Christian Breunig
84498945cc
ipsec: gre: use dummy interface in example over loopback
...
(cherry picked from commit 5953d6f69748c82cbd9eafbe662163924ae719e6)
2023-11-24 21:29:53 +01:00
rebortg
5fb241c9ae
fix some build warnings
2023-11-24 10:48:09 +01:00
rebortg
4aa0865d9f
backport Firewall docs from master
2023-11-23 21:09:57 +01:00
Christian Breunig
32400cbbda
vxlan: T5753: add support for VNI filtering
...
(cherry picked from commit c8f8c2d10cca97bbc459c5a3565d4230e9fe61df)
2023-11-22 11:06:09 +01:00
Christian Breunig
841cf147ec
http: T5762: rename "virtual-host listen-port" -> "virtual-host port"
...
(cherry picked from commit 2e3510f9886a5512b320267f21035d291c2fb3f5)
2023-11-22 11:05:37 +01:00
Christian Breunig
2c61e8fa88
http: T5762: api: make API socket backend communication the one and only default
...
Why: Smoketests fail as they can not establish IPv6 connection to uvicorn
backend server.
https://github.com/vyos/vyos-1x/pull/2481 added a bunch of new smoketests.
While debugging those failing, it was uncovered, that uvicorn only listens on
IPv4 connections
vyos@vyos# netstat -tulnp | grep 8080
(Not all processes could be identified, non-owned process info
will not be shown, you would have to be root to see it all.)
tcp 0 0 127.0.0.1:8080 0.0.0.0:* LISTEN -
As the CLI already has an option to move the API communication from an IP to a
UNIX domain socket, the best idea is to make this the default way of
communication, as we never directly talk to the API server but rather use the
NGINX reverse proxy.
(cherry picked from commit 12ffd3e638dc00ae672b47c9dd2a64e0e68d0c01)
2023-11-21 08:23:54 +01:00
Christian Breunig
21f0d774b5
pim: igmp: T5733: adjust to latest CLI syntax
...
(cherry picked from commit 2de650e60c84c70e26cc02341c07fe84e6d1c1fa)
2023-11-16 15:48:50 +01:00
JeffWDH
a98dc001a8
Add "monitor log ssh" and "monitor log ssh dynamic-protection"
...
(cherry picked from commit 6b2d50c755a56ae62620961131bbaebefe110acc)
2023-11-07 20:29:24 +00:00
JeffWDH
beb1af052e
Update ssh.rst
...
Added:
show log ssh
show log ssh dynamic-protection
show ssh fingerprints
show ssh fingerprints ascii
show ssh dynamic-protection
(cherry picked from commit c9a06800f999f6e68883ec7d3ae7fd97e3b6e4d5)
2023-11-07 20:29:24 +00:00
Christian Breunig
c2b5fd2486
T5699: vxlan: migrate "external" CLI know to "parameters external"
...
(cherry picked from commit 8c838d7ca979a0272052f8eb1dd41fa35645df1d)
2023-10-31 07:38:06 +01:00
Christian Breunig
fa995c7dcb
vxlan: T5668: add CLI knob to enable ARP/ND suppression
...
(cherry picked from commit 11cb9979e0087c9742ce80d11dd06318bc533917)
2023-10-31 07:33:15 +01:00
Christian Breunig
0834ca58cd
vxlan: add missing "parameters nolearning" help
...
(cherry picked from commit 8a5804881c580f2c2ff25b25b9c4a5abea9ca228)
2023-10-28 21:35:04 +02:00
Christian Breunig
92d4956d53
wireless: extend example with missing country-code
...
(cherry picked from commit 1ddce99cc861a3e7de23ef218baeb435efa81880)
2023-10-17 21:19:30 +02:00
Christian Breunig
1a01a619ab
T5630: pppoe: allow to specify MRU in addition to already configurable MTU
...
(cherry picked from commit 7090b69845a8d304d1608e18efef383082114f33)
2023-10-08 09:08:50 +02:00
Christian Breunig
55b1909b03
vrf: add NAT example
2023-09-13 19:11:17 +02:00
John Estabrook
93c8726ab9
Merge pull request #1075 from dmbaturin/T5270-openvpn-peer-fingerprint
...
openvpn: Add peer fingerprint mode
2023-09-13 09:54:20 -05:00
Daniil Baturin
14633c945f
openvpn: Add peer fingerprint mode
2023-09-13 15:39:58 +01:00
Robert Göhler
0a2c9463b9
Merge pull request #1076 from nicolas-fort/Firewall_new_cli_update
...
Firewall refactor: add visible note in firewall docs:
2023-09-11 20:37:43 +02:00
Yuxiang Zhu
44f64352e3
T5518: Document protocols pim6
2023-09-10 20:36:09 +08:00
Christian Breunig
d80690d563
vxlan: T3700: support VLAN tunnel mapping of VLAN aware bridges
2023-09-09 07:27:57 +02:00
Nicolas Fort
24d9c9b9d0
Firewall refactor: add visible note in firewall docs: zone, quick-start and config blueprint zone-policy
2023-09-08 09:49:02 -03:00
srividya0208
54bdc76b3b
correction of ipsec compression syntax and added a reference
...
for changes done for zone based firewall
2023-09-04 02:49:17 -04:00
Robert Göhler
02aafc3df3
Merge pull request #1065 from giga1699/T5447
...
MACsec: Document static key configuration
2023-08-26 21:45:51 +02:00
Giga Murphy
c3796b825a
MACsec: Document static key configuration
2023-08-26 03:01:39 +00:00
srividya0208
b5db744ad6
firewall: correction of default-action for rule-set
2023-08-25 14:13:44 -04:00
fett0
0317aa327d
l3vpn : add label allocation mode documentation
2023-08-23 13:54:19 -03:00
Christian Breunig
f600198501
wifi: fix CLI nodes for country-code definition
2023-08-19 16:43:17 +02:00
Christian Breunig
abd405b91e
T5409: add per-client-thread CLI option for wireguard and wireless interfaces
2023-08-17 22:01:54 +02:00
Christian Breunig
f6a30534bd
l3vpn: T5338: fix review comment
2023-08-16 21:41:23 +02:00
Christian Breunig
aa7bd60c02
Merge pull request #1043 from aapostoliuk/T5338-sagitta
...
l3vpn: T5338: Added 'protocols bgp interface <int> mpls forwarding'
2023-08-16 21:39:12 +02:00
Christian Breunig
1cbd6eb89c
Merge pull request #1035 from nicolas-fort/T5160-new_fwall_cli
...
T5160: New firewall cli - Update documentation for new firewall structure
2023-08-16 21:38:08 +02:00
Nicolás Fort
bea877c627
Update release version on index
2023-08-14 06:42:11 -03:00
Nicolas Fort
d1d64ac44d
T5014: add NAT Load Balance commands and configuration example.
2023-08-08 08:23:33 -03:00
Christian Breunig
5e4eadf0a1
T5445: dyndns: add possibility to specify update interval (timeout)
2023-08-06 14:34:35 +02:00
Ricardo Figueiredo
75634be59b
pppoe-server: T5418: remove nonexistent restriction ( #1052 )
2023-07-31 15:50:54 +01:00
Robert Göhler
8f3ae555b3
Merge pull request #1051 from marek22k/master
...
L2TPv3: Fix typo
2023-07-28 21:21:07 +02:00
Christian Breunig
14c4fac22b
openvpn: T4974: merge two DCO docs
2023-07-27 16:27:17 +02:00
Christian Breunig
5299c30942
Merge pull request #1049 from fett0/Openvpn-dco-doc
...
OpenVPN : add documetation DCO on VyOS
2023-07-27 16:24:46 +02:00
Christian Breunig
ada1da9377
openvpn: T4974: fix typo
2023-07-27 11:28:21 +02:00
Christian Breunig
aebb422f67
openvpn: T4974: add data channel offload CLI documentation
2023-07-27 11:27:08 +02:00
Marek Küthe
04b4ec90a7
L2TPv3: Fix typo
...
The previous RFC pointed to the XMPP (Instant Messaging Standard) specification.
2023-07-26 15:06:37 +02:00
Christian Breunig
8d0279a0f0
ospf: T5377: add graceful restart FRR feature (RFC 3623)
2023-07-25 23:13:35 +02:00
fett0
e93afe3d33
OpenVPN : add documetation DCO on VyOS
2023-07-24 16:47:44 -03:00
Nicolas Fort
eaaeea850f
T4889: NAT Redirection: adding information that dnat redirection is supported
2023-07-24 07:02:13 -03:00
srividya0208
c7d52cf762
interface mirror options are changed.
...
two paragraphs are defined about the mirror option, removed the paragraph
having the older cli structure.
2023-07-19 04:38:46 -04:00
Nicolas Fort
0e2fae9551
dhcp-relay: add <disable> command for dhcp and dhcpv6 realys
2023-07-17 12:40:05 -03:00
aapostoliuk
ca15a227d5
l3vpn: T5338: Added 'protocols bgp interface <int> mpls forwarding'
...
Added command 'protocols bgp interface <int> mpls forwarding'
2023-07-17 16:08:24 +03:00
Christian Breunig
a27c84c0e1
ospf: T5334: add support for External Route Summarisation Type-5 and Type-7
2023-07-03 20:58:39 +02:00
rebortg
84f5f73725
Fixing of various errors with duplicate labels
2023-06-30 15:29:45 +02:00
Nicolas Fort
d9368d1ea8
T5160: New firewall cli - Update documentation for new firewall structure. Also, keep old/legacy firewall documentation.
2023-06-27 08:59:43 -03:00