Age | Commit message (Collapse) | Author | |
---|---|---|---|
2019-01-30 | T1160: fix (ro|rw)community ACL | Christian Poessinger | |
WHen building up the SNMP v2 community ro/rw access all hosts from a INET version could access even when the community was locked to one INET family. Example #1: set service snmp community bar network 172.16.0.0/12 Allowed access only to IPv4 network 172.16.0.0/12 but it allowed acces from IPv6 ::/0. Example #2: set service snmp community baz network 2001:db8::/64 Limited IPv6 access to 2001:db8::/64 but IPv4 was open to 0.0.0.0/0 (cherry picked from commit cc07c4727bdffb4c220ce28ab9f697b01fe4afb7) | |||
2019-01-26 | Merge branch 'current' into crux | Daniil Baturin | |
2019-01-26 | T1193: add some tests for the config parser. | Daniil Baturin | |
2019-01-26 | T1193: remove the commands pipe since it's no longer needed. | Daniil Baturin | |
2019-01-26 | [webproxy] T1203: do not attempt to migrate proxy-bypass if it doesn't exist. | Daniil Baturin | |
2019-01-25 | Fix: T1178: Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-22 | Revert "Fix: T1178 - Scheduled script breaks ability to modify configuration" | hagbard | |
This reverts commit 632893abf5c7bf935d866462a107ed1eef1747b3. | |||
2019-01-22 | Revert "adjusted unit test" | hagbard | |
This reverts commit 0d80b06ccd33fc2a0001b8641ce45070f0e8726d. | |||
2019-01-21 | adjusted unit test | hagbard | |
2019-01-21 | Fix: T1178 - Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-12 | Correct the command suggestion in the "show vpn ipsec sa" script | Daniil Baturin | |
in case when no active SAs are found. | |||
2019-01-12 | T1175: add support for DMVPN connections to the "show vpn ipsec sa" script. | Daniil Baturin | |
2019-01-12 | T1041: make upstream DNS server optional | Christian Poessinger | |
The name-server option under "service dns-forwarding" was never mandatory so users never needed to specify an upstream server. With the recent switch to PowerDNS recursor in VyOS 1.2.0 we will act as a full DNS recursor when there is no upstream DNS server configured. (cherry picked from commit 3c563b3ae8397da33a03c0429c17b97eb9625c5f) | |||
2019-01-12 | T1041: make upstream DNS server optional | Christian Poessinger | |
The name-server option under "service dns-forwarding" was never mandatory so users never needed to specify an upstream server. With the recent switch to PowerDNS recursor in VyOS 1.2.0 we will act as a full DNS recursor when there is no upstream DNS server configured. | |||
2019-01-08 | Merge pull request #63 from daniel-pro/T1077 | hagbard-01 | |
T1077: Update show_ipsec_sa.py | |||
2019-01-07 | Fix: T1168 - Upgrade: 1,1,7 -> 1.2.0-epa2 (command conversion) | hagbard | |
2019-01-06 | Fix: T1162 - WireGuard: Unable to modify tunnels - KeyError: 'state' | hagbard | |
2019-01-06 | Merge branch 'current' into crux | Christian Poessinger | |
* current: T1129: replace quotes when dealing with 'subnet/global-parameters' T1129: fix handling of raw DHCP 'subnet-parameters' T1159: correct handling of SAs without PFS in "show vpn ipsec sa". T1147: Fix SNMP config file generation on newly installed systems Initial implementation of declarative config dict retrieval library. T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | |||
2019-01-06 | T1129: replace quotes when dealing with 'subnet/global-parameters' | Christian Poessinger | |
2019-01-06 | T1129: fix handling of raw DHCP 'subnet-parameters' | Christian Poessinger | |
subnet-parameters were not added to the resulting configuration. | |||
2019-01-06 | Merge branch 'crux' of https://github.com/vyos/vyos-1x into crux | Daniil Baturin | |
2019-01-06 | T1159: correct handling of SAs without PFS in "show vpn ipsec sa". | Daniil Baturin | |
2019-01-06 | T1159: correct handling of SAs without PFS in "show vpn ipsec sa". | Daniil Baturin | |
2019-01-03 | T1147: Fix SNMP config file generation on newly installed systems | Christian Poessinger | |
(cherry picked from commit 59471ed0c249771fa6c46cf0b020222b7caeee42) | |||
2019-01-03 | T1147: Fix SNMP config file generation on newly installed systems | Christian Poessinger | |
2019-01-02 | Initial implementation of declarative config dict retrieval library. | Daniil Baturin | |
2019-01-02 | Merge pull request #64 from daniel-pro/T1119 | Daniil Baturin | |
T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | |||
2019-01-01 | T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | Daniel | |
Removed duplicates from "connections" list. | |||
2018-12-31 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-31 | T1128: restart SNMP on hostname change. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute metric and route-map options too. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute options (patch by Merijn). | Daniil Baturin | |
2018-12-31 | T1108: warn the user and exit if there are no established IPsec SAs. | Daniil Baturin | |
2018-12-18 | Update show_ipsec_sa.py | Daniel | |
2018-12-17 | Merge pull request #62 from daniel-pro/T1104 | Daniil Baturin | |
T1104 : "show vpn ipsec sa" crashes | |||
2018-12-16 | Update show_ipsec_sa.py | daniel-pro | |
2018-12-16 | Merge branch 'crux' of https://github.com/vyos/vyos-1x into crux | Daniil Baturin | |
2018-12-16 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-16 | Revert "T1087: Firewall on Wireguard Interface implementation" | Daniil Baturin | |
This reverts commit 51f61991092a163f680e4ec8f122e73f4074ddf9. It's not how it's done, those templates are generated by a script in vyatta-cfg-firewall. If we are planning a firewall overhaul in 1.3.x, there's no reason to transplant the old approach to new code. | |||
2018-12-11 | T1087: Firewall on Wireguard Interface implementation | hagbard | |
2018-12-09 | T1091: extend DNS forwarding/DNSSEC completion help text | Christian Poessinger | |
(cherry picked from commit f968d0846abc416c0eac51aeff55551f9df2dea0) | |||
2018-12-09 | T1091: extend DNS forwarding/DNSSEC completion help text | Christian Poessinger | |
2018-12-09 | T1091: add DNS forwarding completion helpers for DNSSEC | Christian Poessinger | |
(cherry picked from commit f9ad571f6d2a6238fe841f8eb1acf7daced1c7d5) | |||
2018-12-09 | T1091: add DNS forwarding completion helpers for DNSSEC | Christian Poessinger | |
2018-12-07 | T1060: build fix for wrong config-version number | Christian Poessinger | |
Commit 9d35610c173 ("T1060: add missing version file for webproxy") assumed that there is a webproxy config version of 0 but we already have 1. This lead to duplicate files detected by apt. | |||
2018-12-07 | Merge pull request #61 from dsteinkopf/current | Christian Poessinger | |
T1060: Add webproxy migration script (proxy-bypass -> whitelist). | |||
2018-12-03 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-03 | T956: display SA traffic counters in human-redable units. | Daniil Baturin | |
2018-12-03 | T956: correct IKE proposal string parsing for SAs with non-zero counters. | Daniil Baturin | |
2018-12-02 | T1060: Add webproxy migration script (proxy-bypass -> whitelist). | Dirk Steinkopf | |