Age | Commit message (Collapse) | Author | |
---|---|---|---|
2018-11-08 | cleanup: move files from vyos-build repo to vyos-1x where they are required | Christian Poessinger | |
2018-11-08 | T974: bugfix dns forwarder not listening on IPv6 addresses | Christian Poessinger | |
By default PowerDNS only allows 10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16 for incoming DNS queries - we changed this to 0.0.0.0/0 to be reachable by everyone. This only covered the IPv4 address space and any IPv6 related query was not handled by the server. | |||
2018-11-07 | Merge branch 'igmproxy' into current | Christian Poessinger | |
* igmproxy: T959: XML/Python rewrite of "protocol igmp-proxy" and op-mode commands show-raid.xml: fixup indention Add missing VyOS copyright notices | |||
2018-11-05 | T965: Fix Wireguard configuration inconsistencies | hagbard | |
- pubkey updates now work - removing peers or interfaces work, was related tothe fact that tag nodes are called multiple times | |||
2018-11-05 | T966: Traceback when deleting wireguard interface | hagbard | |
2018-11-05 | T288: add a script for normalizing IP(v6) addresses so that they can be ↵ | Daniil Baturin | |
safely passed to iproute2. | |||
2018-11-05 | Merge branch 'current' of https://github.com/vyos/vyos-1x into current | Daniil Baturin | |
2018-11-05 | T950: make sure agentx is enabled in FRR only when SNMP is setup, and ↵ | Daniil Baturin | |
supress duplicate error messages. | |||
2018-11-04 | T959: XML/Python rewrite of "protocol igmp-proxy" and op-mode commands | Christian Poessinger | |
Examples: ========= CFG commands: vyos@vyos# set protocols igmp-proxy disable-quickleave vyos@vyos# set protocols igmp-proxy interface eth0 alt-subnet '172.16.35.0/24' vyos@vyos# set protocols igmp-proxy interface eth0 alt-subnet '172.31.0.0/24' vyos@vyos# set protocols igmp-proxy interface eth0 role 'upstream' vyos@vyos# set protocols igmp-proxy interface eth1 role 'downstream' vyos@vyos# show protocols igmp-proxy { disable-quickleave interface eth0 { alt-subnet 172.16.35.0/24 alt-subnet 172.31.0.0/24 role upstream } interface eth1 { role downstream } } OP mode commands: ----------------- vyos@vyos:~$ show ip multicast interface Interface BytesIn PktsIn BytesOut PktsOut Local eth0 0.0b 0 0.0b 0 xxx.xxx.xxx.65 eth1 0.0b 0 0.0b 0 xxx.xxx.xx.201 vyos@vyos:~$ show ip multicast mfc Group Origin Pkts Bytes Wrong In Out xxx.x.xx.1 xxx.xx.0.1 10 9.81KB 0 eth0 eth1 xxx.x.xx.2 xxx.xx.0.1 -- | |||
2018-11-04 | Add missing VyOS copyright notices | Christian Poessinger | |
2018-11-02 | T949: config issue when creating multiple wg interfaces at the same time. | hagbard | |
2018-11-02 | T939: Remove possibility to specify DHCP relay port | Christian Poessinger | |
2018-10-29 | T240: system integrity check | hagbard | |
2018-10-28 | T923: enable AgentX in FRR after SNMP is configured. | Daniil Baturin | |
2018-10-25 | T938: do not bind DHCP relay to default port if unspecified | Christian Poessinger | |
Binding isc-dhcp-relay to its default port (67 e.g. for IPv4) will result in an error when starting up the service: bad: ---- $ dhcrelay -q -4 -p 67 -c 10 -A 576 -m discard -i eth0.21 -i eth0 10.253.253.1 binding to user-specified port 67 good: ----- $ dhcrelay -q -4 -c 10 -A 576 -m discard -i eth0.21 -i eth0 10.253.253.1 Setting removed from the IPv6 implementation, too! | |||
2018-10-25 | T933: vrrp split brain while using unicast mode and virtual mac address | hagbard | |
- adding vmac_xmit_base to keepalived.conf when use_vmac is being used otherwise both nodes will become master | |||
2018-10-21 | T634: remove 'service ssh allow-root' | Christian Poessinger | |
2018-10-20 | SNMP: update comments in Python generator | Christian Poessinger | |
2018-10-20 | T923: support SNMP integration with FRR routing daemon | Christian Poessinger | |
2018-10-19 | Merge branch 'dhcp-relay' into current | Christian Poessinger | |
* dhcp-relay: dhcpv6-relay: added missing verify() step for listen and upstream interfaces T913: DHCP relay service XML/Python rewrite for IPv6 T913: DHCP relay service XML/Python rewrite for IPv4 vyos-1x now depends on isc-dhcp-relay dns-forwarding: fix XML interface indenting | |||
2018-10-19 | dhcpv6-relay: added missing verify() step for listen and upstream interfaces | Christian Poessinger | |
2018-10-19 | Add Client keepalive option for use with cloud-init | UnicronNL | |
Add option to specify multiple listening ports Clean up template generation layout | |||
2018-10-17 | T913: DHCP relay service XML/Python rewrite for IPv6 | Christian Poessinger | |
2018-10-17 | T913: DHCP relay service XML/Python rewrite for IPv4 | Christian Poessinger | |
2018-10-14 | T896: Fix dynamic DNS for CUSTOM provider | Christian Poessinger | |
JINJA2 templated missed the 'server=' statement when generating custom dynamic DNS entries in the resulting ddclient.conf. | |||
2018-10-14 | T898: add a script for checking if a bridge has configured members. | Daniil Baturin | |
2018-10-13 | Update show_dhcp.py | Ewald van Geffen | |
I don't really do python, please check/test. | |||
2018-10-10 | Merge pull request #52 from hagbard-01/current | hagbard-01 | |
T870: Commit-confirm restarts the server even after commit | |||
2018-10-10 | T870: Commit-confirm restarts the server even after commit | hagbard | |
- adding removal of the at job and /var/run/confirm.job - indent fixed | |||
2018-10-09 | T883: handle keyboard interrupts in the wireguard keypair command. | Daniil Baturin | |
2018-10-02 | Merge branch 'current' of github.com:vyos/vyos-1x into current | Daniil Baturin | |
2018-10-02 | T866: add a post-upgrade script for setting correct /config ownership in ↵ | Daniil Baturin | |
case GIDs change. | |||
2018-09-29 | T855: fix SNMP python verify() to allow non group assignment | Christian Poessinger | |
VyOS 1.1.8 support SNMPv3 without a group beeing assigned to a user. This was yet not supported in VyOS 1.2.0. Use for testing: ================ set service snmp v3 user testsnmpv3 auth plain 'authkey12345' set service snmp v3 user testsnmpv3 auth type sha set service snmp v3 user testsnmpv3 mode ro set service snmp v3 user testsnmpv3 privacy plain 'privkey12345' set service snmp v3 user testsnmpv3 privacy type aes | |||
2018-09-21 | Merge pull request #47 from Watcher7/current | Christian Poessinger | |
Bring VRRP configuration in line with keepalived config documentation. | |||
2018-09-19 | T849: fix quagga 2-to-3 migration script permissions. | Daniil Baturin | |
2018-09-19 | T849: remove stray debug prints. | Daniil Baturin | |
2018-09-18 | T849: add a migration script for the new IPv4 BGP syntax. | Daniil Baturin | |
2018-09-16 | T850: SNMP: improve non existing listen-address assignments | Christian Poessinger | |
2018-09-16 | snmp: fix python script indention | Christian Poessinger | |
2018-09-16 | T850: tftp server: improve non existing listen-address assignments | Christian Poessinger | |
2018-09-10 | snmp.py: proper creation of non network bound SNMP communities | Christian Poessinger | |
2018-09-10 | snmp.py: improve JINJA2 template robustness | Christian Poessinger | |
2018-09-08 | T836: syslog messages split accross multiple files | hagbard | |
- logs now only to /var/log/messages per default - enforces the global template from /usr/share/vyos/rsyslog/rsyslog.conf | |||
2018-09-05 | T831: ntp.py: fix restrict configuration keyword to allow clients to sync up | Christian Poessinger | |
2018-09-04 | T823: extend the new DHCP op mode. | Daniil Baturin | |
2018-09-04 | dhcp_server.py: bugfix pool assignment | Christian Poessinger | |
Commit 91c3b8bdd9 ("dhcp_server.py: cleanup") did not only cleanup parts of the code but in addition added support for DHCP failover. That support could lead to an empty pool {} statement if the subnet declaration only had static address assignments but no range at all. ---<snip>--- dhcpd: /etc/dhcp/dhcpd.conf line 70: Pool declaration with no address range. dhcpd: } dhcpd: ^ dhcpd: Pool declarations must always contain at least dhcpd: one range statement. ---</snip>--- | |||
2018-09-02 | Merge remote-tracking branch 'upstream/current' into T793 | hagbard | |
2018-09-02 | T793: wireguard preshared-key implementation | hagbard | |
- the psk is only read from a file, due to sudo it's redirection doesn't work file is created in /tmp (it's tmpfs), wg comand executed and the psk file is deleted again, to avoid leakage of the psk. It's create umaks(077) and root:root | |||
2018-09-02 | T825: add system 8-to-9 migration script | Christian Poessinger | |
2018-09-02 | mdns_repeater: cleanup python implementation | Christian Poessinger | |