1.5-rolling-202502151011
·
5 commits
to current
since this release
vyos-1x
- container: T6702: re-add missing UNIX API socket
- op_mode: T6181: A feature for checking ports
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf
- cli: T6752: add a wrapper for the show command
- T6761: Add timeout for OSPF smoketest fail
- T6763: Delete Jenkins file
- T6760: firewall: add packet modifications existing in policy route to regular firewall ruleset.
- T973: add basic node_exporter implementation
- T6755: Change vyos mirror URL for smoketest
- ipsec: T6101: Add validation for proposal option used in IKE group
- http-api: T6736: move REST API to a node distinct from GraphQL API
- Debian: T973: add missing dependency on node-exporter package
- op-mode: T6753: Fix json output for mtr / monitor traceroute
- static: T4283: fix missing f'ormat string
- T6759: add support for italian keymap
- GitHub: T6494: add parallel step to run interface based smoketests
- pki: T6481: auto import ACME certificate chain into CLI
- cli: T6740: add a converter from set commands to config
- smoketest: T4576: add guard timeout for systemd in log level tests
- vyos.configtree: T4318: Allow set tag flag to true or false
- config-mgmt: T5976: add option for commit-confirm to use 'soft' rollback
- haproxy: T6745: Rename reverse-proxy to haproxy
- pki: T6766: Add support for ECDSA private keys
- T6712: Add nonproduction banner (backport #4148)
- T973: add basic frr_exporter implementation
- pki: T4914: Rewrite the PKI op mode in the new style
- T6784: enabled repo-sync wokrflow only for current and equuleus
- T6791: Extend fair-queue hash-interval
- T4583: Rewrite VRRP op-mode to vyos.opmode format
- T6812: Fix smoketest iproute2 check
- login: T6712: honor 80x25 terminal size for nonproduction banner message
- op_mode: T6808: Console server op mode commands throw errors when console server is not configured
- system_login: T6807: allow a trailing slash character in system login
- T6764: Fix unhandled exception on ethtool output parsing for Xen NICs
- dhcp_server: T6852: Add op mode command "show dhcpv6 server statistics"
- T6695: Machine-readable operational mode support for traceroute
- dhcp_server: T6031: fix daemon load error when static-route options are present
- T6802: Fix QoS Policy Round-Robin with Default Configuration
- T3501: Allow using more than one tuned profile
- syslog: T6858: bugfix remote syslog using TCP
- T6861: op-mode: ignore error code 255 if this UEFI doesn't support secure boot
- T6861: op-mode: add 0 into errno expect list
- babel: T6866: IPv6 distribute-lists in access-list6 format have names not numbers
- conntrack: T6878: stop the conntrack logger daemon correctly
- dhcp-server: T6876: increase retries that Kea makes to open a socket
- T6801: QoS: Policy rate-control is broken by default
- T6795: QoS: Fix duplicate entries in class match filters
- T6884: adds mtu option for container networks
- T6490: Allow creation of wireguard interfaces without requiring peers
- T6790: QoS: Improve CAKE Policy
- configd: T6899: use multipart message instead of extra exchange
- serial: T3397: Remove which could result in unexpected baud rate
- T6796: QoS: match filter by interface(iif)
- T6806: Rework QoS Policy for HFSC Shaper
- op-mode: T6900: remove uninformative 'show configuration files'
- avahi: T6908: add option to define max-cache entries
- dhcp: T6692: Fix range options not present when is used
- T264: IPsec add base64 encoded secret-type feature
- ipoe_server: T6872: Add the ability to configure LUA scripts and username
- T6906: IPoE-server add start-session option
- multicast: T6920: static multicast routing throws TypeError
- pki: T6809: Support system install of CA certificates
- op_mode: T6909: Move "show monitoring" and "show zebra" to "show monitoring frr"
- op_mode: T6770: Fix op command "show bridge vni"
- config-mgmt: T6925: return from verify function on config object None
- sudo: T6926: remove spam messages to syslog
- T6630: ntp: fix timestamp nested under ptp
- T6917: fix RPS ethernet settings for CPUs with more than 32 cores
- T6923: Add debian-security-mirror for package-smoketests
- vyconf: T6718: add keyword default for change in libvyosconfig binding
- T6940: updated codeowners with user list to support sync
- T6927: adds option to set container name server
- pki: T6368: Add ability for acme to listen on IPv6 addresses
- T6863: Fix default distance for PPPoE
- T6927: adds option to set container name server
- T6718: use the vyconf daemon for validation of set commands
- op_mode: T6860: Display the EULA in "run show license"
- T6940: added pr mirror sync caller workflows (revised)
- ipoe_server: T6628: Add option to assign static IP address to end users with local auth
- static: T4214: Allow several dhcp-interfaces to the same static rote
- tacacs: T6613: dynamically build exclude_users list to avoid TACACS traffic
- frr: upgrade to 10.2 and migrate protocols to unified FRRender class
- service-dns-dynamic: T6950: fix migration script logic for missing addresses
- T6799: QoS: Improve Priority-Queue Policy
- T6918: Accept invalid PPPoE Session in stateful bridge firewall.
- T6874: [QoS] Add class filter by ether
- op_mode: T6767: Check latest image version in VRF context for "add system image latest vrf "
- T6934: Add preshared key for zabbix-agent monitoring service
- frrender: T6746: runtime improvements
- T5791: Modify ddclient smoketest for reliability
- T6953: merges node and frr exporter under prometheus section
- pppoe: T6930: Remove unnecessary code
- op-mode: T6971: "monitor log" should have no output color at all
- babel: T6746: define fixed testcase order
- ifconfig: T6972: smoketests fail as IP address is not removed in time
- dhcpv6-server: T5992: Fix op-mode Kea DHCP lease output
- T6936: PPPoE-server add option combined to interface
- T6013: Add support for configuring TrustedUserCAKeys for ssh service
- smoketest: T6746: T5791: additional fixes/logic hardening
- T6976: mirror workflows updated to use reusable workflows
- T6944: adds option to enable switchdev mode on ethernet interface
- xml: T5738: re-use XML building blocks for interfaces as much as possible
- skel: T6979: disable iproute2 colors by default
- udev: T6985: Fix udev rule to also register ttyACM serial devices
- geoip: T6986: add missing cron installation path
- op_mode: T6956: Fix for "generate tech-support archive" if /config contains directories
- xml: T5738: De-duplicate 'openssh' tagNode
- T6983: treat vyos-domain-resolver as a real service
- frr: T6746: additional improvements after 10.2 upgrade
- GitHub: adjust PR template to our current needs/workflow
- T6896: OpenVPN change CRL revoke without restart
- T6949: adds blackbox exporter
- frrender: T6991: do not loose DHCP default route when no static route is defined
- srv6: T6984: add locator format configuration
- telegraf: T6477: adjusting "metric_name_label" indentation in config template
- T6994: Add textfile collector config option
- T5791: ddclient: Adjust process handling
- GitHub: T7007: add build/manifest.json to build artifacts
- T7016: force delete only dynamic IPv4 address from interface
- T6841: firewall: improve config parsing for ZBF when using VRFs and interfaces attached to VRFs
- ddclient: T5791: Keep ddclient.service in foreground
- configd: T6747: use one long-lived instance of FRRender
- packaging: T7020: hard pin libpam-radius-auth and add an explicit dependency on libnss-mapuser
- utils: T6975: Add 'vrf' and 'netns' arguments to functions in 'vyos.utils.process'
- smoketest: T7023: add tac_plus container to live validate login
- vyos.ifconfig: T7018: drop 'iftype' class attribute
- T6998: dhcp: fix depracted utcfromtimestamp usage
- smoketest: T6841: fix config tests which validate migration scripts
- interfaces: T7016: Simplify logic for force deleting dynamic IPv4 address from interface
- vrf: T7024: instance name "up" and "down" are reserved and should not be used
- xml: T7029: allow wildcard in include directive
- smoketest: T7033: nat source group test should use an existing interface
- xml: T5738: Reuse predefined regex constraint
- haproxy: T5222: Enable backend completion in service ruleset
- xml: T5738: reuse existing alpha-numeric-hyphen-underscore building block
- ddclient: T5791: Relocate process params to ExecStart
- Debian: T7023: download smoketest container images only once
- T7042: drop use of inspect module in favor of ast for source analysis
- nhrp: T2326: NHRP migration to FRR
- kea: T7041: Check lease hostname string is not empty
- T7038: T7039: fix broken RADIUS IPv6 source address and add smoketests
- nhrp: T2326: Fixed network-id migration
- remote: T7048: merge git environment with the os environment
- dhcp: T5840: Merge systemd service overrides for kea-ctrl-agent
- nhrp: T2326: Fixed opmode command help strings
- T681: Fix QoS DSCP filter
- telegraf: T7017: Telegraf should log at least info to a configured logging output
- dhcp: T7052: Refactor kea dhcp op-mode functions to vyos.kea
- T7046: add wrappers for reference tree utilities
- T6895: Merge the hsflowd-based sFlow and uacctd-based sFlow
- T7064: added pr mirror related workflows to current
- T7065: pr mirror to trigger only when the pullrequest is merged
- ntp: T6911: fix migration script to not allow empty "service ntp" CLI node
- smoketest: T6911: fix wrong router-id in loaded config validation
- T6641: Add vyos-network-event-logger Service
- T4930: Allow WireGuard peers via DNS hostname
- T6342: extend schema to handle documentation in xml
- dhcp: T6998: Make dhcp lease datetime timezone aware
- dhcp: T7052: Fix remaining time evaluation and formatting errors
- haproxy: T7081: Support HTTP compression
- opmode: T7084: reorganize the op mode cache format for ease of search
- nhrp: T2326: Fixed jinja template to generate NHRP config
- T7089: Fix static route when using PPPoE default route
- installer: T7034: fail the upgrade if image flavors do not match
- wireguard: T7087: Fix vyos-domain-resolver failing if no wireguard interfaces defined
- T7106: Add vpp dependencies to debian control
- T7106: Divert sysctl vpp settings
- configd: T7119: fix misleading debug messages
- installer: T7036: upgrade validation improvements
- installer: T7102: download upgrade images to a random path in the root filesystem
- T7076: Add script to validate ethernet interface
- vyconf: T6718: drop hybrid set/delete functions
- syslog: T6989: convert old configuration format to "advanced"
- wireguard: T4930: remove pylint W0611: unused import
- smoketest: T2326: remove NHRP pylint W0611: unused import
- T7069: Add function to get available cpus
- vyos.ifconfig: T5103: force dhclient restart on VRF change
- T6058: Fix popen command wrapper handling
- T7145: updated codeowners list
- vyos.ifconfig: T5103: always stop the DHCP client process bevore changing VRF
- T7145: updated team name for codeowners current branch
- syslog: T6989: update default system configuration with new CLI syntax
- webproxy: T7057: Fixed 'domain-nocache' command
- T7076: Fix for script that validates ethernet interface
- T7161: fix BGP IPv4/IPv6 unicast AFI "redistribute table" command
vyos-build
- no changes