What's Changed
- chore(deps-dev): bump @humanfs/node from 0.16.7 to 0.16.8 in /frontend by @dependabot[bot] in #559
- feat(pppoe): Manage and view active server sessions by @Jarnster in #560
- chore(deps-dev): bump browserslist from 4.28.6 to 4.28.9 in /frontend by @dependabot[bot] in #561
- ci: update checkout and setup actions in test workflows by @katsugtgz in #562
- feat(pppoe): Extend features by @Jarnster in #563
- fix(security): Guard access-list and BGP batch operation names by @xTITUSMAXIMUSX in #568
- fix: guard babel nhrp redistribute on 1.4 by @xTITUSMAXIMUSX in #578
- refactor: move nhrp 1.4 redistribute gate into mappers by @xTITUSMAXIMUSX in #580
- refactor: replace nhrp denylist with mapper allowlists by @xTITUSMAXIMUSX in #582
- fix: emit access-list network as sibling leaves by @xTITUSMAXIMUSX in #583
- refactor: drop unused set_device_registry router stubs by @xTITUSMAXIMUSX in #584
- chore: remove one-shot router permission rewriter by @xTITUSMAXIMUSX in #585
- refactor: centralize batch getattr dispatch by @xTITUSMAXIMUSX in #586
- chore: remove unused internal hash-password route by @xTITUSMAXIMUSX in #587
- fix: bump Next 16.3.4 and patch docs-site Dependabot deps by @xTITUSMAXIMUSX in #594
- fix: use static Tailwind classes on firewall group cards by @xTITUSMAXIMUSX in #604
- fix: share cookie forwarding for Next API proxies by @xTITUSMAXIMUSX in #605
- test: golden paths for access-list network plus mask by @xTITUSMAXIMUSX in #606
- test: golden paths for as-path-list and BFD builders by @xTITUSMAXIMUSX in #607
- fix: link console SSH setup hint to Site Manager by @xTITUSMAXIMUSX in #608
- fix: pin Prisma CLI and client to 6.19.1 by @xTITUSMAXIMUSX in #609
- fix: reject read-only tokens on bug-report writes by @xTITUSMAXIMUSX in #610
- fix: require CONFIGURATION read on config cache refresh by @xTITUSMAXIMUSX in #611
- fix: drop client-supplied path from config save by @xTITUSMAXIMUSX in #612
- fix: apply CORS FRONTEND_URL default to WebSocket Origin by @xTITUSMAXIMUSX in #613
- chore: drop unused imports by @xTITUSMAXIMUSX in #614
- fix: gate BGP BMP monitor policies to real CLI nodes by @xTITUSMAXIMUSX in #615
- fix: construct only needed mappers in batch builders by @xTITUSMAXIMUSX in #616
- chore(deps): bump effect and prisma in /frontend by @dependabot[bot] in #622
- test: cover BGP no-ipv6-auto-ra and drop stale config-sync login docs by @xTITUSMAXIMUSX in #624
- fix: NAT64 unused capabilities, onboarding client helper, service path tests by @xTITUSMAXIMUSX in #626
- refactor: shared interface batch skeleton by @xTITUSMAXIMUSX in #634
- fix: DHCP lease release gates on a capability flag by @xTITUSMAXIMUSX in #635
- refactor: VRF protocol ops reuse global builders by @xTITUSMAXIMUSX in #636
- refactor: batch builders share add_set plumbing by @xTITUSMAXIMUSX in #637
- fix: override prisma deepmerge-ts to 8.0.2 by @xTITUSMAXIMUSX in #643
- fix: gate container and DHCP paths that the labs reject by @xTITUSMAXIMUSX in #644
- fix: drop VyOS version labels from VLAN and VIF dialogs by @xTITUSMAXIMUSX in #661
- fix: routing search, unused caps, version labels, and interface pickers by @xTITUSMAXIMUSX in #665
- fix: drop bogus DHCPv6 subnet disable and raise on version-wrong paths by @xTITUSMAXIMUSX in #666
- fix: expose DHCP listen settings and 1.5 DUID by @xTITUSMAXIMUSX in #667
- fix: migrate before backend health and pin Prisma 6.19.3 by @xTITUSMAXIMUSX in #668
- fix: expose DHCP DDNS and HA peer settings by @xTITUSMAXIMUSX in #669
- fix: enforce dedicated RBAC groups on interface routers by @xTITUSMAXIMUSX in #670
- fix: own firewall IPv4 and IPv6 as one address family by @xTITUSMAXIMUSX in #671
- fix: own community-list families as one policy list by @xTITUSMAXIMUSX in #672
- fix: own system config parse on the mapper by @xTITUSMAXIMUSX in #673
- fix: consume system search tab and section params by @xTITUSMAXIMUSX in #679
- fix: add 1.5 DHCPv6 shared-network interface and capwap by @xTITUSMAXIMUSX in #680
- test: add DHCPv6 and DNS dynamic builder path tables by @xTITUSMAXIMUSX in #681
- fix: gate DHCPv6 ranges on capabilities not version_info by @xTITUSMAXIMUSX in #682
- fix: raise on 1.4 DNS forwarding zone-cache by @xTITUSMAXIMUSX in #683
- fix: read PPPoE sessions via ShowSessionsAccelppp for fleet-wide per-session PPS by @xTITUSMAXIMUSX in #689
- fix: serve PPPoE sessions on the dashboard SSE stream by @xTITUSMAXIMUSX in #691
- fix: ride Hardware Sensors card on the dashboard SSE stream by @xTITUSMAXIMUSX in #692
- fix: Hardware Sensors card layout at one column by @xTITUSMAXIMUSX in #695
- docs: generate OpenAPI at docs build with Scalar by @xTITUSMAXIMUSX in #696
- fix: expose Kea dynamic-dns-update behavior leaves by @xTITUSMAXIMUSX in #698
- test: add golden paths for DNS forwarding event-handler extcommunity by @xTITUSMAXIMUSX in #703
- fix: drop version labels from sFlow and WireGuard UI by @xTITUSMAXIMUSX in #704
- fix: use InterfaceSelect for HTTP and SSH source interfaces by @xTITUSMAXIMUSX in #705
- fix: expose DNS forwarding NAPTR SPF and SRV records by @xTITUSMAXIMUSX in #706
- fix: expose firewall global-options resolver-cache and resolver-interval by @xTITUSMAXIMUSX in #707
- fix: expose NTP timestamp interface receive-filter by @xTITUSMAXIMUSX in #708
- fix: expose syslog remote RFC 5424 format leaves by @xTITUSMAXIMUSX in #709
- fix: expose BGP l2vpn-evpn address-family control flags by @xTITUSMAXIMUSX in #710
- test: add failover and firewall builder path tests by @xTITUSMAXIMUSX in #715
- feat: add Authelia authentication provider by @dannyyy in #713
- Run container image/restart over GraphQL instead of SSH vbash by @xTITUSMAXIMUSX in #717
- fix: expose VRRP health-check timeout and SNMP trap on 1.5, reject on 1.4 by @xTITUSMAXIMUSX in #718
- fix: align frontend Node toolchain on 24 by @xTITUSMAXIMUSX in #724
- Improve handling of the PPPoE service by @Jarnster in #751
- test: add golden path tables for HA HTTPS interfaces IPsec ISIS L2TP by @xTITUSMAXIMUSX in #750
- fix: PPPoE sessions take MTU from GraphQL ShowInterfaces by @xTITUSMAXIMUSX in #753
- fix: expose IPv6 firewall prerouting raw by @xTITUSMAXIMUSX in #755
- fix: firewall UI gates on capabilities not version_notes by @xTITUSMAXIMUSX in #756
- fix: expose ISIS IPv6 redistribute and global LFA by @xTITUSMAXIMUSX in #757
- feat: appliance mode auto-connects the seeded instance by @xTITUSMAXIMUSX in #764
- Feat: transceiver health card by @Jarnster in #765
- feat: add VyOS on-box install-vyos.sh by @xTITUSMAXIMUSX in #766
- feat: hide appliance site inventory, keep instance settings by @xTITUSMAXIMUSX in #767
- feat: bind on-box UI to one IP and build the URL by @xTITUSMAXIMUSX in #768
- fix: refuse appliance stack delete by @xTITUSMAXIMUSX in #769
- fix: refuse appliance fleet backup restore by @xTITUSMAXIMUSX in #770
- fix: install SSH key via API and drop leftover login session by @xTITUSMAXIMUSX in #771
- fix: publish backend 8000 for console WS and surface update errors by @xTITUSMAXIMUSX in #772
- fix: emit PUBLIC_WS_URL meta in body so console can find it by @xTITUSMAXIMUSX in #773
- fix: read PUBLIC_WS_URL at request time for console WS by @xTITUSMAXIMUSX in #774
- fix: pull configured image ref on Update VyManager by @xTITUSMAXIMUSX in #775
- fix: treat backend proxy drop as expected on stack restart by @xTITUSMAXIMUSX in #776
- fix: wait for API and reload after Update VyManager by @xTITUSMAXIMUSX in #777
- fix: do not bounce a fresh login back to the login page by @xTITUSMAXIMUSX in #778
- fix: wait for UI to answer before reload after stack update by @xTITUSMAXIMUSX in #779
- fix: actually commit after install-vyos.sh pulls images by @xTITUSMAXIMUSX in #780
- fix: open VyOS configure via vyatta_configure, not a bare configure by @xTITUSMAXIMUSX in #781
- fix: publish on-box UI with dest NAT, not container ports by @xTITUSMAXIMUSX in #782
- Fix double-counted cache in GraphQL memory statistics by @frogro in #783
- improve(pppoe): update pppoe sessions every 3 seconds by @Jarnster in #784
- fix: expose local-route fwmark, protocol, and ports by @xTITUSMAXIMUSX in #785
- docs: appliance on-box install walkthrough by @xTITUSMAXIMUSX in #786
- docs: dest NAT inbound interface by @xTITUSMAXIMUSX in #787
- docs: generate SSH key after on-box install by @xTITUSMAXIMUSX in #788
- fix: emit WAN hook, rule limit, and group writes by @xTITUSMAXIMUSX in #789
- fix: expose DNAT translation port-mapping by @xTITUSMAXIMUSX in #790
- fix: offer mac-group on IPv4 NAT rules by @xTITUSMAXIMUSX in #791
- fix: drop invalid NAT66 source match groups by @xTITUSMAXIMUSX in #792
- fix: expose OSPF retransmit-window on global OSPF by @xTITUSMAXIMUSX in #793
- fix: expose OSPF interface LDP-sync disable and holddown by @xTITUSMAXIMUSX in #821
- fix: expose OSPF helper enable router-id by @xTITUSMAXIMUSX in #822
- fixes: PPPoE session labeling on custom user-defined conditions, column customization and separation of TX/RX bandwidth counters by @Jarnster in #823
- fix: expose PPPoE authentication any-login on 1.5 by @xTITUSMAXIMUSX in #824
- fix: scope PPPoE session labels per instance by @xTITUSMAXIMUSX in #826
- fix: expose PPPoE interface vpp-cp on 1.5 by @xTITUSMAXIMUSX in #827
- fix: expose CAKE ack-filter and no-split-gso on 1.5 by @xTITUSMAXIMUSX in #828
- fix: expose PBR GeoIP match on 1.5 by @xTITUSMAXIMUSX in #829
- fix: version PBR IPsec match in/out on 1.5 by @xTITUSMAXIMUSX in #830
- fix: expose PBR match tcp mss on 1.5 by @xTITUSMAXIMUSX in #831
- fix: unify NAT create and edit modals by @xTITUSMAXIMUSX in #832
- fix: retarget NAT mac-group tests after modal unify by @xTITUSMAXIMUSX in #833
- fix: unify firewall rule create and edit modals by @xTITUSMAXIMUSX in #834
- fix: unify bridge firewall rule create and edit modals by @xTITUSMAXIMUSX in #835
- fix: unify flowtable create and edit modals by @xTITUSMAXIMUSX in #836
- fix: unify bonding create and edit modals by @xTITUSMAXIMUSX in #837
- fix: unify bridge and VIF create and edit modals by @xTITUSMAXIMUSX in #838
- fix: unify dummy create and edit modals by @xTITUSMAXIMUSX in #839
- fix: unify geneve create and edit modals by @xTITUSMAXIMUSX in #840
- fix: unify input create and edit modals by @xTITUSMAXIMUSX in #841
- fix: unify l2tpv3 create and edit modals by @xTITUSMAXIMUSX in #842
- fix: unify loopback create and edit modals by @xTITUSMAXIMUSX in #843
- fix: unify macsec create and edit modals by @xTITUSMAXIMUSX in #844
- fix: unify openvpn create and edit modals by @xTITUSMAXIMUSX in #845
- fix: unify pppoe create and edit modals by @xTITUSMAXIMUSX in #846
- fix: idle logout login fails with ?from= breadcrumb by @xTITUSMAXIMUSX in #847
- fix: PPPoE connections dialog fails to load by @xTITUSMAXIMUSX in #848
- ci: update setup-node to v7 in docs build by @katsugtgz in #849
- revert: remove PPPoE session connections dialog by @xTITUSMAXIMUSX in #850
- fix: unify SSTPC create and edit into one modal by @xTITUSMAXIMUSX in #851
- fix: unify tunnel create and edit into one modal by @xTITUSMAXIMUSX in #852
- fix: unify VXLAN create and edit into one modal by @xTITUSMAXIMUSX in #853
- fix: unify VTI create and edit into one modal by @xTITUSMAXIMUSX in #854
- refactor: differentiate source of config change (#855) by @Jarnster in #856
- fix: unify wireless create and edit into one modal by @xTITUSMAXIMUSX in #857
- fix: unify WWAN create and edit into one modal by @xTITUSMAXIMUSX in #858
- chore(deps): bump asyncssh from 2.23.1 to 2.24.0 in /backend by @dependabot[bot] in #859
- fix: publish backend and frontend images for arm64 by @xTITUSMAXIMUSX in #860
- refactor: unify WireGuard interface and peer create/edit modals by @xTITUSMAXIMUSX in #861
- fix: DDM shows physical ports only and rides the dashboard SSE stream by @xTITUSMAXIMUSX in #862
- refactor: unify VPP create and edit modals by @xTITUSMAXIMUSX in #863
- fix: show IPv6 prefix-list matches on the route-map overview by @xTITUSMAXIMUSX in #865
- refactor: unify static routing create and edit modals by @xTITUSMAXIMUSX in #866
- refactor: unify policy rule create and edit modals by @xTITUSMAXIMUSX in #867
- refactor: unify site and instance create and edit modals by @xTITUSMAXIMUSX in #868
- refactor: unify user create and edit modals by @xTITUSMAXIMUSX in #869
- feat: add TOTP and email OTP second factor by @xTITUSMAXIMUSX in #871
- fix: do not stack LISTEN connections on the revocation bus by @xTITUSMAXIMUSX in #872
- refactor: unify DHCP range and mapping create and edit modals by @xTITUSMAXIMUSX in #873
- chore(deps): bump image-size from 2.0.2 to 2.0.4 in /docs-site by @dependabot[bot] in #875
- chore(deps): bump fast-uri from 3.1.6 to 3.1.8 in /docs-site by @dependabot[bot] in #897
- deps: bump joi from 17.13.6 to 17.13.7 in docs-site by @katsugtgz in #899
- chore(deps): bump pyjwt from 2.13.0 to 2.14.0 in /backend by @dependabot[bot] in #900
- chore(deps): bump brace-expansion from 1.1.18 to 1.1.21 in /docs-site by @dependabot[bot] in #901
- deps: bump webpack-dev-middleware to 7.4.6 in docs-site by @katsugtgz in #902
- chore(deps): bump urllib3 from 2.7.0 to 2.8.0 in /backend by @dependabot[bot] in #904
- chore(deps): bump pyjwt from 2.14.0 to 2.15.0 in /backend by @dependabot[bot] in #905
- chore(deps): bump next from 16.3.4 to 16.3.8 in /frontend by @dependabot[bot] in #906
- fix: optic column calls copper ports healthy by @xTITUSMAXIMUSX in #907
- feature/helm-chart by @rurus9 in #903
New Contributors
- @dannyyy made their first contribution in #713
- @frogro made their first contribution in #783
- @rurus9 made their first contribution in #903
Full Changelog: v1.0.0-beta.4...v1.0.0-beta.5