Age | Commit message (Collapse) | Author | |
---|---|---|---|
2019-02-25 | [dhcp] T1211: avoid blank DHCP hostnames taking down DNS | Christian Poessinger | |
(cherry picked from commit 944a665cfc19cca1af9d46a70fb31ba1f4893d68) | |||
2019-02-21 | T1256: Execute "show ipsec vpn ipsec sa" returns incorrect results | Daniel Pro | |
Not sure it's a normal case scenario, the one highlighted in T1256. To managed it I changed the "if" logic. | |||
2019-02-10 | T1231: Remove cache file of 'service dns dynamic' | Christian Poessinger | |
When deleting or changing "service dns dynamic" the cache file of ddclient is not removed, leading to abandoned host names which might be already gone. (cherry picked from commit ec604ef88e2845bcd75070f6dff325ccc50873aa) | |||
2019-02-10 | T1213: ddclient: proper enquote web-skip parameter | Christian Poessinger | |
(cherry picked from commit ad011db299196a2e5defa7d8030be149d71d53ee) | |||
2019-02-01 | [broadcast-relay] T1224: fix missing newline between comment and options. | Daniil Baturin | |
2019-01-30 | T1213: fix ddclient when no server is given | Christian Poessinger | |
(cherry picked from commit cc3f6088783373bd56cd821599bdc12ba123125b) | |||
2019-01-30 | T1160: fix (ro|rw)community ACL | Christian Poessinger | |
WHen building up the SNMP v2 community ro/rw access all hosts from a INET version could access even when the community was locked to one INET family. Example #1: set service snmp community bar network 172.16.0.0/12 Allowed access only to IPv4 network 172.16.0.0/12 but it allowed acces from IPv6 ::/0. Example #2: set service snmp community baz network 2001:db8::/64 Limited IPv6 access to 2001:db8::/64 but IPv4 was open to 0.0.0.0/0 (cherry picked from commit cc07c4727bdffb4c220ce28ab9f697b01fe4afb7) | |||
2019-01-26 | Merge branch 'current' into crux | Daniil Baturin | |
2019-01-26 | T1193: add some tests for the config parser. | Daniil Baturin | |
2019-01-26 | T1193: remove the commands pipe since it's no longer needed. | Daniil Baturin | |
2019-01-26 | [webproxy] T1203: do not attempt to migrate proxy-bypass if it doesn't exist. | Daniil Baturin | |
2019-01-25 | Fix: T1178: Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-22 | Revert "Fix: T1178 - Scheduled script breaks ability to modify configuration" | hagbard | |
This reverts commit 632893abf5c7bf935d866462a107ed1eef1747b3. | |||
2019-01-22 | Revert "adjusted unit test" | hagbard | |
This reverts commit 0d80b06ccd33fc2a0001b8641ce45070f0e8726d. | |||
2019-01-21 | adjusted unit test | hagbard | |
2019-01-21 | Fix: T1178 - Scheduled script breaks ability to modify configuration | hagbard | |
2019-01-12 | Correct the command suggestion in the "show vpn ipsec sa" script | Daniil Baturin | |
in case when no active SAs are found. | |||
2019-01-12 | T1175: add support for DMVPN connections to the "show vpn ipsec sa" script. | Daniil Baturin | |
2019-01-12 | T1041: make upstream DNS server optional | Christian Poessinger | |
The name-server option under "service dns-forwarding" was never mandatory so users never needed to specify an upstream server. With the recent switch to PowerDNS recursor in VyOS 1.2.0 we will act as a full DNS recursor when there is no upstream DNS server configured. (cherry picked from commit 3c563b3ae8397da33a03c0429c17b97eb9625c5f) | |||
2019-01-12 | T1041: make upstream DNS server optional | Christian Poessinger | |
The name-server option under "service dns-forwarding" was never mandatory so users never needed to specify an upstream server. With the recent switch to PowerDNS recursor in VyOS 1.2.0 we will act as a full DNS recursor when there is no upstream DNS server configured. | |||
2019-01-08 | Merge pull request #63 from daniel-pro/T1077 | hagbard-01 | |
T1077: Update show_ipsec_sa.py | |||
2019-01-07 | Fix: T1168 - Upgrade: 1,1,7 -> 1.2.0-epa2 (command conversion) | hagbard | |
2019-01-06 | Fix: T1162 - WireGuard: Unable to modify tunnels - KeyError: 'state' | hagbard | |
2019-01-06 | Merge branch 'current' into crux | Christian Poessinger | |
* current: T1129: replace quotes when dealing with 'subnet/global-parameters' T1129: fix handling of raw DHCP 'subnet-parameters' T1159: correct handling of SAs without PFS in "show vpn ipsec sa". T1147: Fix SNMP config file generation on newly installed systems Initial implementation of declarative config dict retrieval library. T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | |||
2019-01-06 | T1129: replace quotes when dealing with 'subnet/global-parameters' | Christian Poessinger | |
2019-01-06 | T1129: fix handling of raw DHCP 'subnet-parameters' | Christian Poessinger | |
subnet-parameters were not added to the resulting configuration. | |||
2019-01-06 | Merge branch 'crux' of https://github.com/vyos/vyos-1x into crux | Daniil Baturin | |
2019-01-06 | T1159: correct handling of SAs without PFS in "show vpn ipsec sa". | Daniil Baturin | |
2019-01-06 | T1159: correct handling of SAs without PFS in "show vpn ipsec sa". | Daniil Baturin | |
2019-01-03 | T1147: Fix SNMP config file generation on newly installed systems | Christian Poessinger | |
(cherry picked from commit 59471ed0c249771fa6c46cf0b020222b7caeee42) | |||
2019-01-03 | T1147: Fix SNMP config file generation on newly installed systems | Christian Poessinger | |
2019-01-01 | T1119: 'show vpn ipsec sa' shows tunnel twice in 1.2.0-RC11 | Daniel | |
Removed duplicates from "connections" list. | |||
2018-12-31 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-31 | T1128: restart SNMP on hostname change. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute metric and route-map options too. | Daniil Baturin | |
2018-12-31 | T1112: migrate BGP redistribute options (patch by Merijn). | Daniil Baturin | |
2018-12-31 | T1108: warn the user and exit if there are no established IPsec SAs. | Daniil Baturin | |
2018-12-18 | Update show_ipsec_sa.py | Daniel | |
2018-12-16 | Update show_ipsec_sa.py | daniel-pro | |
2018-12-16 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-16 | Revert "T1087: Firewall on Wireguard Interface implementation" | Daniil Baturin | |
This reverts commit 51f61991092a163f680e4ec8f122e73f4074ddf9. It's not how it's done, those templates are generated by a script in vyatta-cfg-firewall. If we are planning a firewall overhaul in 1.3.x, there's no reason to transplant the old approach to new code. | |||
2018-12-11 | T1087: Firewall on Wireguard Interface implementation | hagbard | |
2018-12-07 | T1060: build fix for wrong config-version number | Christian Poessinger | |
Commit 9d35610c173 ("T1060: add missing version file for webproxy") assumed that there is a webproxy config version of 0 but we already have 1. This lead to duplicate files detected by apt. | |||
2018-12-07 | Merge pull request #61 from dsteinkopf/current | Christian Poessinger | |
T1060: Add webproxy migration script (proxy-bypass -> whitelist). | |||
2018-12-03 | Merge branch 'current' into crux | Daniil Baturin | |
2018-12-03 | T956: display SA traffic counters in human-redable units. | Daniil Baturin | |
2018-12-03 | T956: correct IKE proposal string parsing for SAs with non-zero counters. | Daniil Baturin | |
2018-12-02 | T1060: Add webproxy migration script (proxy-bypass -> whitelist). | Dirk Steinkopf | |
2018-11-30 | Fixes: T1061: Wireguard: Missing option to administrativly shutdown interface | hagbard | |
2018-11-29 | T1001: escape backslashes in the input in the commands pipe as well. | Daniil Baturin | |