Age | Commit message (Collapse) | Author | |
---|---|---|---|
2019-02-16 | Tests: fix hostname tests | Christian Poessinger | |
Commit 3d3eccd687 ("T1174: migrate local hostname/DNS handling to vyos-1x") changed a lot of the internal data handling for setting the systems host and domain name information. | |||
2019-02-14 | T1174: migrate local hostname/DNS handling to vyos-1x | Christian Poessinger | |
2019-02-14 | [vyos.configtree] T1248: add a function for node copying | Daniil Baturin | |
Also improve sanity checks in the rename function and add unit tests for copy and rename. | |||
2019-02-10 | T1213: ddclient: proper enquote web-skip parameter | Christian Poessinger | |
2019-02-08 | T1234: add missing option when processing dhcp-relay packets | Christian Poessinger | |
2019-02-05 | T1231: Remove cache file of 'service dns dynamic' | Christian Poessinger | |
When deleting or changing "service dns dynamic" the cache file of ddclient is not removed, leading to abandoned host names which might be already gone. | |||
2019-02-04 | enhancement: T1225 - wireguard implement 'set int wireguard wg0 peer name ↵ | hagbard | |
disable' to disable single peers | |||
2019-02-01 | [broadcast-relay] T1224: fix missing newline between comment and options. | Daniil Baturin | |
2019-01-30 | Fix: T1217 - cant delete wireguard wg0 interface | hagbard | |
2019-01-30 | T1213: fix ddclient when no server is given | Christian Poessinger | |
2019-01-30 | Add build time tests for NTP | kamijin_fanta | |
2019-01-30 | T1160: fix (ro|rw)community ACL | Christian Poessinger | |
WHen building up the SNMP v2 community ro/rw access all hosts from a INET version could access even when the community was locked to one INET family. Example #1: set service snmp community bar network 172.16.0.0/12 Allowed access only to IPv4 network 172.16.0.0/12 but it allowed acces from IPv6 ::/0. Example #2: set service snmp community baz network 2001:db8::/64 Limited IPv6 access to 2001:db8::/64 but IPv4 was open to 0.0.0.0/0 | |||
2019-01-26 | T1193: add some tests for the config parser. | Daniil Baturin | |
2019-01-26 | T1193: remove the commands pipe since it's no longer needed. | Daniil Baturin | |
2019-01-26 | [webproxy] T1203: do not attempt to migrate proxy-bypass if it doesn't exist. | Daniil Baturin | |
2019-01-25 | Fix: T1178: Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-22 | Revert "Fix: T1178 - Scheduled script breaks ability to modify configuration" | hagbard | |
This reverts commit 632893abf5c7bf935d866462a107ed1eef1747b3. | |||
2019-01-22 | Revert "adjusted unit test" | hagbard | |
This reverts commit 0d80b06ccd33fc2a0001b8641ce45070f0e8726d. | |||
2019-01-21 | adjusted unit test | hagbard | |
2019-01-21 | Fix: T1178 - Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-12 | Correct the command suggestion in the "show vpn ipsec sa" script | Daniil Baturin | |
in case when no active SAs are found. | |||
2019-01-12 | T1175: add support for DMVPN connections to the "show vpn ipsec sa" script. | Daniil Baturin | |
2019-01-12 | T1041: make upstream DNS server optional | Christian Poessinger | |
The name-server option under "service dns-forwarding" was never mandatory so users never needed to specify an upstream server. With the recent switch to PowerDNS recursor in VyOS 1.2.0 we will act as a full DNS recursor when there is no upstream DNS server configured. | |||
2019-01-08 | Merge pull request #63 from daniel-pro/T1077 | hagbard-01 | |
T1077: Update show_ipsec_sa.py | |||
2019-01-07 | Fix: T1168 - Upgrade: 1,1,7 -> 1.2.0-epa2 (command conversion) | hagbard | |
2019-01-06 | Fix: T1162 - WireGuard: Unable to modify tunnels - KeyError: 'state' | hagbard | |
2019-01-06 | T1129: replace quotes when dealing with 'subnet/global-parameters' | Christian Poessinger | |
2019-01-06 | T1129: fix handling of raw DHCP 'subnet-parameters' | Christian Poessinger | |
subnet-parameters were not added to the resulting configuration. | |||
2019-01-06 | T1159: correct handling of SAs without PFS in "show vpn ipsec sa". | Daniil Baturin | |
2019-01-03 | T1147: Fix SNMP config file generation on newly installed systems | Christian Poessinger | |
2019-01-01 | T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | Daniel | |
Removed duplicates from "connections" list. | |||
2018-12-31 | T1128: restart SNMP on hostname change. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute metric and route-map options too. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute options (patch by Merijn). | Daniil Baturin | |
2018-12-31 | T1108: warn the user and exit if there are no established IPsec SAs. | Daniil Baturin | |
2018-12-18 | Update show_ipsec_sa.py | Daniel | |
2018-12-16 | Update show_ipsec_sa.py | daniel-pro | |
2018-12-16 | Revert "T1087: Firewall on Wireguard Interface implementation" | Daniil Baturin | |
This reverts commit 51f61991092a163f680e4ec8f122e73f4074ddf9. It's not how it's done, those templates are generated by a script in vyatta-cfg-firewall. If we are planning a firewall overhaul in 1.3.x, there's no reason to transplant the old approach to new code. | |||
2018-12-11 | T1087: Firewall on Wireguard Interface implementation | hagbard | |
2018-12-07 | T1060: build fix for wrong config-version number | Christian Poessinger | |
Commit 9d35610c173 ("T1060: add missing version file for webproxy") assumed that there is a webproxy config version of 0 but we already have 1. This lead to duplicate files detected by apt. | |||
2018-12-07 | Merge pull request #61 from dsteinkopf/current | Christian Poessinger | |
T1060: Add webproxy migration script (proxy-bypass -> whitelist). | |||
2018-12-03 | T956: display SA traffic counters in human-redable units. | Daniil Baturin | |
2018-12-03 | T956: correct IKE proposal string parsing for SAs with non-zero counters. | Daniil Baturin | |
2018-12-02 | T1060: Add webproxy migration script (proxy-bypass -> whitelist). | Dirk Steinkopf | |
2018-11-30 | Fixes: T1061: Wireguard: Missing option to administrativly shutdown interface | hagbard | |
2018-11-29 | T1001: escape backslashes in the input in the commands pipe as well. | Daniil Baturin | |
2018-11-29 | T1001: Bugfix: Handle backslashes in values with "show configuration commands" | arnehaak | |
This script is usually called with the output of "cli-shell-api showCfg", which does not escape backslashes. "ConfigTree()" expects escaped backslashes when parsing a config string (and also prints them itself). Therefore this script would fail. Manually escape backslashes here to handle backslashes in any configuration strings properly. The alternative would be to modify the output of "cli-shell-api showCfg", but that may be break other things who rely on that specific output. This fixes https://phabricator.vyos.net/T1001 | |||
2018-11-22 | T835: accel-ppp: pppoe implementation | hagbard | |
- verify if an auth mode is set and if its local checking that a user and password for chap-secrets exists. | |||
2018-11-21 | T835: syslog debug message removed (to verbose) | hagbard | |
2018-11-19 | T835: migration script for radius' secret vs. key, rolled back the | hagbard | |
change to 'mode local|radius' |