<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyos-1x.git/src/op_mode, branch circinus</title>
<subtitle>VyOS command definitions, scripts, and utilities (mirror of https://github.com/vyos/vyos-1x.git)
</subtitle>
<id>https://git.amelek.net/vyos/vyos-1x.git/atom?h=circinus</id>
<link rel='self' href='https://git.amelek.net/vyos/vyos-1x.git/atom?h=circinus'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/'/>
<updated>2024-10-08T20:05:30+00:00</updated>
<entry>
<title>op-mode: T6753: Fix json output for mtr / monitor traceroute (#4122) (#4143)</title>
<updated>2024-10-08T20:05:30+00:00</updated>
<author>
<name>mergify[bot]</name>
<email>37929162+mergify[bot]@users.noreply.github.com</email>
</author>
<published>2024-10-08T20:05:30+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=65991f7f4d79b0c9255776a4160946e52e7da320'/>
<id>urn:sha1:65991f7f4d79b0c9255776a4160946e52e7da320</id>
<content type='text'>
(cherry picked from commit 17c9b444ecc7883f1d8af01fefc8d00f6f1ef49b)

Co-authored-by: Nataliia S. &lt;81954790+natali-rs1985@users.noreply.github.com&gt;</content>
</entry>
<entry>
<title>pki: T6481: auto import ACME certificate chain into CLI</title>
<updated>2024-10-07T15:10:09+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-10-06T18:13:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=195a1feec400e7159290479c23c0176774a9eccf'/>
<id>urn:sha1:195a1feec400e7159290479c23c0176774a9eccf</id>
<content type='text'>
When using an ACME based certificate with VyOS we provide the necessary PEM
files opaque in the background when using the internal tools. This however will
not properly work with the CA chain portion, as the system is based on the
"pki certificate &lt;name&gt; acme" CLI node of a certificate but CA chains reside
under "pki ca".

This adds support for importing the PEM data of a CA chain issued via ACME into
the "pki ca AUTOCHAIN_&lt;name&gt; certificate" subsystem so it can be queried by
other daemons. Importing the chain only happens, when the chain was not already
added manually by the user.

ACME certificate chains that are automatically added to the CLI are all prefixed
using AUTOCHAIN_certname so they can be consumed by any daemon. This also adds
a safeguard when the intermediate CA changes, the referenced name on the CLI
stays consitent for any pending daemon updates.

(cherry picked from commit 875764b07f937fc599e2e62c667e7b811ddc2ed3)
</content>
</entry>
<entry>
<title>T6486: generate OpenVPN use data-ciphers instead of ncp-ciphers (#3930)</title>
<updated>2024-09-18T10:35:02+00:00</updated>
<author>
<name>Viacheslav Hletenko</name>
<email>v.gletenko@vyos.io</email>
</author>
<published>2024-08-02T15:33:17+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=9040d1caafc915d53f8d141138a6333c9f936fcd'/>
<id>urn:sha1:9040d1caafc915d53f8d141138a6333c9f936fcd</id>
<content type='text'>
In the PR https://github.com/vyos/vyos-1x/pull/3823 the ncp-ciphers
were replaced with `data-ciphers`
fix template for "generate openvpn client-config"

(cherry picked from commit ffbc04c591b534188cb08bf3991fadac4aa386a8)
</content>
</entry>
<entry>
<title>op-mode: T6682: Fix for show vpn ike sa peer always shows all SAs</title>
<updated>2024-09-15T14:33:45+00:00</updated>
<author>
<name>Nataliia Solomko</name>
<email>natalirs1985@gmail.com</email>
</author>
<published>2024-09-12T13:01:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=a9502ba5dfea7ece7d7c6a9b8bacad3d304b144b'/>
<id>urn:sha1:a9502ba5dfea7ece7d7c6a9b8bacad3d304b144b</id>
<content type='text'>
(cherry picked from commit 8c6a57124af37ba410dd01797e9242b3a79f171a)
</content>
</entry>
<entry>
<title>T6711: Fix restart vrrp missed comma between services</title>
<updated>2024-09-12T12:56:32+00:00</updated>
<author>
<name>Viacheslav Hletenko</name>
<email>v.gletenko@vyos.io</email>
</author>
<published>2024-09-12T06:56:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=3f95581f5ad1e5d3e43910a6858873415946aa93'/>
<id>urn:sha1:3f95581f5ad1e5d3e43910a6858873415946aa93</id>
<content type='text'>
Missing comma in the list between services
 'ssh', 'suricata' 'vrrp', 'webproxy'
Fix it

(cherry picked from commit a3ddd2cb8994deefd378951806b5dc35067d06a7)
</content>
</entry>
<entry>
<title>op_mode: T6181: A feature for checking ports</title>
<updated>2024-09-10T13:15:55+00:00</updated>
<author>
<name>Nataliia Solomko</name>
<email>natalirs1985@gmail.com</email>
</author>
<published>2024-09-09T12:11:13+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=6032223ef5f06b46f101d740f381ddf24f5a9996'/>
<id>urn:sha1:6032223ef5f06b46f101d740f381ddf24f5a9996</id>
<content type='text'>
(cherry picked from commit 7d20a52e02bec76474ca060fcb1eaeca52c52001)
</content>
</entry>
<entry>
<title>T6561: Add vrf aware for show ntp (#4009)</title>
<updated>2024-08-23T06:11:38+00:00</updated>
<author>
<name>mergify[bot]</name>
<email>37929162+mergify[bot]@users.noreply.github.com</email>
</author>
<published>2024-08-23T06:11:38+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=92c261ecfe9aef9edddc8f92d3db8fa0ce4c2065'/>
<id>urn:sha1:92c261ecfe9aef9edddc8f92d3db8fa0ce4c2065</id>
<content type='text'>
(cherry picked from commit 5f780ebb7f1799eb9a93218bb83561db509c7e56)

Co-authored-by: Viacheslav Hletenko &lt;v.gletenko@vyos.io&gt;</content>
</entry>
<entry>
<title>op_mode: T3961: Generate PKI expect 2 character country code</title>
<updated>2024-08-18T06:04:58+00:00</updated>
<author>
<name>Nataliia Solomko</name>
<email>natalirs1985@gmail.com</email>
</author>
<published>2024-08-17T10:26:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=2425aee523db48382a4c091163a8a5402b9949d2'/>
<id>urn:sha1:2425aee523db48382a4c091163a8a5402b9949d2</id>
<content type='text'>
(cherry picked from commit 71d6d0fe31db13f4ddf5c75209b9bba88a1e0a32)
</content>
</entry>
<entry>
<title>T6486: T6379: Rewrite generate openvpn client-config</title>
<updated>2024-08-01T12:52:44+00:00</updated>
<author>
<name>Viacheslav Hletenko</name>
<email>v.gletenko@vyos.io</email>
</author>
<published>2024-07-02T05:22:59+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=cf1f11c5336801784cc5f3ce7112318bcf60d4e5'/>
<id>urn:sha1:cf1f11c5336801784cc5f3ce7112318bcf60d4e5</id>
<content type='text'>
This command helps to generate users `.ovpn` files
Rewrite `generate openvpn client-config` to use Config()
It needs to get the default values as `ConfigTreeQuery` is
not supporting default values.

Fixed "ignores configured protocol type" if TCP is used
Fixed lzo, was used even if lzo not configured
Fixed encryption is not parse the dict

(cherry picked from commit fe50f1a9292b34e168b35453f2cfc2aee2ca4843)
</content>
</entry>
<entry>
<title>T6617: T6618: vpn ipsec remote-access: fix profile generators</title>
<updated>2024-08-01T05:52:51+00:00</updated>
<author>
<name>Lucas Christian</name>
<email>lucas@lucasec.com</email>
</author>
<published>2024-07-30T06:22:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=1171e3d359cc2718afc80fccfc99c7ecccf95dbd'/>
<id>urn:sha1:1171e3d359cc2718afc80fccfc99c7ecccf95dbd</id>
<content type='text'>
(cherry picked from commit e97d86e619e134f4dfda06efb7df4a3296d17b95)
</content>
</entry>
</feed>
