!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

795 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` use systemd-networkd and NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org231 Servers

Load older messages


SenderMessageTime
17 Jan 2025
@telometto:matrix.orgzenoHmmm...21:37:28
@telometto:matrix.orgzenoI am running a Unifi UDM SE21:37:36
@magic_rb:matrix.redalder.orgmagic_rbNixOS by default logs dropped packets in dmesg, check dmesg21:37:39
@magic_rb:matrix.redalder.orgmagic_rb
In reply to @telometto:matrix.org
I am running a Unifi UDM SE
The what now, i dont use corporate bullshit so my knowledge is limited
21:37:52
@telometto:matrix.orgzenoDo you have the full command? We're beyond my knowledge here 😅21:38:28
@magic_rb:matrix.redalder.orgmagic_rb sudo dmesg might say dropped packets 21:38:44
@magic_rb:matrix.redalder.orgmagic_rbhttps://www.amazon.com/Networking-Systems-Administrators-Mastery-Michael/dp/1642350338 Is a great booj21:39:03
@magic_rb:matrix.redalder.orgmagic_rb * 21:39:12
@misuzu:matrix.orgmisuzu joined the room.21:40:41
@telometto:matrix.orgzeno Does it start off easy? Networking is not my strong suit, even though it is really fun 21:41:23
@telometto:matrix.orgzeno

Hmmm... this is what the latter portion of sudo dmesg tells:

...
[    8.446122] r8169 0000:08:00.0 enp8s0: Link is Up - 1Gbps/Full - flow control rx/tx
[    8.449026] NET: Registered PF_PACKET protocol family
[   10.835448] mpt3sas 0000:03:00.0: invalid VPD tag 0x00 (size 0) at offset 0; assume missing optional EEPROM
[   10.836078] NFSD: Using nfsdcld client tracking operations.
[   10.836080] NFSD: no clients to reclaim, skipping NFSv4 grace period (net f0000000)
[   10.836901] mpt3sas 0000:05:00.0: invalid VPD tag 0x00 (size 0) at offset 0; assume missing optional EEPROM
[   13.127973] Bridge firewalling registered
[  110.065822] cni0: port 1(vetha24f5978) entered blocking state
[  110.065827] cni0: port 1(vetha24f5978) entered disabled state
[  110.065833] vetha24f5978: entered allmulticast mode
[  110.065882] vetha24f5978: entered promiscuous mode
[  110.065919] cni0: port 1(vetha24f5978) entered blocking state
[  110.065921] cni0: port 1(vetha24f5978) entered forwarding state
[  110.065998] cni0: port 1(vetha24f5978) entered disabled state
[  110.068523] cni0: port 1(vetha24f5978) entered blocking state
[  110.068527] cni0: port 1(vetha24f5978) entered forwarding state
[  110.283155] cni0: port 2(vetha450cf5e) entered blocking state
[  110.283159] cni0: port 2(vetha450cf5e) entered disabled state
[  110.283169] vetha450cf5e: entered allmulticast mode
[  110.283209] vetha450cf5e: entered promiscuous mode
[  110.283239] cni0: port 2(vetha450cf5e) entered blocking state
[  110.283241] cni0: port 2(vetha450cf5e) entered forwarding state
[  110.305657] cni0: port 3(veth714f82a9) entered blocking state
[  110.305662] cni0: port 3(veth714f82a9) entered disabled state
[  110.305668] veth714f82a9: entered allmulticast mode
[  110.305710] veth714f82a9: entered promiscuous mode
[  110.305735] cni0: port 3(veth714f82a9) entered blocking state
[  110.305737] cni0: port 3(veth714f82a9) entered forwarding state
[  110.329490] cni0: port 4(veth2474c5c4) entered blocking state
[  110.329494] cni0: port 4(veth2474c5c4) entered disabled state
[  110.329505] veth2474c5c4: entered allmulticast mode
[  110.329565] veth2474c5c4: entered promiscuous mode
[  110.329619] cni0: port 4(veth2474c5c4) entered blocking state
[  110.329621] cni0: port 4(veth2474c5c4) entered forwarding state
[  110.335593] cni0: port 5(veth782dd1f8) entered blocking state
[  110.335601] cni0: port 5(veth782dd1f8) entered disabled state
[  110.335702] veth782dd1f8: entered allmulticast mode
[  110.336196] veth782dd1f8: entered promiscuous mode
[  110.336227] cni0: port 5(veth782dd1f8) entered blocking state
[  110.336230] cni0: port 5(veth782dd1f8) entered forwarding state
[  111.354629] refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15052 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
[  112.403101] refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15053 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
[  659.721195] block nvme0n1: No UUID available providing old NGUID
[22861.655076] systemd-ssh-generator[27251]: Disabling SSH generator logic, since sshd is not installed.
[23783.598057] systemd-ssh-generator[31198]: Disabling SSH generator logic, since sshd is not installed.
[23932.322506] systemd-ssh-generator[33829]: Disabling SSH generator logic, since sshd is not installed.
[25340.988723] r8169 0000:08:00.0 enp8s0: entered promiscuous mode
[25354.074369] r8169 0000:08:00.0 enp8s0: left promiscuous mode
[25440.144879] vlan4: entered promiscuous mode
[25440.144882] r8169 0000:08:00.0 enp8s0: entered promiscuous mode
[25523.035176] vlan4: left promiscuous mode
[25523.035182] r8169 0000:08:00.0 enp8s0: left promiscuous mode
[25542.993980] systemd-ssh-generator[41131]: Disabling SSH generator logic, since sshd is not installed.
[25594.622473] vlan4: entered promiscuous mode
[25594.622477] r8169 0000:08:00.0 enp8s0: entered promiscuous mode
[25844.547201] vlan4: left promiscuous mode
[25844.547207] r8169 0000:08:00.0 enp8s0: left promiscuous mode
[25900.491070] vlan4: entered promiscuous mode
[25900.491075] r8169 0000:08:00.0 enp8s0: entered promiscuous mode
[25910.701077] vlan4: left promiscuous mode
[25910.701082] r8169 0000:08:00.0 enp8s0: left promiscuous mode
21:42:20
@magic_rb:matrix.redalder.orgmagic_rb
In reply to @telometto:matrix.org
Does it start off easy? Networking is not my strong suit, even though it is really fun
Yeah its really basic
21:42:27
@magic_rb:matrix.redalder.orgmagic_rbI see conn refused, does that ring a bell21:42:49
@telometto:matrix.orgzenoHmmm... cni0 should be k8s' networking21:43:32
@magic_rb:matrix.redalder.orgmagic_rbNo above it21:43:45
@magic_rb:matrix.redalder.orgmagic_rbRefused connection blabla21:43:53
@telometto:matrix.orgzeno

This?

refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15052 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
[  112.403101] refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15053 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
[  659.721195] block nvme0n1: No UUID available providing old NGUID
21:44:17
@telometto:matrix.orgzeno *

This?

refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15052 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
[  112.403101] refused connection: IN=cni0 OUT= PHYSIN=veth2474c5c4 MAC=be:1e:4e:cd:1c:c9:62:93:0d:a7:3e:3b:08:00 SRC=10.42.0.5 DST=192.168.2.100 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=15053 DF PROTO=TCP SPT=33934 DPT=10250 WINDOW=64860 RES=0x00 SYN URGP=0
21:44:40
@telometto:matrix.orgzenoI don't actually have any devices with that MAC address among the devices connected to my switch21:46:53
@telometto:matrix.orgzenoI mean, I can read it but not understand it 😂21:47:18
@magic_rb:matrix.redalder.orgmagic_rboh its cni0 sorry21:47:37
@magic_rb:matrix.redalder.orgmagic_rbthought it was eth021:47:42
@telometto:matrix.orgzenoNo worries. I'm just happy your trying to help 😄21:48:05
@magic_rb:matrix.redalder.orgmagic_rb um, can you do a ip route and ip addr on blizzard? 21:48:35
@telometto:matrix.orgzenoSure21:48:56
@telometto:matrix.orgzeno

ip -o addr:

1: lo    inet 127.0.0.1/8 scope host lo\       valid_lft forever preferred_lft forever
1: lo    inet6 ::1/128 scope host noprefixroute \       valid_lft forever preferred_lft forever
2: enp8s0    inet 192.168.2.100/24 metric 1024 brd 192.168.2.255 scope global dynamic enp8s0\       valid_lft 60173sec preferred_lft 60173sec
3: vlan4    inet 192.168.4.100/24 brd 192.168.4.255 scope global vlan4\       valid_lft forever preferred_lft forever
3: vlan4    inet6 2a01:799:816:d102:292b:1706:4441:1657/64 scope global temporary dynamic \       valid_lft 14819sec preferred_lft 14819sec
3: vlan4    inet6 2a01:799:816:d102:3e7c:3fff:fe18:3028/64 scope global dynamic mngtmpaddr noprefixroute \       valid_lft 14819sec preferred_lft 14819sec
3: vlan4    inet6 fe80::3e7c:3fff:fe18:3028/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
4: tailscale0    inet 171.104.14.31/32 scope global tailscale0\       valid_lft forever preferred_lft forever
4: tailscale0    inet6 fd7a:115c:a1e0::5801:e1f/128 scope global \       valid_lft forever preferred_lft forever
4: tailscale0    inet6 fe80::26aa:904b:23c5:383a/64 scope link stable-privacy proto kernel_ll \       valid_lft forever preferred_lft forever
5: flannel.1    inet 10.42.0.0/32 scope global flannel.1\       valid_lft forever preferred_lft forever
5: flannel.1    inet6 fe80::a81a:acff:fed3:e93f/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
6: cni0    inet 10.42.0.1/24 brd 10.42.0.255 scope global cni0\       valid_lft forever preferred_lft forever
6: cni0    inet6 fe80::bc1e:4eff:fecd:1cc9/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
7: vetha24f5978    inet6 fe80::58cb:47ff:fede:d8c4/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
8: vetha450cf5e    inet6 fe80::58f9:c3ff:fe51:d91d/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
9: veth714f82a9    inet6 fe80::6037:99ff:fec8:39bb/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
10: veth2474c5c4    inet6 fe80::f4af:e2ff:fe69:8006/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever
11: veth782dd1f8    inet6 fe80::1010:c3ff:fe3b:72eb/64 scope link proto kernel_ll \       valid_lft forever preferred_lft forever

ip route

default via 192.168.2.1 dev enp8s0 proto dhcp src 192.168.2.100 metric 1024
10.42.0.0/24 dev cni0 proto kernel scope link src 10.42.0.1
162.159.200.1 via 192.168.2.1 dev enp8s0 proto dhcp src 192.168.2.100 metric 1024
162.159.200.123 via 192.168.2.1 dev enp8s0 proto dhcp src 192.168.2.100 metric 1024
192.168.2.0/24 dev enp8s0 proto kernel scope link src 192.168.2.100 metric 1024
192.168.2.1 dev enp8s0 proto dhcp scope link src 192.168.2.100 metric 1024
192.168.4.0/24 dev vlan4 proto kernel scope link src 192.168.4.100
21:50:23
@magic_rb:matrix.redalder.orgmagic_rb can you rerun this with -n for numeric? the hostnames are astoundingly useless in debugging this 21:52:06
@telometto:matrix.orgzenotcpdump?21:54:04
@telometto:matrix.orgzenoor ping?21:54:14
@telometto:matrix.orgzenoBecause tcpdump does not seem to have that flag?21:54:46

Show newer messages


Back to Room ListRoom Version: 6