Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/vyos/vyos-1x

VyOS command definitions, scripts, and utilities
https://github.com/vyos/vyos-1x

Merge pull request #1158 from sarthurdev/firewall

firewall: policy: T4131: T4144: T4159: T4164: Fix reported firewall issues, policy-route refactor

2b51513cf2514a3a947bca77afaa8869ea4f8802 authored about 3 years ago
ipsec: T1925: Fixed `show vpn ipsec sa` output

After the a1aaf4fb9c0e4111670ef3dd491796fa35a2311f commit, only single
(latest) CHILD_SA for eac...

201257fe60afc40d101d162cc08e2878dfa3467b authored about 3 years ago
policy: T2199: Refactor policy route script for better error handling

* Migrates all policy route references from `ipv6-route` to `route6`
* Update test config `dialu...

6cf5767524b8519f86981943ab71ff288bf77d67 authored about 3 years ago
ike-group: T4162: Correct helper description for ikev2-reauth

1b8f421727eed9849b5a179e0415df3fb06f0297 authored about 3 years ago
migrator: interfaces: T4171: bugfix ConfigTreeError

Migrating 1.2.8 -> 1.4-rolling-202201110811

vyos-router[970]: Waiting for NICs to settle down: ...

29efbf51efea559773f61703f11a77a8aee6de36 authored about 3 years ago
firewall: op-mode: T4131: Display `show firewall group` reference and member items sorted and one per line

5334ca6fc758c3e9c86dfcb3d4ace5d54ab8878a authored about 3 years ago
firewall: T2199: Add ipv6-range support to IPv6 address group

6e23345a693c5ccaaae7694dd60a91315a911631 authored about 3 years ago
validators: T4144: Add error messages to the majority of IP validators

f97144259335102c3d96b232cbb0af4970120d62 authored about 3 years ago
firewall: policy: T4159: T4164: Fix empty firewall groups, create separate file for group definitions.

f16525175deb69ae3b9193573550992b4d5fd951 authored about 3 years ago
firewall: policy: T2199: Reload policy route script if `firewall group` node is changed

1292a69a5fe9fe931676a475e011dece578233df authored about 3 years ago
firewall: T4159: Add warning when an empty group is applied to a rule

e389729f4de84ce3f32e1a0cdb471c919d7d7807 authored about 3 years ago
remote: T3950: Gracefully handle chained exceptions

d5775339f9d1ee33c04f5d923684cd254b400364 authored about 3 years ago
policy: T2199: add missing rule constraints

e89f48269e96f0b558dd3d427c4cc89abd585c3f authored about 3 years ago
policy: T4170: rename "policy ipv6-route" -> "policy route6"

In order to have a consistent looking CLI we should rename this CLI node.

There is:
* access-li...

54675c2cc9aa9c1315478107cce14e5ba23d865e authored about 3 years ago
Merge pull request #1153 from jestabro/frr_debug

frr: T4166: move log debug setting to init function for vyos-configd

c0d65731d904832eb8709e32950d3fdbc89c9b5b authored about 3 years ago
Merge pull request #1154 from imathew/current

containers: T2216: bugfix host networking on image upgrade

1a33b2f6db4781d3c48f5ddc62da530807e784c8 authored about 3 years ago
containers: T2216: bugfix host networking on image upgrade

The bug was partially fixed with this commit:
https://github.com/vyos/vyos-1x/commit/358f0b481d...

142c976ca4b37fbae9ec44487d146b2a8319391c authored about 3 years ago
frr: T4166: move log debug setting to init function for vyos-configd

frr.py debugging is set True if the file '/tmp/vyos.frr.debug' exists;
this check needs to be ca...

cb797395a4df6b0b7a192e9e1f25427f921fac06 authored about 3 years ago
nat: T2199: dry-run newly generated config before install

Before installing a new conntrack policy into the OS Kernel, the new policy
should be verified b...

bb76e8d7f16355b140a60feafbbed67774788343 authored about 3 years ago
conntrack: T3579: dry-run newly generated config before install

Before installing a new conntrack policy into the OS Kernel, the new policy
should be verified b...

76d912d63ca4d15d9efe118184c405cf8273cbcf authored about 3 years ago
conntrack: T3579: prepare for "conntrack timeout custom rule" CLI commands

9bc2f5db25c74f7a4c10c10cf0bbdc2f1879c2db authored about 3 years ago
Merge pull request #1152 from sarthurdev/firewall_validators

firewall: validators: T4148: Improve validators and firewall validator usage

465939d9c9b413c7033c8833cbb4ebc30b9bcf66 authored about 3 years ago
conntrack: T3579: make the timeout tree re-usable as XML include

fd1b1ff19b0ff852d796e979ab3b596651686f2f authored about 3 years ago
conntrack: T3579: use "notrack" over "return" in nft statements

062762154ae1e91394d5dc98385aa07dc200671c authored about 3 years ago
conntrack: T3579: migrate "conntrack ignore" tree to vyos-1x and nftables

05b5d09ca70c5cc868f2108df4bcd3fcf6a7d865 authored about 3 years ago
validators: T4148: Add text output when validators fail

da370b63b266254d9a7a7ae15274a9a70bcf5417 authored about 3 years ago
validators: Stricter checking on port-range validator

0a0e7d789e7e482b65cbca47bff1dcb427891a88 authored about 3 years ago
firewall: validators: T2199: Improve port validation

a5ad98b2307af974dd498a84caec94fa613f7491 authored about 3 years ago
Merge pull request #1151 from sarthurdev/firewall

firewall: policy: T4149: T4155: Fix incorrect table variable, fix handling of deleted base firew...

436805a69df324767c3efdf8d72127bef42fd720 authored about 3 years ago
Merge pull request #1150 from nicolas-fort/T4161

policy: T4161: Set correct description for local-preference

4ade92549616aa122f228ed5a3f95ea89c5aa356 authored about 3 years ago
firewall: 4149: Fix verify steps being bypassed when base node is removed

67ab8154685638b373b139aaf9a936cbcb83a84f authored about 3 years ago
policy: T4161: Set correct description for local-preference

8dfde277c90ca27551fed9476fd30d28b90797ef authored about 3 years ago
Merge pull request #1149 from tacerus/pip

T4157: Add `jinja2` to pip test requirements

a9033074f6d733c32d8387500258708b3363ec3d authored about 3 years ago
policy: T4155: Fix using incorrect table variable

deb9bfa02863ea28104f36558ed4e90caba792e3 authored about 3 years ago
T4157: Add jinja2 to test-requirements.txt

Signed-off-by: Georg <[email protected]>

7c1ea983c455a08b66b948a08b1cf11b7bff967d authored about 3 years ago
Merge pull request #1143 from sever-sever/T1972

vrrp: T1972: Ability to set IP address on not vrrp interface

dfb2b58e00ea0cafadeb5f63e9f82b4d61580ead authored about 3 years ago
Merge pull request #1142 from sever-sever/T4150

keepalived: T4150: Fix template option conntrack_sync_group

897510fe6fdf85ce23699a7aace187433367c2b4 authored about 3 years ago
Merge pull request #1145 from sever-sever/T4152

nhrp: T4152: Fix template holding-time for nhrp

17ea91accc4bece660d97d36af2bdc002c8df89e authored about 3 years ago
nhrp: T4152: Fix template holding-time for nhrp

Add missed 'holding-time' option for shortcut-target address

d997874deb61bcdac1cc5e8f2a882347fc83f2d8 authored about 3 years ago
vrrp: T1972: Ability to set IP address on not vrrp interface

Ability to set virtual_address on not vrrp-listen interface
Add ability don't track primary vrrp...

66d59d9e393c435fa82717d0d918955bae59ba43 authored about 3 years ago
keepalived: T4150: Fix template option conntrack_sync_group

conntrack_sync_group option not under 'vrrp' section but part of
high-avalability dictionary

fb464f0b7654add88e1b95e7862296eb711d65c3 authored about 3 years ago
xml: nat: use generic bulding block for rule description

b4ac2f6479bb618a54b7dff533ae15b9a9bf8831 authored about 3 years ago
xml: firewall: T4130: add protocol completion helper all and tcp_udp

b9c2ce3e3589fe3c94d6d8d258e1bbc43571e690 authored about 3 years ago
Debian: T4133: add required nfct package dependency

c3f417986c8a7652562e213e90d5a34e09c1838b authored about 3 years ago
https: T4146: do not listen on port 80

2c6fe0aeef0933ffd18089d53af0bc6820100d0f authored about 3 years ago
Merge pull request #1139 from sarthurdev/firewall

firewall: zone-policy: T4133: Prevent firewall from trying to clean-up zone-policy chains

83f281c9a3c658f2ca5df77101279f40bd9d4540 authored about 3 years ago
vrrp: T4141: bugfix missing {% if %} clause when adding sync-groups

0a91c5de32b52235f4c9c12a6ec34c017011c3df authored about 3 years ago
config: T3785: drop restriction to ascii in decode

Following the update to vyos1x-config, commit 64263617, UTF-8 characters
are supported within th...

5b8550dc18378573f6b316d7ff4bd43a9061e668 authored about 3 years ago
firewall: zone-policy: T4133: Prevent firewall from trying to clean-up zone-policy chains

* Prevent firewall names from using the reserved VZONE prefix

79f6f7061c0c0a00ce480d93c71fc4bcd06eb3a0 authored about 3 years ago
Merge pull request #1138 from sever-sever/T4142

op-mode: T4142: Fix for show input ifbX interfaces

e4b368b10aeed363f9d2b0ba3bed26b2ea346842 authored about 3 years ago
op-mode: T4142: Fix for show input ifbX interfaces

Ability to see interface type "input" ifbX from op-mode

5fdf4e5988344f7a890fe351183b58b8e21699c2 authored about 3 years ago
Merge pull request #1137 from sarthurdev/current

keepalived: T4109: Update configd-include.json to reflect filename change

397dc7a97a43323dbcf41471f676ee8ab6c34b20 authored about 3 years ago
keepalived: T4109: Update configd-include.json to reflect filename change

8cbfda931dbabc1c8f97b9b03747cbe8913b5636 authored about 3 years ago
Merge pull request #1136 from sarthurdev/firewall

zone-policy: T4135: Raise error when using an invalid "from" zone.

b87fd7cb75f7b1d98b7320d632438a711aa71978 authored about 3 years ago
zone-policy: T4135: Raise error when using an invalid "from" zone.

96f577ef82721b11b474d14d8155d30891a60d3f authored about 3 years ago
Merge pull request #1135 from sarthurdev/current

smoketest: shim: Optimise speed of `lsof` command

a893c8d8167eb6b2fe35bcbc3cd61c850456ef75 authored about 3 years ago
Merge pull request #1134 from sarthurdev/firewall

firewall: zone-policy: T2199: T4130: Fixes for firewall, state-policy and zone-policy

7eadd337bed031334629cfb29a6b5f69f88efe32 authored about 3 years ago
smoketest: shim: Optimise speed of `lsof` command

e536b6a037e66d884a161ae7ff6c836974f0071b authored about 3 years ago
firewall: zone-policy: T2199: T4130: Fixes for firewall, state-policy and zone-policy

459c7079bebe7059d90441a5014d948a92d2ee19 authored about 3 years ago
Merge pull request #1131 from sever-sever/T4132

firewall: T4132: Fix for op-mode show firewall group

f809139c04e5c18299a3b5929eb1c712a20a5535 authored about 3 years ago
Merge pull request #1132 from sever-sever/T4134

firewall: T4134: Fix completion help for protocols

7330c4eff26f8a388cf476ed5f38894e137252f1 authored about 3 years ago
Merge pull request #1121 from sever-sever/T4109

keepalived: T4109: Add high-availability virtual-server

367c2964d6b89ca1707be99e6cbacedc123a53c9 authored about 3 years ago
firewall: T4134: Fix completion help for protocols

5f2c965d28f77afb2313491e1f0508a8f2ff635e authored about 3 years ago
firewall: T4132: Fix for op-mode show firewall group

After firewall rewriting there is impossible to show a specific
firewall group, this commit fixes...

55bf54afb750cb8171b0c878699879107b4fbbe9 authored about 3 years ago
keepalived: T4109: Add high-availability virtual-server

Add new feature, high-availability virtual-server
Change XML, python and templates
Move vrrp to r...

3628121505658fd4c588960136d5645afc791c59 authored about 3 years ago
Merge pull request #1130 from sarthurdev/firewall

firewall: T4130: Fix firewall state-policy errors

993b87458456bc6fcbe5aa7fbc7c0c31580032ce authored about 3 years ago
firewall: T4130: Add state-policy test to firewall smoketest

9213d9cc7bcd731baaf606fcdc956764482f45e9 authored about 3 years ago
firewall: T4130: Fix firewall state-policy errors

Also fixes:
* Issue with multiple state-policy rules being created on firewall updates
* Prevent...

84a83ecc4c78bf2e0954658ea539e42b4c015fa2 authored about 3 years ago
keepalived: T4128: add missing keepalived.service file

5a73c946000902f6e445b0803ca090f7fc6e0954 authored about 3 years ago
test: vyos.validate: also test interface identifier in is_ipv6_link_local()

b64dbabe1ccacba7154391118de481086f1dcc19 authored about 3 years ago
keepalived: T4128: add systemd option Type=simple

Without this option systemd startup will hit a timeout and the kill keepalived
again.

2a279f48e208b90c91eac5d6c5855e65cee39018 authored about 3 years ago
Merge pull request #1018 from sever-sever/T3872

monitoring: T3872: Add a new feature service monitoring

ca3cd970f2973ebfc8c8784ead73bbd582d30d54 authored about 3 years ago
monitoring: T3872: Add a new feature service monitoring telegraf

605cac35526c8dfe409891f777d50547fb94392f authored about 3 years ago
Merge pull request #1124 from sever-sever/T4110

listen-address: T4110: Ability to set IPv6 link-local addresses

4743b91f4eb98bc2b4d5eee1d2f4d06e10ec032e authored about 3 years ago
listen-address: T4110: Ability to set IPv6 link-local addresses

Some services allows to set link-local IPv6 addresses as
listen-address. Allow it and add a valid...

1da1701ce75d0685a0587ce6f0365a0be447c662 authored about 3 years ago
nat: T2199: rename iptables -> nftables variable prefix

901e40dc3b52fb3d8dc7308f54da42b858b61798 authored about 3 years ago
Merge branch 'firewall' of https://github.com/sarthurdev/vyos-1x into current

* 'firewall' of https://github.com/sarthurdev/vyos-1x:
zone_policy: T3873: Implement intra-zon...

0091f6080181cc3836d70589d9a2f4a1c1cb11a8 authored about 3 years ago
smoketest: ipsec: T4126: verify configured priority

c5f118b3af482813a45c327ece29b5b41fd1ad9c authored about 3 years ago
smoketest: ipsec: make use of setUpClass()

42a43b1c572fd7e7edf8c508febf232c85e74819 authored about 3 years ago
Merge pull request #1129 from sever-sever/T4126

ipsec: T4126: Ability to set priorities for installed policy

dcf8baa5b3040acad6a19d7c9325fbecd9f942ca authored about 3 years ago
ipsec: T4126: Ability to set priorities for installed policy

Add priority for policy based IPSec VPN tunnels
If 2 tunnels have the same pair of local and remo...

78494fe6de5372939e05dd65b01acd3e786b5602 authored about 3 years ago
firewall: xml: T4100: increase maximum number of rules to 999999

b468930a61d46bd33b52768f4c6f8b6ea28eed91 authored about 3 years ago
snmp: T4124: remove snmp.py from vyos-configd

Commit 566f7f24 ("snmp: T4124: migrate to get_config_dict()") changed the
internal structure to ...

ad9289163aff39748555790158f4640888b46291 authored about 3 years ago
snmp: T4124: migrate to get_config_dict()

566f7f2401b79a79abe5ed9597fed325540983fa authored about 3 years ago
smoketest: snmp: T4124: locally connect to SNMP service and retrieve data

c0d4a61047b7656e770ee8380d3ba0497314c1ec authored about 3 years ago
Merge pull request #1128 from zdc/T4121-sagitta

dhclient: T4121: Fixed resolv.conf generation at early boot stage

8d99fe401731c55ee6058d617101fcdaf1b2c47a authored about 3 years ago
dhclient: T4121: Fixed resolv.conf generation at early boot stage

In case if a CLI configuration is not available, dhclient cannot add
nameservers to a `resolv.co...

ce77935eeeabcbb8d3510d09d12e0d79e74ad045 authored about 3 years ago
Merge pull request #1126 from justsecure/current

webproxy: T4116: Ability to listen on IPv6 addresses

78ad5ce69e6fc8b7a9d0abc0f8c0376bb9224ed7 authored about 3 years ago
configd: T4086: use 'copy' on mutable global var default_config_data

d2ca2ac1cf9cacd44a04fbb6da9a884c23f043f6 authored about 3 years ago
webproxy: T4116: Ability to listen on IPv6 addresses

IPv6 addresses on webproxy/SQUID where not added correctly.
They need to be added in brackets.
M...

76a917281ddbb6a5c17dee8195ee00d656484ba2 authored about 3 years ago
Improve IPsec help strings

6414138a9c5bc55c5a0037ffa523a14b76e814af authored about 3 years ago
More consise consistent help strings for listen-address commands

07f680c5ee945a9373556f356e8fda9b6aaf5674 authored about 3 years ago
Improve tunnel interface help strings

2865bcc11a4bd7244fb03455aea4cb4ba84d07b7 authored about 3 years ago
Merge pull request #1123 from sever-sever/T4111

ipsec: T4111: Fix for swanctl configuration IPV6 peers

961ed0f869979f66cb99492545d686ec380689a9 authored about 3 years ago
ipsec: T4111: Fix for swanctl configuration IPV6 peers

Peer name must not contain dots and colons, otherwise
swanct can't generate correct configuration...

5e05bfe790035f7d53dede8d76bccb089a186864 authored about 3 years ago
smoketest: snmp: T4093: v3 user requires a group

5c5e283f8a964f5bbb3d838d1c0aabdee4e2032b authored about 3 years ago
snmp: T4093: add missing verify() step for required group per snmp v3 user

a70a4001fe0b3a91a7d86191ff32dcc7205d2eae authored about 3 years ago
Merge pull request #1116 from sever-sever/T4039

syslog: T4039: Add protocol23format logging for UDP

3f05c880ba4b0edfc4238ce15e6508473d30b379 authored about 3 years ago
syslog: T4039: Add protocol23format logging for UDP

Add protocol23format for rsyslog protocol UDP
Add ability to use IPv6 addresses (bracketize_ipv6)...

cd8015a4b60e486f465aef9abfd0861988e4f32d authored about 3 years ago
keepalived: T4109: Change smoketest correct path vrrp

As high-abalability is root node for vrrp, the path
should be changed

acefbacf7966b6a44dbdc3dfff49294ae59e70f6 authored about 3 years ago