<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyos-1x.git/src/conf_mode, branch current</title>
<subtitle>VyOS command definitions, scripts, and utilities (mirror of https://github.com/marekm72/vyos-1x.git)
</subtitle>
<id>https://git.amelek.net/marekm72/vyos-1x.git/atom?h=current</id>
<link rel='self' href='https://git.amelek.net/marekm72/vyos-1x.git/atom?h=current'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/'/>
<updated>2024-10-17T06:35:47+00:00</updated>
<entry>
<title>T973: add basic frr_exporter implementation (#4150)</title>
<updated>2024-10-17T06:35:47+00:00</updated>
<author>
<name>Robert Göhler</name>
<email>github@ghlr.de</email>
</author>
<published>2024-10-17T06:35:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=3f933f1642debfca5c9e3873790a5742ef242c75'/>
<id>urn:sha1:3f933f1642debfca5c9e3873790a5742ef242c75</id>
<content type='text'>
</content>
</entry>
<entry>
<title>T6712: Add nonproduction banner (#4149)</title>
<updated>2024-10-11T05:23:46+00:00</updated>
<author>
<name>mergify[bot]</name>
<email>37929162+mergify[bot]@users.noreply.github.com</email>
</author>
<published>2024-10-11T05:23:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=e5d2ac54150922640c08bacab124e96c7bbd1f7f'/>
<id>urn:sha1:e5d2ac54150922640c08bacab124e96c7bbd1f7f</id>
<content type='text'>
(cherry picked from commit 3abe7c72c95c3d9b825db08b092c555786e9fbcf)

Co-authored-by: Viacheslav Hletenko &lt;v.gletenko@vyos.io&gt;</content>
</entry>
<entry>
<title>haproxy: T6745: Rename `reverse-proxy` to `haproxy`</title>
<updated>2024-10-09T13:55:15+00:00</updated>
<author>
<name>sarthurdev</name>
<email>965089+sarthurdev@users.noreply.github.com</email>
</author>
<published>2024-10-09T12:55:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=90a4827284acd3cb072cdfeef323c522802c6449'/>
<id>urn:sha1:90a4827284acd3cb072cdfeef323c522802c6449</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Merge pull request #4128 from jestabro/commit-confirm-soft-rollback</title>
<updated>2024-10-08T21:57:25+00:00</updated>
<author>
<name>John Estabrook</name>
<email>jestabro@vyos.io</email>
</author>
<published>2024-10-08T21:57:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=3bc900722892dba525b7cd6bada4e6327b01fffe'/>
<id>urn:sha1:3bc900722892dba525b7cd6bada4e6327b01fffe</id>
<content type='text'>
config-mgmt: T5976: add option for commit-confirm to use 'soft' rollback</content>
</entry>
<entry>
<title>config-mgmt: T5976: move commit-confirm revert action to subnode</title>
<updated>2024-10-07T17:15:44+00:00</updated>
<author>
<name>John Estabrook</name>
<email>jestabro@vyos.io</email>
</author>
<published>2024-10-07T17:15:44+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=64196ec5fd90a8caedef88edb9068a32e4e6abfa'/>
<id>urn:sha1:64196ec5fd90a8caedef88edb9068a32e4e6abfa</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Merge pull request #3938 from talmakion/feature/T6430-local-pbr</title>
<updated>2024-10-07T15:22:17+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-10-07T15:22:17+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=e8c65fafc1ea5c8682b717302a876fcff2067f3d'/>
<id>urn:sha1:e8c65fafc1ea5c8682b717302a876fcff2067f3d</id>
<content type='text'>
pbr: T6430: Local IP rules targeting VRFs by name as well as route table IDs</content>
</entry>
<entry>
<title>pbr: T6430: Local IP rules routing into VRFs by name</title>
<updated>2024-10-07T15:15:58+00:00</updated>
<author>
<name>Andrew Topp</name>
<email>andrewt@telekinetica.net</email>
</author>
<published>2024-09-03T18:09:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=051cb6fbe2a9e4b8008bf21cec33eb2b8385305d'/>
<id>urn:sha1:051cb6fbe2a9e4b8008bf21cec33eb2b8385305d</id>
<content type='text'>
* This is the `policy local-route*` part of T6430, manipulating ip rules,
  another PR covers firewall-backed `policy route*` for similar functionality
* Local PBR (policy local-route*) can only target table IDs up to 200 and
  the previous PR to extend the range was rejected
* PBR with this PR can now also target VRFs directly by name, working around
  targeting problems for VRF table IDs outside the overlapping 100-200 range
* Validation ensures rules can't target both a table ID and a VRF name
  (internally they are handled the same)
* Relocated TestPolicyRoute.verify_rules() into VyOSUnitTestSHIM.TestCase,
  extended to allow lookups in other address families (IPv6 in the new tests).
  verify_rules() is used by original pbr and new lpbr smoketests in this PR.
</content>
</entry>
<entry>
<title>Merge pull request #4118 from c-po/acme-ca-cert</title>
<updated>2024-10-07T15:07:52+00:00</updated>
<author>
<name>Daniil Baturin</name>
<email>daniil@vyos.io</email>
</author>
<published>2024-10-07T15:07:52+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=09a4b463bf1c4b87832039f2c1d868a6c1d9c4f9'/>
<id>urn:sha1:09a4b463bf1c4b87832039f2c1d868a6c1d9c4f9</id>
<content type='text'>
pki: T6481: auto import ACME certificate chain into CLI</content>
</entry>
<entry>
<title>pki: T6481: auto import ACME certificate chain into CLI</title>
<updated>2024-10-06T18:13:56+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-10-06T18:13:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=875764b07f937fc599e2e62c667e7b811ddc2ed3'/>
<id>urn:sha1:875764b07f937fc599e2e62c667e7b811ddc2ed3</id>
<content type='text'>
When using an ACME based certificate with VyOS we provide the necessary PEM
files opaque in the background when using the internal tools. This however will
not properly work with the CA chain portion, as the system is based on the
"pki certificate &lt;name&gt; acme" CLI node of a certificate but CA chains reside
under "pki ca".

This adds support for importing the PEM data of a CA chain issued via ACME into
the "pki ca AUTOCHAIN_&lt;name&gt; certificate" subsystem so it can be queried by
other daemons. Importing the chain only happens, when the chain was not already
added manually by the user.

ACME certificate chains that are automatically added to the CLI are all prefixed
using AUTOCHAIN_certname so they can be consumed by any daemon. This also adds
a safeguard when the intermediate CA changes, the referenced name on the CLI
stays consitent for any pending daemon updates.
</content>
</entry>
<entry>
<title>static: T4283: fix missing f'ormat string</title>
<updated>2024-10-05T18:34:43+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-10-05T18:34:43+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/marekm72/vyos-1x.git/commit/?id=490ee3ec5ba7ea28002890841eab8e46f775a129'/>
<id>urn:sha1:490ee3ec5ba7ea28002890841eab8e46f775a129</id>
<content type='text'>
This fixes the error message:
  Can not use both blackhole and reject for prefix "{prefix}"!

Added in commit bb78f3a9ad28 ("static: T4283: support "reject" routes - emit an
ICMP unreachable when matched")
</content>
</entry>
</feed>
