summaryrefslogtreecommitdiff
path: root/docs/_locale/ja/configuration.pot
diff options
context:
space:
mode:
Diffstat (limited to 'docs/_locale/ja/configuration.pot')
-rw-r--r--docs/_locale/ja/configuration.pot499
1 files changed, 279 insertions, 220 deletions
diff --git a/docs/_locale/ja/configuration.pot b/docs/_locale/ja/configuration.pot
index 369546b0..1de8f1dc 100644
--- a/docs/_locale/ja/configuration.pot
+++ b/docs/_locale/ja/configuration.pot
@@ -76,6 +76,14 @@ msgstr "**9** - NetFlow version 9 (default)"
msgid "**AS path length check**"
msgstr "**AS path length check**"
+#: ../../configuration/service/dhcp-server.rst:175
+msgid "**Active-active**: both DHCP servers will respond to DHCP requests. If ``mode`` is not defined, this is the default behavior."
+msgstr "**Active-active**: both DHCP servers will respond to DHCP requests. If ``mode`` is not defined, this is the default behavior."
+
+#: ../../configuration/service/dhcp-server.rst:178
+msgid "**Active-passive**: only ``primary`` server will respond to DHCP requests. If this server goes offline, then ``secondary`` server will take place."
+msgstr "**Active-passive**: only ``primary`` server will respond to DHCP requests. If this server goes offline, then ``secondary`` server will take place."
+
#: ../../configuration/protocols/bgp.rst:106
msgid "**Already-selected external check**"
msgstr "**Already-selected external check**"
@@ -170,9 +178,9 @@ msgstr "**Ethernet (protocol, destination address or source address)**"
#: ../../configuration/service/dhcp-server.rst:63
#: ../../configuration/service/dhcp-server.rst:158
-#: ../../configuration/service/dhcp-server.rst:240
-#: ../../configuration/service/dhcp-server.rst:627
-#: ../../configuration/service/dhcp-server.rst:668
+#: ../../configuration/service/dhcp-server.rst:256
+#: ../../configuration/service/dhcp-server.rst:646
+#: ../../configuration/service/dhcp-server.rst:687
msgid "**Example:**"
msgstr "**Example:**"
@@ -417,7 +425,7 @@ msgstr "**Prerouting**: several actions can be done in this stage, and currently
msgid "**Prerouting**: several actions can be done in this stage, and currently these actions are defined in different parts in vyos configuration. Order is important, and all these actions are performed before any actions define under ``firewall`` section. Relevant configuration that acts in this stage are:"
msgstr "**Prerouting**: several actions can be done in this stage, and currently these actions are defined in different parts in vyos configuration. Order is important, and all these actions are performed before any actions define under ``firewall`` section. Relevant configuration that acts in this stage are:"
-#: ../../configuration/service/dhcp-server.rst:431
+#: ../../configuration/service/dhcp-server.rst:448
msgid "**Primary**"
msgstr "**Primary**"
@@ -527,7 +535,7 @@ msgstr "**SW1**"
msgid "**SW2**"
msgstr "**SW2**"
-#: ../../configuration/service/dhcp-server.rst:440
+#: ../../configuration/service/dhcp-server.rst:458
msgid "**Secondary**"
msgstr "**Secondary**"
@@ -1047,7 +1055,7 @@ msgstr "0 if not defined, which means no refreshing."
msgid "0 if not defined."
msgstr "0 if not defined."
-#: ../../configuration/service/dhcp-server.rst:277
+#: ../../configuration/service/dhcp-server.rst:293
#: ../../configuration/system/syslog.rst:114
#: ../../configuration/system/syslog.rst:173
#: ../../configuration/trafficpolicy/index.rst:801
@@ -1110,7 +1118,7 @@ msgstr "10 - 10 MBit/s"
msgid "11"
msgstr "11"
-#: ../../configuration/service/dhcp-server.rst:359
+#: ../../configuration/service/dhcp-server.rst:375
msgid "119"
msgstr "119"
@@ -1120,11 +1128,11 @@ msgstr "119"
msgid "12"
msgstr "12"
-#: ../../configuration/service/dhcp-server.rst:364
+#: ../../configuration/service/dhcp-server.rst:380
msgid "121, 249"
msgstr "121, 249"
-#: ../../configuration/service/dhcp-server.rst:344
+#: ../../configuration/service/dhcp-server.rst:360
#: ../../configuration/system/syslog.rst:138
#: ../../configuration/trafficpolicy/index.rst:870
msgid "13"
@@ -1136,7 +1144,7 @@ msgstr "13"
msgid "14"
msgstr "14"
-#: ../../configuration/service/dhcp-server.rst:304
+#: ../../configuration/service/dhcp-server.rst:320
#: ../../configuration/system/syslog.rst:142
#: ../../configuration/trafficpolicy/index.rst:866
msgid "15"
@@ -1160,7 +1168,7 @@ msgstr "172.16.0.0 to 172.31.255.255 (CIDR: 172.16.0.0/12)"
msgid "18"
msgstr "18"
-#: ../../configuration/service/dhcp-server.rst:309
+#: ../../configuration/service/dhcp-server.rst:325
#: ../../configuration/system/syslog.rst:150
msgid "19"
msgstr "19"
@@ -1185,7 +1193,7 @@ msgstr "1: Enable DAD (default)"
msgid "1 if not defined."
msgstr "1 if not defined."
-#: ../../configuration/service/dhcp-server.rst:283
+#: ../../configuration/service/dhcp-server.rst:299
#: ../../configuration/system/syslog.rst:116
#: ../../configuration/system/syslog.rst:178
#: ../../configuration/trafficpolicy/index.rst:799
@@ -1219,7 +1227,7 @@ msgstr "25000 - 25 GBit/s"
msgid "2500 - 2.5 GBit/s"
msgstr "2500 - 2.5 GBit/s"
-#: ../../configuration/service/dhcp-server.rst:369
+#: ../../configuration/service/dhcp-server.rst:385
msgid "252"
msgstr "252"
@@ -1247,7 +1255,7 @@ msgstr "2. Since this is the first packet, connection status of this connection,
msgid "2: Enable DAD, and disable IPv6 operation if MAC-based duplicate link-local address has been found."
msgstr "2: Enable DAD, and disable IPv6 operation if MAC-based duplicate link-local address has been found."
-#: ../../configuration/service/dhcp-server.rst:289
+#: ../../configuration/service/dhcp-server.rst:305
#: ../../configuration/system/syslog.rst:118
#: ../../configuration/system/syslog.rst:181
#: ../../configuration/trafficpolicy/index.rst:797
@@ -1275,7 +1283,7 @@ msgstr "38"
msgid "3. Add a full path to the script"
msgstr "3. Add a full path to the script"
-#: ../../configuration/service/dhcp-server.rst:294
+#: ../../configuration/service/dhcp-server.rst:310
#: ../../configuration/system/syslog.rst:120
#: ../../configuration/system/syslog.rst:183
#: ../../configuration/trafficpolicy/index.rst:795
@@ -1291,11 +1299,11 @@ msgstr "40000 - 40 GBit/s"
msgid "40 MHz channels may switch their primary and secondary channels if needed or creation of 40 MHz channel maybe rejected based on overlapping BSSes. These changes are done automatically when hostapd is setting up the 40 MHz channel."
msgstr "40 MHz channels may switch their primary and secondary channels if needed or creation of 40 MHz channel maybe rejected based on overlapping BSSes. These changes are done automatically when hostapd is setting up the 40 MHz channel."
-#: ../../configuration/service/dhcp-server.rst:314
+#: ../../configuration/service/dhcp-server.rst:330
msgid "42"
msgstr "42"
-#: ../../configuration/service/dhcp-server.rst:319
+#: ../../configuration/service/dhcp-server.rst:335
msgid "44"
msgstr "44"
@@ -1326,7 +1334,7 @@ msgstr "50000 - 50 GBit/s"
msgid "5000 - 5 GBit/s"
msgstr "5000 - 5 GBit/s"
-#: ../../configuration/service/dhcp-server.rst:324
+#: ../../configuration/service/dhcp-server.rst:340
msgid "54"
msgstr "54"
@@ -1339,7 +1347,7 @@ msgstr "5. Second packet for this connection is received by the router. Since co
msgid "5 if not defined."
msgstr "5 if not defined."
-#: ../../configuration/service/dhcp-server.rst:299
+#: ../../configuration/service/dhcp-server.rst:315
#: ../../configuration/system/syslog.rst:124
#: ../../configuration/system/syslog.rst:189
#: ../../configuration/trafficpolicy/index.rst:791
@@ -1347,7 +1355,7 @@ msgstr "5 if not defined."
msgid "6"
msgstr "6"
-#: ../../configuration/service/dhcp-server.rst:334
+#: ../../configuration/service/dhcp-server.rst:350
msgid "66"
msgstr "66"
@@ -1355,11 +1363,11 @@ msgstr "66"
msgid "66% of traffic is routed to eth0, eth1 gets 33% of traffic."
msgstr "66% of traffic is routed to eth0, eth1 gets 33% of traffic."
-#: ../../configuration/service/dhcp-server.rst:339
+#: ../../configuration/service/dhcp-server.rst:355
msgid "67"
msgstr "67"
-#: ../../configuration/service/dhcp-server.rst:349
+#: ../../configuration/service/dhcp-server.rst:365
msgid "69"
msgstr "69"
@@ -1382,7 +1390,7 @@ msgstr "6in4 uses tunneling to encapsulate IPv6 traffic over IPv4 links as defin
msgid "7"
msgstr "7"
-#: ../../configuration/service/dhcp-server.rst:354
+#: ../../configuration/service/dhcp-server.rst:370
msgid "70"
msgstr "70"
@@ -1511,7 +1519,7 @@ msgstr "A GRE tunnel operates at layer 3 of the OSI model and is represented by
msgid "A Rule-Set can be applied to every interface:"
msgstr "A Rule-Set can be applied to every interface:"
-#: ../../configuration/service/dhcp-server.rst:601
+#: ../../configuration/service/dhcp-server.rst:620
msgid "A SNTP server address can be specified for DHCPv6 clients."
msgstr "A SNTP server address can be specified for DHCPv6 clients."
@@ -1527,7 +1535,7 @@ msgstr "A VyOS GRE tunnel can carry both IPv4 and IPv6 traffic and can also be c
msgid "A VyOS router with two interfaces - eth0 (WAN) and eth1 (LAN) - is required to implement a split-horizon DNS configuration for example.com."
msgstr "A VyOS router with two interfaces - eth0 (WAN) and eth1 (LAN) - is required to implement a split-horizon DNS configuration for example.com."
-#: ../../configuration/service/dhcp-server.rst:573
+#: ../../configuration/service/dhcp-server.rst:592
msgid "A :abbr:`NIS (Network Information Service)` domain can be set to be used for DHCPv6 clients."
msgstr "A :abbr:`NIS (Network Information Service)` domain can be set to be used for DHCPv6 clients."
@@ -1596,7 +1604,7 @@ msgstr "A firewall mark ``fwmark`` allows using multiple ports for high-availabi
msgid "A full example of a Tunnelbroker.net config can be found at :ref:`here <examples-tunnelbroker-ipv6>`."
msgstr "A full example of a Tunnelbroker.net config can be found at :ref:`here <examples-tunnelbroker-ipv6>`."
-#: ../../configuration/service/dhcp-server.rst:186
+#: ../../configuration/service/dhcp-server.rst:201
msgid "A generic `<name>` referencing this sync service."
msgstr "A generic `<name>` referencing this sync service."
@@ -1694,7 +1702,7 @@ msgstr "A segment ID that contains an IP address prefix calculated by an IGP in
msgid "A sending station (computer or network switch) may be transmitting data faster than the other end of the link can accept it. Using flow control, the receiving station can signal the sender requesting suspension of transmissions until the receiver catches up."
msgstr "A sending station (computer or network switch) may be transmitting data faster than the other end of the link can accept it. Using flow control, the receiving station can signal the sender requesting suspension of transmissions until the receiver catches up."
-#: ../../configuration/service/dhcp-server.rst:629
+#: ../../configuration/service/dhcp-server.rst:648
msgid "A shared network named ``NET1`` serves subnet ``2001:db8::/64``"
msgstr "A shared network named ``NET1`` serves subnet ``2001:db8::/64``"
@@ -1948,11 +1956,11 @@ msgstr "Address Families"
msgid "Address Groups"
msgstr "Address Groups"
-#: ../../configuration/service/dhcp-server.rst:632
+#: ../../configuration/service/dhcp-server.rst:651
msgid "Address pool shall be ``2001:db8::100`` through ``2001:db8::199``."
msgstr "Address pool shall be ``2001:db8::100`` through ``2001:db8::199``."
-#: ../../configuration/service/dhcp-server.rst:622
+#: ../../configuration/service/dhcp-server.rst:641
msgid "Address pools"
msgstr "Address pools"
@@ -2948,11 +2956,11 @@ msgstr "Bond / Link Aggregation"
msgid "Bond options"
msgstr "Bond options"
-#: ../../configuration/service/dhcp-server.rst:346
+#: ../../configuration/service/dhcp-server.rst:362
msgid "Boot image length in 512-octet blocks"
msgstr "Boot image length in 512-octet blocks"
-#: ../../configuration/service/dhcp-server.rst:341
+#: ../../configuration/service/dhcp-server.rst:357
msgid "Bootstrap file name"
msgstr "Bootstrap file name"
@@ -3197,7 +3205,7 @@ msgstr "Class treatment"
msgid "Classes"
msgstr "Classes"
-#: ../../configuration/service/dhcp-server.rst:366
+#: ../../configuration/service/dhcp-server.rst:382
msgid "Classless static route"
msgstr "Classless static route"
@@ -3245,11 +3253,11 @@ msgstr "Client Side"
msgid "Client configuration"
msgstr "Client configuration"
-#: ../../configuration/service/dhcp-server.rst:306
+#: ../../configuration/service/dhcp-server.rst:322
msgid "Client domain name"
msgstr "Client domain name"
-#: ../../configuration/service/dhcp-server.rst:361
+#: ../../configuration/service/dhcp-server.rst:377
msgid "Client domain search"
msgstr "Client domain search"
@@ -3261,7 +3269,7 @@ msgstr "Client isolation can be used to prevent low-level bridging of frames bet
msgid "Clients are identified by the CN field of their x.509 certificates, in this example the CN is ``client0``:"
msgstr "Clients are identified by the CN field of their x.509 certificates, in this example the CN is ``client0``:"
-#: ../../configuration/service/dhcp-server.rst:554
+#: ../../configuration/service/dhcp-server.rst:573
msgid "Clients receiving advertise messages from multiple servers choose the server with the highest preference value. The range for this value is ``0...255``."
msgstr "Clients receiving advertise messages from multiple servers choose the server with the highest preference value. The range for this value is ``0...255``."
@@ -3292,7 +3300,7 @@ msgstr "Command used to update GeoIP database and firewall sets."
msgid "Commands"
msgstr "Commands"
-#: ../../configuration/service/dhcp-server.rst:419
+#: ../../configuration/service/dhcp-server.rst:436
msgid "Common configuration, valid for both primary and secondary node."
msgstr "Common configuration, valid for both primary and secondary node."
@@ -3371,7 +3379,7 @@ msgstr "Confidentiality – Encryption of packets to prevent snooping by an unau
#: ../../configuration/service/dhcp-relay.rst:19
#: ../../configuration/service/dhcp-relay.rst:137
#: ../../configuration/service/dhcp-server.rst:22
-#: ../../configuration/service/dhcp-server.rst:550
+#: ../../configuration/service/dhcp-server.rst:569
#: ../../configuration/service/dns.rst:8
#: ../../configuration/service/dns.rst:214
#: ../../configuration/service/https.rst:14
@@ -3451,6 +3459,10 @@ msgstr "Configuration for these exported routes must, at a minimum, specify thes
msgid "Configuration of :ref:`routing-static`"
msgstr "Configuration of :ref:`routing-static`"
+#: ../../configuration/service/dhcp-server.rst:427
+msgid "Configuration of a DHCP HA pair:"
+msgstr "Configuration of a DHCP HA pair:"
+
#: ../../configuration/service/dhcp-server.rst:411
msgid "Configuration of a DHCP failover pair"
msgstr "Configuration of a DHCP failover pair"
@@ -3882,6 +3894,10 @@ msgstr "Connections to the RPKI caching server can not only be established by HT
msgid "Connections to the RPKI caching server can not only be established by HTTP/TLS but you can also rely on a secure SSH session to the server. To enable SSH you first need to create yoursels an SSH client keypair using ``generate ssh client-key /config/auth/id_rsa_rpki``. Once your key is created you can setup the connection."
msgstr "Connections to the RPKI caching server can not only be established by HTTP/TLS but you can also rely on a secure SSH session to the server. To enable SSH you first need to create yoursels an SSH client keypair using ``generate ssh client-key /config/auth/id_rsa_rpki``. Once your key is created you can setup the connection."
+#: ../../configuration/protocols/rpki.rst:143
+msgid "Connections to the RPKI caching server can not only be established by TCP using the RTR protocol but you can also rely on a secure SSH session to the server. This provides transport integrity and confidentiality and it is a good idea if your validation software supports it. To enable SSH, first you need to create an SSH client keypair using ``generate ssh client-key /config/auth/id_rsa_rpki``. Once your key is created you can setup the connection."
+msgstr "Connections to the RPKI caching server can not only be established by TCP using the RTR protocol but you can also rely on a secure SSH session to the server. This provides transport integrity and confidentiality and it is a good idea if your validation software supports it. To enable SSH, first you need to create an SSH client keypair using ``generate ssh client-key /config/auth/id_rsa_rpki``. Once your key is created you can setup the connection."
+
#: ../../configuration/system/conntrack.rst:4
msgid "Conntrack"
msgstr "Conntrack"
@@ -3989,11 +4005,11 @@ msgstr "Create a file named ``VyOS-1.3.6.1.4.1.44641.ConfigMgmt-Commands`` using
msgid "Create a load balancing rule, it can be a number between 1 and 9999:"
msgstr "Create a load balancing rule, it can be a number between 1 and 9999:"
-#: ../../configuration/service/dhcp-server.rst:223
+#: ../../configuration/service/dhcp-server.rst:239
msgid "Create a new DHCP static mapping named `<description>` which is valid for the host identified by its DHCP unique identifier (DUID) `<identifier>`."
msgstr "Create a new DHCP static mapping named `<description>` which is valid for the host identified by its DHCP unique identifier (DUID) `<identifier>`."
-#: ../../configuration/service/dhcp-server.rst:217
+#: ../../configuration/service/dhcp-server.rst:233
msgid "Create a new DHCP static mapping named `<description>` which is valid for the host identified by its MAC `<address>`."
msgstr "Create a new DHCP static mapping named `<description>` which is valid for the host identified by its MAC `<address>`."
@@ -4198,6 +4214,10 @@ msgstr "DCO support is a per-tunnel option and it is not automatically enabled b
msgid "DDoS Protection"
msgstr "DDoS Protection"
+#: ../../configuration/service/dhcp-server.rst:181
+msgid "DHCP High Availability must be configured explicitly by the following statements on both servers:"
+msgstr "DHCP High Availability must be configured explicitly by the following statements on both servers:"
+
#: ../../configuration/service/dhcp-relay.rst:5
msgid "DHCP Relay"
msgstr "DHCP Relay"
@@ -4206,15 +4226,15 @@ msgstr "DHCP Relay"
msgid "DHCP Server"
msgstr "DHCP Server"
-#: ../../configuration/service/dhcp-server.rst:391
+#: ../../configuration/service/dhcp-server.rst:407
msgid "DHCP failover parameters"
msgstr "DHCP failover parameters"
-#: ../../configuration/service/dhcp-server.rst:381
+#: ../../configuration/service/dhcp-server.rst:397
msgid "DHCP lease range"
msgstr "DHCP lease range"
-#: ../../configuration/service/dhcp-server.rst:417
+#: ../../configuration/service/dhcp-server.rst:434
msgid "DHCP range spans from `192.168.189.10` - `192.168.189.250`"
msgstr "DHCP range spans from `192.168.189.10` - `192.168.189.250`"
@@ -4226,7 +4246,7 @@ msgstr "DHCP relay example"
msgid "DHCP server is located at IPv4 address 10.0.1.4 on ``eth2``."
msgstr "DHCP server is located at IPv4 address 10.0.1.4 on ``eth2``."
-#: ../../configuration/service/dhcp-server.rst:624
+#: ../../configuration/service/dhcp-server.rst:643
msgid "DHCPv6 address pools must be configured for the system to act as a DHCPv6 server. The following example describes a common scenario."
msgstr "DHCPv6 address pools must be configured for the system to act as a DHCPv6 server. The following example describes a common scenario."
@@ -4291,11 +4311,11 @@ msgstr "DNS name servers"
msgid "DNS search list to advertise"
msgstr "DNS search list to advertise"
-#: ../../configuration/service/dhcp-server.rst:301
+#: ../../configuration/service/dhcp-server.rst:317
msgid "DNS server IPv4 address"
msgstr "DNS server IPv4 address"
-#: ../../configuration/service/dhcp-server.rst:631
+#: ../../configuration/service/dhcp-server.rst:650
msgid "DNS server is located at ``2001:db8::ffff``"
msgstr "DNS server is located at ``2001:db8::ffff``"
@@ -4351,7 +4371,7 @@ msgstr "Default Router Preference"
msgid "Default behavior - don't ask client for mppe, but allow it if client wants. Please note that RADIUS may override this option by MS-MPPE-Encryption-Policy attribute."
msgstr "Default behavior - don't ask client for mppe, but allow it if client wants. Please note that RADIUS may override this option by MS-MPPE-Encryption-Policy attribute."
-#: ../../configuration/service/dhcp-server.rst:414
+#: ../../configuration/service/dhcp-server.rst:431
msgid "Default gateway and DNS server is at `192.0.2.254`"
msgstr "Default gateway and DNS server is at `192.0.2.254`"
@@ -4483,6 +4503,10 @@ msgstr "Define log group to send message to. Only applicable if rule log is enab
msgid "Define number of packets to queue inside the kernel before sending them to userspace. Only applicable if rule log is enable and log group is defined."
msgstr "Define number of packets to queue inside the kernel before sending them to userspace. Only applicable if rule log is enable and log group is defined."
+#: ../../configuration/service/dhcp-server.rst:187
+msgid "Define operation mode of High Availability feature. Default value if command is not specified is `active-active`"
+msgstr "Define operation mode of High Availability feature. Default value if command is not specified is `active-active`"
+
#: ../../configuration/protocols/rpki.rst:108
msgid "Define the time interval to update the local cache"
msgstr "Define the time interval to update the local cache"
@@ -4560,7 +4584,7 @@ msgstr "Defines the specified device as a system console. Available console devi
msgid "Defining Peers"
msgstr "Defining Peers"
-#: ../../configuration/service/dhcp-server.rst:619
+#: ../../configuration/service/dhcp-server.rst:638
msgid "Delegate prefixes from the range indicated by the start and stop qualifier."
msgstr "Delegate prefixes from the range indicated by the start and stop qualifier."
@@ -5154,7 +5178,7 @@ msgstr "Enable IGMP and MLD querier."
msgid "Enable IGMP and MLD snooping."
msgstr "Enable IGMP and MLD snooping."
-#: ../../configuration/service/dhcp-server.rst:311
+#: ../../configuration/service/dhcp-server.rst:327
msgid "Enable IP forwarding on client"
msgstr "Enable IP forwarding on client"
@@ -5511,12 +5535,12 @@ msgstr "Every connection/remote-access pool we configure also needs a pool where
#: ../../configuration/protocols/failover.rst:63
#: ../../configuration/protocols/igmp-proxy.rst:61
#: ../../configuration/protocols/pim.rst:217
-#: ../../configuration/protocols/rpki.rst:166
+#: ../../configuration/protocols/rpki.rst:168
#: ../../configuration/service/broadcast-relay.rst:55
-#: ../../configuration/service/conntrack-sync.rst:190
+#: ../../configuration/service/conntrack-sync.rst:195
#: ../../configuration/service/dhcp-relay.rst:85
#: ../../configuration/service/dhcp-relay.rst:174
-#: ../../configuration/service/dhcp-server.rst:402
+#: ../../configuration/service/dhcp-server.rst:418
#: ../../configuration/service/dns.rst:147
#: ../../configuration/service/dns.rst:260
#: ../../configuration/service/eventhandler.rst:83
@@ -5810,8 +5834,6 @@ msgstr "Facility Code"
#: ../../configuration/loadbalancing/wan.rst:218
#: ../../configuration/protocols/failover.rst:3
-#: ../../configuration/service/dhcp-server.rst:170
-#: ../../configuration/service/dhcp-server.rst:409
msgid "Failover"
msgstr "Failover"
@@ -6533,7 +6555,7 @@ msgstr "HT (High Throughput) capabilities (802.11n)"
msgid "Hairpin NAT/NAT Reflection"
msgstr "Hairpin NAT/NAT Reflection"
-#: ../../configuration/service/dhcp-server.rst:613
+#: ../../configuration/service/dhcp-server.rst:632
msgid "Hand out prefixes of size `<length>` to clients in subnet `<prefix>` when they request for prefix delegation."
msgstr "Hand out prefixes of size `<length>` to clients in subnet `<prefix>` when they request for prefix delegation."
@@ -6589,7 +6611,7 @@ msgstr "Here is a second example of a dual-stack tunnel over IPv6 between a VyOS
msgid "Here is an example :abbr:`NET (Network Entity Title)` value:"
msgstr "Here is an example :abbr:`NET (Network Entity Title)` value:"
-#: ../../configuration/protocols/rpki.rst:177
+#: ../../configuration/protocols/rpki.rst:179
msgid "Here is an example route-map to apply to routes learned at import. In this filter we reject prefixes with the state `invalid`, and set a higher `local-preference` if the prefix is RPKI `valid` rather than merely `notfound`."
msgstr "Here is an example route-map to apply to routes learned at import. In this filter we reject prefixes with the state `invalid`, and set a higher `local-preference` if the prefix is RPKI `valid` rather than merely `notfound`."
@@ -6619,6 +6641,11 @@ msgstr "Hewlett-Packard call it Source-Port filtering or port-isolation"
msgid "High"
msgstr "High"
+#: ../../configuration/service/dhcp-server.rst:170
+#: ../../configuration/service/dhcp-server.rst:425
+msgid "High Availability"
+msgstr "High Availability"
+
#: ../../configuration/highavailability/index.rst:6
msgid "High availability"
msgstr "High availability"
@@ -6639,7 +6666,7 @@ msgstr "Host Information"
msgid "Host name"
msgstr "Host name"
-#: ../../configuration/service/dhcp-server.rst:672
+#: ../../configuration/service/dhcp-server.rst:691
msgid "Host specific mapping shall be named ``client1``"
msgstr "Host specific mapping shall be named ``client1``"
@@ -6787,7 +6814,7 @@ msgstr "IPSec VPN tunnels."
msgid "IP address"
msgstr "IP address"
-#: ../../configuration/service/dhcp-server.rst:242
+#: ../../configuration/service/dhcp-server.rst:258
msgid "IP address ``192.168.1.100`` shall be statically mapped to client named ``client1``"
msgstr "IP address ``192.168.1.100`` shall be statically mapped to client named ``client1``"
@@ -6796,19 +6823,19 @@ msgstr "IP address ``192.168.1.100`` shall be statically mapped to client named
msgid "IP address ``192.168.2.1/24``"
msgstr "IP address ``192.168.2.1/24``"
-#: ../../configuration/service/dhcp-server.rst:326
+#: ../../configuration/service/dhcp-server.rst:342
msgid "IP address for DHCP server identifier"
msgstr "IP address for DHCP server identifier"
-#: ../../configuration/service/dhcp-server.rst:316
+#: ../../configuration/service/dhcp-server.rst:332
msgid "IP address of NTP server"
msgstr "IP address of NTP server"
-#: ../../configuration/service/dhcp-server.rst:356
+#: ../../configuration/service/dhcp-server.rst:372
msgid "IP address of POP3 server"
msgstr "IP address of POP3 server"
-#: ../../configuration/service/dhcp-server.rst:351
+#: ../../configuration/service/dhcp-server.rst:367
msgid "IP address of SMTP server"
msgstr "IP address of SMTP server"
@@ -6824,7 +6851,7 @@ msgstr "IP address of route to match, based on prefix-list."
msgid "IP address of route to match, based on specified prefix-length. Note that this can be used for kernel routes only. Do not apply to the routes of dynamic routing protocols (e.g. BGP, RIP, OSFP), as this can lead to unexpected results.."
msgstr "IP address of route to match, based on specified prefix-length. Note that this can be used for kernel routes only. Do not apply to the routes of dynamic routing protocols (e.g. BGP, RIP, OSFP), as this can lead to unexpected results.."
-#: ../../configuration/service/dhcp-server.rst:386
+#: ../../configuration/service/dhcp-server.rst:402
msgid "IP address to exclude from DHCP lease range"
msgstr "IP address to exclude from DHCP lease range"
@@ -6912,11 +6939,11 @@ msgstr "IPv4/IPv6 remote address of the VXLAN tunnel. Alternative to multicast,
msgid "IPv4 Firewall Configuration"
msgstr "IPv4 Firewall Configuration"
-#: ../../configuration/service/dhcp-server.rst:331
+#: ../../configuration/service/dhcp-server.rst:347
msgid "IPv4 address of next bootstrap server"
msgstr "IPv4 address of next bootstrap server"
-#: ../../configuration/service/dhcp-server.rst:291
+#: ../../configuration/service/dhcp-server.rst:307
msgid "IPv4 address of router on the client's subnet"
msgstr "IPv4 address of router on the client's subnet"
@@ -6997,7 +7024,7 @@ msgstr "IPv6 SLAAC and IA-PD"
msgid "IPv6 TCP filters will only match IPv6 packets with no header extension, see https://en.wikipedia.org/wiki/IPv6_packet#Extension_headers"
msgstr "IPv6 TCP filters will only match IPv6 packets with no header extension, see https://en.wikipedia.org/wiki/IPv6_packet#Extension_headers"
-#: ../../configuration/service/dhcp-server.rst:670
+#: ../../configuration/service/dhcp-server.rst:689
msgid "IPv6 address ``2001:db8::101`` shall be statically mapped"
msgstr "IPv6 address ``2001:db8::101`` shall be statically mapped"
@@ -7033,7 +7060,7 @@ msgstr "IPv6 peering"
msgid "IPv6 prefix."
msgstr "IPv6 prefix."
-#: ../../configuration/service/dhcp-server.rst:671
+#: ../../configuration/service/dhcp-server.rst:690
msgid "IPv6 prefix ``2001:db8:0:101::/64`` shall be statically mapped"
msgstr "IPv6 prefix ``2001:db8:0:101::/64`` shall be statically mapped"
@@ -7045,7 +7072,7 @@ msgstr "IPv6 relay"
msgid "IPv6 route source: bgp, connected, eigrp, isis, kernel, nhrp, ospfv3, ripng, static."
msgstr "IPv6 route source: bgp, connected, eigrp, isis, kernel, nhrp, ospfv3, ripng, static."
-#: ../../configuration/service/dhcp-server.rst:542
+#: ../../configuration/service/dhcp-server.rst:561
msgid "IPv6 server"
msgstr "IPv6 server"
@@ -7065,7 +7092,7 @@ msgstr "IS-IS Global Configuration"
msgid "IS-IS SR Configuration"
msgstr "IS-IS SR Configuration"
-#: ../../configuration/service/dhcp-server.rst:273
+#: ../../configuration/service/dhcp-server.rst:289
msgid "ISC-DHCP Option name"
msgstr "ISC-DHCP Option name"
@@ -7336,7 +7363,7 @@ msgstr "If the statically mapped peer is running Cisco IOS, specify the cisco ke
msgid "If the system detects an unconfigured wireless device, it will be automatically added the configuration tree, specifying any detected settings (for example, its MAC address) and configured to run in monitor mode."
msgstr "If the system detects an unconfigured wireless device, it will be automatically added the configuration tree, specifying any detected settings (for example, its MAC address) and configured to run in monitor mode."
-#: ../../configuration/service/conntrack-sync.rst:130
+#: ../../configuration/service/conntrack-sync.rst:135
msgid "If the table is empty and you have a warning message, it means conntrack is not enabled. To enable conntrack, just create a NAT or a firewall rule. :cfgcmd:`set firewall state-policy established action accept`"
msgstr "If the table is empty and you have a warning message, it means conntrack is not enabled. To enable conntrack, just create a NAT or a firewall rule. :cfgcmd:`set firewall state-policy established action accept`"
@@ -7704,7 +7731,7 @@ msgstr "In large deployments it is not reasonable to configure each user individ
msgid "In order for flow accounting information to be collected and displayed for an interface, the interface must be configured for flow accounting."
msgstr "In order for flow accounting information to be collected and displayed for an interface, the interface must be configured for flow accounting."
-#: ../../configuration/service/dhcp-server.rst:195
+#: ../../configuration/service/dhcp-server.rst:211
msgid "In order for the primary and the secondary DHCP server to keep their lease tables in sync, they must be able to reach each other on TCP port 647. If you have firewall rules in effect, adjust them accordingly."
msgstr "In order for the primary and the secondary DHCP server to keep their lease tables in sync, they must be able to reach each other on TCP port 647. If you have firewall rules in effect, adjust them accordingly."
@@ -7732,7 +7759,7 @@ msgstr "In order to have VyOS Traffic Control working you need to follow 2 steps
msgid "In order to have full control and make use of multiple static public IP addresses, your VyOS will have to initiate the PPPoE connection and control it. In order for this method to work, you will have to figure out how to make your DSL Modem/Router switch into a Bridged Mode so it only acts as a DSL Transceiver device to connect between the Ethernet link of your VyOS and the phone cable. Once your DSL Transceiver is in Bridge Mode, you should get no IP address from it. Please make sure you connect to the Ethernet Port 1 if your DSL Transceiver has a switch, as some of them only work this way."
msgstr "In order to have full control and make use of multiple static public IP addresses, your VyOS will have to initiate the PPPoE connection and control it. In order for this method to work, you will have to figure out how to make your DSL Modem/Router switch into a Bridged Mode so it only acts as a DSL Transceiver device to connect between the Ethernet link of your VyOS and the phone cable. Once your DSL Transceiver is in Bridge Mode, you should get no IP address from it. Please make sure you connect to the Ethernet Port 1 if your DSL Transceiver has a switch, as some of them only work this way."
-#: ../../configuration/service/dhcp-server.rst:665
+#: ../../configuration/service/dhcp-server.rst:684
msgid "In order to map specific IPv6 addresses to specific hosts static mappings can be created. The following example explains the process."
msgstr "In order to map specific IPv6 addresses to specific hosts static mappings can be created. The following example explains the process."
@@ -8170,7 +8197,7 @@ msgstr "It helps to think of the syntax as: (see below). The 'rule-set' should b
msgid "It is compatible with Cisco (R) AnyConnect (R) clients."
msgstr "It is compatible with Cisco (R) AnyConnect (R) clients."
-#: ../../configuration/service/dhcp-server.rst:630
+#: ../../configuration/service/dhcp-server.rst:649
msgid "It is connected to ``eth1``"
msgstr "It is connected to ``eth1``"
@@ -8373,11 +8400,11 @@ msgstr "Label Distribution Protocol"
msgid "Layer 2 Tunnelling Protocol Version 3 is an IETF standard related to L2TP that can be used as an alternative protocol to :ref:`mpls` for encapsulation of multiprotocol Layer 2 communications traffic over IP networks. Like L2TP, L2TPv3 provides a pseudo-wire service but is scaled to fit carrier requirements."
msgstr "Layer 2 Tunnelling Protocol Version 3 is an IETF standard related to L2TP that can be used as an alternative protocol to :ref:`mpls` for encapsulation of multiprotocol Layer 2 communications traffic over IP networks. Like L2TP, L2TPv3 provides a pseudo-wire service but is scaled to fit carrier requirements."
-#: ../../configuration/service/dhcp-server.rst:633
+#: ../../configuration/service/dhcp-server.rst:652
msgid "Lease time will be left at the default value which is 24 hours"
msgstr "Lease time will be left at the default value which is 24 hours"
-#: ../../configuration/service/dhcp-server.rst:376
+#: ../../configuration/service/dhcp-server.rst:392
msgid "Lease timeout in seconds (default: 86400)"
msgstr "Lease timeout in seconds (default: 86400)"
@@ -8546,6 +8573,10 @@ msgstr "Local Configuration:"
msgid "Local Configuration - Annotated:"
msgstr "Local Configuration - Annotated:"
+#: ../../configuration/service/dhcp-server.rst:192
+msgid "Local IP `<address>` used when communicating to the HA peer."
+msgstr "Local IP `<address>` used when communicating to the HA peer."
+
#: ../../configuration/service/dhcp-server.rst:177
msgid "Local IP `<address>` used when communicating to the failover peer."
msgstr "Local IP `<address>` used when communicating to the failover peer."
@@ -8578,11 +8609,11 @@ msgstr "Local User Account"
msgid "Local path that includes the known hosts file."
msgstr "Local path that includes the known hosts file."
-#: ../../configuration/protocols/rpki.rst:155
+#: ../../configuration/protocols/rpki.rst:157
msgid "Local path that includes the private key file of the router."
msgstr "Local path that includes the private key file of the router."
-#: ../../configuration/protocols/rpki.rst:159
+#: ../../configuration/protocols/rpki.rst:161
msgid "Local path that includes the public key file of the router."
msgstr "Local path that includes the public key file of the router."
@@ -8758,7 +8789,7 @@ msgstr "Main structure is shown next:"
msgid "Maintenance mode"
msgstr "Maintenance mode"
-#: ../../configuration/service/conntrack-sync.rst:111
+#: ../../configuration/service/conntrack-sync.rst:116
msgid "Make sure conntrack is enabled by running and show connection tracking table."
msgstr "Make sure conntrack is enabled by running and show connection tracking table."
@@ -9151,7 +9182,7 @@ msgstr "Most operating systems include native client support for IPsec IKEv2 VPN
msgid "Mount a volume into the container"
msgstr "Mount a volume into the container"
-#: ../../configuration/service/dhcp-server.rst:275
+#: ../../configuration/service/dhcp-server.rst:291
msgid "Multi"
msgstr "Multi"
@@ -9163,7 +9194,7 @@ msgstr "Multi-client server is the most popular OpenVPN mode on routers. It alwa
msgid "Multi-homed. In a multi-homed network environment, the NAT66 device connects to an internal network and simultaneously connects to different external networks. Address translation can be configured on each external network side interface of the NAT66 device to convert the same internal network address into different external network addresses, and realize the mapping of the same internal address to multiple external addresses."
msgstr "Multi-homed. In a multi-homed network environment, the NAT66 device connects to an internal network and simultaneously connects to different external networks. Address translation can be configured on each external network side interface of the NAT66 device to convert the same internal network address into different external network addresses, and realize the mapping of the same internal address to multiple external addresses."
-#: ../../configuration/service/dhcp-server.rst:399
+#: ../../configuration/service/dhcp-server.rst:415
msgid "Multi: can be specified multiple times."
msgstr "Multi: can be specified multiple times."
@@ -9266,18 +9297,18 @@ msgstr "Multiple users can connect to the same serial device but only one is all
msgid "Multiprotocol extensions enable BGP to carry routing information for multiple network layer protocols. BGP supports an Address Family Identifier (AFI) for IPv4 and IPv6."
msgstr "Multiprotocol extensions enable BGP to carry routing information for multiple network layer protocols. BGP supports an Address Family Identifier (AFI) for IPv4 and IPv6."
-#: ../../configuration/service/dhcp-server.rst:281
-#: ../../configuration/service/dhcp-server.rst:287
-#: ../../configuration/service/dhcp-server.rst:292
-#: ../../configuration/service/dhcp-server.rst:312
-#: ../../configuration/service/dhcp-server.rst:327
-#: ../../configuration/service/dhcp-server.rst:332
-#: ../../configuration/service/dhcp-server.rst:337
-#: ../../configuration/service/dhcp-server.rst:342
-#: ../../configuration/service/dhcp-server.rst:347
-#: ../../configuration/service/dhcp-server.rst:367
-#: ../../configuration/service/dhcp-server.rst:372
-#: ../../configuration/service/dhcp-server.rst:377
+#: ../../configuration/service/dhcp-server.rst:297
+#: ../../configuration/service/dhcp-server.rst:303
+#: ../../configuration/service/dhcp-server.rst:308
+#: ../../configuration/service/dhcp-server.rst:328
+#: ../../configuration/service/dhcp-server.rst:343
+#: ../../configuration/service/dhcp-server.rst:348
+#: ../../configuration/service/dhcp-server.rst:353
+#: ../../configuration/service/dhcp-server.rst:358
+#: ../../configuration/service/dhcp-server.rst:363
+#: ../../configuration/service/dhcp-server.rst:383
+#: ../../configuration/service/dhcp-server.rst:388
+#: ../../configuration/service/dhcp-server.rst:393
msgid "N"
msgstr "N"
@@ -9378,7 +9409,7 @@ msgstr "Name of installed certificate authority certificate."
msgid "Name of installed server certificate."
msgstr "Name of installed server certificate."
-#: ../../configuration/service/dhcp-server.rst:396
+#: ../../configuration/service/dhcp-server.rst:412
msgid "Name of static mapping"
msgstr "Name of static mapping"
@@ -9386,11 +9417,11 @@ msgstr "Name of static mapping"
msgid "Name of the single table Only if set group-metrics single-table."
msgstr "Name of the single table Only if set group-metrics single-table."
-#: ../../configuration/service/dhcp-server.rst:336
+#: ../../configuration/service/dhcp-server.rst:352
msgid "Name or IPv4 address of TFTP server"
msgstr "Name or IPv4 address of TFTP server"
-#: ../../configuration/service/dhcp-server.rst:321
+#: ../../configuration/service/dhcp-server.rst:337
msgid "NetBIOS over TCP/IP name server"
msgstr "NetBIOS over TCP/IP name server"
@@ -9569,7 +9600,7 @@ msgstr "Note the command with the public key (set pki key-pair ipsec-RIGHT publi
msgid "Notice"
msgstr "Notice"
-#: ../../configuration/service/conntrack-sync.rst:198
+#: ../../configuration/service/conntrack-sync.rst:203
msgid "Now configure conntrack-sync service on ``router1`` **and** ``router2``"
msgstr "Now configure conntrack-sync service on ``router1`` **and** ``router2``"
@@ -9641,7 +9672,7 @@ msgstr "OTP-key generation"
msgid "Offloading"
msgstr "Offloading"
-#: ../../configuration/service/dhcp-server.rst:285
+#: ../../configuration/service/dhcp-server.rst:301
msgid "Offset of the client's subnet in seconds from Coordinated Universal Time (UTC)"
msgstr "Offset of the client's subnet in seconds from Coordinated Universal Time (UTC)"
@@ -9653,7 +9684,7 @@ msgstr "Often we need to embed one policy into another one. It is possible to do
msgid "Often you will also have to configure your *default* traffic in the same way you do with a class. *Default* can be considered a class as it behaves like that. It contains any traffic that did not match any of the defined classes, so it is like an open class, a class without matching filters."
msgstr "Often you will also have to configure your *default* traffic in the same way you do with a class. *Default* can be considered a class as it behaves like that. It contains any traffic that did not match any of the defined classes, so it is like an open class, a class without matching filters."
-#: ../../configuration/service/conntrack-sync.rst:215
+#: ../../configuration/service/conntrack-sync.rst:220
msgid "On active router run:"
msgstr "On active router run:"
@@ -9669,7 +9700,7 @@ msgstr "On low rates (below 40Mbit) you may want to tune `quantum` down to somet
msgid "On most scenarios, there's no need to change specific parameters, and using default configuration is enough. But there are cases were extra configuration is needed."
msgstr "On most scenarios, there's no need to change specific parameters, and using default configuration is enough. But there are cases were extra configuration is needed."
-#: ../../configuration/service/conntrack-sync.rst:246
+#: ../../configuration/service/conntrack-sync.rst:251
msgid "On standby router run:"
msgstr "On standby router run:"
@@ -9704,7 +9735,7 @@ msgstr "On the RIGHT:"
msgid "On the RIGHT (dynamic address):"
msgstr "On the RIGHT (dynamic address):"
-#: ../../configuration/service/conntrack-sync.rst:211
+#: ../../configuration/service/conntrack-sync.rst:216
msgid "On the active router, you should have information in the internal-cache of conntrack-sync. The same current active connections number should be shown in the external-cache of the standby router"
msgstr "On the active router, you should have information in the internal-cache of conntrack-sync. The same current active connections number should be shown in the external-cache of the standby router"
@@ -9784,7 +9815,7 @@ msgstr "Once you have an Ethernet device connected, i.e. `eth0`, then you can co
msgid "Once you have setup your SSTP server there comes the time to do some basic testing. The Linux client used for testing is called sstpc_. sstpc_ requires a PPP configuration/peer file."
msgstr "Once you have setup your SSTP server there comes the time to do some basic testing. The Linux client used for testing is called sstpc_. sstpc_ requires a PPP configuration/peer file."
-#: ../../configuration/protocols/rpki.rst:193
+#: ../../configuration/protocols/rpki.rst:195
msgid "Once your routers are configured to reject RPKI-invalid prefixes, you can test whether the configuration is working correctly using the `RIPE Labs RPKI Test`_ experimental tool."
msgstr "Once your routers are configured to reject RPKI-invalid prefixes, you can test whether the configuration is working correctly using the `RIPE Labs RPKI Test`_ experimental tool."
@@ -9923,7 +9954,7 @@ msgstr "Operating Modes"
#: ../../configuration/pki/index.rst:321
#: ../../configuration/protocols/igmp-proxy.rst:73
#: ../../configuration/protocols/static.rst:216
-#: ../../configuration/service/conntrack-sync.rst:107
+#: ../../configuration/service/conntrack-sync.rst:112
#: ../../configuration/service/console-server.rst:76
#: ../../configuration/service/dhcp-relay.rst:124
#: ../../configuration/service/dhcp-relay.rst:201
@@ -9955,8 +9986,8 @@ msgstr "Operation-mode Firewall"
msgid "Operation Commands"
msgstr "Operation Commands"
-#: ../../configuration/service/dhcp-server.rst:452
-#: ../../configuration/service/dhcp-server.rst:706
+#: ../../configuration/service/dhcp-server.rst:471
+#: ../../configuration/service/dhcp-server.rst:725
#: ../../configuration/system/acceleration.rst:42
msgid "Operation Mode"
msgstr "Operation Mode"
@@ -9992,11 +10023,11 @@ msgstr "Option"
msgid "Option 43 for UniFI"
msgstr "Option 43 for UniFI"
-#: ../../configuration/service/dhcp-server.rst:274
+#: ../../configuration/service/dhcp-server.rst:290
msgid "Option description"
msgstr "Option description"
-#: ../../configuration/service/dhcp-server.rst:272
+#: ../../configuration/service/dhcp-server.rst:288
msgid "Option number"
msgstr "Option number"
@@ -10046,7 +10077,7 @@ msgstr "Optionally set a specific static IPv4 or IPv6 address for the container.
#: ../../configuration/interfaces/openvpn.rst:631
#: ../../configuration/service/dhcp-relay.rst:53
#: ../../configuration/service/dhcp-relay.rst:160
-#: ../../configuration/service/dhcp-server.rst:264
+#: ../../configuration/service/dhcp-server.rst:280
msgid "Options"
msgstr "Options"
@@ -10066,6 +10097,10 @@ msgstr "Or, for example ftp, `delete system conntrack modules ftp`."
msgid "Or **binary** prefixes."
msgstr "Or **binary** prefixes."
+#: ../../configuration/service/conntrack-sync.rst:107
+msgid "Order conntrackd to request a complete conntrack table resync against the other node at startup."
+msgstr "Order conntrackd to request a complete conntrack table resync against the other node at startup."
+
#: ../../configuration/protocols/ospf.rst:73
msgid "Originate an AS-External (type-5) LSA describing a default route into all external-routing capable areas, of the specified metric and metric type. If the :cfgcmd:`always` keyword is given then the default is always advertised, even when there is no default present in the routing table. The argument :cfgcmd:`route-map` specifies to advertise the default route if the route map is satisfied."
msgstr "Originate an AS-External (type-5) LSA describing a default route into all external-routing capable areas, of the specified metric and metric type. If the :cfgcmd:`always` keyword is given then the default is always advertised, even when there is no default present in the routing table. The argument :cfgcmd:`route-map` specifies to advertise the default route if the route map is satisfied."
@@ -10338,7 +10373,7 @@ msgstr "Please refer to the :ref:`ipsec` documentation for the individual IPSec
msgid "Please refer to the :ref:`tunnel-interface` documentation for the individual tunnel related options."
msgstr "Please refer to the :ref:`tunnel-interface` documentation for the individual tunnel related options."
-#: ../../configuration/service/dhcp-server.rst:404
+#: ../../configuration/service/dhcp-server.rst:420
msgid "Please see the :ref:`dhcp-dns-quick-start` configuration."
msgstr "Please see the :ref:`dhcp-dns-quick-start` configuration."
@@ -10485,7 +10520,7 @@ msgstr "Preference associated with the default router"
msgid "Prefix Conversion"
msgstr "Prefix Conversion"
-#: ../../configuration/service/dhcp-server.rst:604
+#: ../../configuration/service/dhcp-server.rst:623
msgid "Prefix Delegation"
msgstr "Prefix Delegation"
@@ -10772,7 +10807,7 @@ msgstr "RADIUS source address"
msgid "RFC 3768 defines a virtual MAC address to each VRRP virtual router. This virtual router MAC address will be used as the source in all periodic VRRP messages sent by the active node. When the rfc3768-compatibility option is set, a new VRRP interface is created, to which the MAC address and the virtual IP address is automatically assigned."
msgstr "RFC 3768 defines a virtual MAC address to each VRRP virtual router. This virtual router MAC address will be used as the source in all periodic VRRP messages sent by the active node. When the rfc3768-compatibility option is set, a new VRRP interface is created, to which the MAC address and the virtual IP address is automatically assigned."
-#: ../../configuration/service/dhcp-server.rst:296
+#: ../../configuration/service/dhcp-server.rst:312
msgid "RFC 868 time server IPv4 address"
msgstr "RFC 868 time server IPv4 address"
@@ -10995,6 +11030,10 @@ msgstr "Remote ``InfluxDB`` bucket name"
msgid "Remote database name."
msgstr "Remote database name."
+#: ../../configuration/service/dhcp-server.rst:196
+msgid "Remote peer IP `<address>` of the second DHCP server in this HA cluster."
+msgstr "Remote peer IP `<address>` of the second DHCP server in this HA cluster."
+
#: ../../configuration/service/dhcp-server.rst:181
msgid "Remote peer IP `<address>` of the second DHCP server in this failover cluster."
msgstr "Remote peer IP `<address>` of the second DHCP server in this failover cluster."
@@ -11087,7 +11126,7 @@ msgstr "Restart a given container"
msgid "Restart mDNS repeater service."
msgstr "Restart mDNS repeater service."
-#: ../../configuration/service/dhcp-server.rst:468
+#: ../../configuration/service/dhcp-server.rst:487
msgid "Restart the DHCP server"
msgstr "Restart the DHCP server"
@@ -11117,11 +11156,11 @@ msgstr "Results in:"
msgid "Retransmit Timer"
msgstr "Retransmit Timer"
-#: ../../configuration/service/conntrack-sync.rst:144
+#: ../../configuration/service/conntrack-sync.rst:149
msgid "Retrieve current statistics of connection tracking subsystem."
msgstr "Retrieve current statistics of connection tracking subsystem."
-#: ../../configuration/service/conntrack-sync.rst:177
+#: ../../configuration/service/conntrack-sync.rst:182
msgid "Retrieve current status of connection tracking subsystem."
msgstr "Retrieve current status of connection tracking subsystem."
@@ -11386,7 +11425,7 @@ msgstr "SSH client"
msgid "SSH provides a secure channel over an unsecured network in a client-server architecture, connecting an SSH client application with an SSH server. Common applications include remote command-line login and remote command execution, but any network service can be secured with SSH. The protocol specification distinguishes between two major versions, referred to as SSH-1 and SSH-2."
msgstr "SSH provides a secure channel over an unsecured network in a client-server architecture, connecting an SSH client application with an SSH server. Common applications include remote command-line login and remote command execution, but any network service can be secured with SSH. The protocol specification distinguishes between two major versions, referred to as SSH-1 and SSH-2."
-#: ../../configuration/protocols/rpki.rst:151
+#: ../../configuration/protocols/rpki.rst:153
msgid "SSH username to establish an SSH connection to the cache server."
msgstr "SSH username to establish an SSH connection to the cache server."
@@ -12292,7 +12331,7 @@ msgstr "Sets the unique id for this vxlan-interface. Not sure how it correlates
msgid "Setting VRRP group priority"
msgstr "Setting VRRP group priority"
-#: ../../configuration/service/dhcp-server.rst:271
+#: ../../configuration/service/dhcp-server.rst:287
msgid "Setting name"
msgstr "Setting name"
@@ -12329,6 +12368,10 @@ msgstr "Setting up tunnel:"
msgid "Setting will only become active with the next reboot!"
msgstr "Setting will only become active with the next reboot!"
+#: ../../configuration/service/dhcp-server.rst:429
+msgid "Setup DHCP HA for network 192.0.2.0/24"
+msgstr "Setup DHCP HA for network 192.0.2.0/24"
+
#: ../../configuration/service/dhcp-server.rst:413
msgid "Setup DHCP failover for network 192.0.2.0/24"
msgstr "Setup DHCP failover for network 192.0.2.0/24"
@@ -12398,11 +12441,11 @@ msgstr "Shortcut syntax for specifying automatic leaking from vrf VRFNAME to the
msgid "Show"
msgstr "Show"
-#: ../../configuration/service/dhcp-server.rst:456
+#: ../../configuration/service/dhcp-server.rst:475
msgid "Show DHCP server daemon log file"
msgstr "Show DHCP server daemon log file"
-#: ../../configuration/service/dhcp-server.rst:710
+#: ../../configuration/service/dhcp-server.rst:729
msgid "Show DHCPv6 server daemon log file"
msgstr "Show DHCPv6 server daemon log file"
@@ -12528,11 +12571,11 @@ msgstr "Show configured serial ports and their respective interface configuratio
msgid "Show connection data of load balanced traffic:"
msgstr "Show connection data of load balanced traffic:"
-#: ../../configuration/service/conntrack-sync.rst:136
+#: ../../configuration/service/conntrack-sync.rst:141
msgid "Show connection syncing external cache entries"
msgstr "Show connection syncing external cache entries"
-#: ../../configuration/service/conntrack-sync.rst:140
+#: ../../configuration/service/conntrack-sync.rst:145
msgid "Show connection syncing internal cache entries"
msgstr "Show connection syncing internal cache entries"
@@ -12602,19 +12645,19 @@ msgstr "Show logs for mDNS repeater service."
msgid "Show logs from a given container"
msgstr "Show logs from a given container"
-#: ../../configuration/service/dhcp-server.rst:460
+#: ../../configuration/service/dhcp-server.rst:479
msgid "Show logs from all DHCP client processes."
msgstr "Show logs from all DHCP client processes."
-#: ../../configuration/service/dhcp-server.rst:714
+#: ../../configuration/service/dhcp-server.rst:733
msgid "Show logs from all DHCPv6 client processes."
msgstr "Show logs from all DHCPv6 client processes."
-#: ../../configuration/service/dhcp-server.rst:464
+#: ../../configuration/service/dhcp-server.rst:483
msgid "Show logs from specific `interface` DHCP client process."
msgstr "Show logs from specific `interface` DHCP client process."
-#: ../../configuration/service/dhcp-server.rst:718
+#: ../../configuration/service/dhcp-server.rst:737
msgid "Show logs from specific `interface` DHCPv6 client process."
msgstr "Show logs from specific `interface` DHCPv6 client process."
@@ -12626,16 +12669,16 @@ msgstr "Show only information for specified Certificate Authority."
msgid "Show only information for specified certificate."
msgstr "Show only information for specified certificate."
-#: ../../configuration/service/dhcp-server.rst:518
-#: ../../configuration/service/dhcp-server.rst:741
+#: ../../configuration/service/dhcp-server.rst:537
+#: ../../configuration/service/dhcp-server.rst:760
msgid "Show only leases in the specified pool."
msgstr "Show only leases in the specified pool."
-#: ../../configuration/service/dhcp-server.rst:750
+#: ../../configuration/service/dhcp-server.rst:769
msgid "Show only leases with the specified state. Possible states: abandoned, active, all, backup, expired, free, released, reset (default = active)"
msgstr "Show only leases with the specified state. Possible states: abandoned, active, all, backup, expired, free, released, reset (default = active)"
-#: ../../configuration/service/dhcp-server.rst:536
+#: ../../configuration/service/dhcp-server.rst:555
msgid "Show only leases with the specified state. Possible states: all, active, free, expired, released, abandoned, reset, backup (default = active)"
msgstr "Show only leases with the specified state. Possible states: all, active, free, expired, released, abandoned, reset, backup (default = active)"
@@ -12651,19 +12694,19 @@ msgstr "Show specific MACsec interface information"
msgid "Show status of new setup:"
msgstr "Show status of new setup:"
-#: ../../configuration/service/dhcp-server.rst:487
+#: ../../configuration/service/dhcp-server.rst:506
msgid "Show statuses of all active leases:"
msgstr "Show statuses of all active leases:"
-#: ../../configuration/service/dhcp-server.rst:505
+#: ../../configuration/service/dhcp-server.rst:524
msgid "Show statuses of all active leases granted by local (this server) or remote (failover server):"
msgstr "Show statuses of all active leases granted by local (this server) or remote (failover server):"
-#: ../../configuration/service/dhcp-server.rst:472
+#: ../../configuration/service/dhcp-server.rst:491
msgid "Show the DHCP server statistics:"
msgstr "Show the DHCP server statistics:"
-#: ../../configuration/service/dhcp-server.rst:483
+#: ../../configuration/service/dhcp-server.rst:502
msgid "Show the DHCP server statistics for the specified pool."
msgstr "Show the DHCP server statistics for the specified pool."
@@ -12712,7 +12755,7 @@ msgstr "Show transceiver information from plugin modules, e.g SFP+, QSFP"
msgid "Showing BFD monitored static routes"
msgstr "Showing BFD monitored static routes"
-#: ../../configuration/service/dhcp-server.rst:726
+#: ../../configuration/service/dhcp-server.rst:745
msgid "Shows status of all assigned leases:"
msgstr "Shows status of all assigned leases:"
@@ -12904,11 +12947,11 @@ msgstr "Some users tend to connect their mobile devices using WireGuard to their
msgid "Sometimes option lines in the generated OpenVPN configuration require quotes. This is done through a hack on our config generator. You can pass quotes using the ``&quot;`` statement."
msgstr "Sometimes option lines in the generated OpenVPN configuration require quotes. This is done through a hack on our config generator. You can pass quotes using the ``&quot;`` statement."
-#: ../../configuration/service/dhcp-server.rst:745
+#: ../../configuration/service/dhcp-server.rst:764
msgid "Sort the output by the specified key. Possible keys: expires, iaid_duid, ip, last_comm, pool, remaining, state, type (default = ip)"
msgstr "Sort the output by the specified key. Possible keys: expires, iaid_duid, ip, last_comm, pool, remaining, state, type (default = ip)"
-#: ../../configuration/service/dhcp-server.rst:531
+#: ../../configuration/service/dhcp-server.rst:550
msgid "Sort the output by the specified key. Possible keys: ip, hardware_address, state, start, end, remaining, pool, hostname (default = ip)"
msgstr "Sort the output by the specified key. Possible keys: ip, hardware_address, state, start, end, remaining, pool, hostname (default = ip)"
@@ -13098,7 +13141,7 @@ msgstr "Specifies the available :abbr:`MAC (Message Authentication Code)` algori
msgid "Specifies the base DN under which the users are located."
msgstr "Specifies the base DN under which the users are located."
-#: ../../configuration/service/dhcp-server.rst:279
+#: ../../configuration/service/dhcp-server.rst:295
msgid "Specifies the clients subnet mask as per RFC 950. If unset, subnet declaration is used."
msgstr "Specifies the clients subnet mask as per RFC 950. If unset, subnet declaration is used."
@@ -13206,15 +13249,15 @@ msgstr "Specify IPv4 and/or IPv6 networks which are going to be excluded."
msgid "Specify a Fully Qualified Domain Name as source/destination matcher. Ensure router is able to resolve such dns query."
msgstr "Specify a Fully Qualified Domain Name as source/destination matcher. Ensure router is able to resolve such dns query."
-#: ../../configuration/service/dhcp-server.rst:590
+#: ../../configuration/service/dhcp-server.rst:609
msgid "Specify a NIS+ server address for DHCPv6 clients."
msgstr "Specify a NIS+ server address for DHCPv6 clients."
-#: ../../configuration/service/dhcp-server.rst:585
+#: ../../configuration/service/dhcp-server.rst:604
msgid "Specify a NIS server address for DHCPv6 clients."
msgstr "Specify a NIS server address for DHCPv6 clients."
-#: ../../configuration/service/dhcp-server.rst:595
+#: ../../configuration/service/dhcp-server.rst:614
msgid "Specify a :abbr:`SIP (Session Initiation Protocol)` server by IPv6 address of Fully Qualified Domain Name for all DHCPv6 clients."
msgstr "Specify a :abbr:`SIP (Session Initiation Protocol)` server by IPv6 address of Fully Qualified Domain Name for all DHCPv6 clients."
@@ -13368,7 +13411,7 @@ msgstr "Starting with VyOS 1.2 a :abbr:`mDNS (Multicast DNS)` repeater functiona
msgid "Static"
msgstr "Static"
-#: ../../configuration/service/dhcp-server.rst:229
+#: ../../configuration/service/dhcp-server.rst:245
msgid "Static DHCP IP address assign to host identified by `<description>`. IP address must be inside the `<subnet>` which is defined but can be outside the dynamic range created with :cfgcmd:`set service dhcp-server shared-network-name <name> subnet <subnet> range <n>`. If no ip-address is specified, an IP from the dynamic pool is used."
msgstr "Static DHCP IP address assign to host identified by `<description>`. IP address must be inside the `<subnet>` which is defined but can be outside the dynamic range created with :cfgcmd:`set service dhcp-server shared-network-name <name> subnet <subnet> range <n>`. If no ip-address is specified, an IP from the dynamic pool is used."
@@ -13396,13 +13439,13 @@ msgstr "Static Routing or other dynamic routing protocols can be used over the v
msgid "Static :abbr:`SAK (Secure Authentication Key)` mode can be configured manually on each device wishing to use MACsec. Keys must be set statically on all devices for traffic to flow properly. Key rotation is dependent on the administrator updating all keys manually across connected devices. Static SAK mode can not be used with MKA."
msgstr "Static :abbr:`SAK (Secure Authentication Key)` mode can be configured manually on each device wishing to use MACsec. Keys must be set statically on all devices for traffic to flow properly. Key rotation is dependent on the administrator updating all keys manually across connected devices. Static SAK mode can not be used with MKA."
-#: ../../configuration/service/dhcp-server.rst:208
-#: ../../configuration/service/dhcp-server.rst:663
+#: ../../configuration/service/dhcp-server.rst:224
+#: ../../configuration/service/dhcp-server.rst:682
msgid "Static mappings"
msgstr "Static mappings"
-#: ../../configuration/service/dhcp-server.rst:500
-#: ../../configuration/service/dhcp-server.rst:736
+#: ../../configuration/service/dhcp-server.rst:519
+#: ../../configuration/service/dhcp-server.rst:755
msgid "Static mappings aren't shown. To show all states, use ``show dhcp server leases state all``."
msgstr "Static mappings aren't shown. To show all states, use ``show dhcp server leases state all``."
@@ -13950,9 +13993,9 @@ msgstr "The command pon TESTUNNEL establishes the PPTP tunnel to the remote syst
msgid "The computers on an internal network can use any of the addresses set aside by the :abbr:`IANA (Internet Assigned Numbers Authority)` for private addressing (see :rfc:`1918`). These reserved IP addresses are not in use on the Internet, so an external machine will not directly route to them. The following addresses are reserved for private use:"
msgstr "The computers on an internal network can use any of the addresses set aside by the :abbr:`IANA (Internet Assigned Numbers Authority)` for private addressing (see :rfc:`1918`). These reserved IP addresses are not in use on the Internet, so an external machine will not directly route to them. The following addresses are reserved for private use:"
-#: ../../configuration/service/dhcp-server.rst:250
-#: ../../configuration/service/dhcp-server.rst:642
-#: ../../configuration/service/dhcp-server.rst:686
+#: ../../configuration/service/dhcp-server.rst:266
+#: ../../configuration/service/dhcp-server.rst:661
+#: ../../configuration/service/dhcp-server.rst:705
msgid "The configuration will look as follows:"
msgstr "The configuration will look as follows:"
@@ -14008,7 +14051,7 @@ msgstr "The default is 1492."
msgid "The default is ``802.1q``."
msgstr "The default is ``802.1q``."
-#: ../../configuration/service/dhcp-server.rst:566
+#: ../../configuration/service/dhcp-server.rst:585
msgid "The default lease time for DHCPv6 leases is 24 hours. This can be changed by supplying a ``default-time``, ``maximum-time`` and ``minimum-time``. All values need to be supplied in seconds."
msgstr "The default lease time for DHCPv6 leases is 24 hours. This can be changed by supplying a ``default-time``, ``maximum-time`` and ``minimum-time``. All values need to be supplied in seconds."
@@ -14068,6 +14111,10 @@ msgstr "The destination port used for creating a VXLAN interface in Linux defaul
msgid "The device can only receive packets with VNIs configured in the VNI filtering table."
msgstr "The device can only receive packets with VNIs configured in the VNI filtering table."
+#: ../../configuration/service/dhcp-server.rst:215
+msgid "The dialogue between HA partners is neither encrypted nor authenticated. Since most DHCP servers exist within an organisation's own secure Intranet, this would be an unnecessary overhead. However, if you have DHCP HA peers whose communications traverse insecure networks, then we recommend that you consider the use of VPN tunneling between them to ensure that the HA partnership is immune to disruption (accidental or otherwise) via third parties."
+msgstr "The dialogue between HA partners is neither encrypted nor authenticated. Since most DHCP servers exist within an organisation's own secure Intranet, this would be an unnecessary overhead. However, if you have DHCP HA peers whose communications traverse insecure networks, then we recommend that you consider the use of VPN tunneling between them to ensure that the HA partnership is immune to disruption (accidental or otherwise) via third parties."
+
#: ../../configuration/service/dhcp-server.rst:199
msgid "The dialogue between failover partners is neither encrypted nor authenticated. Since most DHCP servers exist within an organisation's own secure Intranet, this would be an unnecessary overhead. However, if you have DHCP failover peers whose communications traverse insecure networks, then we recommend that you consider the use of VPN tunneling between them to ensure that the failover partnership is immune to disruption (accidental or otherwise) via third parties."
msgstr "The dialogue between failover partners is neither encrypted nor authenticated. Since most DHCP servers exist within an organisation's own secure Intranet, this would be an unnecessary overhead. However, if you have DHCP failover peers whose communications traverse insecure networks, then we recommend that you consider the use of VPN tunneling between them to ensure that the failover partnership is immune to disruption (accidental or otherwise) via third parties."
@@ -14291,7 +14338,7 @@ msgstr "The hostname can be up to 63 characters. A hostname must start and end w
msgid "The hostname or IP address of the master"
msgstr "The hostname or IP address of the master"
-#: ../../configuration/service/dhcp-server.rst:674
+#: ../../configuration/service/dhcp-server.rst:693
msgid "The identifier is the device's DUID: colon-separated hex list (as used by isc-dhcp option dhcpv6.client-id). If the device already has a dynamic lease from the DHCPv6 server, its DUID can be found with ``show service dhcpv6 server leases``. The DUID begins at the 5th octet (after the 4th colon) of IAID_DUID."
msgstr "The identifier is the device's DUID: colon-separated hex list (as used by isc-dhcp option dhcpv6.client-id). If the device already has a dynamic lease from the DHCPv6 server, its DUID can be found with ``show service dhcpv6 server leases``. The DUID begins at the 5th octet (after the 4th colon) of IAID_DUID."
@@ -14407,7 +14454,7 @@ msgstr "The netmask or domain that EDNS Client Subnet should be enabled for in o
msgid "The network topology is declared by shared-network-name and the subnet declarations. The DHCP service can serve multiple shared networks, with each shared network having 1 or more subnets. Each subnet must be present on an interface. A range can be declared inside a subnet to define a pool of dynamic addresses. Multiple ranges can be defined and can contain holes. Static mappings can be set to assign \"static\" addresses to clients based on their MAC address."
msgstr "The network topology is declared by shared-network-name and the subnet declarations. The DHCP service can serve multiple shared networks, with each shared network having 1 or more subnets. Each subnet must be present on an interface. A range can be declared inside a subnet to define a pool of dynamic addresses. Multiple ranges can be defined and can contain holes. Static mappings can be set to assign \"static\" addresses to clients based on their MAC address."
-#: ../../configuration/service/conntrack-sync.rst:192
+#: ../../configuration/service/conntrack-sync.rst:197
msgid "The next example is a simple configuration of conntrack-sync."
msgstr "The next example is a simple configuration of conntrack-sync."
@@ -14483,11 +14530,11 @@ msgstr "The prefix and ASN that originated it match a signed ROA. These are prob
msgid "The prefix or prefix length and ASN that originated it doesn't match any existing ROA. This could be the result of a prefix hijack, or merely a misconfiguration, but should probably be treated as untrustworthy route announcements."
msgstr "The prefix or prefix length and ASN that originated it doesn't match any existing ROA. This could be the result of a prefix hijack, or merely a misconfiguration, but should probably be treated as untrustworthy route announcements."
-#: ../../configuration/service/dhcp-server.rst:415
+#: ../../configuration/service/dhcp-server.rst:432
msgid "The primary DHCP server uses address `192.168.189.252`"
msgstr "The primary DHCP server uses address `192.168.189.252`"
-#: ../../configuration/service/dhcp-server.rst:192
+#: ../../configuration/service/dhcp-server.rst:208
msgid "The primary and secondary statements determines whether the server is primary or secondary."
msgstr "The primary and secondary statements determines whether the server is primary or secondary."
@@ -14499,7 +14546,7 @@ msgstr "The primary option is only valid for active-backup, transmit-load-balanc
msgid "The priority must be an integer number from 1 to 255. Higher priority value increases router's precedence in the master elections."
msgstr "The priority must be an integer number from 1 to 255. Higher priority value increases router's precedence in the master elections."
-#: ../../configuration/service/dhcp-server.rst:579
+#: ../../configuration/service/dhcp-server.rst:598
msgid "The procedure to specify a :abbr:`NIS+ (Network Information Service Plus)` domain is similar to the NIS domain one:"
msgstr "The procedure to specify a :abbr:`NIS+ (Network Information Service Plus)` domain is similar to the NIS domain one:"
@@ -14608,7 +14655,7 @@ msgstr "The scheme above doesn't work when one of the routers has a dynamic exte
msgid "The search filter can contain up to 15 occurrences of %s which will be replaced by the username, as in \"uid=%s\" for :rfc:`2037` directories. For a detailed description of LDAP search filter syntax see :rfc:`2254`."
msgstr "The search filter can contain up to 15 occurrences of %s which will be replaced by the username, as in \"uid=%s\" for :rfc:`2037` directories. For a detailed description of LDAP search filter syntax see :rfc:`2254`."
-#: ../../configuration/service/dhcp-server.rst:416
+#: ../../configuration/service/dhcp-server.rst:433
msgid "The secondary DHCP server uses address `192.168.189.253`"
msgstr "The secondary DHCP server uses address `192.168.189.253`"
@@ -15951,7 +15998,7 @@ msgid "This configuration modifies the behavior of the network statement. If you
msgstr "This configuration modifies the behavior of the network statement. If you have this configured the underlying network must exist in the routing table."
#: ../../configuration/service/dhcp-server.rst:92
-#: ../../configuration/service/dhcp-server.rst:560
+#: ../../configuration/service/dhcp-server.rst:579
msgid "This configuration parameter is required and must be unique to each subnet. It is required to map subnets to lease file entries."
msgstr "This configuration parameter is required and must be unique to each subnet. It is required to map subnets to lease file entries."
@@ -16188,7 +16235,7 @@ msgstr "This is the configuration parameter for the entire shared network defini
msgid "This is the configuration parameter for the entire shared network definition. All subnets will inherit this configuration item if not specified locally. Multiple DNS servers can be defined."
msgstr "This is the configuration parameter for the entire shared network definition. All subnets will inherit this configuration item if not specified locally. Multiple DNS servers can be defined."
-#: ../../configuration/service/dhcp-server.rst:237
+#: ../../configuration/service/dhcp-server.rst:253
msgid "This is the equivalent of the host block in dhcpd.conf of isc-dhcpd."
msgstr "This is the equivalent of the host block in dhcpd.conf of isc-dhcpd."
@@ -16200,7 +16247,7 @@ msgstr "This is the name of the physical interface used to connect to your LCD d
msgid "This is the policy that requieres the lowest resources for the same amount of traffic. But **very likely you do not need it as you cannot get much from it. Sometimes it is used just to enable logging.**"
msgstr "This is the policy that requieres the lowest resources for the same amount of traffic. But **very likely you do not need it as you cannot get much from it. Sometimes it is used just to enable logging.**"
-#: ../../configuration/service/dhcp-server.rst:235
+#: ../../configuration/service/dhcp-server.rst:251
msgid "This is useful, for example, in combination with hostfile update."
msgstr "This is useful, for example, in combination with hostfile update."
@@ -16732,7 +16779,7 @@ msgstr "To generate the CA, the server private key and certificates the followin
msgid "To get it to work as an access point with this configuration you will need to set up a DHCP server to work with that network. You can - of course - also bridge the Wireless interface with any configured bridge (:ref:`bridge-interface`) on the system."
msgstr "To get it to work as an access point with this configuration you will need to set up a DHCP server to work with that network. You can - of course - also bridge the Wireless interface with any configured bridge (:ref:`bridge-interface`) on the system."
-#: ../../configuration/service/dhcp-server.rst:606
+#: ../../configuration/service/dhcp-server.rst:625
msgid "To hand out individual prefixes to your clients the following configuration is used:"
msgstr "To hand out individual prefixes to your clients the following configuration is used:"
@@ -16761,7 +16808,7 @@ msgstr "To perform a graceful shutdown, the FRR ``graceful-restart prepare ip os
msgid "To request a /56 prefix from your ISP use:"
msgstr "To request a /56 prefix from your ISP use:"
-#: ../../configuration/service/dhcp-server.rst:722
+#: ../../configuration/service/dhcp-server.rst:741
msgid "To restart the DHCPv6 server"
msgstr "To restart the DHCPv6 server"
@@ -17099,6 +17146,10 @@ msgstr "Use a specific network-group. Prepend character ``!`` for inverted match
msgid "Use a specific port-group. Prepend character ``!`` for inverted matching criteria."
msgstr "Use a specific port-group. Prepend character ``!`` for inverted matching criteria."
+#: ../../configuration/service/dhcp-server.rst:430
+msgid "Use active-active HA mode."
+msgstr "Use active-active HA mode."
+
#: ../../configuration/nat/nat44.rst:259
msgid "Use address `masquerade` (the interfaces primary address) on rule 30"
msgstr "Use address `masquerade` (the interfaces primary address) on rule 30"
@@ -18219,7 +18270,7 @@ msgstr "VyOS SNMP supports both IPv4 and IPv6."
msgid "VyOS also comes with a build in SSTP server, see :ref:`sstp`."
msgstr "VyOS also comes with a build in SSTP server, see :ref:`sstp`."
-#: ../../configuration/service/dhcp-server.rst:544
+#: ../../configuration/service/dhcp-server.rst:563
msgid "VyOS also provides DHCPv6 server functionality which is described in this section."
msgstr "VyOS also provides DHCPv6 server functionality which is described in this section."
@@ -18316,6 +18367,10 @@ msgstr "VyOS provide an HTTP API. You can use it to execute op-mode commands, up
msgid "VyOS provides DNS infrastructure for small networks. It is designed to be lightweight and have a small footprint, suitable for resource constrained routers and firewalls. For this we utilize PowerDNS recursor."
msgstr "VyOS provides DNS infrastructure for small networks. It is designed to be lightweight and have a small footprint, suitable for resource constrained routers and firewalls. For this we utilize PowerDNS recursor."
+#: ../../configuration/service/dhcp-server.rst:172
+msgid "VyOS provides High Availability support for DHCP server. DHCP High Availability can act in two different modes:"
+msgstr "VyOS provides High Availability support for DHCP server. DHCP High Availability can act in two different modes:"
+
#: ../../configuration/vpn/remoteaccess_ipsec.rst:144
msgid "VyOS provides a command to generate a connection profile used by Windows clients that will connect to the \"rw\" connection on our VyOS server."
msgstr "VyOS provides a command to generate a connection profile used by Windows clients that will connect to the \"rw\" connection on our VyOS server."
@@ -18481,7 +18536,7 @@ msgstr "We can't support all displays from the beginning. If your display type i
msgid "We can also create the certificates using Cerbort which is an easy-to-use client that fetches a certificate from Let's Encrypt an open certificate authority launched by the EFF, Mozilla, and others and deploys it to a web server."
msgstr "We can also create the certificates using Cerbort which is an easy-to-use client that fetches a certificate from Let's Encrypt an open certificate authority launched by the EFF, Mozilla, and others and deploys it to a web server."
-#: ../../configuration/protocols/rpki.rst:168
+#: ../../configuration/protocols/rpki.rst:170
msgid "We can build route-maps for import based on these states. Here is a simple RPKI configuration, where `routinator` is the RPKI-validating \"cache\" server with ip `192.0.2.1`:"
msgstr "We can build route-maps for import based on these states. Here is a simple RPKI configuration, where `routinator` is the RPKI-validating \"cache\" server with ip `192.0.2.1`:"
@@ -18537,7 +18592,7 @@ msgstr "We use a vontainer providing the TACACS serve rin this example."
msgid "We will only accept traffic comming from interface eth0, protocol tcp and destination port 1122. All other traffic traspassing the router should be blocked."
msgstr "We will only accept traffic comming from interface eth0, protocol tcp and destination port 1122. All other traffic traspassing the router should be blocked."
-#: ../../configuration/service/dhcp-server.rst:371
+#: ../../configuration/service/dhcp-server.rst:387
msgid "Web Proxy Autodiscovery (WPAD) URL"
msgstr "Web Proxy Autodiscovery (WPAD) URL"
@@ -18742,7 +18797,7 @@ msgstr "When using NAT for a large number of host systems it recommended that a
msgid "When using SSH, known-hosts-file, private-key-file and public-key-file are mandatory options."
msgstr "When using SSH, known-hosts-file, private-key-file and public-key-file are mandatory options."
-#: ../../configuration/protocols/rpki.rst:161
+#: ../../configuration/protocols/rpki.rst:163
msgid "When using SSH, private-key-file and public-key-file are mandatory options."
msgstr "When using SSH, private-key-file and public-key-file are mandatory options."
@@ -18912,20 +18967,24 @@ msgid "With this command, you can specify how the URL path should be matched aga
msgstr "With this command, you can specify how the URL path should be matched against incoming requests."
#: ../../configuration/firewall/index.rst:166
+msgid "With zone-based firewalls a new concept was implemented, in addition to the standard in and out traffic flows, a local flow was added. This local was for traffic originating and destined to the router itself. Which means additional rules were required to secure the firewall itself from the network, in addition to the existing inbound and outbound rules from the traditional concept above."
+msgstr "With zone-based firewalls a new concept was implemented, in addition to the standard in and out traffic flows, a local flow was added. This local was for traffic originating and destined to the router itself. Which means additional rules were required to secure the firewall itself from the network, in addition to the existing inbound and outbound rules from the traditional concept above."
+
+#: ../../configuration/firewall/index.rst:166
msgid "With zone-based firewalls a new concept was implemented, in addtion to the standard in and out traffic flows, a local flow was added. This local was for traffic originating and destined to the router itself. Which means additional rules were required to secure the firewall itself from the network, in addition to the existing inbound and outbound rules from the traditional concept above."
msgstr "With zone-based firewalls a new concept was implemented, in addtion to the standard in and out traffic flows, a local flow was added. This local was for traffic originating and destined to the router itself. Which means additional rules were required to secure the firewall itself from the network, in addition to the existing inbound and outbound rules from the traditional concept above."
-#: ../../configuration/service/dhcp-server.rst:297
-#: ../../configuration/service/dhcp-server.rst:302
-#: ../../configuration/service/dhcp-server.rst:307
-#: ../../configuration/service/dhcp-server.rst:317
-#: ../../configuration/service/dhcp-server.rst:322
-#: ../../configuration/service/dhcp-server.rst:352
-#: ../../configuration/service/dhcp-server.rst:357
-#: ../../configuration/service/dhcp-server.rst:362
-#: ../../configuration/service/dhcp-server.rst:382
-#: ../../configuration/service/dhcp-server.rst:387
-#: ../../configuration/service/dhcp-server.rst:397
+#: ../../configuration/service/dhcp-server.rst:313
+#: ../../configuration/service/dhcp-server.rst:318
+#: ../../configuration/service/dhcp-server.rst:323
+#: ../../configuration/service/dhcp-server.rst:333
+#: ../../configuration/service/dhcp-server.rst:338
+#: ../../configuration/service/dhcp-server.rst:368
+#: ../../configuration/service/dhcp-server.rst:373
+#: ../../configuration/service/dhcp-server.rst:378
+#: ../../configuration/service/dhcp-server.rst:398
+#: ../../configuration/service/dhcp-server.rst:403
+#: ../../configuration/service/dhcp-server.rst:413
msgid "Y"
msgstr "Y"
@@ -19037,7 +19096,7 @@ msgstr "You can only apply one policy per interface and direction, but you could
msgid "You can run the UDP broadcast relay service on multiple routers connected to a subnet. There is **NO** UDP broadcast relay packet storm!"
msgstr "You can run the UDP broadcast relay service on multiple routers connected to a subnet. There is **NO** UDP broadcast relay packet storm!"
-#: ../../configuration/service/dhcp-server.rst:210
+#: ../../configuration/service/dhcp-server.rst:226
msgid "You can specify a static DHCP assignment on a per host basis. You will need the MAC address of the station and your desired IP address. The address must be inside the subnet definition but can be outside of the range statement."
msgstr "You can specify a static DHCP assignment on a per host basis. You will need the MAC address of the station and your desired IP address. The address must be inside the subnet definition but can be outside of the range statement."
@@ -19481,7 +19540,7 @@ msgstr "`3. Add a full path to the script`_"
msgid "`4. Add optional parameters`_"
msgstr "`4. Add optional parameters`_"
-#: ../../configuration/service/dhcp-server.rst:188
+#: ../../configuration/service/dhcp-server.rst:203
msgid "`<name>` must be identical on both sides!"
msgstr "`<name>` must be identical on both sides!"
@@ -20744,23 +20803,23 @@ msgstr "bgpd"
msgid "bonding"
msgstr "bonding"
-#: ../../configuration/service/dhcp-server.rst:345
+#: ../../configuration/service/dhcp-server.rst:361
msgid "boot-size"
msgstr "boot-size"
-#: ../../configuration/service/dhcp-server.rst:338
+#: ../../configuration/service/dhcp-server.rst:354
msgid "bootfile-name"
msgstr "bootfile-name"
-#: ../../configuration/service/dhcp-server.rst:340
+#: ../../configuration/service/dhcp-server.rst:356
msgid "bootfile-name, filename"
msgstr "bootfile-name, filename"
-#: ../../configuration/service/dhcp-server.rst:328
+#: ../../configuration/service/dhcp-server.rst:344
msgid "bootfile-server"
msgstr "bootfile-server"
-#: ../../configuration/service/dhcp-server.rst:343
+#: ../../configuration/service/dhcp-server.rst:359
msgid "bootfile-size"
msgstr "bootfile-size"
@@ -20768,7 +20827,7 @@ msgstr "bootfile-size"
msgid "bridge"
msgstr "bridge"
-#: ../../configuration/service/dhcp-server.rst:276
+#: ../../configuration/service/dhcp-server.rst:292
msgid "client-prefix-length"
msgstr "client-prefix-length"
@@ -20820,7 +20879,7 @@ msgstr "debug"
msgid "decrement-lifetime"
msgstr "decrement-lifetime"
-#: ../../configuration/service/dhcp-server.rst:375
+#: ../../configuration/service/dhcp-server.rst:391
msgid "default-lease-time, max-lease-time"
msgstr "default-lease-time, max-lease-time"
@@ -20832,7 +20891,7 @@ msgstr "default-lifetime"
msgid "default-preference"
msgstr "default-preference"
-#: ../../configuration/service/dhcp-server.rst:288
+#: ../../configuration/service/dhcp-server.rst:304
msgid "default-router"
msgstr "default-router"
@@ -20848,7 +20907,7 @@ msgstr "deprecate-prefix"
msgid "destination-hashing"
msgstr "destination-hashing"
-#: ../../configuration/service/dhcp-server.rst:325
+#: ../../configuration/service/dhcp-server.rst:341
msgid "dhcp-server-identifier"
msgstr "dhcp-server-identifier"
@@ -20870,17 +20929,17 @@ msgstr "disable: No source validation"
msgid "dnssl"
msgstr "dnssl"
-#: ../../configuration/service/dhcp-server.rst:303
-#: ../../configuration/service/dhcp-server.rst:305
+#: ../../configuration/service/dhcp-server.rst:319
+#: ../../configuration/service/dhcp-server.rst:321
msgid "domain-name"
msgstr "domain-name"
-#: ../../configuration/service/dhcp-server.rst:300
+#: ../../configuration/service/dhcp-server.rst:316
msgid "domain-name-servers"
msgstr "domain-name-servers"
-#: ../../configuration/service/dhcp-server.rst:358
-#: ../../configuration/service/dhcp-server.rst:360
+#: ../../configuration/service/dhcp-server.rst:374
+#: ../../configuration/service/dhcp-server.rst:376
msgid "domain-search"
msgstr "domain-search"
@@ -20916,11 +20975,11 @@ msgstr "ethernet"
msgid "exact-match: exact match of the network prefixes."
msgstr "exact-match: exact match of the network prefixes."
-#: ../../configuration/service/dhcp-server.rst:383
+#: ../../configuration/service/dhcp-server.rst:399
msgid "exclude"
msgstr "exclude"
-#: ../../configuration/service/dhcp-server.rst:388
+#: ../../configuration/service/dhcp-server.rst:404
msgid "failover"
msgstr "failover"
@@ -20993,8 +21052,8 @@ msgstr "invalid"
msgid "inverse-match: network/netmask to match (requires network be defined)."
msgstr "inverse-match: network/netmask to match (requires network be defined)."
-#: ../../configuration/service/dhcp-server.rst:308
-#: ../../configuration/service/dhcp-server.rst:310
+#: ../../configuration/service/dhcp-server.rst:324
+#: ../../configuration/service/dhcp-server.rst:326
msgid "ip-forwarding"
msgstr "ip-forwarding"
@@ -21022,7 +21081,7 @@ msgstr "l2tpv3"
msgid "ldpd"
msgstr "ldpd"
-#: ../../configuration/service/dhcp-server.rst:373
+#: ../../configuration/service/dhcp-server.rst:389
msgid "lease"
msgstr "lease"
@@ -21184,12 +21243,12 @@ msgstr "more information related IGP - :ref:`routing-isis`"
msgid "more information related IGP - :ref:`routing-ospf`"
msgstr "more information related IGP - :ref:`routing-ospf`"
-#: ../../configuration/service/dhcp-server.rst:298
+#: ../../configuration/service/dhcp-server.rst:314
#: ../../configuration/service/router-advert.rst:1
msgid "name-server"
msgstr "name-server"
-#: ../../configuration/service/dhcp-server.rst:320
+#: ../../configuration/service/dhcp-server.rst:336
msgid "netbios-name-servers"
msgstr "netbios-name-servers"
@@ -21205,7 +21264,7 @@ msgstr "network: network/netmask to match (requires inverse-match be defined) BU
msgid "news"
msgstr "news"
-#: ../../configuration/service/dhcp-server.rst:330
+#: ../../configuration/service/dhcp-server.rst:346
msgid "next-server"
msgstr "next-server"
@@ -21229,11 +21288,11 @@ msgstr "notice"
msgid "ntp"
msgstr "ntp"
-#: ../../configuration/service/dhcp-server.rst:313
+#: ../../configuration/service/dhcp-server.rst:329
msgid "ntp-server"
msgstr "ntp-server"
-#: ../../configuration/service/dhcp-server.rst:315
+#: ../../configuration/service/dhcp-server.rst:331
msgid "ntp-servers"
msgstr "ntp-servers"
@@ -21281,8 +21340,8 @@ msgstr "policy extcommunity-list"
msgid "policy large-community-list"
msgstr "policy large-community-list"
-#: ../../configuration/service/dhcp-server.rst:353
-#: ../../configuration/service/dhcp-server.rst:355
+#: ../../configuration/service/dhcp-server.rst:369
+#: ../../configuration/service/dhcp-server.rst:371
msgid "pop-server"
msgstr "pop-server"
@@ -21299,8 +21358,8 @@ msgstr "prefix-list, distribute-list"
msgid "pseudo-ethernet"
msgstr "pseudo-ethernet"
-#: ../../configuration/service/dhcp-server.rst:378
-#: ../../configuration/service/dhcp-server.rst:380
+#: ../../configuration/service/dhcp-server.rst:394
+#: ../../configuration/service/dhcp-server.rst:396
msgid "range"
msgstr "range"
@@ -21316,7 +21375,7 @@ msgstr "reset commands"
msgid "retrans-timer"
msgstr "retrans-timer"
-#: ../../configuration/service/dhcp-server.rst:365
+#: ../../configuration/service/dhcp-server.rst:381
msgid "rfc3442-static-route, windows-static-route"
msgstr "rfc3442-static-route, windows-static-route"
@@ -21349,7 +21408,7 @@ msgstr "round-robin"
msgid "route-map"
msgstr "route-map"
-#: ../../configuration/service/dhcp-server.rst:290
+#: ../../configuration/service/dhcp-server.rst:306
msgid "routers"
msgstr "routers"
@@ -21366,7 +21425,7 @@ msgstr "sFlow is a technology that enables monitoring of network traffic by send
msgid "security"
msgstr "security"
-#: ../../configuration/service/dhcp-server.rst:323
+#: ../../configuration/service/dhcp-server.rst:339
msgid "server-identifier"
msgstr "server-identifier"
@@ -21387,7 +21446,7 @@ msgstr "sha256 Hashes"
msgid "show commands"
msgstr "show commands"
-#: ../../configuration/service/dhcp-server.rst:329
+#: ../../configuration/service/dhcp-server.rst:345
msgid "siaddr"
msgstr "siaddr"
@@ -21395,8 +21454,8 @@ msgstr "siaddr"
msgid "slow: Request partner to transmit LACPDUs every 30 seconds"
msgstr "slow: Request partner to transmit LACPDUs every 30 seconds"
-#: ../../configuration/service/dhcp-server.rst:348
-#: ../../configuration/service/dhcp-server.rst:350
+#: ../../configuration/service/dhcp-server.rst:364
+#: ../../configuration/service/dhcp-server.rst:366
msgid "smtp-server"
msgstr "smtp-server"
@@ -21416,11 +21475,11 @@ msgstr "spoke01-spoke04"
msgid "spoke05"
msgstr "spoke05"
-#: ../../configuration/service/dhcp-server.rst:393
+#: ../../configuration/service/dhcp-server.rst:409
msgid "static-mapping"
msgstr "static-mapping"
-#: ../../configuration/service/dhcp-server.rst:363
+#: ../../configuration/service/dhcp-server.rst:379
msgid "static-route"
msgstr "static-route"
@@ -21430,7 +21489,7 @@ msgstr "static-route"
msgid "strict: Each incoming packet is tested against the FIB and if the interface is not the best reverse path the packet check will fail. By default failed packets are discarded."
msgstr "strict: Each incoming packet is tested against the FIB and if the interface is not the best reverse path the packet check will fail. By default failed packets are discarded."
-#: ../../configuration/service/dhcp-server.rst:278
+#: ../../configuration/service/dhcp-server.rst:294
msgid "subnet-mask"
msgstr "subnet-mask"
@@ -21446,8 +21505,8 @@ msgstr "tail"
msgid "tc_ is a powerful tool for Traffic Control found at the Linux kernel. However, its configuration is often considered a cumbersome task. Fortunately, VyOS eases the job through its CLI, while using ``tc`` as backend."
msgstr "tc_ is a powerful tool for Traffic Control found at the Linux kernel. However, its configuration is often considered a cumbersome task. Fortunately, VyOS eases the job through its CLI, while using ``tc`` as backend."
-#: ../../configuration/service/dhcp-server.rst:333
-#: ../../configuration/service/dhcp-server.rst:335
+#: ../../configuration/service/dhcp-server.rst:349
+#: ../../configuration/service/dhcp-server.rst:351
msgid "tftp-server-name"
msgstr "tftp-server-name"
@@ -21456,16 +21515,16 @@ msgstr "tftp-server-name"
msgid "this option allows to configure prefix-sid on SR. The ‘no-php-flag’ means NO Penultimate Hop Popping that allows SR node to request to its neighbor to not pop the label. The ‘explicit-null’ flag allows SR node to request to its neighbor to send IP packet with the EXPLICIT-NULL label. The ‘n-flag-clear’ option can be used to explicitly clear the Node flag that is set by default for Prefix-SIDs associated to loopback addresses. This option is necessary to configure Anycast-SIDs."
msgstr "this option allows to configure prefix-sid on SR. The ‘no-php-flag’ means NO Penultimate Hop Popping that allows SR node to request to its neighbor to not pop the label. The ‘explicit-null’ flag allows SR node to request to its neighbor to send IP packet with the EXPLICIT-NULL label. The ‘n-flag-clear’ option can be used to explicitly clear the Node flag that is set by default for Prefix-SIDs associated to loopback addresses. This option is necessary to configure Anycast-SIDs."
-#: ../../configuration/service/dhcp-server.rst:282
-#: ../../configuration/service/dhcp-server.rst:284
+#: ../../configuration/service/dhcp-server.rst:298
+#: ../../configuration/service/dhcp-server.rst:300
msgid "time-offset"
msgstr "time-offset"
-#: ../../configuration/service/dhcp-server.rst:293
+#: ../../configuration/service/dhcp-server.rst:309
msgid "time-server"
msgstr "time-server"
-#: ../../configuration/service/dhcp-server.rst:295
+#: ../../configuration/service/dhcp-server.rst:311
msgid "time-servers"
msgstr "time-servers"
@@ -21526,7 +21585,7 @@ msgstr "weighted-round-robin"
msgid "while a *byte* is written as a single **b**."
msgstr "while a *byte* is written as a single **b**."
-#: ../../configuration/service/dhcp-server.rst:318
+#: ../../configuration/service/dhcp-server.rst:334
msgid "wins-server"
msgstr "wins-server"
@@ -21542,11 +21601,11 @@ msgstr "wireless"
msgid "with :cfgcmd:`set system acceleration qat` on both systems the bandwidth increases."
msgstr "with :cfgcmd:`set system acceleration qat` on both systems the bandwidth increases."
-#: ../../configuration/service/dhcp-server.rst:368
+#: ../../configuration/service/dhcp-server.rst:384
msgid "wpad-url"
msgstr "wpad-url"
-#: ../../configuration/service/dhcp-server.rst:370
+#: ../../configuration/service/dhcp-server.rst:386
msgid "wpad-url, wpad-url code 252 = text"
msgstr "wpad-url, wpad-url code 252 = text"