Skip to content

Instantly share code, notes, and snippets.

@anthr76
Created September 4, 2023 19:55
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save anthr76/90016102a0eb9481bb74d101c242288a to your computer and use it in GitHub Desktop.
Save anthr76/90016102a0eb9481bb74d101c242288a to your computer and use it in GitHub Desktop.
vyos@vyos> cat /tmp/boot-config-trace
Traceback (most recent call last):
File "/usr/libexec/vyos/vyos-boot-config-loader.py", line 143, in <module>
commit_out = session.commit()
^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/vyos/configsession.py", line 183, in commit
out = self.__run_command([COMMIT])
^^^^^^^^^^^^^^^^^^^^^^^^^^^^
File "/usr/lib/python3/dist-packages/vyos/configsession.py", line 139, in __run_command
raise ConfigSessionError(output)
vyos.configsession.ConfigSessionError: Processing the Priority Queue
Entering the _commit_check_cfg_node
Executing the "service dns dynamic address eth0" ...
Elapsed 0.025 sec:
Executing the "service dns dynamic address eth0 service cloudflare host-name omit.rabbito.tech" ...
Elapsed 0.013 sec:
Executing the "service dns dynamic address eth0 service cloudflare password omit" ...
Elapsed 0.012 sec:
Executing the "service dns dynamic address eth0 service cloudflare protocol cloudflare" ...
Elapsed 0.827 sec:
Executing the "service dns dynamic address eth0 service cloudflare server api.cloudflare.com/client/v4" ...
[ service dns dynamic address eth0 service cloudflare server api.cloudflare.com/client/v4 ]
Error: api.cloudflare.com/client/v4 is not a valid IP address
[ service dns dynamic address eth0 service cloudflare server api.cloudflare.com/client/v4 ]
Remote server must be IP address or fully qualified domain name
Elapsed 0.047 sec:
Elapsed 0.927 sec: _commit_check_cfg_node
[[]] failed
[[system console]] failed
Entering the _commit_check_cfg_node
Executing the "firewall all-ping enable" ...
Elapsed 0.010 sec:
Executing the "firewall config-trap disable" ...
Elapsed 0.010 sec:
Executing the "firewall group address-group local" ...
Elapsed 0.012 sec:
Executing the "firewall group address-group local address 192.168.17.1-192.168.17.255" ...
Elapsed 0.037 sec:
Executing the "firewall group address-group local address 192.168.14.1-192.168.14.255" ...
Elapsed 0.036 sec:
Executing the "firewall group interface-group local" ...
Elapsed 0.009 sec:
Executing the "firewall group ipv6-address-group local" ...
Elapsed 0.010 sec:
Executing the "firewall group ipv6-address-group local address 2600:4041:42f7:fa00:0000:0000:0000:0000-2600:4041:42f7:fa00:ffff:ffff:ffff:ffff" ...
Elapsed 0.097 sec:
Executing the "firewall group port-group chromecast" ...
Elapsed 0.015 sec:
Executing the "firewall group port-group chromecast port 32768-61000" ...
Elapsed 0.137 sec:
Executing the "firewall interface eth0" ...
Elapsed 0.026 sec:
Executing the "firewall ipv6-name OUT-IN-V6" ...
Elapsed 0.012 sec:
Executing the "firewall ipv6-name OUT-IN-V6 default-action drop" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 10" ...
Elapsed 0.068 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 10 action accept" ...
Elapsed 0.012 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 10 state established enable" ...
Elapsed 0.010 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 10 state related enable" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 20" ...
Elapsed 0.022 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 20 action accept" ...
Elapsed 0.015 sec:
Executing the "firewall ipv6-name OUT-IN-V6 rule 20 protocol icmpv6" ...
Elapsed 0.106 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 default-action drop" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 10" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 10 action accept" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 10 state established enable" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 10 state related enable" ...
Elapsed 0.012 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 11" ...
Elapsed 0.020 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 11 action accept" ...
Elapsed 0.009 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 11 destination port 546" ...
Elapsed 0.138 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 11 protocol udp" ...
Elapsed 0.111 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 11 source port 547" ...
Elapsed 0.128 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 21" ...
Elapsed 0.022 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 21 action accept" ...
Elapsed 0.013 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 21 description Allow link-local" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 21 protocol icmpv6" ...
Elapsed 0.100 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 21 source address fe80::/10" ...
Elapsed 0.148 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 22" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 22 action accept" ...
Elapsed 0.009 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 22 limit burst 1" ...
Elapsed 0.021 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 22 protocol icmpv6" ...
Elapsed 0.100 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 action drop" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 destination port 22" ...
Elapsed 0.127 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 protocol tcp" ...
Elapsed 0.099 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 recent count 4" ...
Elapsed 0.022 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 recent time minute" ...
Elapsed 0.013 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 30 state new enable" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 31" ...
Elapsed 0.022 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 31 action accept" ...
Elapsed 0.013 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 31 destination port 22" ...
Elapsed 0.134 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 31 protocol tcp" ...
Elapsed 0.109 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 31 state new enable" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 5182" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 5182 action accept" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 5182 destination port 51820" ...
Elapsed 0.134 sec:
Executing the "firewall ipv6-name OUT-LOCAL-V6 rule 5182 protocol udp" ...
Elapsed 0.103 sec:
Executing the "firewall ipv6-name WG-IN" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name WG-IN default-action accept" ...
Elapsed 0.012 sec:
Executing the "firewall ipv6-name WG-IN rule 10" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name WG-IN rule 10 action drop" ...
Elapsed 0.015 sec:
Executing the "firewall ipv6-name WG-IN rule 10 description block TCP traffic from chromecast" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name WG-IN rule 10 protocol tcp" ...
Elapsed 0.099 sec:
Executing the "firewall ipv6-name WG-IN rule 10 source port 8008-8009,8443" ...
Elapsed 0.125 sec:
Executing the "firewall ipv6-name WG-IN rule 11" ...
Elapsed 0.021 sec:
Executing the "firewall ipv6-name WG-IN rule 11 action drop" ...
Elapsed 0.009 sec:
Executing the "firewall ipv6-name WG-IN rule 11 description block UDP traffic from chromecast" ...
Elapsed 0.013 sec:
Executing the "firewall ipv6-name WG-IN rule 11 destination address 2001:559:87dd:629::/64" ...
Elapsed 0.134 sec:
Executing the "firewall ipv6-name WG-IN rule 11 protocol udp" ...
Elapsed 0.098 sec:
Executing the "firewall ipv6-name WG-LOCAL" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name WG-LOCAL default-action accept" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name WG-OUT" ...
Elapsed 0.015 sec:
Executing the "firewall ipv6-name WG-OUT default-action accept" ...
Elapsed 0.011 sec:
Executing the "firewall ipv6-name WG-OUT rule 20" ...
Elapsed 0.023 sec:
Executing the "firewall ipv6-name WG-OUT rule 20 action drop" ...
Elapsed 0.009 sec:
Executing the "firewall ipv6-name WG-OUT rule 20 protocol igmp" ...
Elapsed 0.099 sec:
Executing the "firewall name OUTSIDE-IN" ...
Elapsed 0.012 sec:
Executing the "firewall name OUTSIDE-IN default-action drop" ...
Elapsed 0.017 sec:
Executing the "firewall name OUTSIDE-IN description incoming WAN ruleset" ...
Elapsed 0.015 sec:
Executing the "firewall name OUTSIDE-IN rule 10" ...
Elapsed 0.024 sec:
Executing the "firewall name OUTSIDE-IN rule 10 action accept" ...
Elapsed 0.012 sec:
Executing the "firewall name OUTSIDE-IN rule 10 state established enable" ...
Elapsed 0.016 sec:
Executing the "firewall name OUTSIDE-IN rule 10 state related enable" ...
Elapsed 0.013 sec:
Executing the "firewall name OUTSIDE-LOCAL" ...
Elapsed 0.016 sec:
Executing the "firewall name OUTSIDE-LOCAL default-action drop" ...
Elapsed 0.013 sec:
Executing the "firewall name OUTSIDE-LOCAL description local WAN ruleset" ...
Elapsed 0.012 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 10" ...
Elapsed 0.024 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 10 action accept" ...
Elapsed 0.012 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 10 state established enable" ...
Elapsed 0.013 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 10 state related enable" ...
Elapsed 0.016 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 20" ...
Elapsed 0.024 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 20 action accept" ...
Elapsed 0.010 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 20 icmp type-name echo-request" ...
Elapsed 0.013 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 20 protocol icmp" ...
Elapsed 0.106 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 20 state new enable" ...
Elapsed 0.011 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30" ...
Elapsed 0.022 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 action drop" ...
Elapsed 0.011 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 destination port 22" ...
Elapsed 0.130 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 protocol tcp" ...
Elapsed 0.112 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 recent count 60" ...
Elapsed 0.025 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 recent time second" ...
Elapsed 0.015 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 30 state new enable" ...
Elapsed 0.014 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 31" ...
Elapsed 0.028 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 31 action accept" ...
Elapsed 0.012 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 31 destination port 22" ...
Elapsed 0.131 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 31 protocol tcp" ...
Elapsed 0.102 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 31 state new enable" ...
Elapsed 0.013 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182" ...
Elapsed 0.026 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182 action accept" ...
Elapsed 0.015 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182 description wireguard" ...
Elapsed 0.014 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182 destination port 51820" ...
Elapsed 0.136 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182 log enable" ...
Elapsed 0.014 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5182 protocol udp" ...
Elapsed 0.105 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5201" ...
Elapsed 0.023 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5201 action accept" ...
Elapsed 0.011 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5201 destination port 5201" ...
Elapsed 0.129 sec:
Executing the "firewall name OUTSIDE-LOCAL rule 5201 protocol tcp" ...
Elapsed 0.104 sec:
Executing the "firewall name WG-IN" ...
Elapsed 0.014 sec:
Executing the "firewall name WG-IN default-action accept" ...
Elapsed 0.011 sec:
Executing the "firewall name WG-IN rule 10" ...
Elapsed 0.024 sec:
Executing the "firewall name WG-IN rule 10 action drop" ...
Elapsed 0.009 sec:
Executing the "firewall name WG-IN rule 10 description block TCP traffic from chromecast" ...
Elapsed 0.010 sec:
Executing the "firewall name WG-IN rule 10 protocol tcp" ...
Elapsed 0.101 sec:
Executing the "firewall name WG-IN rule 10 source port 8008-8009,8443" ...
Elapsed 0.127 sec:
Executing the "firewall name WG-IN rule 11" ...
Elapsed 0.026 sec:
Executing the "firewall name WG-IN rule 11 action drop" ...
Elapsed 0.011 sec:
Executing the "firewall name WG-IN rule 11 description block UDP traffic from chromecast" ...
Elapsed 0.012 sec:
Executing the "firewall name WG-IN rule 11 destination address 10.200.200.0/24" ...
Elapsed 0.081 sec:
Executing the "firewall name WG-IN rule 11 protocol udp" ...
Elapsed 0.107 sec:
Executing the "firewall name WG-LOCAL" ...
Elapsed 0.014 sec:
Executing the "firewall name WG-LOCAL default-action accept" ...
Elapsed 0.013 sec:
Executing the "firewall name WG-OUT" ...
Elapsed 0.013 sec:
Executing the "firewall name WG-OUT default-action accept" ...
Elapsed 0.013 sec:
Executing the "firewall name WG-OUT rule 20" ...
Elapsed 0.025 sec:
Executing the "firewall name WG-OUT rule 20 action drop" ...
Elapsed 0.011 sec:
Executing the "firewall name WG-OUT rule 20 protocol igmp" ...
Elapsed 0.106 sec:
Executing the "firewall receive-redirects disable" ...
Elapsed 0.012 sec:
Executing the "firewall send-redirects enable" ...
Elapsed 0.013 sec:
Executing the "firewall source-validation disable" ...
Elapsed 0.011 sec:
Executing the "firewall syn-cookies enable" ...
Elapsed 0.010 sec:
Executing the "firewall twa-hazards-protection disable" ...
Elapsed 0.010 sec:
Elapsed 5.653 sec: _commit_check_cfg_node
Entering the _commit_exec_cfg_node
Executing the "firewall" ...
Elapsed 12.003 sec:
Elapsed 12.004 sec: _commit_exec_cfg_node
Entering the _commit_check_cfg_node
Executing the "policy prefix-list announce-nets" ...
Elapsed 0.009 sec:
Executing the "policy prefix-list announce-nets rule 10" ...
Elapsed 0.022 sec:
Executing the "policy prefix-list announce-nets rule 10 action permit" ...
Elapsed 0.012 sec:
Executing the "policy prefix-list announce-nets rule 10 prefix 192.168.16.0/24" ...
Elapsed 0.027 sec:
Executing the "policy prefix-list announce-nets rule 53" ...
Elapsed 0.019 sec:
Executing the "policy prefix-list announce-nets rule 53 action permit" ...
Elapsed 0.009 sec:
Executing the "policy prefix-list announce-nets rule 53 prefix 10.7.0.0/24" ...
Elapsed 0.024 sec:
Executing the "policy prefix-list announce-nets rule 99" ...
Elapsed 0.022 sec:
Executing the "policy prefix-list announce-nets rule 99 action permit" ...
Elapsed 0.012 sec:
Executing the "policy prefix-list announce-nets rule 99 prefix 10.40.99.0/24" ...
Elapsed 0.028 sec:
Executing the "policy prefix-list announce-nets rule 100" ...
Elapsed 0.021 sec:
Executing the "policy prefix-list announce-nets rule 100 action permit" ...
Elapsed 0.013 sec:
Executing the "policy prefix-list announce-nets rule 100 prefix 192.168.14.0/24" ...
Elapsed 0.026 sec:
Executing the "policy prefix-list deny-default" ...
Elapsed 0.009 sec:
Executing the "policy prefix-list deny-default rule 1" ...
Elapsed 0.021 sec:
Executing the "policy prefix-list deny-default rule 1 action deny" ...
Elapsed 0.009 sec:
Executing the "policy prefix-list deny-default rule 1 prefix 0.0.0.0/0" ...
Elapsed 0.028 sec:
Executing the "policy prefix-list6 denytest" ...
Elapsed 0.009 sec:
Executing the "policy prefix-list6 denytest rule 1" ...
Elapsed 0.023 sec:
Executing the "policy prefix-list6 denytest rule 1 action deny" ...
Elapsed 0.012 sec:
Executing the "policy prefix-list6 denytest rule 1 prefix ::/0" ...
Elapsed 0.034 sec:
Elapsed 0.402 sec: _commit_check_cfg_node
Entering the _commit_exec_cfg_node
Executing the "policy" ...
Elapsed 3.264 sec:
Elapsed 3.264 sec: _commit_exec_cfg_node
Entering the _commit_check_cfg_node
Executing the "nat source rule 11" ...
Elapsed 0.024 sec:
Executing the "nat source rule 11 description 1G-Outside" ...
Elapsed 0.010 sec:
Executing the "nat source rule 11 source address 0.0.0.0/0" ...
Elapsed 0.075 sec:
Executing the "nat source rule 11 translation address masquerade" ...
Elapsed 0.054 sec:
Elapsed 0.164 sec: _commit_check_cfg_node
Entering the _commit_exec_cfg_node
Executing the "nat" ...
Elapsed 0.382 sec:
Elapsed 0.382 sec: _commit_exec_cfg_node
[[interfaces loopback lo]] failed
[[interfaces ethernet eth0]] failed
[[interfaces ethernet eth3]] failed
[[system sysctl]] failed
[[interfaces ethernet eth2]] failed
[[interfaces ethernet eth1]] failed
[[interfaces wireguard wg0]] failed
[[system domain-search]] failed
[[system syslog]] failed
[[system name-server]] failed
[[system config-management]] failed
[[system login]] failed
[[protocols static]] failed
[[service router-advert]] failed
[[service ntp]] failed
[[service dhcp-server]] failed
[[service ssh]] failed
[[system option]] failed
Elapsed 22.828 sec: Commit execute priority tree
Commit failed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment