:38 PM · VyOS 1.4 Sagitta, VyOS 1.3 Equuleus

Jan 29 2021

zsdc changed the status of T3270: Backport VyOS-specific modules for Cloud-init from equuleus from Open to In progress.
Jan 29 2021, 3:22 PM · VyOS 1.2 Crux (VyOS 1.2.9)

Dec 25 2020

zsdc added a comment to T2116: Processing configuration via Cloud-init User-Data.

After the testing with a standalone User-Data handler, this feature was ported to the main cloud-init package in https://github.com/vyos/vyos-cloud-init/pull/27.
Currently, supported only set and delete commands processing. They must be provided as a list in the vyos_config_commands option.

Dec 25 2020, 5:04 PM · VyOS 1.3 Equuleus

Nov 9 2020

zsdc created T3056: Password option does not work in OVA images.
Nov 9 2020, 10:14 PM · VyOS 1.2 Crux

Nov 4 2020

zsdc changed the status of T3039: Resize a root partition and filesystem automatically during deployment in virtual environments from In progress to Needs testing.
Nov 4 2020, 10:19 PM · VyOS 1.3 Equuleus

Nov 2 2020

zsdc changed the status of T3039: Resize a root partition and filesystem automatically during deployment in virtual environments from Open to In progress.
Nov 2 2020, 12:57 PM · VyOS 1.3 Equuleus
zsdc created T3039: Resize a root partition and filesystem automatically during deployment in virtual environments.
Nov 2 2020, 12:56 PM · VyOS 1.3 Equuleus

Oct 28 2020

zsdc changed the status of T3028: Create a default user when metadata is not available (for Cloud-init builds) from In progress to Needs testing.
Oct 28 2020, 10:40 PM · VyOS 1.3 Equuleus
zsdc changed the status of T3028: Create a default user when metadata is not available (for Cloud-init builds) from Open to In progress.
Oct 28 2020, 2:08 PM · VyOS 1.3 Equuleus
zsdc created T3028: Create a default user when metadata is not available (for Cloud-init builds).
Oct 28 2020, 2:08 PM · VyOS 1.3 Equuleus

Sep 24 2020

zsdc created T2922: The `vpn ipsec logging log-modes` miss the IPSec daemons state check.
Sep 24 2020, 4:28 PM · VyOS 1.3 Equuleus

Sep 22 2020

zsdc changed the status of T2916: A state of VTI interface in a configuration does not being processing properly from Open to Confirmed.
Sep 22 2020, 4:55 PM · VyOS 1.3 Equuleus
zsdc created T2916: A state of VTI interface in a configuration does not being processing properly.
Sep 22 2020, 4:55 PM · VyOS 1.3 Equuleus

Sep 17 2020

zsdc closed T2888: Cloud-init images refuse to work with network-based datasource such as Ec2 or OpenStack (but do work with OpenStack's config drive) as Invalid.

The main reason for such issues is missing a good one instructions on how to build a proper one image.

Sep 17 2020, 12:21 PM · VyOS 1.3 Equuleus

Sep 8 2020

zsdc created T2867: Cleanup DataSourceOVF.py in the Cloud-init.
Sep 8 2020, 7:45 PM · VyOS 1.3 Equuleus
zsdc changed the status of T1389: Add support for NoCloud cloud-init datasource from Open to Needs testing.

NoCloud (and actually any datasource which provide network-config) must be supported now in VyOS 1.3. Feel free to test it.

Sep 8 2020, 5:18 PM · VyOS 1.3 Equuleus
zsdc added a comment to T2310: vyos-cloud-init use global config to configure pass and ssh login.

This feature now is in the Cloud-init for 1.3 and must be backported after testing.

Sep 8 2020, 4:40 PM · VyOS 1.2 Crux (VyOS 1.2.7), VyOS 1.3 Equuleus
zsdc added a comment to T2403: Full support for networking config in Cloud-init.

The configuration module for 1.3 is compatible with both network-config versions now. Initial testing was successful, but let's keep this for some time to collect more cases.

Sep 8 2020, 4:38 PM · VyOS 1.3 Equuleus
zsdc changed the status of T2403: Full support for networking config in Cloud-init from In progress to Needs testing.
Sep 8 2020, 4:35 PM · VyOS 1.3 Equuleus
zsdc added a comment to T2703: VMWare OVA won't deploy an ed25519 key.

@kroy how about testing this in 1.3? It must work now.

Sep 8 2020, 4:34 PM · VyOS 1.2 Crux
zsdc changed the status of T2726: Allow to use all supported SSH key types in Cloud-init from In progress to Needs testing.

Handling of all supported by VyOS configuration SSH key types was added to the VyOS 1.3 by this commit https://github.com/vyos/vyos-cloud-init/commit/d4004ac6ea1c7c03a35d9410f7c70ab423c926bb

Sep 8 2020, 4:28 PM · VyOS 1.3 Equuleus

Sep 1 2020

zsdc changed the status of T2851: Invalid passthrough routes installing by strongSwan into table 220 from Open to Confirmed.
Sep 1 2020, 4:41 PM · VyOS 1.3 Equuleus
zsdc created T2851: Invalid passthrough routes installing by strongSwan into table 220.
Sep 1 2020, 4:40 PM · VyOS 1.3 Equuleus

Aug 27 2020

zsdc changed the status of T2834: Config rollback function is broken due lack access to the config.boot from Open to Confirmed.
Aug 27 2020, 6:52 PM · Restricted Project, VyOS 1.3 Equuleus
zsdc created T2834: Config rollback function is broken due lack access to the config.boot.
Aug 27 2020, 6:51 PM · Restricted Project, VyOS 1.3 Equuleus

Aug 17 2020

zsdc changed the status of T2332: Backport node option for a syslog server, a subtask of T2327: Unable to create syslog server entry with different port, from Open to In progress.
Aug 17 2020, 4:38 PM · VyOS 1.2 Crux (VyOS 1.2.6)