{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":120824926,"defaultBranch":"master","name":"keepalived","ownerLogin":"sim-","currentUserCanPush":false,"isFork":true,"isEmpty":false,"createdAt":"2018-02-08T22:18:36.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/115418?v=4","public":true,"private":false,"isOrgOwned":false},"refInfo":{"name":"","listCacheKey":"v0:1613586910.728228","currentOid":""},"activityList":{"items":[{"before":"0070dc841b104d4e4d11dfd37511b58c0fc5f197","after":"43a0582ba169839a7e6e7cab326c4c21a71b524e","ref":"refs/heads/master","pushedAt":"2024-03-04T23:36:53.000Z","pushType":"push","commitsCount":9,"pusher":{"login":"sim-","name":"Simon Kirby","path":"/sim-","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/115418?s=80&v=4"},"commit":{"message":"Merge pull request #2391 from pqarmitage/updates\n\nAdd options for setting interface group of VMACs and ipvlans","shortMessageHtmlLink":"Merge pull request acassen#2391 from pqarmitage/updates"}},{"before":"1dc3c8c457ea4d280305a2a41c5f3cdff934c6a9","after":"0070dc841b104d4e4d11dfd37511b58c0fc5f197","ref":"refs/heads/master","pushedAt":"2024-03-01T00:19:48.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"sim-","name":"Simon Kirby","path":"/sim-","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/115418?s=80&v=4"},"commit":{"message":"vrrp: For use_vmac and use_ipvlan, copy the group from the base interface\n\nIt is useful in many instances to set up firewall rules based on\ninterface groups so that sets of interfaces may be aggregated by group\nand matched with a single rule rather than by listing them all.\n\nPrior to this change, when use_vmac or use_ipvlan is used, new interfaces\nare created with the default group, which breaks this ability.\n\nFurther complicating the issue is that nftables resolves interface names\nto ifindex at load time. This is problematic with keepalived's interface\ncreation, which usually comes after the firewall loading, forcing the\nuse of iifname, oifname instead (similar to iptables -i, -o).\n\nBy copying the group value, such firewall rules can continue to work\nregardless of the use_vmac or use_ipvlan settings, since packets may\nnow arrive on, or be routed out from, the new interfaces.\n\nSigned-off-by: Simon Kirby ","shortMessageHtmlLink":"vrrp: For use_vmac and use_ipvlan, copy the group from the base inter…"}},{"before":"bc624f7cb50e6656d19f375e09451d9f8e749308","after":"1dc3c8c457ea4d280305a2a41c5f3cdff934c6a9","ref":"refs/heads/master","pushedAt":"2024-03-01T00:04:41.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"sim-","name":"Simon Kirby","path":"/sim-","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/115418?s=80&v=4"},"commit":{"message":"vrrp: For use_vmac and use_ipvlan, copy the group from the base interface\n\nIt is useful in many instances to set up firewall rules based on\ninterface groups so that sets of interfaces may be aggregated by group\nand matched with a single rule rather than by listing them all.\n\nPrior to this change, when use_vmac or use_ipvlan is used, new interfaces\nare created with the default group, which breaks this ability.\n\nFurther complicating the issue is that nftables resolves interface names\nto ifindex at load time. This is problematic with keepalived's interface\ncreation, which usually comes after the firewall loading, forcing the\nuse of iifname, oifname instead (similar to iptables -i, -o).\n\nBy copying the group value, such firewall rules can continue to work\nregardless of the use_vmac or use_ipvlan settings, since packets may\nnow arrive on, or be routed out from, the new interfaces.","shortMessageHtmlLink":"vrrp: For use_vmac and use_ipvlan, copy the group from the base inter…"}},{"before":"3084a92e13acbf8f1705a58287926919db58f00d","after":"bc624f7cb50e6656d19f375e09451d9f8e749308","ref":"refs/heads/master","pushedAt":"2024-02-29T23:58:27.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"sim-","name":"Simon Kirby","path":"/sim-","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/115418?s=80&v=4"},"commit":{"message":"vrrp: For use_vmac and use_ipvlan, copy the group from the base interface\n\nIt is useful in many instances to set up firewall rules based on\ninterface groups so that sets of interfaces may be aggregated by group\nand matched with a single rule rather than by listing them all.\n\nPrior to this change, when use_vmac or use_ipvlan is used, new interfaces\nare created with the default group, which breaks this ability.\n\nFurther complicating the issue is that nftables resolves interface names\nto ifindex at load time. This is problematic with keepalived's interface\ncreation, which usually comes after the firewall loading, forcing the\nuse of iifname, oifname instead (similar to iptables -I, -O).\n\nBy copying the group value, such firewall rules can continue to work\nregardless of the use_vmac or use_ipvlan settings, since packets may\nnow arrive on, or be routed out from, the new interfaces.","shortMessageHtmlLink":"vrrp: For use_vmac and use_ipvlan, copy the group from the base inter…"}},{"before":"9875d422680401be0d6027121cbc09eed86fdc66","after":"3084a92e13acbf8f1705a58287926919db58f00d","ref":"refs/heads/master","pushedAt":"2024-02-29T23:57:25.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"sim-","name":"Simon Kirby","path":"/sim-","primaryAvatarUrl":"https://avatars.githubusercontent.com/u/115418?s=80&v=4"},"commit":{"message":"Merge pull request #2385 from pqarmitage/updates\n\nMore intelligent testing for, and including, some kernel headers","shortMessageHtmlLink":"Merge pull request acassen#2385 from pqarmitage/updates"}}],"hasNextPage":false,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"Y3Vyc29yOnYyOpK7MjAyNC0wMy0wNFQyMzozNjo1My4wMDAwMDBazwAAAAQMR9Hh","startCursor":"Y3Vyc29yOnYyOpK7MjAyNC0wMy0wNFQyMzozNjo1My4wMDAwMDBazwAAAAQMR9Hh","endCursor":"Y3Vyc29yOnYyOpK7MjAyNC0wMi0yOVQyMzo1NzoyNS4wMDAwMDBazwAAAAQJQtwW"}},"title":"Activity · sim-/keepalived"}