1.4 Sagitta
2024-04-25
2024-04-24
T6255
(bug): Static table description should not contain white-space
T6226
(feature): add HAPROXY `tcp-request content accept` related block to load-balancing reverse proxy config
T6109
(bug): remote syslog do not get all the logs
T6217
(feature): VRRP contrack-sync script change name of the logger
T6244
(feature): Spacing of "Show System Uptime" hard to parse
2024-04-23
2024-04-22
2024-04-21
2024-04-20
T6252
(bug): gre tunnel - doesn't allow configure jumbo frame more than 8024
2024-04-19
2024-04-17
T6168
(bug): add system image does not set default boot to current console type in compatibility mode
T6243
(bug): Update vyos-http-api-tools for package idna security advisory
T6154
(enhancment): Installer should ask for password twice
T5966
(default): Adjust dynamic dns configuration address subpath to be more intuitive and other op-mode adjustments
T5723
(default): mdns repeater: Always reload systemd daemon before applying changes
T5722
(bug): Failing to add route in failover if gateway not in the same interface network
T5612
(default): Miscellaneous improvements and fixes for dynamic DNS configuration
T5574
(default): Support per-service cache management for dynamic dns providers
T5360
(bug): ddclient generating abuse
2024-04-15
2024-04-14
T6210
(feature): Add container ability to configure capability sys-nice
2024-04-13
2024-04-12
T5872
(default): ipsec remote access VPN: support dhcp-interface
T6216
(bug): Upgrade error from 1.3 to 1.4 - Firewall using character '+'
T6214
(bug): Error when using some constraints
T6213
(bug): Firewall group constraints
T6148
(bug): Reset vpn ipsec command breaks tunnel and does not reset SAs that are down
T1487
(default): DNS (pdns_recursor) stats logs not saved to disk
T6222
(bug): VRRP rfc3768-compatibility not working correctly when resulting interface name is over 15 characters
T6218
(bug): Container network interface in VRF fails to generate IPv6 link-local address
T5959
(default): Streamline dns forwarding service
T5846
(default): Refactor and simplify DUID definition in conf-mode
T5631
(feature): Ability to export the current configuration in JSON format
T5615
(default): Narrow down spurious name conflict with mdns
T5530
(default): Add LFA to IS-IS
T5195
(default): Break up the vyos.util module
T5124
(bug): Python3 deprecation distutils.version import LooseVersion
T1871
(feature): add MTU option when configure limiter traffic-policy
T874
(feature): Support for Two Factor Authentication for CLI access via Google Authenticator/OTP
T6204
(default): Remove shebang lines from Python modules
T6166
(bug): Tech support generation error for custom output location
T6062
(feature): container: add support for image manipulation based on tag name
T5877
(default): Reduce unnecessary nesting in system domain-search path and improve smoketest
T5871
(default): ipsec remote access VPN: specify "cacerts" to disambiguate mulitple remote access configurations
T5870
(default): ipsec remote access VPN: add x509 ("pubkey") authentication
T5772
(default): Require HTTPS API server configurations to include at least one key if key-based auth is used
T5447
(feature): Allow static MACsec keys with peers
T4221
(default): Add a template filter for converting scalars to single-item lists
T3766
(feature): containers: Expanding options for networking and building containers
2024-04-11
T4516
(feature): Rewrite system image manipulation tools in Python
T4548
(feature): GRUB loader configuration rework
T3774
(bug): atop logs are not limited in size
T3574
(default): Add constraintGroup for combining validators with logical AND
T3474
(default): Revisit storing syntax version of interface definitions in XML file
T160
(feature): Support NAT64
T6228
(bug): Cleanup of not existing units
2024-04-10
2024-04-09
2024-04-08
2024-04-07
T6205
(bug): ipoe: error in migration script logic while renaming mac-address to mac node
T6039
(bug): cloud-init DNS search-domain causes configuration migration/validation error
T5862
(bug): Default MTU is not acceptable in some environments
T6208
(feature): container: rename "cap-add" CLI node to "capability"
T6188
(feature): Add Firewall Rule Description to "show firewall" commands
T1244
(default): Support for StartupResync in conntrackd
2024-04-06
2024-04-05
2024-04-04
T6119
(default): Use a compliant TOML parser
T6171
(feature): dhcp server fail-over - Rename fail-over node
T6115
(bug): Build from Git tags fail
T5122
(feature): Move "archive-areas" to defaults.toml to support "non-free-firmware" repository
T5121
(bug): Incorrect "architecture" config loaded
T4951
(default): Add an op mode exception for cases when operations fail due to insufficient system resources
T4883
(default): Add a description field for routing tables
T4796
(bug): build-vyos-image ignores multiple options
T4795
(feature): Cleanup custom python validators
T4761
(default): Add a generic URL validator
T3843
(bug): l2tp configuration not cleared after delete
T3681
(default): The VMware Tools resume script did not run successfully in this virtual machine.
T1991
(feature): Rework time services
T5711
(default): Put the version data file inside the ISO image
T5672
(default): Remove the old-style command definition importer
T5639
(default): Group vyos-1x dependencies by their VyOS components and specify their purpose
T5638
(default): Add support for requiring numeric values to be ranges rather than single numbers
T5634
(default): Remove support for Blowfish and DES from OpenVPN
T5605
(default): Do not generate keysize option in OpenVPN configs
T5582
(default): Add a command to force NTP sync
T5449
(default): Add options for TCP MSS probing
T4440
(default): Add OCI compliant image labels to vyos-build and vyos containers
T671
(enhancment): Identify and remove dead code
T5109
(feature): Improve OCaml XML validator
T1449
(feature): Add opportunity to include custom default configs (few) at building
2024-04-03
2024-04-02
2024-04-01
2024-03-31
2024-03-28
2024-03-26
T6066
(bug): Setting same network in different ospf area will raise exception
2024-03-25
T6145
(bug): Service config-sync does not rely on priorities but must
2024-03-24
2024-03-23
2024-03-22
T6136
(bug): Configuring a dynamic address group, config script did not check whether the group was created
T6130
(bug): [1.3.6->1.4.0-epa2 Migration] BGP "set community" missing
T6090
(bug): [1.3.6->1.4.0-epa1 Migration] policy route fails due tcp flag case sensitivity
T6155
(default): ixgbe: failed to initialize because an unsupported SFP+ module type was detected.
T6125
(feature): Support 802.1ad (0x88a8) vlan filtering for bridge
T5624
(default): Remove /etc/debian_version from the image
2024-03-21
T6143
(feature): Increase configuration timeout range for service config-sync
2024-03-20
2024-03-19
2024-03-15
T6118
(feature): radvd: RFC8781: add nat64prefix support
2024-03-12
2024-03-11
T6098
(bug): Description doesnt seem to allow for non international characters
T6070
(bug): bnx2x NIC causes a commit error due to incorrect implementation of EEE status reading
T2998
(bug): SNMP v3 oid "exclude" option doesn't work
T6107
(bug): Nginx does not allow big config queries for configure endpoint API
T6096
(bug): Config commits are not synced properly because 00vyos-sync is deleted by vyos-router
T6093
(bug): Incorrect dhcp-options vendor-class-id regex
T6083
(feature): ethtool: move string parsing to JSON parsing
T6069
(bug): HTTP API segfault during concurrent configuration requests
T6057
(feature): Add ability to disable syslog for conntrackd
T5504
(feature): Keepalived VRRP ability to set more than one peer-address
T5717
(feature): ospfv3 - add allow to set metric-type to ospf redistribution while frr docs says its possible.
T6071
(bug): firewall: CLI description limit of 256 characters cause config upgrade issues
2024-03-08
2024-03-07
T6104
(bug): Regression in commit-archive for non-interactive configuration
T6084
(bug): OpenNHRP DMVPN configuration file clean after reboot if we have any IPSec configuration
T5348
(bug): Service config-sync can freeze the secondary router if it has commit-archive location
T6073
(bug): Conntrack/NAT not being disabled when VRFs are defined
T6095
(default): Tab completion for "set interfaces wireless wlan0 country-code" incorrect country "uk"
2024-03-06
T6079
(bug): dhcp: migration fails for duplicate static-mapping
2024-03-05
2024-03-04
2024-03-02
T6081
(bug): QoS policy shaper target and interval wrong calcuations
2024-02-29
2024-02-28
2024-02-27
2024-02-26
2024-02-25
T6060
(feature): op-mode: container: support removing all container images at once
2024-02-24
T5909
(bug): Container registry with authentication prevents config load (section container) after reboot
2024-02-23
2024-02-22
2024-02-21
T6050
(bug): Wrong scripting commands descriptions in accel-ppp services
2024-02-19
2024-02-18
2024-02-17
T5972
(feature): login: add possibility to disable individual local user accounts
2024-02-16
T6009
(bug): Firewall - Time not working properly when not using UTC
T6005
(bug): Error on adding a wireguard interface to OSPFv3
T2113
(bug): OpenVPN Options error: you cannot use --verify-x509-name with --compat-names or --no-name-remapping
T6019
(feature): Bump nftables and libnftnl version
T3471
(bug): DHCP hook is not able to detect all running DHCP instances
T6015
(default): "journalctl_charon" file does not contain data in the generated "ipsec debug-archive" file
T6001
(default): Add option to enable resolve-via-default
T5965
(bug): WWAN modems using raw-ip do not work with dhclient/dhcp6c
T5418
(bug): PPPoE-Server Client IP pool Subnet
T5245
(bug): Wireless interfaces do not get IPv6 link-local address assigned
2024-02-15
T5977
(bug): nftables: Operation not supported when using match-ipsec in outbound firewall
T2612
(bug): HTTPS API, changing API key fails but goes through
T5989
(bug): IP subnets not usable in UPnP ACLs
T5890
(default): OTP key generation is broken
T5719
(default): mdns repeater: Add op-mode commands
T4839
(feature): Dynamic Firewall groups
T4801
(feature): Support for building AWS-ready ISO
T3993
(enhancment): Extend HTTP API GraphQL support
T3991
(bug): PKI operational command return traceback
T3780
(bug): VTI not being brought down when tunnel is down
T3001
(feature): Disable spectre mitigation patches from CLI
T562
(feature): PDNS: Add support for authoritative dns server
T71
(feature): Add virtual IP and route installation policy options for IPsec
T5496
(default): `show firewall` error
T4038
(default): Rewrite `vyatta-image-tools.pl` in Python
T4997
(default): Add DHCP client user hooks dir
T775
(feature): Config Sync between two VyOS routers
T381
(feature): config nodes for EasyRSA CAs
T118
(feature): Native Zabbix Support
2024-02-14
T6034
(feature): rpki: move file based SSH keys for authentication to PKI subsystem
T5981
(bug): IPsec site-to-site migrated PKI ca certificates are created with an '@'
T5930
(bug): vrf - route-leak not work using route-target both command.
T5709
(bug): IPoE-server fails if next pool mentioned but not defined
T4119
(bug): Issue with l2tp remote-access ipv6 configuration
T2044
(bug): RPKI doesn't boot properly
T6032
(feature): bgp: add EVPN MAC-VRF Site-of-Origin support
T5960
(default): Rewriting authentication section in accel-ppp services
2024-02-13
2024-02-12
2024-02-10
2024-02-09
T6028
(bug): QoS policy shaper wrong class_id_max and default_minor_id
T6026
(bug): QoS hide attempts to delete qdisc from devices
T5788
(feature): frr: update to 9.1 release
T5703
(bug): QoS config on pppoe interface resets back to fq_codel after tunnel reboots
T5685
(feature): Keepalived VRRP prefix is not necessary for the virtual address
2024-02-08
2024-02-07
T6017
(bug): Update vyos-http-api-tools for security advisory
T6016
(bug): Resolve intermittent failures in cleanup function after failed image install
T6024
(feature): bgp: add additional missing FRR features
T6011
(feature): rpki: known-hosts-file is no longer supported by FRR CLI - remove VyOS CLI node
T5998
(feature): replay_window setting under vpn in config
2024-02-06
2024-02-05
2024-02-02
T5739
(bug): Password recovery does not work if public keys are configured
T5955
(feature): Rootless containers/set uid/gid for container
T5941
(bug): [1.3.5 -> 1.4.0-RC1 Migration] Orphaned Configuration Nodes Cause Issues
T6003
(feature): Add 'show rpki as-number' and 'show rpki prefix'
T5848
(feature): Add triple-isolate flow isolation option to CAKE QoS policy
2024-02-01
T5995
(bug): Kernel NIC-drivers for Huawei NICs are not properly enabled
T5978
(bug): ethernet: hw-tc-offload does not actually get enabled on the NIC
T5979
(enhancment): Add configurable kernel boot parameters
T5973
(bug): vrf: RTNETLINK answers: File exists
T5967
(bug): Multi-hop BFD connections can't be established; please add minimum-ttl option.
T5619
(default): Update the Intel ixgbe driver due to issues with Intel X533
2024-01-31
2024-01-30
T5980
(feature): Add image-tools support for configurable kernel boot options
2024-01-29
2024-01-26
2024-01-25
2024-01-22
T5968
(feature): hsflowd: add VRF support
T5975
(bug): GraphQL expects script otp.py that does not exists in 1.4
T5961
(bug): QoS policy shaper vif with ceiling fails on commit
T5958
(bug): QoS policy shaper-hfsc is not implemented
T5160
(feature): Firewall refactor
T5969
(feature): op-mode: list multicast group membership
2024-01-21
2024-01-20
T5915
(bug): Firewall zone - Re add op-mode commands
T5805
(bug): Missed per-interface statistic in telegraf
T5724
(feature): About dhcp client hooks
T5577
(bug): Optimize PAM configs for RADIUS/TACACS+
T5550
(bug): Source validation on interface does not work properly
T5267
(bug): Another corruption on upgrade
T5239
(bug): frr 'hostname' missing or incorrect, and domain-name missing totally
T5219
(bug): ddclient: Cloudflare doesn't require login
T5217
(feature): Add firewall SYNPROXY
T5203
(feature): load-balancing wan add systemd unit instead of old vyatta-wanloadbalance.init
T5199
(bug): Salt-minion cannot connect to server in python 3.10 and up
T5138
(feature): Add patch to accel-ppp build L2TP LNS use Calling-Number as RADIUS Calling-Station-ID
T5054
(bug): ipsec: "show vpn ipsec remote-access" does not list active connections
T5053
(bug): Vyatta-cfg Post-Removal Hook Tries to Disable Deleted Service
T5035
(feature): Add more actions to policy route rule
T4990
(bug): Commit results may not be properly saved if power is cut immediately after a successful commit
T4988
(default): Expose time and size conversion functions as Jinja2 filters
T4986
(feature): Ability to filter traffic originating from the router itself via firewall
T4963
(default): vyos.ethtool: improve/fix driver name detection
T4935
(bug): ospfv3: "not-advertise" and "advertise" conflict
T4897
(bug): Setting 'source-address' or `source-interface` on existing vxlan interface doesn't work
T4888
(default): Rewrite the conntrack sync script using vyos.opmode
T4863
(feature): need an option for route policy to apply to dynamic interfaces l2tp*/ipoe*/pppoe* (for TCP MSS setting)
T4817
(feature): Please add support for RFC 9234
T4765
(default): Normalize field names in op mode JSON outputs
T4751
(enhancment): Feature Request: system login: 2FA OTP key generator in VyOS CLI
T4726
(default): Add completion and validation for the accel-ppp RADIUS vendor option
T4722
(default): Improve abbreviation/acronym consistency
T4172
(feature): Patch ndppd to not read route table if there are no auto prefixes
T4085
(feature): Rewrite L2TP/PPTP/SSTP/PPPoE services to get_config_dict
T4031
(feature): Ability to configure DMVPN in vrf
T4030
(bug): SR-IOV and interface renaming bug
T4014
(feature): Add “command” and “arg” configuration options for containers
T3965
(default): arm: Extend configure scripts to allow for arm builds
T3813
(bug): Some custom sysctl parameters can't be applied bug
T3778
(bug): Abnormal network communication and settings
T3591
(bug): OpenVPN with/without VRF not working (NordVPN)
T3372
(feature): Support public HTTPS repos in live-build
T5963
(bug): QoS policy shaper rate calculations could be wrong for some ethernet devices
T5962
(feature): QoS policy set default speed to 100mbit or 1gbit instead of 10mbit
T5697
(bug): event-handler keep failing
T4779
(default): Make raw op mode command outputs use bytes for data amount values
2024-01-19
T5897
(bug): VyOS with Cloud-init and VRF stucks at reboot/shutdown process
T5554
(bug): Disable sudo for PAM RADIUS
T4754
(default): Improvement: system login: show configured 2FA OTP key
T5857
(bug): show interfaces wireless info
T5841
(default): Remove old ssh-session-cleanup.service
T5543
(bug): Fix source address handling in static joins
T5884
(default): Minor description fix (op-mode: generate wireguard)
T5781
(default): Add ability to add additional minisign keys
2024-01-18
T5863
(bug): Failure to Load Config on Recent 1.5 Versions
T4638
(bug): Deleting a parent interface does not delete its underlying VLAN interfaces
T5953
(default): Rename 'close_action' value from `hold` to `trap` in IPSEC IKE
T905
(bug): The command show remote-config does not work for remote-platform openvpn
2024-01-17
2024-01-16
T5951
(bug): [1.4.0-RC2] show hardware dmi Operational Mode Command Broken
T5937
(bug): [1.3.5 -> 1.4.0-RC1 Migration] IPv6 BGP Neighbor Peer Groups Missing / Not Migrated
T5889
(bug): Migration NAT 5-to-6 bug
T5859
(bug): Invalid format of pool range in accel-ppp services
T5842
(feature): Rewrite PPTP service to get_config_dict
T5801
(feature): Rewrite L2TP service to get_config_dict
T5688
(default): Create the same view of pool configuration for all accel-ppp services
2024-01-15
T5944
(bug): "reboot in 1" not working
T5936
(bug): [1.3.5 -> 1.4.0-RC1 Migration] OSPF Passive Interface Configuration Not Working Correctly
T5247
(bug): the bug of the command "show interfaces system"
T5901
(bug): Cloud-init and DHCP exit hook errors
T4856
(bug): DHCP-client exit hook for IPsec is incorrect
T2556
(bug): "show interfaces vrrp" does not return any interface
2024-01-14
T4428
(feature): Update ddclient to newer version
2024-01-12
T5925
(feature): Containers change systemd KillMode
T5920
(bug): Quick Start documentation contains error
T5919
(bug): Firewall - opmode for ipv6
T5306
(default): bgp config migration failed with v6only option configured with peer-group
T3429
(bug): Hyper-V integration services not working on VyOS 1.4 (sagitta/current)
2024-01-11
T5896
(bug): Config Error on Boot with Podman and Firewall
T5532
(bug): After add system image the boot stuck and works again after the second reboot
T5512
(bug): build linux-firmware script cannot expand asterisks if firmware name is a glob string
T5379
(bug): show system updates doesnt seem to be working
T5275
(default): Add op mode commands for exporting certificates to PEM files with correct headers
T5274
(default): Add a deprecation warning for OpenVPN site-to-site with pre-shared secret
T5262
(default): Warn the user about unsaved config on reboot/shutdown attempts
T5257
(feature): Cannont assign netflow source ip to ip in non default VRF
T5026
(feature): Python3 modules crypt and spwd are deprecated
T5814
(bug): VyOS 1.3 to 1.4 LTS Firewall ruleset migration script breaks configuration
T4610
(bug): Firewall with 20K entries cannot load after reboot
T3191
(bug): PAM RADIUS freezing when accounting does not configured on RADIUS server
T5917
(feature): Restore annotations of (running)/(default boot) in select image list
T5916
(default): Added segment routing check for index size and SRGB size
T5913
(feature): Allow for Peer-Groups in ipv4-labeled-unicast SAFI
2024-01-10
T5918
(bug): Verification problem for `set vpn ipsec interface`
T5911
(bug): pki: service update ignored if certificate name contains a hyphen (-)
T5886
(feature): Add support for ACME protocol (LetsEncrypt)
T5766
(bug): http: rewrite conf-mode script to get_config_dict()
T5144
(default): Modernize dynamic dns operation
T4689
(feature): Support RFS(Receive Flow Steering)
T4659
(feature): Use vtysh to display bridge and some interface parameter information
T4646
(bug): USB serial output console does not work
T4577
(bug): WWAN commit failed which simple config
T4502
(feature): Consider implementing (NAT/other) flow table offload
T4446
(default): Unified CLI for displaying neithbors (ARP, IP, and NDP)
T4427
(default): Remove the vyos-utils package list from vyos-build
T4300
(feature): Extend list of supported interfaces for Cloud-init Network Configuration
T4250
(bug): Organize logrotate settings to avoid duplicates
T4236
(feature): Generate ovpn openvpn client configuration files
T4222
(feature): Support for TWAMP as round-trip metric
T3833
(bug): Cloud-init not finding data source in OpenStack
T5902
(bug): http: remove virtual-host configuration in webserver
T3499
(bug): Podman is not compatible with nat rules
T3430
(bug): Cloud-init failing with “Unable to render networking” on VyOS 1.3
T3011
(bug): router becomes unreachable for few minutes when vti interfaces goes down
T5791
(default): Update dynamic dns configuration path to be consistent with other areas of VyOS
T5708
(default): Additional dynamic dns improvements to align with ddclient 3.11.1 release
T5573
(bug): Fix ddclient cache entries
T5012
(feature): Control network configuration from Cloud-Init config
T3116
(feature): Support back-end L4 level load balancing
T5614
(default): Add conntrack helper matching on firewall
T4782
(enhancment): Allow multiple CA certificates (on e.g. EAPoL)
T2199
(default): Rewrite firewall in new XML/Python style
2024-01-09
T5898
(bug): Replace partprobe with partx due to unable to install VyOS
T5838
(feature): Add Infiniband kernel modules
T5785
(bug): API output of show container image broken
T5410
(feature): Improve `utils.convert.convert_data()` to process all stdtypes
T5269
(default): OpenVPN non-TLS site-to-site mode deprecation
T5249
(feature): Add rollback-soft feature to rollback without a reboot
T4944
(default): Prevent op mode functions from returning bare literals in raw output
T4910
(default): Rewrite the remote access VPN op mode in the new style
T4470
(feature): Rewrite load-balancing wan to XML/Python
T3763
(bug): wireguard checks if port already binding
T3489
(bug): NUMA has been disabled for the past few years and no-one has noticed
T3476
(feature): Update availability check
T2845
(bug): BGP conf_mode unable to delete configuration with peer-group
T2844
(bug): BGP conf_mode errors disable-send-community
T2755
(default): Requirements for partial interface setup
T2721
(enhancment): Set FQ-CoDel as the default queueing mechanism for every class in Shaper
T2511
(feature): Migrate vyatta-op-quagga to new XML format
T2302
(default): Convert configuration scripts from executables to modules and use a script runner
T2281
(feature): DHCP and Static IPs on Same Interface
T2216
(default): Containerized third-party applications for VyOS
T2171
(feature): Unify creation and manipulation of interfaces
T1759
(feature): Replacing Vyatta::Interface perl
T2408
(enhancment): DHCP Relay upstream and downstream interfaces
T1297
(feature): Add GARP settings to VRRP/keepalived
2024-01-08
T5888
(bug): Firewall upgrade fails because of icmpv6
T5844
(bug): HTTPS API doesn't start without configured keys even when GraphQL authentication type is set to token
T5664
(bug): 1.4 user has no permissions?
T5215
(default): Add a built-in ICMP health check for VRRP groups
T5045
(bug): BFD is not starting after upgrade to 1.4-rolling-202302150317
T4193
(default): Add support for transparent firewall
T3754
(default): Make config scripts more testable
T3663
(default): Use inotify file watching where applicable
T3480
(bug): Does not possible to change console baud-rate
T2897
(default): Remove cluster command
T5904
(feature): op-mode: add "show ipv6 route vrf <name> <prefix>" command
2024-01-07
2024-01-06
T3670
(feature): Option to disable HTTP port 80 redirect
2024-01-05
2024-01-04
2024-01-03
2024-01-02
T5885
(default): image-tools: relax restriction on image-name length from 32 to 64
2024-01-01
2023-12-30
2023-12-29
2023-12-28
T4163
(feature): [BMP-BGP] Routing monitoring feature
T5867
(feature): Upgrade podman to Debian Trixie version 4.7.x
T5866
(feature): Add op-mode command to restart IPv6 RA daemon
T5861
(bug): Flavor build system fails with third-party packages
T5854
(feature): Extend override-default script to allow embedded defaultValue settings
T5792
(default): Upgrade ddclient 3.11.2 release
2023-12-25
2023-12-24
T5853
(default): Typo interfaces-virtual-ethernet.xml.in
2023-12-22
2023-12-21
T5778
(bug): The show dhcp server leases operation mode command does not work as expected
T5775
(default): Migrated Firewall Global State Policy ineffective on latest firewall zone config
T5637
(bug): Firewall default-action log
T5796
(bug): Openconnect - HTTPS security headers are missing
T3580
(feature): Refactoring firewall ipv6 rule icmpv6
T2898
(feature): Support NDP proxy
T2229
(feature): PPPOE Default Queue type selection
2023-12-20
2023-12-19
T5828
(default): Fix GRUB installation on arm64
2023-12-18
T5751
(feature): Adjust new image tools for non-interactive use
T5831
(feature): show system image should reverse order by addition date
T5825
(bug): image-tools: restore authentication on 'add system image'
T5821
(bug): image-tools: restore vrf-aware 'add system image'
T5819
(bug): Don't echo password on install image
T5806
(bug): Clear old raid data on new install image
T5789
(bug): image-tools should copy ssh host keys on image update
T5758
(default): Restore scanning configs when live installing
2023-12-15
2023-12-14
T5773
(bug): Unable to load config via HTTP
T5816
(bug): BGP Large Community List Validation Broken
T5812
(bug): rollback check max revision number does not work
T5749
(feature): Show MAC address VRF and MTU by default for "show interfaces"
T5774
(bug): commit-archive to FTP server broken after update (VyOS 1.5-rolling)
T5826
(default): Add dmicode as an explicit dependency
T5793
(default): mdns-repeater: Cleanup avahi-daemon configuration in /etc
2023-12-13
T591
(feature): Support SRv6
2023-12-12
2023-12-11
T5741
(bug): WAN Load Balancing failover route tables aren't created
2023-12-10
T5658
(default): Add VRF support for mtr
2023-12-09
2023-12-08
2023-12-04
T5769
(bug): VTI tunnels lose their v6 Link Local addresses when set down/up
2023-12-03
2023-11-30
T4601
(bug): dhcp : relay agent IP address issue.
2023-11-28
T4276
(bug): IPsec peers dh-group negotiation issue with pfs enabled and multiple proposals configured with IKEv1
2023-11-27
2023-11-26
2023-11-25
2023-11-24
2023-11-23
2023-11-22
T5767
(feature): Add reboot and poweroff the system via API
T5729
(bug): Firewall, nat and policy route - Switch to valueless
T5681
(feature): Interface match - Simplified and unified cli
T4877
(bug): Need verification in using import vrf and import vpn, export vpn commands
T4021
(bug): Long commit time on bridge interface with 1-4094 allowed VLAN tags
T5338
(feature): Add 'mpls bgp forwarding' feature
T3818
(bug): BGP export route-map only works after bgpd restart
T5590
(default): Firewall "log enable" logs every packet
T5426
(default): Add exceptions in vici functions calls
2023-11-21
T5762
(bug): http: api: smoketests fail as they can not establish IPv6 connection to uvicorn backend server
2023-11-20
T2816
(default): Rewrite IPsec scripts with the new XML/Python approach
2023-11-18
T1354
(feature): Add support for VLAN-Aware bridges
2023-11-16
T5726
(bug): HTTPS API image cannot be updated
T5738
(feature): Extend XML building blocks
T5736
(feature): igmp: migrate "protocols igmp" to "protocols pim"
T5733
(feature): pim(6): rewrite FRR PIM daemon configuration to get_config_dict() and add missing IGMP features
T5689
(default): FRR 9.0.1 in VyOS current segfaults on show rpki prefix $prefix
T5595
(feature): Multicast - PIM bfd feature enable
T3638
(bug): Passwords With Dollar Sign Set Incorrectly
2023-11-15
T5695
(feature): Build FRR with LUA scripts --enable-scripting option
T5665
(bug): radius user not working
T5728
(bug): Improve compatibility between OpenVPN on VyOS 1.5 and OpenVPN Connect Client
T5732
(bug): generate firewall rule-resequence drops geoip country-code from output
T5661
(enhancment): Add show show ssh dynamic-protection attacker and show log ssh dynamic-protection
T1276
(bug): dhcp relay + VLAN fails
2023-11-13
2023-11-10
T5727
(bug): validator: Use native URL validator instead of regex-based validator
2023-11-08
T5720
(bug): PPPoE-server adding new interface does not work
T5716
(bug): PPPoE-server shaper template bug down-limiter option does not rely on fwmark
T5702
(feature): Add ability to set include_ifmib_iface_prefix and ifmib_max_num_ifaces for SNMP
T5648
(bug): ldpd neighbour template errors
T5564
(bug): Both show firewall group and show firewall summary fails
T5559
(feature): Selective proxy-arp/proxy-ndp when doing SNAT/DNAT
T5541
(bug): Zone-Based Firewalling in VyOS Sagitta 1.4
T5513
(bug): Anomalies in show firewall command after refactoring
T4864
(bug): `show firewall` command errors
2023-11-07
T5586
(feature): Disable by default SNMP for Keepalived VRRP
2023-11-06
2023-11-05
T4020
(feature): Add ability to control FRR daemons options
2023-11-03
2023-11-02
T5701
(feature): Update telegraf package
2023-11-01
T5690
(bug): Change to definition of environment variable 'vyos_rootfs_dir' is incorrect
2023-10-31
2023-10-27
2023-10-26
T5683
(bug): reverse-proxy pki filenames mismatch
T4903
(bug): conntrack ignore does not suppotr IPv6 addresses
T4309
(feature): Support network/address-groups and ipv6-network/ipv6-address-groups in conntrack ignore
T5606
(feature): IPSec VPN: Allow multiple CAs certificates
T5650
(default): Progressbars suffer from staircasing effect
T5568
(default): Install image from live ISO always defaults boot to KVM entry
T3509
(default): No BCP38 for IPv6 on VyOS
2023-10-23
2023-10-22
2023-10-21
T5670
(bug): bridge: missing member interface validator
T5617
(feature): Add an option to exclude single values to the numeric validator
T5414
(bug): dhcp-server does not allow valid bootfile-names
T5261
(feature): Add AWS gateway load-balanceing tunnel handler (gwlbtun)
T5260
(bug): Python3 module crypt is deprecated
T5191
(default): Replace underscores with hyphens in command-line options generated by vyos.opmode
T5172
(default): Set Python3 version dependency for vyos-1x to 3.10
T4956
(default): 'show hardware cpu' issue on arm64
T4837
(default): Expose "show ip route summary" in the op mode API
T4770
(feature): Rewrite OpenVPN op-mode to vyos.opmode format
T4657
(bug): op-mode scripts with type hints in `return` do not work
T4604
(bug): bgpd eats huge amount of memory (about 500Megs a day)
T4432
(default): Display load average normalized according to the number of CPU cores
T4416
(default): Convert 'traceroute' operation to the new syntax and expand available options using python
T4402
(bug): OpenVPN client-ip-pool option is broken
T3433
(default): A review of the use of racist language in VyOS
T2719
(feature): Standardized op mode script structure
2023-10-20
2023-10-19
T4913
(default): Rewrite the wireless op mode in the new style
2023-10-18
2023-10-17
2023-10-16
T5165
(feature): Policy local-route ability set protocol and port
2023-10-14
T5629
(bug): Policy local-route bug after migration to destination node address
2023-10-13
T5227
(feature): mDNS reflector should allow additional domains to browse and allow filtering services
T5166
(feature): Remove local minisign package from build repo for 1.4
T5118
(bug): Cleanup vestigial ntp completion script
T5115
(default): Support custom port for name servers for forwarding zones
T5113
(default): PDNS: Support custom port for DNS forwarders
T5112
(feature): Enable support for Network Time Security (NTS) for chrony
T5143
(enhancment): Apply constraint on powerdns forward-zones configuration
2023-10-12
T5649
(bug): vyos-1x should generate XML cache after building command templates for less cryptic error on typo
2023-10-10
T5489
(feature): Change to BBR as TCP congestion control, or at least make it an config option
T5479
(bug): Helper leftovers found in nftables (firewall) even with all helpers disabled
T5436
(bug): vyos-preconfig-bootup.script is missing
T5014
(feature): Destination NAT - Add Load Balancing capabilities
2023-10-08
T5630
(feature): pppoe: allow to specify MRU in addition to already configurable MTU
2023-10-06
2023-10-05
T4320
(default): Remove legacy version files in vyatta-cfg-system/cfg-version
2023-10-04
2023-10-03
T5618
(bug): Flow-accounting crushes when IMT is enabled
T5561
(feature): NAT - Inbound or outbound interface should not be mandatory
T5553
(feature): Firewall - Add action continue
T5250
(bug): Firewall - show firewall group
T4383
(bug): Flow Accounting returns permission error and fails to start
T5626
(feature): Only select required Kernel CGROUP controllers
T5628
(feature): op-mode: login: DeprecationWarning: 'spwd'
2023-10-01
T936
(feature): Reimplementation of tech-support diagnostic file generation
2023-09-30
2023-09-28
2023-09-26
T5480
(bug): Ability to disable SNMP for VRRP keepalived service
2023-09-25
T5533
(bug): Keepalived VRRP IPv6 group enters in FAULT state
2023-09-24
T5511
(feature): Cleanup of unused directories (and files) in order to shrink image-size
2023-09-23
T5518
(default): Add MLD protocol support
2023-09-22
T5602
(feature): For reverse-proxy type of load-balancing feature, support "backup" option in backends configuration
T5609
(enhancment): Add util to get drive device name from id
T5608
(enhancment): Rewrite add/delete raid member to Python and remove from vyatta-op
T5607
(bug): Adjust RAID smoketest for non-deterministic SCSI device probing
2023-09-20
2023-09-19
2023-09-18
T5419
(feature): Software/Hardware fastpath with nftables flowtable
2023-09-15
T5581
(feature): Add "show ip nht" op-mode command (IPv4 nexthop tracking table)
2023-09-11
T5567
(bug): vyos-1x: webproxy: maximum-object-size allowed ranges not in sync with Equuleus
T5551
(bug): Missing check for boot_configuration_complete raises error in vyos-save-config.py
T5353
(bug): config-mgmt: normalize archive updates and commit log entries
T3424
(default): PPPoE IA-PD doesn't work in VRF
T2773
(feature): EIGRP support for VRF
2023-09-10
2023-09-09
2023-09-08
T5502
(bug): Firewall - wrong parser for inbound and/or outbound interface
T5460
(feature): Firewall - remove config-trap
T5450
(feature): Firewall interface group - Allow inverted matcher
T4426
(default): Add arpwatch to the image
T4356
(bug): DHCP v6 client only supports single interface configuration
2023-09-07
T5510
(feature): Shrink imagesize and improve read performance by changing mksquashfs syntax
2023-09-06
2023-09-05
T5524
(feature): Add config directory to liveCD
T5519
(bug): Function `call` sometimes hangs
T5508
(bug): Configuration Migration Fails to New Netfilter Firewall Syntax
T5495
(feature): Enable snmp module also for frr/ldpd
T2958
(bug): DHCP server doesn't work from a live CD
T5428
(bug): dhcp: client renewal fails when running inside VRF
2023-09-04
2023-09-03
2023-08-31
T5190
(feature): Cloud-Init cannot fetch Meta-data on machines where the main Ethernet interface is not eth0
T4895
(bug): Tag nodes are overwritten when configured by Cloud-Init from User-Data
T4776
(bug): NVME storage is not detected properly during installation
T5531
(feature): Containers add label option
T5525
(default): Change dev.packages.vyos.net repo to rolling-packages.vyos.net vyos-build:current uses
2023-08-30
T4933
(default): Malformed lines cause vyos.util.colon_separated_to_dict fail with a nondescript error
T4790
(bug): RADIUS login does not work if sum of timeouts more than 50s
T4113
(bug): Incorrect GRUB configuration parsing
T5520
(bug): Likely source of corruption on system update exposed by change in coreutils for Bookworm
T4151
(feature): IPV6 local PBR Support
T4485
(default): OpenVPN: Allow multiple CAs certificates
2023-08-29
2023-08-28
2023-08-27
2023-08-26
2023-08-25
2023-08-24
2023-08-23
T5478
(bug): Cannot configure resolver-cache options for firewall
T5466
(feature): L3VPN - label allocation mode
T5453
(bug): Fix nat66 - broken after load-balance was introduced in nat
T5446
(bug): bgp: validity check for bestpath med option
T5500
(feature): Minor fixes to configtree render
T5469
(default): Incorrect dependency set in the openvpn-dco package when building VyOS for arm64
T5387
(feature): dhcp6c: add a no release option
T5491
(feature): Hostapd - AP-Mode - allow white-/blacklisting of Clients
T4889
(default): Add nftables NAT REDIRECT [to localhost] to CLI
2023-08-22
T5407
(bug): Static routes pointed to container networks fail to persist after reboot
2023-08-20
T5470
(bug): wlan: can not disable interface if SSID is not configured
2023-08-18
T5488
(bug): System conntrack ignore does not take any effect
2023-08-17
T4202
(bug): NFT: Zone policies fail to apply when "l2tp+" is in the interface list
T5409
(feature): Add 'set interfaces wireguard wgX threaded'
T5476
(feature): netplug: replace Perl helper scripts with a Python equivalent
T5223
(bug): tunnel key doesn't clear
T5490
(feature): login: add missing regex for home direcotry and radius server key
2023-08-16
T5483
(bug): Residual dhcp-server test file causing zabbix-agent smoketest to fail
2023-08-15
2023-08-14
2023-08-12
T5467
(bug): ospf(v3): removing an interface from the OSPF process does not clear FRR configuration
2023-08-11
T5465
(feature): adjust-mss: config migration fails if applied to a VLAN or Q-in-Q interface
T2665
(bug): vyos.xml.defaults for tag nodes
T5434
(enhancment): Replace remaining calls of vyos.xml library
T5319
(enhancment): Remove remaining workarounds for incorrect defaults
T5464
(feature): ipv6: add support for per-interface dad (duplicate address detection) setting
2023-08-10
2023-08-09
2023-08-07
T5406
(bug): "update webproxy blacklists" fails when vrf is being configured
T5302
(bug): QoS class with multiple matches generates one filter rule but expects several rules
T5266
(bug): QoS- HTB error when match with a dscp parameter for queue-type 'priority'
T5071
(bug): QOS-Rewrite: DSCP match missing
2023-08-06
2023-08-05
2023-08-04
T5427
(bug): Change migration script len arguments checking
2023-08-03
2023-08-02
T5374
(feature): Ability to set 24-hour time format
T5350
(bug): Confusing warning message when committing VRRP config
T5430
(bug): bridge: vxlan interfaces are not listed as bridgable in completion helpers
T5429
(bug): vxlan: source-interface is not honored and throws config error
T5415
(feature): Upgrade FRR to version 9.0
T5422
(feature): Support LXD Agent
2023-08-01
T5399
(bug): "show ntp" fails when vrf is being configured
T5346
(bug): MPLS sysctl not persistent for L2TP interfaces
T5343
(feature): BGP peer group VPNv4 & VPNv6 Address Family Support
T5339
(feature): Geneve interface - option to use IPv4 as inner protocol
T5335
(bug): ISIS: error when loading config from file
2023-07-31
T5421
(feature): Add arg to completion helper 'list_interfaces' to filter out vlan subinterfaces
2023-07-29
T5403
(feature): Add support for extending xml cache
2023-07-28
2023-07-27
T5368
(feature): FastNetmon service ids ddos-protection add support sflow mode
2023-07-26
2023-07-25
T5377
(feature): ospf: add graceful restart FRR feature (RFC 3623)
2023-07-21
T5373
(bug): LLDP seems to be running even if its disabled on all interfaces
T5328
(default): bgp: Incorrect warning showed for address-family configured with neighbor as interface
T5363
(bug): Bash history file does not exists after reboot and ony other file in home directory
T5385
(bug): reference_tree: catch parse error on non-transcluded files
T5361
(bug): "monitor log" behaves like "show log"
2023-07-20
T5362
(bug): `set high-availability vrrp global-parameters version 3` seems to have no effect
T5355
(bug): IPSec: OP cmd : "show vpn ike sa" does not show output
T5330
(enhancment): Keep track of source of config dict value when merging defaults
T4497
(feature): ping cannot force ipv4 or ipv6
T4288
(bug): IPsec tunnel will break when ESP timeout
2023-07-19
2023-07-17
T2051
(bug): Throughput anomalies
2023-07-16
T141
(feature): TACACS+ Support
2023-07-15
T5341
(feature): Improve CLI for high-availability virtual-server to work with multiple ports
2023-07-14
T5358
(bug): 99-ipsec-dhclient-hook prevents DHCP stateless routes from being installed in VRF table
T4376
(bug): DNAT with multiwan and policy routing, incoming connections only work on primary interface
T305
(default): loadbalancing does not work with one pppoe connection and another connection of either dhcp or static
2023-07-13
2023-07-12
T5347
(bug): Compare commit revision bug
T5161
(default): BFD Static Route Monitoring
T5105
(bug): DHCP Server - Wrong error message
T4927
(bug): Need to change restart to reload-or-restart in Webproxy module
T3835
(bug): vyos router 1.2.7 snmp Dos bug
T5352
(default): Fix missing dependency for netavark
T4959
(feature): Add container registry authentication config for containers
2023-07-11
T5314
(bug): QOS Default classes are not configured with correct qdisc
T4862
(bug): webproxy domain-block does not work
T4844
(bug): Incorrect permissions of the safeguard DB directory
T4815
(bug): Fix various name server config issues
T4810
(bug): Op-mode show/monitor log pppoe interface does not show any logs
T4758
(feature): Rewrite show dhcp server to vyos.opmode format
T4262
(bug): install image doesn't respect chosen root partition size
T3810
(bug): webproxy squidguard rules don't work properly after rewriting to python.
T1928
(bug): Is the 'Welcome to VyOS' message when using SSH an information leak?
T1877
(default): Feature Request: Allow NAT to use network and address groups
T4813
(feature): L3VPN over GRE Tunnels
T4943
(bug): Radius SSH login displays "permission denied" on 1.4 rolling release
T4542
(default): route-map: "match prefix-len" incorrect behavior
T4392
(default): Multiline login banner text reports error on commit
2023-07-10
2023-07-06
T5336
(feature): Add Swedish keyboard-layout
2023-07-04
2023-07-03
2023-07-02
T5332
(bug): Show policy route not working when no interface is configured
2023-07-01
2023-06-30
2023-06-29
T5320
(enhancment): Add warning when entering config mode after a boot configuration error
2023-06-28
T1237
(feature): Static Route Path Monitoring, failover
2023-06-26
T5159
(bug): DHCPv6-server leases op-command shows warning message even if configured
2023-06-25
2023-06-24
T5303
(bug): Rsyslog.service is not working
T5298
(bug): Add RFKILL support into kernel.
T5308
(enhancment): Remove workarounds for incorrect defaults in get_interface_dict
T5228
(enhancment): Simplify get_config_dict and add argument with_defaults
T5310
(bug): Need some help troubleshooting NIC detection.
2023-06-22
T5297
(default): Utility function to check if config under node has been changed between revisions
2023-06-20
2023-06-19
2023-06-18
T5256
(bug): QoS expects protocol number but not protocol name
2023-06-13
T5258
(bug): git Actions use ubuntu-22.04 instead of deprecated ubuntu-18.04 for PR conflicts checker
T5222
(feature): Add load-balancing reverse-proxy based on haproxy
T5213
(feature): Accel-ppp sending accounting interim updates acct-interim-interval option
T5171
(feature): Use XML for conf-mode "load-balancing wan" instead of legacy templates
2023-06-12
2023-06-10
T5231
(feature): Add op-mode for load-balancing reverse-proxy
2023-06-09
T5253
(bug): MPLS config removed at boot when wireguard interfaces present
2023-06-05
T5259
(bug): Openconnect cannot pass migration 1-to-2
2023-06-02
2023-06-01
T5127
(bug): VPNv4/VPNv6 routes are not reinstalled following link flap
2023-05-28
2023-05-25
2023-05-24
2023-05-23
T4916
(feature): Rewrite IPsec authentication
2023-05-22
2023-05-21
2023-05-17
2023-05-16
T5194
(default): Add reference tree to vyos1x-config
2023-05-15
T3896
(feature): Extend ocserv support to allow for per-group configs
2023-05-12
2023-05-10
2023-05-09
T5202
(bug): After removal load-balancing a pid remained which used in dhclient-exit-hooks
2023-05-06
T5206
(bug): ethtool.py:Ethtool.__init__ has always true conditional due to typo
2023-05-05
T5082
(feature): container: switch to netavark network stack
2023-05-04
2023-05-03
T5163
(feature): Policy route-map add match source-protocol
2023-05-02
T5042
(bug): Command 'show vpn ipsec remote-access' does not work
2023-04-27
T5185
(bug): Static IPv6 route with blackhole fails
T5175
(bug): http-api: error in MultiPart parser for FastAPI version >= 0.91.0
T5183
(bug): IPv6 route6 problem
T5181
(bug): Wrong dependencies or priorities for zebra vni vrf interfaces and bgpd
T5128
(feature): Policy route - Allow wildcard interfaces
T5055
(feature): Firewall - Add packet type matcher (pkttype)
T5050
(feature): Firewall - Add options for logging packets
T5037
(feature): Firewall - Add queue action
T5176
(bug): http-api: update vyos-http-api-tools for FastAPI security vulnerability
T5174
(bug): vrf: ensure no duplicate VNIs can be created
T5123
(default): Display route originator in show ospf table command
2023-04-25
T5179
(bug): multi nodes defined in XML are not properly represented as list in get_config_dict()
2023-04-17
2023-04-13
T5152
(bug): Telegraf agent hostname isn't qualified
T4727
(feature): Add RADIUS rate limit support to PPTP server
T4939
(bug): VRRP command no-preempt not work as expected
T4791
(default): Consistent normalization of 'raw' output of op-mode scripts for CLI and API
T3608
(default): Standardize warnings from configure scripts
2023-04-11
2023-04-10
T5151
(bug): EAP-TLS TLSv1.0/1.1 regression after T5003
T5148
(bug): OpenVPN cannot start due to could not load plugin shared object /openvpn-otp.so
T5110
(bug): Show frr op-mode vtysh_pam: Failed in account validation
T5078
(feature): VyOS BGP does not support 'show bgp neighbors $NB filtered-routes'
T5070
(feature): show bgp nexthop unavailable in VRF
T5061
(bug): All containers restart on config change
2023-04-07
T5149
(bug): op-mode openvpn should not raise error in case interface is disabled
2023-04-06
2023-04-05
2023-04-04
2023-04-03
2023-04-02
T5134
(feature): Try if netavark networks can be moved to a VRF instance
2023-04-01
2023-03-31
2023-03-30
2023-03-29
T5100
(feature): Update FRR to 8.5
T5094
(bug): FRR systemd logs unknow key LimitNOFILESoft
T5085
(bug): ospfv3 route-map not applied in FRR configuration
T5056
(bug): IPoE server vlan-mon is not working
T5033
(bug): generate-public-key command fails for address with multiple public keys like GitHub
T4876
(bug): mpls - LSP broken on FRR 8.4.1
T5097
(bug): the operational command "show interfaces ethernet ethx" doesn't reflect a call to 'clear counters'
T5089
(enhancment): Add unit test of config_diff
T5088
(enhancment): Add lexicographical-numeric compare function for vytree/configtree
T5087
(enhancment): Add support for lexical ordering of nodes in config_tree
T4885
(feature): Rewrite 'clear interfaces counters' from Perl to Python
T4846
(bug): L3VPN- network command doesn't install direct connected prefix
2023-03-28
T5043
(feature): Need to create reset command for IKEv2 remote-access vpn connections
2023-03-27
T5099
(feature): IPoE server add option 'next-pool' for named ip pools
T5106
(feature): Extend generation of API client requests to configsession native functions and composite requests
T5104
(bug): DHCP default route issues with static routes in VRFs
T5079
(feature): xml: schema extension to support defaultValues on tagNodes
T5114
(feature): bgp: implement new CLI commands introduced in FRR 8.5
2023-03-23
2023-03-22
T5068
(feature): Generate op-mode API client requests along with schema generation
2023-03-21
2023-03-20
2023-03-19
T4925
(feature): Need to add the possibility to configure Pseudo-Random Functions (PRF) in IKEv2
2023-03-17
2023-03-16
2023-03-13
2023-03-11
T5076
(feature): CI/CD: Docker container is bloated by legacy and conflicting dependencies
2023-03-09
2023-03-08
2023-03-07
2023-03-05
T5040
(default): Generate API GraphQL schema on installation, rather than dynamically
2023-03-03
T4625
(enhancment): Update ocserv to current revision (1.1.6)
2023-03-02
T4967
(feature): Ability to set hostname for the container
2023-03-01
T5015
(bug): Invalid format character error at hfsc class settings help text
2023-02-28
T5029
(feature): Nginx change default root directory and fix regex
T5025
(bug): Time-zone validation failed
T4955
(bug): Openconnect radiusclient.conf generating with extra authserver
T4843
(feature): Command-line arguments in container config
T4219
(feature): support incoming-interface (iif) in local PBR
T3903
(bug): Containers: after command "reboot" the host system will reboot after 1.5 minutes
2023-02-27
2023-02-26
T4979
(feature): Add API request 'show_user_info' for UI
2023-02-25
T5008
(bug): MACsec CKN of 32 chars is not allowed in CLI, but works fine
T5007
(bug): Interface multicast setting is invalid
T5027
(bug): OpenVPN options and site-to-site cannot pass smoketest
T4978
(bug): KeyError: 'memory' container_config['memory'] on upgrading to 1.4-rolling-202302041536
T5034
(bug): Migrate multicast CLI node to valueLess
T4948
(feature): pppoe: add CLI option to allow definition of host-uniq flag
2023-02-24
T5030
(bug): HTTPS-API delete key without id error
2023-02-23
2023-02-22
2023-02-21
2023-02-20
T5005
(feature): Skip user authentication for PPPoE Server with noauth option
2023-02-16
T4971
(feature): Radius attribute "Framed-Pool" for PPPoE
2023-02-15
T4991
(bug): Restore path level information to compare output
2023-02-14
2023-02-13
2023-02-12
T4998
(bug): pppoe username validation too restrictive (regression)
2023-02-11
T2603
(feature): pppoe-server: reduce min MTU
2023-02-10
2023-02-07
2023-02-01
T4970
(default): pin OCaml pcre package to avoid JIT support
2023-01-31
2023-01-30
2023-01-29
T4965
(default): empty description in firewall group causes configuration error on migration
2023-01-28
T4961
(bug): Uncaught configtree error allows ntp migration 1-to-2 to fail silentlly on config.boot.default
2023-01-27
T4960
(bug): Bugs in `cc_vyos.py` code (Cloud-Init)
2023-01-26
2023-01-25
T4941
(bug): Accel-ppp IPoE incompatibility with kernel 6.1
2023-01-24
T4947
(feature): Support mounting container volumes as ro or rw
2023-01-23
T4798
(default): Migrate the file-exists validator away from Python
T4683
(enhancment): Add kitty-terminfo package to build
T4953
(bug): Remove convert_kwargs_to_snake_case decorator in dynamic generation of GraphQL resolvers
T4875
(default): Replace Python validator 'interface-name' to avoid Python startup cost
T4664
(bug): Add validation to reject whitespace in tag node value names
2023-01-22
T4906
(bug): ipsec connections shows only one connection as up
2023-01-21
2023-01-20
2023-01-17
2023-01-15
2023-01-13
2023-01-12
2023-01-10
T4880
(feature): Expose 'add/delete container image' in HTTP-API
2023-01-09
2023-01-08
T4920
(bug): ospf: Fix `passive-interface default` option
2023-01-07
T4884
(bug): Missing a community6 in snmpd config
2023-01-05
2023-01-04
2023-01-03
T4907
(bug): nat source translations couldn't show metrics
2023-01-02
2022-12-31
T4898
(feature): Add mtu config option for dummy interfaces
2022-12-30
2022-12-28
T4593
(feature): Upgrade strongswan to 5.9.8
2022-12-26
2022-12-25
T3579
(feature): Rewrite vyatta-conntrack in new XML and Python flavour
2022-12-24
2022-12-23
T4792
(feature): Add SSTP VPN client
2022-12-21
T4887
(bug): Schema generation from op-mode functions should set default 'false' on boolean arguments
2022-12-18
T4882
(bug): Missing ICMPv6 type names in firewall configuration
2022-12-15
T4671
(bug): linux-firmware package is missing symlinks defined in WHENCE file
2022-12-14
T4881
(bug): Return opmode.Error on openconnect.py show_sessions
2022-12-12
T4861
(feature): Openconnect restart on adding users - Aborts all active connections
2022-12-09
T4865
(bug): container impossible to generate local image from a file if it requires install some pkgs
2022-12-05
2022-12-04
2022-12-02
2022-12-01
2022-11-29
2022-11-27
T4739
(feature): ISIS and OSPF segment routing being refactored
2022-11-24
2022-11-23
T4836
(feature): Kernel: enable new features like switchdev, ESP in TCP and HSR
T4835
(bug): SNMPD configuration incorrect for IPv6
T4819
(feature): Allow printing Warning messages in multiple lines with \n
T4807
(feature): Need to fix traceroute help completion
T4660
(feature): Reorganize route map set community CLI
T4526
(bug): keepalived-fifo.py unable to load config
T4793
(feature): Create warning message about disable-route-autoinstall when ipsec vti is used
T4492
(bug): Incorrect list of neighbors in help for "show bgp vrf VRF neighbors"
T4496
(feature): ping vrf help does not list VRFs
2022-11-22
2022-11-21
2022-11-20
T4827
(bug): route-map issues , not load configuration FRR
2022-11-19
2022-11-18
T4821
(bug): Correct calling of config mode script dependencies from firewall.py
2022-11-17
T4750
(feature): Support of higher level SSH keys (sk-ssh-ed25519)
2022-11-15
T4808
(feature): Add details of configtree operations to migration log
2022-11-12
T4814
(bug): Regression in bundled powerdns version
2022-11-09
T4800
(bug): undefined var includes_chroot_dir in build-vyos-image
2022-11-08
2022-11-06
T4803
(bug): The header 'Authorization' needs to be explictly allowed in http-api CORS middleware
2022-11-05
T4802
(feature): Ability to define per container shared-memory size
2022-11-01
2022-10-31
2022-10-29
2022-10-28
T4291
(default): Consolidate component version read/write functions
2022-10-27
2022-10-26
T4773
(default): Add camel_case to snake_case conversion utility
2022-10-25
T4574
(default): Add token based authentication to GraphQL API
2022-10-24
T4772
(default): Return list of dicts in 'raw' output of route.py instead of dict with redundant information
2022-10-23
T3723
(bug): op-mode IPSec show vpn ipsec sa output with underscores
2022-10-21
T4768
(default): Change name of api child node from 'gql' to 'graphql'
2022-10-18
2022-10-17
T4725
(bug): Unable to reset vpn IPsec peer
2022-10-14
2022-10-13
T4746
(bug): Monitoring nft. table vyos_filter by default does not exist but telegraf checks this table
T4744
(bug): BGP directly connected neighbors don't compatible with ebgp-multihop
T4716
(feature): SSH ability to configure RekeyLimit
T4343
(default): Expose powerdns network-timeout for service dns forwarding
T4312
(bug): Telegraf configuration doesn't accept IPs for URL
T4274
(default): Extend OpenConnect RADIUS Timeout to Permit 2FA Entry
2022-10-12
2022-10-11
2022-10-10
T538
(feature): Support for network mapping in NAT
2022-10-09
T4738
(enhancment): Extend automatic generation of schema definition files to native configsession functions; use single resolver/directive
2022-10-08
T4707
(feature): Enable OSPF segment routing
2022-10-07
T4736
(bug): Error on JSON output of API query ShowConfig
2022-10-04
T4708
(bug): 'show nat destination rules' throwing an error
T4700
(feature): Firewall - Add interface match criteria
T4699
(feature): Firewall - Add jump action - Add return action
T4651
(feature): Firewall - Add options to match packet size
T4702
(bug): Wireguard peers configuration is not synchronized with CLI
T4685
(bug): Interface does not exist on boot when used as inbound-interface for local policy route
T4652
(feature): Upgrade PowerDNS recursor to 4.7 series
T4582
(default): Router-advert: Preferred lifetime cannot equal valid lifetime in PIOs
2022-09-29
2022-09-27
2022-09-21
2022-09-20
T4693
(bug): ISIS segment routing was broken...
2022-09-17
2022-09-16
2022-09-15
T4679
(bug): OpenVPN site-to-site incorrect check for IPv6 local and remote address
T4691
(feature): Upgrade Linux Kernel to latest 5.15.y train
T4630
(bug): Prevent attempts to use the same interface as a source interface for pseudo-ethernet and MACsec at the same time
T4696
(default): Extend bgp parameters for bgp bestpath peer-type multipath-relax
2022-09-12
T4617
(feature): VRF specification is needed for telegraf prometheus-client listen-address <address>
T4690
(bug): Update GraphQL resolver for 'SystemStatus' following changes to 'show_uptime' op-mode script
T4647
(feature): Add Google Virtual NIC (gVNIC) support
T4170
(feature): Rename "policy ipv6-route" -> "policy route6"
2022-09-09
2022-09-06
T4640
(enhancment): Integrate op-mode exception hierarchy into API
T4597
(bug): Check bind port before assign service HTTPS API and openconnect
T4674
(bug): API should show op-mode error message, if present
T4673
(bug): op-mode bridge.py should raise error on show_fdb for nonexistent bridge interface
2022-09-05
T4668
(bug): Adding/removing members from bond doesn't work/results in incorrect interface state
T4663
(bug): Interface pseudo-ethernet does not change mode
T4655
(bug): Firewall in 1.4 sets the default action 'accept' instead of 'drop'
T4628
(bug): ConfigTree() throws ValueError() if tagNode contains whitespaces
2022-09-01
2022-08-31
T4650
(feature): Rewire show nat translation to vyos.opmode format
T4644
(bug): Check bind port before assign vpn sstp
T4643
(bug): Smoketest exclude either sstp or openconnect from pki-misc default listen port
T4569
(feature): Rewrite show bridge to new format
T4547
(bug): Show vpn ipsec sa show unexpected prefix 'B' in packets
T4367
(bug): NAT - Config tmp file not available
2022-08-29
T4645
(bug): show nat source statistics lack argument --family
T4634
(bug): Bgp neighbor disable-connected-check does not work
T4631
(feature): Add port and protocol to nat66
T4623
(feature): Add show conntrack statistics
T4595
(bug): DPD interval and timeout do not work in DMVPN
T4594
(feature): Rewrite op-mode IPsec to vyos.opmode format
T4508
(bug): Problem with values of the same environment in different event handlers
T4653
(bug): Interface offload options are not applied correctly
T4546
(bug): Does not connect Cisco spoke to VyOS hub.
T4061
(default): Add util function to check for completion of boot config
T4654
(bug): RPKI cache incorrect description
T4572
(bug): Add an option to force interface MTU to the value received from DHCP
2022-08-26
T4642
(bug): proxy: hyphen not allowed in proxy URL
2022-08-25
2022-08-24
2022-08-23
2022-08-22
2022-08-20
T4596
(bug): "show openconnect-server sessions" command does not work in the openconnect module
2022-08-19
2022-08-18
2022-08-17
2022-08-16
2022-08-15
2022-08-14
2022-08-12
T4603
(feature): Need a config option to specify NAS-IP-Address for vpn l2tp
2022-08-10
T4408
(feature): Add sshguard to protect against brut-forces
2022-08-08
T4586
(feature): Add to NAT66: SNAT destination address and DNAT source address.
2022-08-04
T4257
(feature): Discussion on changing BGP autonomous system number syntax
2022-08-02
2022-08-01
2022-07-31
T4580
(bug): Handle the case of op-mode file names with hyphens in GraphQL schema/resolver generation
2022-07-30
T4575
(feature): vyos.utill add new wrapper "rc_cmd" to get the return code and output
T4562
(feature): Rewrite show vrf to new format
T4545
(feature): Rewrite show nat source rules
T4543
(bug): Show source nat statistics shows incorrect interface
T4503
(default): Prevent op mode scripts from restarting services if there's a commit in progress
T4411
(feature): Add migration for service monitoring telegraf influxdb
2022-07-29
2022-07-28
2022-07-27
2022-07-26
2022-07-25
2022-07-22
T4145
(bug): Conntrack table not showing after firewall rewriting
2022-07-21
2022-07-20
T4056
(bug): Traffic policy not set in live configuration
2022-07-18
T4523
(feature): OP-mode Extend conntrack output to get marks, zones and directions
T4228
(bug): bond: OS error thrown when two bonds use the same member
T4539
(feature): qat: update Intel QuickAssist release version 1.7.L.4.16.0-00017
T4534
(bug): bond: bridge: error out if member interface is assigned to a VRF instance
T4525
(bug): Delete interface from VRF and add it to bonding error
T4522
(feature): bond: add ability to specify mii monitor interval via CLI
T4535
(feature): FRR: upgrade to stable/8.3 version
T4521
(bug): bond: ARP monitor interval is not configured despite set via CLI
T4540
(feature): firmware: update to Linux release 20220708
2022-07-17
T4028
(bug): FRR 8.1 routes not being applied to routing table after reboot if an interface has 2 ip addresses
2022-07-15
2022-07-14
T4491
(bug): Use empty string for internal name of root node of config_tree
2022-07-13
T1375
(feature): Add clear dhcp server lease function
2022-07-12
2022-07-10
T3836
(bug): Setting a default IPv6 route while getting IPv4 gateway via DHCP removes the IPv4 gateway
2022-07-09
T4507
(feature): IPoE-server add multiplier option for shaper
T4499
(bug): NAT source translation not showing a single output
T4468
(bug): web-proxy source group cannot start with a number bug
T4373
(feature): PPPoE-server add multiplier option for shaper
T3353
(bug): PPPoE server wrong vlan-range generating config
T3648
(bug): op-mode: nat rules broken
T4517
(feature): ip: Add options to enable directed broadcast forwarding
2022-07-07
2022-07-06
2022-07-05
2022-07-04
2022-07-01
2022-06-29
T4477
(feature): router-advert: support RDNSS lifetime option
2022-06-28
2022-06-27
T4484
(default): Firewall op-mode summary doesn't correctly handle address group containing ranges
2022-06-25
2022-06-22
T1748
(feature): vbash: beautify tab completion output/line breaks
2022-06-20
T1856
(feature): Support configuring IPSec SA bytes
2022-06-18
T4467
(bug): Validator Does Not Accept Signed Numbers
2022-06-17
T4209
(bug): Firewall incorrect handler for recent count and time
2022-06-16
T4352
(bug): wan-load balance - priority traffic rule doesn't work
2022-06-15
2022-06-12
2022-06-10
2022-06-09
2022-06-08
T4447
(bug): DHCPv6 prefix delegation `sla-id` limited to 128
2022-05-31
T4212
(default): PermissionError when generating/installing server Certificate (generate pki certificate sign ...)
T4199
(bug): Commit failed when setting icmpv6 type any
T4148
(bug): Firewall - Error messages not that clear as it were in old firewall
T3659
(bug): Configuration won't accept IPv6 addresses for site-to-site VPN tunnel prefixes/traffic selectors
2022-05-30
T4315
(feature): Telegraf - Output to prometheus
2022-05-29
T2473
(feature): Xml for EIGRP [conf_mode]
2022-05-28
T4448
(feature): rip: add support for explicit version selection
2022-05-26
T4442
(feature): HTTP API add action "reset"
2022-05-25
2022-05-21
T4437
(bug): flow-accounting: support IPv6 flow collectors
2022-05-20
T4418
(feature): Telegraf - output Plugin azure-data-explorer
2022-05-19
2022-05-17
T4424
(bug): policy local-route6 shows ipv4 format
2022-05-16
T4377
(default): generate tech-support archive includes previous archives
2022-05-12
2022-05-11
T4405
(bug): DHCP client sometimes ignores `no-default-route` option of an interface
2022-05-10
2022-05-07
2022-05-06
T4385
(bug): bgp: peer-group member cannot override remote-as of peer-group
2022-05-05
T4414
(feature): Add route-map "as-path prepend last-as x" option
2022-05-03
T4395
(feature): Extend show vpn debug
2022-05-01
2022-04-29
2022-04-28
T4400
(bug): Container OP mode has delete where show and update should be
2022-04-27
2022-04-26
2022-04-25
2022-04-24
T4342
(bug): "show ip ospf neighbor address x.x.x.x" gives "unknown command" error
2022-04-23
T4386
(default): Applying limiter on traffic-policy "in" fails, incorrectly reports mirror or redirect policy in use
2022-04-22
T4389
(feature): dhcp: add vendor option support for Ubiquity Unifi controller
2022-04-21
T4384
(feature): pppoe: replace default-route CLI option with common CLI nodes already present for DHCP
2022-04-20
2022-04-19
2022-04-18
2022-04-15
2022-04-13
T4333
(feature): Jinja2: add plugin to test if a variable is defined and not none to reduce template complexity
2022-04-08
T4331
(bug): IPv6 link local addresses are not configured when an interface is in a VRF
T4347
(default): Return complete and consistent error codes from HTTP API
T4339
(bug): wwan: tab-completion results in "No such file or directory" if there is no WWAN interface
T4338
(bug): wwan: changing interface description should not trigger reconnect
T4324
(bug): wwan: check alive script should only be run via cron if a wwan interface is configured at all
2022-04-07
T4330
(bug): MTU settings cannot be applied when IPv6 is disabled
T4346
(feature): Deprecate "system ipv6 disable" option to disable address family within OS kernel
T4319
(bug): The command "set system ipv6 disable" doesn't work as expected.
T4341
(feature): login: disable user-account prior to deletion and wait until deletion is complete
T4336
(feature): isis: add support for MD5 authentication password on a circuit
2022-04-06
T4308
(feature): Op-comm "Show log frr" to view specific protocol logs
2022-04-04
T4329
(bug): Bgp policy route-map bug with set several extcommunity rt
2022-04-02
T4335
(bug): open-vmdk fails to build under gcc-10.+
2022-04-01
T4332
(bug): bgp: deterministic-med cannot be disabled while addpath-tx-bestpath-per-AS is in use
2022-03-31
2022-03-29
2022-03-26
T4321
(default): Allow BGP neighbors between different VIFs on the same VyOS
2022-03-24
T4301
(bug): The "arp-monitor" option in bonding interface settings does not work
T4294
(bug): Adding a new openvpn-option does not restart the OpenVPN process
T4290
(bug): BGP source-interface fails to commit
T4230
(bug): OpenVPN server configuration deleted after reboot when using a VRRP virtual-address
2022-03-23
T4314
(bug): Latest 1.4 Rolling release config migration error
2022-03-21
T4304
(feature): [OSPF]import/export filter inter-area prefix
2022-03-20
T4298
(default): vyos-vm-images: fix ansible group name and remove obsolete empty command
2022-03-18
T4286
(bug): Fix for firewall ipv6 name address validator
2022-03-15
2022-03-14
T4275
(default): Incorrect val_help for local/remote prefix in ipsec vpn
2022-03-12
2022-03-11
T4297
(bug): Interface configuration saving fails for ice/iavf based interfaces because they can't change speed/duplex settings
2022-03-09
T3981
(feature): VRF support for flow-accounting
2022-03-05
T4259
(bug): The conntrackd daemon can be started wrongly
2022-03-03
T4283
(feature): Add support to "reject" routes - emit an ICMP unreachable when matched
2022-03-01
T4277
(feature): flow-accounting: support sending flow-data via VRF interface
2022-02-28
2022-02-26
T4272
(feature): lldp: migrate Python script to use get_config_dict()
2022-02-24
T4267
(bug): Error - Missing required "ip key" parameter
2022-02-23
2022-02-21
T4120
(feature): [VXLAN] add ability to set multiple unicast-remotes
2022-02-20
T4254
(feature): VPN IPSec charon add options cisco_flexvpn and install_virtual_ip_on
T4249
(feature): Add support for device mapping in containers
T3617
(bug): IPSec 1.4 generate invalid configuration
T4261
(feature): MACsec: add DHCP client support
T4203
(bug): Reconfigure DHCP client interface causes brief outages
2022-02-19
T4258
(bug): [DHCP-SERVER] error parameter on Failover
2022-02-17
2022-02-16
T4237
(bug): Conntrack-sync error - error adding listen-address command
2022-02-15
2022-02-13
2022-02-11
T3872
(feature): Add configurable telegraf monitoring service
2022-02-08
T4227
(bug): Typo in help completion of hello-time option of bridge interface
2022-02-07
T4233
(bug): ssh: sync regex for allow/deny usernames to "system login"
2022-02-06
T4223
(bug): policy route cannot have several entries with the same table
T4216
(bug): Firewall: can't use negated groups in firewall rules
T4178
(bug): policy based routing tcp flags issue
T4164
(bug): PBR: network groups (as well as address and port groups) don't resolve in `nftables_policy.conf`
T3970
(feature): Add support for op-mode PKI direct install into an active config session
T3828
(bug): ipsec: Subtle change in "pfs enable" behavior from equuleus -> sagitta
2022-02-05
T4226
(bug): VRRP transition-script does not work for groups name which contains -(minus) sign
2022-02-04
T4196
(bug): DHCP server client-prefix-length parameter results in non-functional leases
2022-02-03
2022-02-01
T4224
(bug): Ethernet interfaces configured for DHCP not working on latest rolling snapshot (vyos-1.4-rolling-202201291849-amd64.iso)
T4225
(bug): Performance degration with latest rolling release
T4220
(bug): Commit broke dhclient 78b247b724f74bdabab0706aaa7f5b00e5809bc1
T4138
(bug): NAT configuration allows to set incorrect port range and invalid port
2022-01-28
2022-01-27
T4213
(default): ipv6 policy routing not working anymore
T4188
(bug): Firewall does not correctly handle conntracking
T3762
(feature): Support network and address groups for policy ipv6-route
T3560
(feature): Ability to create groups of MAC addresses
T3495
(feature): Modernising port/protocol definitions
2022-01-25
2022-01-24
2022-01-23
2022-01-21
T4200
(bug): Assigning ipv6-name to interface is not generating nftables rules
T4144
(bug): Firewall address-group - Improve error messages
T4137
(bug): Firewall group configuration allows to set incorrect port range and invalid port
T4133
(bug): Firewall network group error with zone-based firewall rules
2022-01-20
T4171
(bug): Interface config migration error on 1.2.8 -> 1.4 upgrade
2022-01-19
T4195
(feature): [OSPF-ECMP]enable set maximun-path
2022-01-18
T4159
(bug): Empty firewall group (address, network & port) generates invalid nftables config, commit fails
T4155
(bug): PBR: `set table main` fails in `firewall.py` with newer rolling releases
T3873
(feature): Zone based Firewall - Filter traffic in same zone
T3286
(feature): Switch the firewall from iptables to nftables
T292
(feature): [ZBF] Allow filtering intra zone traffic
2022-01-17
T3164
(bug): console-server ssh does not work with RADIUS PAM auth
2022-01-15
2022-01-14
2022-01-13
2022-01-12
2022-01-11
2022-01-10
2022-01-09
2022-01-08
T4116
(bug): Webproxy/Squid not working with IPv6 listen-address
2022-01-07
T3924
(bug): VRRP stops working with VRF
2022-01-06
2022-01-04
2022-01-03
2021-12-31
T4081
(bug): VRRP health-check script stops working when setting up a sync group
2021-12-30
T4124
(feature): snmp: migrate to get_config_dict()
2021-12-29
2021-12-28
T3380
(bug): "show vpn ike sa" does not display IPv6 peers
2021-12-27
2021-12-26
2021-12-25
T4101
(bug): commit-archive: Use of uninitialized value $source_address in concatenation
T4099
(feature): flow-accounting: sync "source-ip" and "source-address" between netflow and sflow ion CLI
T4097
(feature): flow-accounting: migrate implementation to get_config_dict()
T4105
(feature): flow-accounting: drop "sflow agent-address auto"
T4106
(feature): flow-accounting: support specification of capture packet lenght
T4102
(feature): OSPFv3: add support for NSSA area-type
T4055
(feature): Add VRF support for HTTP(S) API service
2021-12-24
T3854
(bug): Missing op-mode commands for conntrack-sync
2021-12-23
T3354
(default): Convert strip-private script from Perl to Python
2021-12-22
2021-12-21
2021-12-20
T4088
(default): Fix typo in login banner
2021-12-19
T3912
(default): Use a more informative default post-login banner
2021-12-17
T4059
(bug): VRRP sync-group transition script does not persist after reboot
2021-12-16
2021-12-15
2021-12-14
T4071
(feature): Allow HTTP API to bind to unix domain socket
2021-12-12
2021-12-10
T4068
(feature): Python: ConfigError should insert line breaks into the error message
2021-12-09
T4033
(bug): VRRP - Error security when setting scripts
T4064
(bug): IP address for vif is not removed from the system when deleted in configuration
T4060
(enhancment): Extend configquery for use before boot configuration is complete
T4058
(bug): BFD: add BGP and OSPF "bfd profile" support
T4054
(bug): BFD profiles configuration incorrect behavior.
2021-12-07
T4041
(servicerequest): "transition-script" doesn't work on "sync-group"
2021-12-06
T4012
(feature): Add VRF support for TFTP
2021-12-04
T4049
(feature): support command-style output with compare command
T4047
(bug): Wrong regex validation in XML definitions
T4042
(bug): BGP L2VPN / EVPN and RD type 0 set
T4048
(bug): BGP: L2VPN/EVPN and individual RD and RT settings for each VNI
T4045
(bug): Unable to "format disk <new> like <old>"
T4044
(feature): BFD: add vrf support
T4043
(feature): BFD: add support for passive mode
2021-12-02
T4035
(bug): Geneve interfaces aren't displayed by operational mode commands
2021-12-01
T3695
(bug): OpenConnect reports commit success when ocserv fails to start due to SSL cert/key file issues
2021-11-30
2021-11-29
T3946
(enhancment): Automatically resize the root partition if the drive has extra space
2021-11-28
2021-11-27
2021-11-26
T3978
(bug): containers add network without declaring prefix raise ConfigError
2021-11-25
2021-11-24
2021-11-23
T3990
(bug): WATCHFRR: crashlog and per-thread log buffering unavailable (due to files left behind in /var/tmp/frr/ after reboot)
2021-11-20
T3998
(bug): route-target completion incorrect description
2021-11-19
2021-11-18
T3612
(bug): IPoE Server address pool issues.
T3995
(feature): OpenVPN: do not stop/start service on configuration change
T4008
(feature): dhcp: change client retry interval form 300 -> 60 seconds
T3795
(bug): WWAN: issues with non connected interface / no signal
T3510
(bug): RADIUS usersname is not shown on CLI
2021-11-17
2021-11-15
2021-11-10
2021-11-09
T3962
(bug): Image cannot be built without open-vm-tools
2021-11-07
T3626
(bug): Configuring and disabling DHCP Server
2021-11-06
T3514
(bug): NIC flap at any interface change
2021-11-05
T3972
(bug): Removing vif-c interface raises KeyError
2021-11-04
2021-11-03
2021-11-01
2021-10-31
2021-10-29
T3942
(feature): Generate IPSec debug archive from op-mode
2021-10-28
2021-10-27
T3944
(bug): VRRP fails over when adding new group to master
2021-10-22
2021-10-21
T3926
(bug): strip-private does not sanitize "cisco-authentication" from NHRP configuration
T3925
(feature): Tunnel: dhcp-interface not implemented - use source-interface instead
T3923
(feature): Kernel: Enable TLS/IPSec offload support for Mellanox ConnectX NICs
T3927
(feature): Kernel: Enable kernel support for HW offload of the TLS protocol
2021-10-20
2021-10-19
T3396
(bug): syslog can't be configured with an ipv6 literal destination in 1.2.x
2021-10-18
T3002
(default): VRRP change on IPSec interface causes packet routing issues
2021-10-17
T3786
(bug): GRE tunnel source address 0.0.0.0 error
T3217
(default): Save FRR configuration on each commit
T3381
(bug): Change GRE tunnel failed
T3254
(bug): Dynamic DNS status shows incorrect last update time
T1243
(bug): BGP local-as accept wrong values
T697
(bug): Clean up and sanitize package dependencies
T578
(feature): Support Linux Container
2021-10-16
T3879
(bug): GPG key verification fails when upgrading from a 1.3 beta version
2021-10-15
T3748
(bug): Container deletion bug
T3693
(feature): ISIS Route redistribution ipv6 support missing
T3676
(feature): Container option to add Linux capabilities
T3613
(feature): Selectors for route-based IPsec tunnel (vti)
T3692
(bug): VyOS build failing due to repo.saltstack.com
T3673
(feature): BGP large-community del operation missing
2021-10-14
2021-10-13
2021-10-12
T3216
(bug): Removal of restricted-shell broke configure mode for RADIUS users
T3881
(bug): Wrong description for container section restart
T3868
(bug): Regex and/or wildcard not accepted with large-community-list
T3701
(bug): ipoe server fails to start when configuring radius dynamic-author on ipoe
2021-10-10
2021-10-09
T3894
(bug): Tunnel Commit Failed if system does not have `eth0`
2021-10-08
T3893
(bug): MGRE Tunnel commit crash If sit tunnel available
2021-10-05
T3741
(feature): [BGP] default no-ipv4-unicast - by default
2021-10-04
2021-10-03
T3880
(bug): EFI boot shows error on display
2021-10-02
2021-09-30
2021-09-28
T3853
(default): nat66 rules gets deleted on reboot in 1.4-rolling-202109240217
2021-09-27
T3863
(default): nat66: commit fails/hangs on non existing interface
2021-09-26
T3860
(bug): Error on pppoe, tunnel and wireguard interfaces for IPv6 EUI64 addresses
T3857
(feature): reboot: send wall message to all users for information
T3867
(bug): vxlan: multicast group address is not validated
T3859
(bug): Add "log-adjacency-changes" to ospfv3 process
T3826
(bug): PKI: op-mode - do input validation when listing certificates
2021-09-25
T3657
(default): BGP neighbors ipv6 not able to establish with IPv6 link-local addresses
2021-09-23
T3850
(bug): Dots are no longer allowed in SSH public key names
2021-09-21
T3847
(feature): keepalived/vrrp: migrate to get_config_dict() - cleanup
2021-09-20
T3823
(bug): strip-private does not filter public IPv6 addresses
2021-09-19
T3841
(feature): dhcp-server: add ping-check option to CLI
T2738
(bug): Modifying configuration in the "interfaces" section from VRRP transition scripts causes configuration lockup and high CPU utilization
T3840
(feature): dns forwarding: Cache size should allow values > 10k
T3672
(bug): DHCP-FO with multiple subnets results in invalid/non-functioning dhcpd.conf configuration file output
2021-09-18
T3831
(bug): External traffic stops routing when IPSEC tunnel comes up with interface vti0
T1968
(default): Allow multiple static routes in dhcp-server
T3838
(feature): dhcp-server - sync cli for name-servers to other subsystems
T3839
(feature): dhcp-server: Allow configuration of a DNS server and domain name on the shared-network level
2021-09-17
T3830
(bug): ipsec: remote-id no longer included in IKE AUTH if not explicitly specified
2021-09-11
T3402
(feature): Add VyOS programming library for operational level commands
2021-09-10
2021-09-09
T3812
(bug): Vyos and frr route-map config out of sync
T3814
(bug): wireguard: commit error showing incorrect peer name from the configured name
T3805
(bug): OpenVPN insufficient privileges for rtnetlink when closing TUN/TAP interface
T3815
(bug): pki : the file command 'generate pki wireguard key-pair file' is not working
2021-09-07
2021-09-06
2021-09-05
T3804
(feature): cli: Migrate and merge "system name-servers-dhcp" into "system name-server"
2021-09-04
T3619
(bug): Performance Degradation 1.2 --> 1.3 | High ksoftirqd CPU usage
2021-09-03
2021-09-02
2021-08-31
2021-08-30
2021-08-29
2021-08-28
T3743
(bug): l2tp doesn't work after reboot if outside-address not 0.0.0.0
2021-08-27
2021-08-26
2021-08-25
2021-08-24
T3772
(bug): VRRP virtual interfaces are not shown in show interfaces
2021-08-23
T3769
(feature): Containers: Network Bridging
2021-08-22
2021-08-20
T1950
(default): Store VyOS configuration syntax version data in JSON file
2021-08-19
T3751
(bug): pki generate ca add new line after passphrase
T3764
(bug): Unconfigurable IKE and ESP lifetime
T3234
(bug): multi_to_list fails in certain cases, with root cause an element redundancy in XML interface-definitions
T3732
(feature): override-default helper should support adding defaultValues to default less nodes
T3759
(default): [L3VPN] VPNv4/VPNv6 add commands
2021-08-18
T3752
(bug): generate pki certificate file xxx doesn't touch file
2021-08-16
2021-08-15
2021-08-14
T3745
(feature): op-mode IPSec show vpn ipse sa sorting
2021-08-13
2021-08-12
T3731
(bug): verify_accel_ppp_base_service return wrong config error for SSP
T3405
(feature): PPPoE server unit-cache
T2432
(default): dhcpd: Can't create new lease file: Permission denied
T3746
(feature): Inform users logging into the system about a pending reboot
T3744
(default): Dns forwarding statistics formatting missing a new line
2021-08-11
T3709
(feature): Snmp: Allow enable MIDs/OIDs ipCidrRouteTable
2021-08-09
T3720
(bug): IPSec set vti secondary address cause interface disable
2021-08-08
2021-08-05
T3719
(bug): Restart vpn shows some missed files
2021-08-04
2021-08-02
T3601
(default): Error in ssh keys for vmware cloud-init if ssh keys is left empty.
2021-08-01
T3707
(bug): Ping incorrect ip host checks
2021-07-31
T3716
(feature): Linux kernel parameters ignore_routes_with_link_down- ignore disconnected routing connections
2021-07-30
2021-07-23
2021-07-13
T3679
(default): Point the unexpected exception message link to the new rolling release location
2021-07-11
T3665
(bug): Missing VRF support for VxLAN but already documented
2021-07-10
T3636
(feature): SSTP / L2TP ipv6 support broken
2021-07-09
T3667
(bug): brctl is damaged
2021-07-06
T3660
(feature): Conntrack-Sync configuration command to specify destination udp port for peer
2021-07-03
T57
(enhancment): Make it possible to disable the entire IPsec peer
2021-07-01
2021-06-29
2021-06-25
2021-06-23
T3647
(feature): Bullseye: gcc defaults to passing --as-needed to linker
2021-06-22
2021-06-21
T3563
(default): commit-archive breaks with IPv6 source addresses
2021-06-20
2021-06-19
T3633
(feature): Add LRO offload for interface ethernet
2021-06-18
T3599
(default): Migrate NHRP to XML/Python
2021-06-17
T3624
(feature): BGP: add support for extended community bandwidth definition
2021-06-16
2021-06-13
T3620
(feature): Rename WWAN interface from wirelessmodem to wwan to use QMI interface
T2173
(feature): Add the ability to use VRF on VTI interfaces
T3622
(feature): WWAN: add support for APN authentication
T3606
(bug): SNMP unknown notification OID
T3621
(bug): PPPoE interface does not validate if password is supplied when username is set
2021-06-12
2021-06-11
T3614
(bug): Container network name with hyphen fail
2021-06-10
2021-06-08
2021-06-07
2021-06-06
T842
(feature): Adopt VyOS CLI to latest StrongSwan options and deprecated Keywords
2021-06-04
2021-06-03
T3384
(feature): Support UDP bandwidth testing
2021-06-02
T3233
(bug): Interface redirect to dum0
2021-06-01
2021-05-30
T3518
(bug): Warning messages when using SCP commit-archive
T3093
(default): Add xml for vpn ipsec
T1866
(bug): Commit archive over SFTP doesn't work with non-standard ports
T3590
(feature): bgp: add option for limiting maximum number of prefixes to be sent to a peer
T3589
(feature): op-mode: support clearing out logfiles from CLI
T2641
(feature): Rewrite vpn ipsec OP commands in new style XML syntax
T3351
(feature): Installer checking MD5 checksums on the ISO image
2021-05-29
2021-05-27
2021-05-26
T3540
(bug): Keepalived memory utilisation issue when constantly getting its state in JSON format
2021-05-24
2021-05-23
2021-05-22
T3564
(default): Multiple BGP Confederation Peers Not Allowed
2021-05-21
T3551
(bug): QoS control failure of VLAN sub interface
2021-05-20
2021-05-19
2021-05-18
T3525
(default): VMWare resume script syntax errors
2021-05-15
T3549
(bug): DHCPv6 "service dhcpv6-server global-parameters name-server" is not correctly exported to dhcpdv6.conf when multiple name-server entries are present
T3532
(bug): Not possible to change ethertype after interface creation
T3550
(bug): Router-advert completion typo
T3547
(feature): conntrackd: remove deprecated config options
T3535
(feature): Rewrite vyatta-conntrack-sync in new XML and Python flavor
2021-05-14
2021-05-13
2021-05-12
2021-05-10
T3374
(bug): IPv6 GRE Tunnel issues
2021-05-09
T3530
(bug): BGP peer-group can't contain a hyphen
2021-05-06
2021-05-05
2021-05-04
T3504
(feature): BGP Per Peer Graceful Restart
2021-05-02
T3511
(bug): Update libnss-mapuser and libpam-radius packages from CUMULUS Linux
2021-05-01
2021-04-29
2021-04-28
T3473
(bug): IPSec op-mode show sa error
2021-04-27
T2946
(bug): Calling 'stty_size' causes show interfaces API to fail
2021-04-25
T3490
(bug): priority inversion on PBR "policy route" create, breaks default route from dhcp (live iso)
T3468
(bug): Tunnel interfaces aren't suggested as being available for bridging (regression)
T3497
(bug): Prefix list with rule containing only action is not detected as error during parse
T3492
(bug): BGP Configuration Migration failed (badly!) from rolling 202102240218 to rolling 202104221210
T1802
(feature): Wireguard QR code in cli for mobile devices
2021-04-24
2021-04-23
2021-04-20
T3488
(bug): Specifying an invalid "interface address" like dhcph leads to commit error
2021-04-18
2021-04-17
T3470
(bug): as-override isn't applied to frr
2021-04-15
2021-04-14
2021-04-13
2021-04-12
2021-04-10
T3460
(bug): bgp, Configuration FRR failed while commiting code
2021-04-09
T3464
(bug): OSPF: route-map names containing a hypen are not "found"
2021-04-08
2021-04-05
2021-04-04
T3457
(feature): Output the "monitor log" command in a colorful way
2021-03-31
T3445
(bug): vyos-1x build include not all nodes
2021-03-30
T3448
(bug): Loading vyos on a system without xdp installed fails
2021-03-29
2021-03-28
T3440
(bug): HTTP API: give uvicorn time to initialize before restarting Nginx proxy
2021-03-27
T3423
(bug): Cannot create ipv4 static route for default gateway in vrf
2021-03-26
2021-03-24
T3419
(bug): show interfaces | strip-private fails
2021-03-22
T3284
(bug): merge/load fail silently if unable to resolve host
2021-03-21
2021-03-20
T3392
(bug): vrrp over dhcp default route bug (unexpected vrf)
T3373
(feature): Upgrade to SaltStack version 3002.5
T3329
(default): "system conntrack ignore" rules can no longer be created due to an iptables syntax change
T3300
(feature): Add DHCP default route distance
T3306
(feature): Extend set route-map aggregator as to 4 Bytes
2021-03-18
2021-03-17
T3413
(bug): Configuring invalid IPv6 EUI64 address results in "OSError: illegal IP address string passed to inet_pton"
2021-03-14
2021-03-13
2021-03-11
2021-03-09
T3382
(bug): Error creating Console Server
2021-03-08
T3387
(bug): Command "Monitor vpn ipsec" is not working
2021-03-07
2021-03-04
T3377
(bug): show interfaces throws error
2021-03-02
T3375
(bug): Interface becomes up at boot even when disabled
2021-02-28
2021-02-27
T3365
(bug): Bgp neighbor interface ordering for remote-as
T3225
(bug): Adding a BGP neighbor with an address on a local interface throws a vyos.frr.CommitError: Configuration FRR failed while committing code: ''
T3368
(feature): macsec: add support for gcm-aes-256 cipher
T3173
(feature): Need 'nopmtudisc' option for tunnel interface
2021-02-26
2021-02-24
T3303
(feature): Change welcome message on boot
2021-02-22
2021-02-21
2021-02-19
2021-02-18
T3259
(default): many dnat rules makes the vyos http api crash, even showConfig op timeouts
2021-02-17
T3312
(feature): SolarFlare NICs support
2021-02-16
2021-02-15
T3311
(bug): BGP Error: Remote AS must be set for neighbor or peer-group
2021-02-14
T2848
(feature): bgp-add-path configuration options
2021-02-12
T3301
(bug): Wrong format and valueHelp for policy as-path-list regex