Age | Commit message (Collapse) | Author | |
---|---|---|---|
2022-07-28 | nat: T4543: Fix and rewrite show nat source statistics | Viacheslav Hletenko | |
Rewrite "show nat source statistics" Use new format 'vyos.opmode module' Ability to get raw and formatted output | |||
2022-07-28 | vxlan: T4570: Verify MTU for remote address if source not defined | Viacheslav Hletenko | |
In some cases `source_address` can be not defined in the conf So we should to check list of `remote` vxlanX addresses If remote address is IPv6 - add overhead +20 bytes to default overhead 50. I.e. +70 bytes for IPv6 | |||
2022-07-26 | nat: T4531: Fix op-mode NAT rules add default values | Viacheslav Hletenko | |
Add default values for the function _get_formatted_output_rules For variables: sport, dport, proto, saddr, daddr As in parser and loop those values or some of them may not occur | |||
2022-07-26 | bridge: T4569: Extend bridge.py for op-mode | Viacheslav Hletenko | |
Extend bridge.py op-mode script, allow next commands to use own op-mode functions Add: show bridge vlan show bridge brX fdb show bridge brX mdb | |||
2022-07-26 | T4571: add sflow vrf to sflow agent address IP validation | David | |
2022-07-26 | Merge pull request #1436 from aapostoliuk/T4546-sagitta | Christian Poessinger | |
nhrp: T4546: Fixed gateway in route add command | |||
2022-07-26 | Merge pull request #1435 from sever-sever/T4569 | Christian Poessinger | |
bridge: T4569: Rewrite show bridge script of vyos.opmode format | |||
2022-07-26 | nhrp: T4546: Fixed gateway in route add command | aapostoliuk | |
Fixed incorrect key to get gateway for route add command | |||
2022-07-26 | bridge: T4569: Rewrite show bridge script of vyos.opmode format | Viacheslav Hletenko | |
2022-07-25 | graphql: T4554: add resolver support for op-mode scripts | John Estabrook | |
2022-07-25 | bgp: T4560: neighbor/peer-group local-as option is only allowed for eBGP | Christian Poessinger | |
2022-07-25 | fastnetmon: T2659: PID file location is static and can't be changed | Christian Poessinger | |
2022-07-25 | Merge pull request #1433 from sever-sever/T4568 | Christian Poessinger | |
ipsec: T4568: Fix debug IPsec peer op-mode | |||
2022-07-25 | fastnetmon: T4556: Allow configure white_list_path and populate with ↵ | Adrian Almenar | |
hosts/networks that should be ignored. | |||
2022-07-25 | Merge pull request #1426 from sever-sever/T4545-nat | Christian Poessinger | |
nat: T4545: Rewrite show nat source rules script | |||
2022-07-25 | Merge pull request #1428 from sever-sever/T4552 | Christian Poessinger | |
IPsec: T4552: Fix reset vpn ipsec peer | |||
2022-07-25 | Merge pull request #1430 from sever-sever/T4562 | Christian Poessinger | |
vrf: T4562: Rewrite show vrf to vyos.opmode format | |||
2022-07-25 | graphql: T4413: use util function for system_status.py | John Estabrook | |
2022-07-25 | graphql: T4544: add script to generate GraphQL schema for op-mode | John Estabrook | |
2022-07-25 | ipsec: T4568: Fix debug IPsec peer | Viacheslav Hletenko | |
Debug Connections for a peer wasn't checked because of typo in var `conns` Replace ':' to '-' for IPv6 peers | |||
2022-07-25 | IPsec: T4552: Fix reset vpn ipsec peer | Viacheslav Hletenko | |
When we use IPv6 peer we need to make a replacement ":" => "-" for correct resetting as it doesn't match get_peer_connections() regex Use new format "vyos.opmode" | |||
2022-07-24 | graphql: T4413: update 'SystemStatus' query for standardized op-mode | John Estabrook | |
Update for T2719: Standardized op mode script structure | |||
2022-07-24 | graphql: T4413: add support for a system status query | John Estabrook | |
2022-07-24 | graphql: T3993: disable introspection unless set in CLI | John Estabrook | |
2022-07-24 | graphql: T3993: add interface-definition for gql | John Estabrook | |
2022-07-24 | graphql: T3993: use existing key auth from REST framework | John Estabrook | |
2022-07-23 | vrf: T4562: Rewrite show vrf to vyos.opmode format | Viacheslav Hletenko | |
2022-07-22 | macsec: T2023: fixup systemd unit description | Christian Poessinger | |
2022-07-22 | Merge pull request #1418 from zdc/T4546-sagitta | Christian Poessinger | |
nhrp: T4546: Fixed route add command if MTU presented | |||
2022-07-22 | nat: T4545: Rewrite show nat source rules script | Viacheslav Hletenko | |
Rewrite 'show nat source rules' due to a large number of bugs in NAT rules statistics. Use new format 'vyos.opmode module' Ability to get raw_data and formatted_output for the future op-mode rewriting funcitonal Ability to get raw and formatted data | |||
2022-07-22 | conntrack: T4145: Modify conntrack to format command runner | Viacheslav Hletenko | |
Change op-mode "show conntrack table ipvX" script to work with vyos.opmode module Change name "show_conntrack.py" => "conntrack.py" Ability to get IPv6 conntrack information Ability to get raw and formatted data | |||
2022-07-21 | fastnetmon: T2659: move configuration files to /run | Christian Poessinger | |
2022-07-21 | fastnetmon: T4555: add IPv6 support | Christian Poessinger | |
2022-07-21 | fastnetmon: T4553: add processing of XML defaultValue definitions | Christian Poessinger | |
2022-07-20 | Merge pull request #1351 from dmbaturin/genop | John Estabrook | |
T2719: prototype of an op mode command runner based on type hints and introspection | |||
2022-07-20 | T2719: fix unused imports | Daniil Baturin | |
2022-07-19 | nhrp: T4546: Fixed route add command if MTU presented | zsdc | |
In case if `NHRP_DESTMTU` environment variable is presented, the script uses an intermediate command to get the current route before adding a new one. Then received data is used in the `route add` command generation. This commit fixes this process, so setting MTU becomes possible. | |||
2022-07-19 | T2719: patch for general support for boolean options | John Estabrook | |
Signed-off-by: Daniil Baturin <daniil@vyos.io> | |||
2022-07-18 | macsec: T4537: support online ciper and source-interface re-configuration | Christian Poessinger | |
2022-07-18 | bgp: T4490: check peer-group for AFI/SAFI before issuing warning | Christian Poessinger | |
Commit 6cffe2aa82 ("bgp: T4490: Add informational message for peer withour AFI") only checked if an address-family is configured under the neighbor statement. This is not enough as the AFI can also be specified via a peer-group. Add a new verify_afi() helper that checks both the neighbor and the assigned peer-group. | |||
2022-07-18 | Merge pull request #1407 from sever-sever/T4523 | Christian Poessinger | |
conntrack: T4523: Extend conntrack output direciton, mark, zone | |||
2022-07-17 | login: T4536: add all accounts to frr group | Christian Poessinger | |
2022-07-17 | op-mode: T3435: Fix SNAT any address and DNAT port dict check | Viacheslav Hletenko | |
If SNAT source address in not exists use 'any' Add check if 'port' exists in dictionary | |||
2022-07-15 | interfaces: T4525: interfaces can not be member of a bridge/bond and a VRF | Christian Poessinger | |
2022-07-15 | bond: bridge: T4534: error out if member interface is assigned to a VRF instance | Christian Poessinger | |
It makes no sense to enslave an interface to a bond or a bridge device if it is bound to a given VRF. If VRFs should be used - the encapuslating/master interface should be part of the VRF. Error out if the member interface is part of a VRF. | |||
2022-07-12 | vrf: T4527: Prevent to create VRF with reserved names | Viacheslav Hletenko | |
VRF names: "add, all, broadcast, default, delete, dev, get, inet, mtu, link, type, vrf" are reserved and cannot be used for vrf name | |||
2022-07-11 | conntrack: T4523: Extend conntrack output direciton, mark, zone | Viacheslav Hletenko | |
Extent op-mode "show conntrack table ipv4" Add ability to see direction of flow: origianl - "Original src", "Original dst" reply - "Reply src", "Reply dst" Add "mark" and "zone" options | |||
2022-07-10 | vyos.configdict(): T4228: is_member() must use the "real" hardware interface | Christian Poessinger | |
When is_member() is inspecting the bridge/Bond member interfaces it must work with the real interface (e.g. eth1) under the "ethernet" node and not work on the "member interface eth1" CLI tree, that makes no sense at all. | |||
2022-07-09 | nat: T4499: Fix NAT not showing a single flow entry | Viacheslav Hletenko | |
We must change dictionary if we get only onle flow entry I.e one NAT record With single entry we get: OrderedDict([('meta', xxx])) We expect: [OrderedDict([('meta', xxx]))] | |||
2022-07-09 | ip: T4517: drop forwarding from CLI "system ip ↵ | Christian Poessinger | |
disable-directed-broadcast-forwarding" |