1422232888 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:f15f:572b:b3e:b18b 1422233618 Q * thierryp Ping timeout: 480 seconds 1422234002 Q * fstd Remote host closed the connection 1422234047 J * fstd ~fstd@xdsl-87-78-82-38.netcologne.de 1422235683 Q * Bertl Ping timeout: 480 seconds 1422240403 J * thierryp ~thierry@home.parmentelat.net 1422240888 Q * thierryp Ping timeout: 480 seconds 1422244084 J * thierryp ~thierry@home.parmentelat.net 1422244569 Q * thierryp Ping timeout: 480 seconds 1422248572 Q * Aiken Ping timeout: 480 seconds 1422249461 J * Ghislain ~aqueos@adsl1.aqueos.com 1422249771 J * Aiken ~Aiken@quarry.jbmb.net 1422251358 J * thierryp ~thierry@home.parmentelat.net 1422251843 Q * thierryp Ping timeout: 480 seconds 1422253910 J * zerick ~zerick@179.7.68.4 1422254251 J * Bertl herbert@IRC.13thfloor.at 1422254330 J * derjohn_mob ~aj@88.128.80.111 1422255989 M * Bertl off to bed now ... have a good one everyone! 1422255999 N * Bertl Bertl_zZ 1422256062 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:f15f:572b:b3e:b18b 1422257788 Q * derjohn_mob Ping timeout: 480 seconds 1422260564 J * derjohn_mob ~aj@fw.gkh-setu.de 1422264927 Q * thierryp Remote host closed the connection 1422265124 Q * zerick Remote host closed the connection 1422265170 J * BenG ~BenG@cpc29-aztw22-2-0-cust128.18-1.cable.virginm.net 1422267060 J * ensc|w ~ensc@www-old.sigma-chemnitz.de 1422267120 J * thierryp ~thierry@zeta.inria.fr 1422270354 Q * thierryp Remote host closed the connection 1422270432 J * thierryp ~thierry@zeta.inria.fr 1422271160 Q * BenG Quit: I Leave 1422273700 J * thierryp_ ~thierry@zeta.inria.fr 1422273700 Q * thierryp Read error: Connection reset by peer 1422273773 J * thierryp ~thierry@zeta.inria.fr 1422273773 Q * thierryp_ Read error: Connection reset by peer 1422274370 J * BenG ~BenG@cpc29-aztw22-2-0-cust128.18-1.cable.virginm.net 1422277098 J * thierryp_ ~thierry@zeta.inria.fr 1422277098 Q * thierryp Read error: Connection reset by peer 1422277203 Q * fstd Remote host closed the connection 1422277244 J * fstd ~fstd@xdsl-84-44-220-22.netcologne.de 1422278308 Q * Aiken Remote host closed the connection 1422285748 N * Bertl_zZ Bertl 1422285750 M * Bertl morning folks! 1422286611 J * Wermwud ~Wermwud@69-29-150-18.stat.centurytel.net 1422286635 Q * BenG Quit: I Leave 1422286921 J * BenG ~BenG@cpc29-aztw22-2-0-cust128.18-1.cable.virginm.net 1422287097 Q * BenG Remote host closed the connection 1422287217 J * BenG ~BenG@cpc29-aztw22-2-0-cust128.18-1.cable.virginm.net 1422287333 M * Ghislain hello bertl 1422290639 Q * BenG Quit: I Leave 1422291444 Q * thierryp_ Remote host closed the connection 1422292691 J * bonbons ~bonbons@2001:a18:22e:fb01:b401:325c:62e:335 1422293621 M * Ghislain hum 1422293655 M * Ghislain i have 2 guest in a 10.x network but the second one use the ip of the first to go out instead of its ip 1422293684 M * Ghislain i have no 10.x on the host 1422293746 M * daniel_hozac any NAT rules? 1422293818 M * Ghislain not any 1422294021 M * Ghislain i have 2 network on the card: 1422294023 M * Ghislain 10.100.0.0 0.0.0.0 255.255.0.0 U 0 0 0 eth0 1422294024 M * Ghislain 10.254.0.0 0.0.0.0 255.255.255.0 U 0 0 0 eth0 1422294131 M * daniel_hozac ip addr show; ip route show; iptables -t nat -nvL; cat /proc/virtnet/{nid1,nid2}/* 1422294243 M * Ghislain you mean on the host or in the guest ? 1422294299 M * Ghislain i sent to you directly the host version 1422294343 M * Ghislain i added to the host an ip in this range to see if this help 1422294348 M * Ghislain but no ^^ 1422294948 J * thierryp ~thierry@home.parmentelat.net 1422295046 M * daniel_hozac so for what traffic are you seeing the wrong IP address being selected? 1422295067 Q * thierryp Remote host closed the connection 1422295084 M * daniel_hozac traffic to 10.254.0.0/24 i assume? 1422295264 M * Ghislain when i go from 10.200.0.100 to 10.254.0.200 1422295387 M * daniel_hozac that's neither of these guests? 1422295422 M * daniel_hozac doesn't even seem to be related to this host. 1422295429 M * Ghislain nope this is the mysql server that is on another box 1422295463 M * Ghislain you have one guest that is a caching proxy, the secodn an apache and the secodn try to connect to the mysql one 1422295666 M * daniel_hozac none of those addresses are on this host though. 1422295854 M * Ghislain nope 1422295859 M * Ghislain they are on the guests 1422295878 M * Ghislain i added an 10.254.0.253 in the host but this does not helped 1422295940 M * Ghislain my guests are locked i must reboot, i will try to restart without the 10.100 1422296006 M * daniel_hozac no, i mean, those are not the addresses of any guest on this host. 1422296224 M * Ghislain the 10.254.0.1 and .100 are two guest on this host 1422296236 M * Ghislain the .200 is a guest on another host 1422296951 Q * derjohn_mob Ping timeout: 480 seconds 1422297967 M * Ghislain i removed the 10.100 network but there is still the same issue 1422298188 M * Ghislain PING 10.254.0.200 (10.254.0.200) 56(84) bytes of data. 1422298188 M * Ghislain From EXTERNAL IP icmp_seq=1 Destination Host Unreachable 1422298214 M * Ghislain it does not go from the route for this network, it use the default route but for the first network 1422298247 M * Ghislain even if the guest see the route: 10.254.0.0 0.0.0.0 255.255.255.0 U 0 0 0 eth0 1422298828 M * daniel_hozac you are using /32 1422298837 M * daniel_hozac you should use the real netmask. 1422298850 M * daniel_hozac otherwise it will use the default interface, which is your external address. 1422298983 M * Ghislain 10.254.0.1-0.0.0.0/255.255.255.0 is /24 no ? 1422299011 M * Ghislain i changed quite a few time so i tried /32 then got back to /24 1422299037 M * Ghislain i can contact the 10.x inside the same host but i cannot go out on the private interface 1422299055 M * Ghislain i sent you on direct the pastebin of the actual live version after reboot 1422299068 M * Ghislain on direct chat 1422299641 M * Ghislain i checked i have /24 everywhere so perhaps i have a sysctl or kernel option that make this behave in this wrong way 1422299758 M * Ghislain net.ipv4.ip_forward perhaps ? 1422299826 M * Ghislain they should not cross interfaces so i have it at 0 1422300100 M * daniel_hozac so what are you trying to access? 1422300134 M * daniel_hozac is it on 10.254.0.0/24, or a different network? 1422300234 M * Ghislain all are on 10.254.0.0/24 1422300235 J * derjohn_mob ~aj@p578b6aa1.dip0.t-ipconnect.de 1422300285 M * Ghislain they all have a public and a private ip, the web guest 10.254.0.100 try to connect to the mysql guest on another host on 10.254.0.200 1422300328 M * Ghislain the host see the 10.254.0.200 but the guest fials trying to reach it by the public interface instead of the private one 1422300369 M * Ghislain this guest have 2 ip, one public on eth1 and one private (10.254.0.100) on eth0 1422300412 M * Ghislain same for the mysql one on the other host. The difference is that the sql one is alone while the apache one has another guest using 10.254.0.1 1422300647 M * daniel_hozac so your traffic to 10.254.0.200 from 10.254.0.100 goes out on your public interface? 1422300659 M * Ghislain yep 1422300679 M * daniel_hozac what kernel is that? 1422300701 M * Ghislain 3.4.103-vs2.3.3.9 1422300714 M * daniel_hozac wow. 1422300715 M * daniel_hozac 103... 1422300756 M * Ghislain yes lol LTS ... ;p util-vserver: 0.30.216-pre3062 1422300771 J * Aiken ~Aiken@d63f.h.jbmb.net 1422300800 M * Ghislain PING 10.254.0.200 (10.254.0.200) 56(84) bytes of data. 1422300800 M * Ghislain From EXTERNAL IP icmp_seq=1 Destination Host Unreachable 1422300808 M * Ghislain i edited the ip but you got the idea 1422300960 M * Ghislain i use net.ipv4.ip_forward=0 and net.ipv4.conf.all.promote_secondaries=1 that can perhaps do somethign with it 1422301030 M * daniel_hozac no, that shouldn't matter here. 1422301036 M * Ghislain the fun thing is that the first guest is working fine, i can ping the 10.254.0.200 from it and from the host 1422301064 M * daniel_hozac do you have vserver debugging enabled? 1422301065 M * Ghislain but on the second guest that has teh very same config, just the private ip differ, there i cannot 1422301071 M * Ghislain nope 1422301080 M * daniel_hozac like, not in the kernel? 1422301124 M * Ghislain # CONFIG_VSERVER_DEBUG is not set 1422301137 M * daniel_hozac that's too bad, that should be able to tell you exactly what it's doing. 1422301180 M * Ghislain it has an impact if i recompile the kernel to enable it on a test machine ? 1422301214 M * Ghislain i mean if i put a debug enabled kernel everywhere will it decrease perf or have some side effect ? 1422301217 M * daniel_hozac no, everything has to be explicitly enabled. 1422301361 M * Ghislain ok so next compilei will enbale it 1422301474 M * Ghislain the box is in production now so i will have to order a test machine beside it 1422301673 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:5154:8028:bc37:3510 1422304480 Q * thierryp Remote host closed the connection 1422307233 Q * opuk Ping timeout: 480 seconds 1422307437 J * opuk ~kupo@h-1-5.a176.priv.bahnhof.se 1422308940 J * hparker ~hparker@0000fb24.user.oftc.net 1422309814 Q * bonbons Quit: Leaving 1422312018 Q * opuk Ping timeout: 480 seconds 1422313142 J * opuk ~kupo@h-1-5.a176.priv.bahnhof.se 1422313415 Q * Wermwud Quit: Leaving (Please imagine me slamming the door on my way out) 1422313865 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:d05a:faa3:375f:3416 1422316548 Q * thierryp Remote host closed the connection