!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

884 Members
Declaratively manage your switching, routing, wireless, tunneling and more. | Don't rely on `networking.*` for interface and routing setup, use systemd-networkd, ifstate or NetworkManager instead. | Set `SYSTEMD_LOG_LEVEL=debug` to debug networking issues with networkd | No bad nft puns, please. | Room recommendations: #sysops:nixos.org254 Servers

Load older messages


SenderMessageTime
17 Jan 2026
@marcel:envs.net@marcel:envs.net changed their display name from Marcel to Marcel (@).23:44:12
@marcel:envs.net@marcel:envs.net changed their display name from Marcel (@) to Marcel => @me:m4rc3l.de.23:44:56
18 Jan 2026
@magic_rb:numtide.commagic_rb joined the room.13:00:53
@magic_rb:numtide.commagic_rbhi, im here from a different account cause my HS is down13:01:22
@magic_rb:numtide.commagic_rb im seeing a very weird issue with wireguard, my network topology is server -- managed l3 switch -- banana pi r4 -- pppoe -- internet. for some reason if the pppoe link drops then wireguard cant reach my VPS on the internet. The packets from the VPS arrive to my server, but then my server's responses get lost to the void 13:02:57
@magic_rb:numtide.commagic_rb ive ran tcpdump and nft monitor trace confirming that my server does send out the packets, yet my banana pi r4 doesn't see them... 13:03:31
@magic_rb:numtide.commagic_rb

on my server i see

12:58:44.828966 00:25:90:85:56:3e > 2e:2c:64:a9:08:37, ethertype IPv4 (0x0800), length 134: (tos 0x88, ttl 64, id 5539, offset 0, flags [none], proto UDP (17), length 120)
    192.168.11.21.6666 > 167.235.230.162.6666: [bad udp cksum 0x5ac1 -> 0x97d9!] UDP, length 92

but no such packet can be seen on my banana pi. I do see other packets from the same server, same port, same wireguard, toward different devices (both LAN and WAN), but this specific 192.168.11.21.6666 > 167.235.230.162.6666 packet is lost to the void somewhere between by server and banana pi

13:04:46
@magic_rb:numtide.commagic_rbi can also ping my VPS no problem, so it seems like the specific UDP state table entry is fucked somehow?13:06:17
@magic_rb:numtide.commagic_rbif i restart wireguard or unplug the ethernet from my server, experience tells me itll fix itself13:06:36
@magic_rb:numtide.commagic_rb
13:08:34.419753 00:25:90:85:56:3e > 2e:2c:64:a9:08:37, ethertype IPv4 (0x0800), length 92: (tos 0x0, ttl 64, id 50063, offset 0, flags [DF], proto UDP (17), length 78)
    192.168.11.21.52425 > 167.235.230.162.6666: [bad udp cksum 0x5a97 -> 0x9609!] UDP, length 50

that packet done using netcat appears on banana pi r4

13:08:59
@magic_rb:numtide.commagic_rbive had this issue before, its always when the pppoe link drops on my banana pi. I do not understand how that can cause the state tables on my server to get mangled13:09:54
@magic_rb:numtide.commagic_rbany suggestions for further debugging?13:14:41
@magic_rb:numtide.commagic_rbonly further thing i can think of is taking a laptop, putting it inbetween the router and the switch and sniffing13:16:51
@magic_rb:matrix.redalder.orgmagic_rbfuck it fixed itself while i was trying to do the laptop thing13:32:33
@magic_rb:numtide.commagic_rbi guess it fixing itself is better that it being broken forever and me loosing connectivity....13:33:53
@magic_rb:numtide.commagic_rbi wonder if someone makes a device that i could just leave there, to sniff13:37:11
@marcel:envs.net@marcel:envs.net left the room.17:46:57
@isabel:isabelroses.comisabel changed their profile picture.20:43:59

There are no newer messages yet.


Back to Room ListRoom Version: 6