<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyos-1x.git/src, branch mergify/bp/circinus/pr-3903</title>
<subtitle>VyOS command definitions, scripts, and utilities (mirror of https://github.com/vyos/vyos-1x.git)
</subtitle>
<id>https://git.amelek.net/vyos/vyos-1x.git/atom?h=mergify%2Fbp%2Fcircinus%2Fpr-3903</id>
<link rel='self' href='https://git.amelek.net/vyos/vyos-1x.git/atom?h=mergify%2Fbp%2Fcircinus%2Fpr-3903'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/'/>
<updated>2024-08-01T05:52:51+00:00</updated>
<entry>
<title>T6617: T6618: vpn ipsec remote-access: fix profile generators</title>
<updated>2024-08-01T05:52:51+00:00</updated>
<author>
<name>Lucas Christian</name>
<email>lucas@lucasec.com</email>
</author>
<published>2024-07-30T06:22:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=1171e3d359cc2718afc80fccfc99c7ecccf95dbd'/>
<id>urn:sha1:1171e3d359cc2718afc80fccfc99c7ecccf95dbd</id>
<content type='text'>
(cherry picked from commit e97d86e619e134f4dfda06efb7df4a3296d17b95)
</content>
</entry>
<entry>
<title>ipsec: T6148: Removed unused imports (#3915)</title>
<updated>2024-07-31T12:27:38+00:00</updated>
<author>
<name>aapostoliuk</name>
<email>108394744+aapostoliuk@users.noreply.github.com</email>
</author>
<published>2024-07-31T12:26:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=d213e3f09ad38d3db26e7293ae1e6bc83790016e'/>
<id>urn:sha1:d213e3f09ad38d3db26e7293ae1e6bc83790016e</id>
<content type='text'>
Removed unused pprint module

(cherry picked from commit cb1834742f4ed01d99d6396af8339dd59788ef65)
</content>
</entry>
<entry>
<title>Merge pull request #3908 from vyos/mergify/bp/circinus/pr-3763</title>
<updated>2024-07-31T09:09:05+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-07-31T09:09:05+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=cdfa92e5c0c80962175c56305001a7218c923395'/>
<id>urn:sha1:cdfa92e5c0c80962175c56305001a7218c923395</id>
<content type='text'>
ipsec: T6148: Fixed reset command by adding init after terminating (backport #3763)</content>
</entry>
<entry>
<title>Merge pull request #3906 from vyos/mergify/bp/circinus/pr-3715</title>
<updated>2024-07-31T06:00:31+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-07-31T06:00:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=10bf3c85278370ba03ca371ce3598e1fae470998'/>
<id>urn:sha1:10bf3c85278370ba03ca371ce3598e1fae470998</id>
<content type='text'>
T6313: Add "NAT" to "generate" command for rule resequence (backport #3715)</content>
</entry>
<entry>
<title>system: op-mode: T3334: allow delayed getty restart when configuring serial ports</title>
<updated>2024-07-30T13:53:07+00:00</updated>
<author>
<name>Andrew Topp</name>
<email>andrewt@telekinetica.net</email>
</author>
<published>2024-07-08T13:58:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=9d8609c97650c0a65856bdfe705b740070de9f1a'/>
<id>urn:sha1:9d8609c97650c0a65856bdfe705b740070de9f1a</id>
<content type='text'>
* Created op-mode command "restart serial console"
* Relocated service control to vyos.utils.serial helpers, used by conf- and
  op-mode serial console handling
  * Checking for logged-in serial sessions that may be affected by getty reconfig
  * Warning the user when changes are committed and serial sessions are active,
    otherwise restart services as normal. No prompts issued during commit,
    all config gen/commit steps still occur except for the service restarts
    (everything remains consistent)
  * To apply committed changes, user will need to run "restart serial console"
    to complete the process or reboot the whole router
  * Added additional flags and target filtering for generic use of helpers.

(cherry picked from commit bc9049ebd76576d727fa87b10b96d1616950237c)
</content>
</entry>
<entry>
<title>ipsec: T6148: Fixed reset command by adding init after terminating (#3763)</title>
<updated>2024-07-30T12:21:51+00:00</updated>
<author>
<name>aapostoliuk</name>
<email>108394744+aapostoliuk@users.noreply.github.com</email>
</author>
<published>2024-07-28T12:54:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=9be079ac855b20622240c0e577c7f5db9d075798'/>
<id>urn:sha1:9be079ac855b20622240c0e577c7f5db9d075798</id>
<content type='text'>
Strongswan does not initiate session after termination via vici.
Added an CHILD SAs initialization on the initiator side
of the tunnel.

(cherry picked from commit 8838b29180ccc26d2aca0c22c9c8ca5e274825b2)
</content>
</entry>
<entry>
<title>T6313: Add "NAT" to "generate" command for rule resequence</title>
<updated>2024-07-30T12:00:36+00:00</updated>
<author>
<name>khramshinr</name>
<email>khramshinr@gmail.com</email>
</author>
<published>2024-06-24T13:56:21+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=014bf70b494bc0c479e97d8fa4cfe88d4c0d8498'/>
<id>urn:sha1:014bf70b494bc0c479e97d8fa4cfe88d4c0d8498</id>
<content type='text'>
(cherry picked from commit 142545b0535d0a994182389c99b7bcd6d7c37c24)
</content>
</entry>
<entry>
<title>vrf: T6603: improve code runtime when retrieving info from nftables vrf zone</title>
<updated>2024-07-30T07:47:39+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-07-26T11:43:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=ebac16ea3f242c0a5a35d38b65e549130db7b763'/>
<id>urn:sha1:ebac16ea3f242c0a5a35d38b65e549130db7b763</id>
<content type='text'>
(cherry picked from commit 31acb42ecdf4ecf0f636f831f42a845b8a00d367)
</content>
</entry>
<entry>
<title>vrf: T6603: conntrack ct_iface_map must only contain one entry for iifname/oifname</title>
<updated>2024-07-30T07:47:39+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-07-26T11:25:19+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=a05251f766c68fbff506bc01f6c095350f904bb7'/>
<id>urn:sha1:a05251f766c68fbff506bc01f6c095350f904bb7</id>
<content type='text'>
When any of the following features NAT, NAT66 or Firewall is enabled, for every
VRF on the CLI we install one rule into nftables for conntrack:

    chain vrf_zones_ct_in {
            type filter hook prerouting priority raw; policy accept;
            counter packets 3113 bytes 32227 ct original zone set iifname map @ct_iface_map
            counter packets 8550 bytes 80739 ct original zone set iifname map @ct_iface_map
            counter packets 5644 bytes 67697 ct original zone set iifname map @ct_iface_map
    }

This is superfluous.

(cherry picked from commit d6e9824f1612bd8c876437c071f31a1a0f44af5d)
</content>
</entry>
<entry>
<title>Merge pull request #3877 from vyos/mergify/bp/circinus/pr-3868</title>
<updated>2024-07-26T10:52:29+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-07-26T10:52:29+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=aaaabd60e2fedd9416d9de2932af2f122b33b67f'/>
<id>urn:sha1:aaaabd60e2fedd9416d9de2932af2f122b33b67f</id>
<content type='text'>
T6605: restore configd error formatting to be consistent with CLI (backport #3868)</content>
</entry>
</feed>
