Releases: vyos/vyos-nightly-build
Releases · vyos/vyos-nightly-build
1.5-rolling-202411070006
vyos-1x
- no changes
vyos-build
- no changes
1.5-rolling-202411050007
vyos-1x
- T6605: restore configd error formatting to be consistent with CLI
- Debian: T6598: depend on podman version >=4.9.5
- op_mode: T5744: PKI import OpenVPN shared key includess unexpected BEGIN and END
- smoketest: T5705: use locally connected remote syslog servers
- smoketest: T6614: initial support for op-mode command testing
- smoketest: T6592: remove unused "import os"
- T6349: Fix typo in file name
- firewall: T4694: incomplete node checks in migration script
- vyos.configtree: T6620: allow list_nodes() to work on non-existent paths
- vrf: T6603: conntrack ct_iface_map must only contain one entry for iifname/oifname
- T6572: trigger remote pr only for circinus pr merge
- GitHub: T6560: action must be run on forked repo
- ipsec: T6148: Removed unused imports
- T5657: Add VRF support for zabbix-agent
- T6617: T6618: vpn ipsec remote-access: fix profile generators
- console: T3334: remove unused directories imported from vyos.defaults
- nat64: T6627: call check_kmod within standard config function
- T6486: use data-ciphers instead of ncp-ciphers in "run generate openvpn client-config"
- T6619: Remove the remaining uses of per-protocol FRR configs
- T6629: call check_kmod within a standard config function
- T6632: add missing standard functions to config scripts
- T4072: firewall extend bridge firewall
- T5873: T6619: remove unused imports
- OPENVPN: T6555: add server-bridge options in mode server
- T6560: T4694: T6555: multiple minor bugfixes for package build
- smoketest: T6555: openvpn: NameError: name 'elf' is not defined
- T6634: README: Add image graphs of contributors
- sysctl: T3204: restore sysctl settings overwritten by tuned
- smoketest: T6614: add op-mode test for Kernel version
- T6637: py files filter added for unused import check
- configd: T6640: enforce in_session returns False under configd
- qos: T6638: require interface state existence in verify conditional
- T6643: firewall: fix ip address range parsing on firewall rules.
- T6637: add pr commenting back in un-used import check
- configverify: T6642: verify_interface_exists requires config_dict arg
- configd: T6633: inject missing env vars for configfs utility
- T6648: dhcpv6-server: align stateless DHCPv6 options with stateful
- suricata: T6624: Make it possible for suricata address groups to reference each other
- xml: T6650: add initial op-mode cache support
- T6646: conntrack: in ignore rules, if protocols=all, do not append it to the rule
- op_mode: T6651: Add a top level op mode word "execute"
- T6636: firewall: fix firewall template in order print logs for default-action
- T5794: firewall: change firewall priority in oder to be loaded after all interfaces
- utils: T6658: fix write_file check in case of empty directory path
- ipoe_server: T6649: Accel-ppp separate vlan-mon from listen interfaces
- T6659: suricata: use unique cluster_id per interface
- op_mode: T3961: Generate PKI expect 2 character country code
- T5743: HTTPS API ability to import PKI certificates
- T6183: interfaces openvpn: suppport specifying IP protocol version
- T6672: Fix system option ssh-client source-interface
- op_mode: T6668: Add detailed statistics infomartion about MACsec
- T6561: Add vrf aware for show ntp
- dhclient: T6667: Added workaround for communication with FRR
- T6671: defer config dependency if scheduled in priority queue
- T6678: added darker ruff linting workflow
- T6681: Add option for SLAAC to support suppress Interval Advertisement in RA Packets
- T6647: firewall. Introduce patch for accepting invalid ARP and DHCP
- T4974: add proper dependency on openvpn-dco
- opmode: T6694: move wake-on-lan to "execute wake-on-lan"
- T6674: workflow: Add trigger to rebuild repo package
- container: T6702: re-add missing UNIX API socket
- T6698: firewall: add matcher for vlan type.
- T6678: ruff lint workflow added (removed darker)
- op_mode: T6181: A feature for checking ports
- T6693: wireless: Enable WiFi-6 (802.11ax) for 2.4GHz AccessPoints
- T6679: add group option for nat66
- T6294: Service dns forwarding add the ability to configure ZonetoCache
- T6701: Added ability to disable the container DNS plugin
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- openfabric: T6652: Add support for OpenFabric protocol
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T861: op-mode: initial parts for UEFI secure boot CLI
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- T6630: ntp: support hardware timestamp offload and other mechanisms to improve accuracy
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- configd: T6608: report uncaught config script exceptions as commit error
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- T6687: add fqdn support to nat rules.
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf
- cli: T6752: add a wrapper for the show command
- T6761: Add timeout for OSPF smoketest fail
- T6763: Delete Jenkins file
- T6760: firewall: add packet modifications existing in policy route to regular firewall ruleset.
- T973: add basic node_exporter implementation
- T6755: Change vyos mirror URL for smoketest
- ipsec: T6101: Add validation for proposal option used in IKE...
1.5-rolling-202411030007
vyos-1x
- no changes
vyos-build
- no changes
1.5-rolling-202410300007
vyos-1x
- no changes
vyos-build
- no changes
1.5-rolling-202410280007
vyos-1x
- T6605: restore configd error formatting to be consistent with CLI
- Debian: T6598: depend on podman version >=4.9.5
- op_mode: T5744: PKI import OpenVPN shared key includess unexpected BEGIN and END
- smoketest: T5705: use locally connected remote syslog servers
- smoketest: T6614: initial support for op-mode command testing
- smoketest: T6592: remove unused "import os"
- T6349: Fix typo in file name
- firewall: T4694: incomplete node checks in migration script
- T6486: use data-ciphers instead of ncp-ciphers in "run generate openvpn client-config"
- T6619: Remove the remaining uses of per-protocol FRR configs
- T6629: call check_kmod within a standard config function
- T6632: add missing standard functions to config scripts
- T4072: firewall extend bridge firewall
- T5873: T6619: remove unused imports
- OPENVPN: T6555: add server-bridge options in mode server
- T6560: T4694: T6555: multiple minor bugfixes for package build
- smoketest: T6555: openvpn: NameError: name 'elf' is not defined
- T6634: README: Add image graphs of contributors
- sysctl: T3204: restore sysctl settings overwritten by tuned
- smoketest: T6614: add op-mode test for Kernel version
- T6637: py files filter added for unused import check
- configd: T6640: enforce in_session returns False under configd
- qos: T6638: require interface state existence in verify conditional
- T6643: firewall: fix ip address range parsing on firewall rules.
- T6637: add pr commenting back in un-used import check
- configverify: T6642: verify_interface_exists requires config_dict arg
- configd: T6633: inject missing env vars for configfs utility
- T6648: dhcpv6-server: align stateless DHCPv6 options with stateful
- suricata: T6624: Make it possible for suricata address groups to reference each other
- xml: T6650: add initial op-mode cache support
- T6646: conntrack: in ignore rules, if protocols=all, do not append it to the rule
- op_mode: T6651: Add a top level op mode word "execute"
- T6636: firewall: fix firewall template in order print logs for default-action
- T5794: firewall: change firewall priority in oder to be loaded after all interfaces
- utils: T6658: fix write_file check in case of empty directory path
- ipoe_server: T6649: Accel-ppp separate vlan-mon from listen interfaces
- T6659: suricata: use unique cluster_id per interface
- op_mode: T3961: Generate PKI expect 2 character country code
- T5743: HTTPS API ability to import PKI certificates
- T6183: interfaces openvpn: suppport specifying IP protocol version
- T6672: Fix system option ssh-client source-interface
- op_mode: T6668: Add detailed statistics infomartion about MACsec
- T6561: Add vrf aware for show ntp
- dhclient: T6667: Added workaround for communication with FRR
- T6671: defer config dependency if scheduled in priority queue
- T6678: added darker ruff linting workflow
- T6681: Add option for SLAAC to support suppress Interval Advertisement in RA Packets
- T6647: firewall. Introduce patch for accepting invalid ARP and DHCP
- T4974: add proper dependency on openvpn-dco
- opmode: T6694: move wake-on-lan to "execute wake-on-lan"
- T6674: workflow: Add trigger to rebuild repo package
- container: T6702: re-add missing UNIX API socket
- T6698: firewall: add matcher for vlan type.
- T6678: ruff lint workflow added (removed darker)
- op_mode: T6181: A feature for checking ports
- T6693: wireless: Enable WiFi-6 (802.11ax) for 2.4GHz AccessPoints
- T6679: add group option for nat66
- T6294: Service dns forwarding add the ability to configure ZonetoCache
- T6701: Added ability to disable the container DNS plugin
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- openfabric: T6652: Add support for OpenFabric protocol
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T861: op-mode: initial parts for UEFI secure boot CLI
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- T6630: ntp: support hardware timestamp offload and other mechanisms to improve accuracy
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- configd: T6608: report uncaught config script exceptions as commit error
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- T6687: add fqdn support to nat rules.
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf
- cli: T6752: add a wrapper for the show command
- T6761: Add timeout for OSPF smoketest fail
- T6763: Delete Jenkins file
- T6760: firewall: add packet modifications existing in policy route to regular firewall ruleset.
- T973: add basic node_exporter implementation
- T6755: Change vyos mirror URL for smoketest
- ipsec: T6101: Add validation for proposal option used in IKE group
- http-api: T6736: move REST API to a node distinct from GraphQL API
- Debian: T973: add missing dependency on node-exporter package
- op-mode: T6753: Fix json output for mtr / monitor traceroute
- static: T4283: fix missing f'ormat string
- T6759: add support for italian keymap
- GitHub: T6494: add parallel step to run interface based smoketests
- pki: T6481: auto import ACME certificate chain into CLI
- pbr: T6430: Local IP rules targeting VRFs by name as well as route table IDs
- cli: T6740: add a converter from set commands to co...
1.5-rolling-202410260007
vyos-1x
- no changes
vyos-build
- no changes
1.5-rolling-202410180006
vyos-1x
- no changes
vyos-build
- T6078: package upgrade to v6.6 to match kernel for ethtool and iproute2
- banner: T6077: implement ASCII contest winner default logo
- frr: T5788: update libyang to v2.1.148
- Revert "iproute2: T6078: upgrade package to 6.6 to match Kernel"
- T6077: T3664: cleanup flavor build system and extensions for single source URL definitions
- build: T4919: Fix error due to variable not found
- docker, build: T6119: use python3-tomli instead of python3-toml for a compliant implementation ot TOML
- build: T1449: add default_config field support in flavor files to allow people to easily include a custom default config
- T6115: Fix tagged builds from detached Git HEAD
- Kernel: T4022: add RTSP netfilter helper kernel module
- chore: T671: remove unused scripts and references to them
- ixgbe: T6155: always enable allow_unsupported_sfp for all NICs by default
- build flavors: T3664: reimplement Dell VEP flavors using the new system
- build scripts: T3664: move image build scripts to a dedicated directory
- Github: PR Template: make related tasks optional
- T6033: bump hsflowd version v2.0.55-1 extended PCAP capabilities
- T4204: accel-ppp bump version 1.13.0
- dropbear: T6195: package upgrade 2022.83-1+deb12u1
- T5124: Python3 deprecation distutils
- image-tools: T6207: update test script for prompt for boot config
- T6173: validate allowed characters in ISO image name
- T1797: Delete not exist disable vpp service
- T6228: Cleanup of not existing systemd units
- T6235: Git update actions-label-merge-conflict version
- T6238: Check pull request title action requires the python script
- T6173: fix TypeError: 'NoneType' object is not iterable
- ntp: T6080: T6123: restrict config.boot.default NTP settings to RFC1918 and fe80::/10, fc00::/7 only
- T6238: Fix title check commit message for f-string
- image-tools: T6154: installer prompts to confirm password
- build: T3664: add support for building non-ISO flavors
- build: T3664: move the vyos-1x submodule to packages
- iso: T6262: update the boot splash for 1.5/Circinus
- build: T3664: typo fixes and small refactoring
- ixgbe: T6162: Add 1000BASE-BX support
- kernel: T6286: Enable Generic driver for Hyper-V VMBus
- build: T3664: clone vyos-1x under build dir instead of as submodule
- container: T5867: podman depends on libgpgme11t64 from trixie
- T6293: add Mediatek MT7921 to defconfig
- build: T3664: fix regression and bug in build script clone of vyos-1x repo
- frr: T6283: T6250: add pending upstream patches
- T6307: Add dependency procps to build vyos-1x
- build: T3664: modify the module-level template path instead of setting an environment variable
- T6311: Docker add dependency asciidoc-base for nftables
- build: T3664: fix architecture mix-in loading
- build-script: T3664: Added more options to the image format
- build: T3664: use explicit defaults argument in the dict merging function
- build: T3664: include build flavor name in the version file
- build: T3664: include the architecture field in version data
- build: T6330: fix indention of autogenerated release.pref.chroot
- build-script: T3664: Added flavor name to a target file name
- T3420: Remove service upnp
- suricata: T751: Disable suricata.service by default
- build-script: T3664: Add flavor and architecture to image name (rework)
- T6333 non-free-firmware to trixie
- hooks: T6346: set default boot target to multi-user.target
- T6356: normalize '.., ntp, server' path syntax in config.boot.default
- build-script: T3664: Allowed all options in both config file and comm…
- Kernel: T5887: update Linux Kernel to v6.6.31
- frr: T6250: T6283: revert local patches merged upstream
- T6386: added caller workflows and codeowners
- docker: T6388: use OCaml 4.14.2 for package builds
- kernel: T6395: Enabled VFIO_NOIOMMU support
- T6399: codeowners correction
- T6404: update vyos1x-config commit reference
- T6406: enables container cpu limits
- T6406: enables CONFIG_CFS_BANDWIDTH for cpu cgroup limits
- build: T6414: rename the "iso" flavor to "generic"
- T6415: Add repo-sync
- build: T6446: include support URL in the version data file
- migration: T6006: move config.boot.default to vyos-1x
- waagent: T6475: Added waagent build instructions
- waagent: T6475: Fixed waagent build script permissions
- waagent: T6475: Disabled waagent build for ARM64
- T6484: Smoketest: Increase KVM memory limit
- docker: arm: T6474: Initial support for dynamic arch toml loading
- Kernel: T5887: update Linux Kernel to v6.6.34
- Kernel: T5887: update Linux Kernel to v6.6.35
- T6508: pr workflows updated for branch and target
- T6506: Add a linting rule for checking executable bits on scripts
- Docker: T6510: add missing build dependencies for vyos-configd tests
- T6507: remove references to vyos-world package
- T6527: remove legacy packages
- Kernel: T5887: update Linux Kernel to v6.6.36
- T6546: unused import check permission update
- snmp: T6290: add custom package build
- Kernel: T5887: update Linux Kernel to v6.6.37
- container: T5867: pin specific podman version
- ddclient: T5797: switch to Debian SALSA repository
- Kernel: T5887: update Linux Kernel to v6.6.39
- T6584: Revert "T6293: add Mediatek MT7921 to defconfig"
- hostapd: T6597: update hostapd version
- frr: T6600: apply pending upstream patch for ospfd ldp-sync
- Kernel: T5887: update Linux Kernel to v6.6.41
- podman: T6598: add custom podman build for version 4.9.5
- Revert "frr: T6600: apply pending upstream patch for ospfd ldp-sync"
- podman: T6598: add search PATH for Go
- Kernel: T5887: update Linux Kernel to v6.6.42
- T6231: Mellanox OFED
- build: T6231: include out-of-tree Mellanox driver in image
- podman: T6598: add libgpgme11 runtime dependency
- Kernel: T5887: update Linux Kernel to v6.6.43
- T6386: Fix typo in file name
- ddclient: T5792: Use Debian build from Trixie
- podman: T6598: add fuse-overlayfs runtime dependency
- Kernel: T5887: update Linux Kernel to v6.6.45
- Kernel: T5887: update Linux Kernel to v6.6.47
- build: T6666: singular image_format in flavor files
- T6231: update OFED version and fix build script
- linux-kernel: T6485: build modules for thunderbolt and thunderbolt-net
- build: T6653: add build/manifest.json file
- T6674: Add build-scrips for packages without Jenkins
- Kernel: T5887: update Linux Kernel to v6.6.49
- T6674: Add workflow to rebuild packages
- T1416: T861: T3664: T3664: T2640: various cleanup commits
- T6674: Add keys gpg_key_id and package_branch to rebuild packages
- T6674: build-kernel: Get kernel version from the defatults
- T6703: add support for amd pstate driver
- T6...
1.5-rolling-202410170007
vyos-1x
- op_mode: T6596: pppoe operation command failed
- op_mode: T6593: Release DHCP interface does not work
- vrf: T6602: verify supplied VRF name on all interface types
- interface: T6592: remove interface from conntrack ct_iface_map on deletion
- T6605: restore configd error formatting to be consistent with CLI
- Debian: T6598: depend on podman version >=4.9.5
- op_mode: T5744: PKI import OpenVPN shared key includess unexpected BEGIN and END
- smoketest: T5705: use locally connected remote syslog servers
- smoketest: T6614: initial support for op-mode command testing
- smoketest: T6592: remove unused "import os"
- T6349: Fix typo in file name
- firewall: T4694: incomplete node checks in migration script
- vyos.configtree: T6620: allow list_nodes() to work on non-existent paths
- vrf: T6603: conntrack ct_iface_map must only contain one entry for iifname/oifname
- T6572: trigger remote pr only for circinus pr merge
- GitHub: T6560: action must be run on forked repo
- ipsec: T6148: Removed unused imports
- T5657: Add VRF support for zabbix-agent
- T6617: T6618: vpn ipsec remote-access: fix profile generators
- console: T3334: remove unused directories imported from vyos.defaults
- nat64: T6627: call check_kmod within standard config function
- T6486: use data-ciphers instead of ncp-ciphers in "run generate openvpn client-config"
- T6619: Remove the remaining uses of per-protocol FRR configs
- T6629: call check_kmod within a standard config function
- T6632: add missing standard functions to config scripts
- T4072: firewall extend bridge firewall
- T5873: T6619: remove unused imports
- OPENVPN: T6555: add server-bridge options in mode server
- T6560: T4694: T6555: multiple minor bugfixes for package build
- smoketest: T6555: openvpn: NameError: name 'elf' is not defined
- T6634: README: Add image graphs of contributors
- sysctl: T3204: restore sysctl settings overwritten by tuned
- smoketest: T6614: add op-mode test for Kernel version
- T6637: py files filter added for unused import check
- configd: T6640: enforce in_session returns False under configd
- qos: T6638: require interface state existence in verify conditional
- T6643: firewall: fix ip address range parsing on firewall rules.
- T6637: add pr commenting back in un-used import check
- configverify: T6642: verify_interface_exists requires config_dict arg
- configd: T6633: inject missing env vars for configfs utility
- T6648: dhcpv6-server: align stateless DHCPv6 options with stateful
- suricata: T6624: Make it possible for suricata address groups to reference each other
- xml: T6650: add initial op-mode cache support
- T6646: conntrack: in ignore rules, if protocols=all, do not append it to the rule
- op_mode: T6651: Add a top level op mode word "execute"
- T6636: firewall: fix firewall template in order print logs for default-action
- T5794: firewall: change firewall priority in oder to be loaded after all interfaces
- utils: T6658: fix write_file check in case of empty directory path
- ipoe_server: T6649: Accel-ppp separate vlan-mon from listen interfaces
- T6659: suricata: use unique cluster_id per interface
- op_mode: T3961: Generate PKI expect 2 character country code
- T5743: HTTPS API ability to import PKI certificates
- T6183: interfaces openvpn: suppport specifying IP protocol version
- T6672: Fix system option ssh-client source-interface
- op_mode: T6668: Add detailed statistics infomartion about MACsec
- T6561: Add vrf aware for show ntp
- dhclient: T6667: Added workaround for communication with FRR
- T6671: defer config dependency if scheduled in priority queue
- T6678: added darker ruff linting workflow
- T6681: Add option for SLAAC to support suppress Interval Advertisement in RA Packets
- T6647: firewall. Introduce patch for accepting invalid ARP and DHCP
- T4974: add proper dependency on openvpn-dco
- opmode: T6694: move wake-on-lan to "execute wake-on-lan"
- T6674: workflow: Add trigger to rebuild repo package
- container: T6702: re-add missing UNIX API socket
- T6698: firewall: add matcher for vlan type.
- T6678: ruff lint workflow added (removed darker)
- op_mode: T6181: A feature for checking ports
- T6693: wireless: Enable WiFi-6 (802.11ax) for 2.4GHz AccessPoints
- T6679: add group option for nat66
- T6294: Service dns forwarding add the ability to configure ZonetoCache
- T6701: Added ability to disable the container DNS plugin
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- openfabric: T6652: Add support for OpenFabric protocol
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T861: op-mode: initial parts for UEFI secure boot CLI
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- T6630: ntp: support hardware timestamp offload and other mechanisms to improve accuracy
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- configd: T6608: report uncaught config script exceptions as commit error
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- T6687: add fqdn support to nat rules.
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf
- cli: T6752: add a wrapper for the show command
- T6761: Add timeout for OSPF smoketest fail
- T6763: Delete Jenkins file
- PR: v...
1.5-rolling-202410160007
vyos-1x
- system_option: T5552: Apply IPv4 and IPv6 options after reapplying sysctls by TuneD
- op_mode: T6596: pppoe operation command failed
- op_mode: T6593: Release DHCP interface does not work
- vrf: T6602: verify supplied VRF name on all interface types
- interface: T6592: remove interface from conntrack ct_iface_map on deletion
- T6605: restore configd error formatting to be consistent with CLI
- Debian: T6598: depend on podman version >=4.9.5
- op_mode: T5744: PKI import OpenVPN shared key includess unexpected BEGIN and END
- smoketest: T5705: use locally connected remote syslog servers
- smoketest: T6614: initial support for op-mode command testing
- smoketest: T6592: remove unused "import os"
- T6349: Fix typo in file name
- firewall: T4694: incomplete node checks in migration script
- vyos.configtree: T6620: allow list_nodes() to work on non-existent paths
- vrf: T6603: conntrack ct_iface_map must only contain one entry for iifname/oifname
- T6572: trigger remote pr only for circinus pr merge
- GitHub: T6560: action must be run on forked repo
- ipsec: T6148: Removed unused imports
- T5657: Add VRF support for zabbix-agent
- T6617: T6618: vpn ipsec remote-access: fix profile generators
- console: T3334: remove unused directories imported from vyos.defaults
- nat64: T6627: call check_kmod within standard config function
- T6486: use data-ciphers instead of ncp-ciphers in "run generate openvpn client-config"
- T6619: Remove the remaining uses of per-protocol FRR configs
- T6629: call check_kmod within a standard config function
- T6632: add missing standard functions to config scripts
- T4072: firewall extend bridge firewall
- T5873: T6619: remove unused imports
- OPENVPN: T6555: add server-bridge options in mode server
- T6560: T4694: T6555: multiple minor bugfixes for package build
- smoketest: T6555: openvpn: NameError: name 'elf' is not defined
- T6634: README: Add image graphs of contributors
- sysctl: T3204: restore sysctl settings overwritten by tuned
- smoketest: T6614: add op-mode test for Kernel version
- T6637: py files filter added for unused import check
- configd: T6640: enforce in_session returns False under configd
- qos: T6638: require interface state existence in verify conditional
- T6643: firewall: fix ip address range parsing on firewall rules.
- T6637: add pr commenting back in un-used import check
- configverify: T6642: verify_interface_exists requires config_dict arg
- configd: T6633: inject missing env vars for configfs utility
- T6648: dhcpv6-server: align stateless DHCPv6 options with stateful
- suricata: T6624: Make it possible for suricata address groups to reference each other
- xml: T6650: add initial op-mode cache support
- T6646: conntrack: in ignore rules, if protocols=all, do not append it to the rule
- op_mode: T6651: Add a top level op mode word "execute"
- T6636: firewall: fix firewall template in order print logs for default-action
- T5794: firewall: change firewall priority in oder to be loaded after all interfaces
- utils: T6658: fix write_file check in case of empty directory path
- ipoe_server: T6649: Accel-ppp separate vlan-mon from listen interfaces
- T6659: suricata: use unique cluster_id per interface
- op_mode: T3961: Generate PKI expect 2 character country code
- T5743: HTTPS API ability to import PKI certificates
- T6183: interfaces openvpn: suppport specifying IP protocol version
- T6672: Fix system option ssh-client source-interface
- op_mode: T6668: Add detailed statistics infomartion about MACsec
- T6561: Add vrf aware for show ntp
- dhclient: T6667: Added workaround for communication with FRR
- T6671: defer config dependency if scheduled in priority queue
- T6678: added darker ruff linting workflow
- T6681: Add option for SLAAC to support suppress Interval Advertisement in RA Packets
- T6647: firewall. Introduce patch for accepting invalid ARP and DHCP
- T4974: add proper dependency on openvpn-dco
- opmode: T6694: move wake-on-lan to "execute wake-on-lan"
- T6674: workflow: Add trigger to rebuild repo package
- container: T6702: re-add missing UNIX API socket
- T6698: firewall: add matcher for vlan type.
- T6678: ruff lint workflow added (removed darker)
- op_mode: T6181: A feature for checking ports
- T6693: wireless: Enable WiFi-6 (802.11ax) for 2.4GHz AccessPoints
- T6679: add group option for nat66
- T6294: Service dns forwarding add the ability to configure ZonetoCache
- T6701: Added ability to disable the container DNS plugin
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- openfabric: T6652: Add support for OpenFabric protocol
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T861: op-mode: initial parts for UEFI secure boot CLI
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- T6630: ntp: support hardware timestamp offload and other mechanisms to improve accuracy
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- configd: T6608: report uncaught config script exceptions as commit error
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- T6687: add fqdn support to nat rules.
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf
- cli: T6752: add a wrapper for the show command
- PR: vyos/vyos-1x#411...
1.5-rolling-202410150006
vyos-1x
- openvpn: T3834: verify() is not allowed to change anything on the system
- system_option: T5552: Apply IPv4 and IPv6 options after reapplying sysctls by TuneD
- op_mode: T6596: pppoe operation command failed
- op_mode: T6593: Release DHCP interface does not work
- vrf: T6602: verify supplied VRF name on all interface types
- interface: T6592: remove interface from conntrack ct_iface_map on deletion
- T6605: restore configd error formatting to be consistent with CLI
- Debian: T6598: depend on podman version >=4.9.5
- op_mode: T5744: PKI import OpenVPN shared key includess unexpected BEGIN and END
- smoketest: T5705: use locally connected remote syslog servers
- smoketest: T6614: initial support for op-mode command testing
- smoketest: T6592: remove unused "import os"
- T6349: Fix typo in file name
- firewall: T4694: incomplete node checks in migration script
- vyos.configtree: T6620: allow list_nodes() to work on non-existent paths
- vrf: T6603: conntrack ct_iface_map must only contain one entry for iifname/oifname
- T6572: trigger remote pr only for circinus pr merge
- GitHub: T6560: action must be run on forked repo
- ipsec: T6148: Removed unused imports
- T5657: Add VRF support for zabbix-agent
- T6617: T6618: vpn ipsec remote-access: fix profile generators
- console: T3334: remove unused directories imported from vyos.defaults
- nat64: T6627: call check_kmod within standard config function
- T6486: use data-ciphers instead of ncp-ciphers in "run generate openvpn client-config"
- T6619: Remove the remaining uses of per-protocol FRR configs
- T6629: call check_kmod within a standard config function
- T6632: add missing standard functions to config scripts
- T4072: firewall extend bridge firewall
- T5873: T6619: remove unused imports
- OPENVPN: T6555: add server-bridge options in mode server
- T6560: T4694: T6555: multiple minor bugfixes for package build
- smoketest: T6555: openvpn: NameError: name 'elf' is not defined
- T6634: README: Add image graphs of contributors
- sysctl: T3204: restore sysctl settings overwritten by tuned
- smoketest: T6614: add op-mode test for Kernel version
- T6637: py files filter added for unused import check
- configd: T6640: enforce in_session returns False under configd
- qos: T6638: require interface state existence in verify conditional
- T6643: firewall: fix ip address range parsing on firewall rules.
- T6637: add pr commenting back in un-used import check
- configverify: T6642: verify_interface_exists requires config_dict arg
- configd: T6633: inject missing env vars for configfs utility
- T6648: dhcpv6-server: align stateless DHCPv6 options with stateful
- suricata: T6624: Make it possible for suricata address groups to reference each other
- xml: T6650: add initial op-mode cache support
- T6646: conntrack: in ignore rules, if protocols=all, do not append it to the rule
- op_mode: T6651: Add a top level op mode word "execute"
- T6636: firewall: fix firewall template in order print logs for default-action
- T5794: firewall: change firewall priority in oder to be loaded after all interfaces
- utils: T6658: fix write_file check in case of empty directory path
- ipoe_server: T6649: Accel-ppp separate vlan-mon from listen interfaces
- T6659: suricata: use unique cluster_id per interface
- op_mode: T3961: Generate PKI expect 2 character country code
- T5743: HTTPS API ability to import PKI certificates
- T6183: interfaces openvpn: suppport specifying IP protocol version
- T6672: Fix system option ssh-client source-interface
- op_mode: T6668: Add detailed statistics infomartion about MACsec
- T6561: Add vrf aware for show ntp
- dhclient: T6667: Added workaround for communication with FRR
- T6671: defer config dependency if scheduled in priority queue
- T6678: added darker ruff linting workflow
- T6681: Add option for SLAAC to support suppress Interval Advertisement in RA Packets
- T6647: firewall. Introduce patch for accepting invalid ARP and DHCP
- T4974: add proper dependency on openvpn-dco
- opmode: T6694: move wake-on-lan to "execute wake-on-lan"
- T6674: workflow: Add trigger to rebuild repo package
- container: T6702: re-add missing UNIX API socket
- T6698: firewall: add matcher for vlan type.
- T6678: ruff lint workflow added (removed darker)
- op_mode: T6181: A feature for checking ports
- T6693: wireless: Enable WiFi-6 (802.11ax) for 2.4GHz AccessPoints
- T6679: add group option for nat66
- T6294: Service dns forwarding add the ability to configure ZonetoCache
- T6701: Added ability to disable the container DNS plugin
- op-mode: T6694: Move some op-mode commands to the "execute" family
- T6674: Use reusable workflow for trigger package build
- pppoe-server: T6685: Add options to accept any and blank service names
- T6711: Fix restart vrrp missed comma between services
- openfabric: T6652: Add support for OpenFabric protocol
- T6703: Adds option to configure AMD pstate driver
- op-mode: T6694: Add op-mode command "execute ssh"
- policy: T6676: Invalid route-map caused bgpd to crash
- T6674: Rebuild package action use secrets inherit
- T6674: Actions use pull_request_target to trigger build package
- T6674: Actions fix variable for trigger build reuse repo
- GitHub: T6494: add TPM tests to ISO integration workflow
- op-mode: T6682: Fix for show vpn ike sa peer that always shows all SAs
- op-mode: T6715: manually changing time/date is not synced into hardware clock
- bond: T6709: add EAPoL support
- T861: op-mode: initial parts for UEFI secure boot CLI
- T6716: don't automatically set ethernet offload
- T6723: firewall: extend op-mode commands
- syslog: T5367: add format option to include timezone in message
- wireless: T6709: fix missing wpa_supplicant configuration
- http-api: T6326: return full warning/error output through api
- op-mode: T4833: Include wireguard peer name in interface summary report
- lldp: T6727: add missing input validation for interface names
- ethtool: T6729: drop text based feature parsing in favour of JSON
- T6630: ntp: support hardware timestamp offload and other mechanisms to improve accuracy
- bridge: T6675: VXLAN Interface configuration lost due to improper bridge detachment
- syslog: T6719: fix the behavior of "syslog global preserve-fqdn"
- configd: T6608: report uncaught config script exceptions as commit error
- validators: T6739: fix ipaddrcheck argument quoting
- validators: T6738: Revert "validators: T6739: fix ipaddrcheck argument quoting"
- validators: T6739: correctly quote ipaddrcheck arguments to avoid ipaddrcheck syntax errors when values include whitespace
- T6749: fix PR commenting permission issue with integration test workflow
- T6687: add fqdn support to nat rules.
- policy: T6751: add missing completion helpers for community-list
- validators: T6743: use native ipaddrcheck validator options for ranges
- T6757: Openconnect: fix template for correct config parsing while configuring source address for radius authentication.
- vyos.configtree: T6742: add bindings for create_node and is_leaf/set_leaf...