OpenVZ Forum


Home » General » Support » *SOLVED* Kernel Request -FC6 OpenVZ
*SOLVED* Kernel Request -FC6 OpenVZ [message #11334] Mon, 19 March 2007 21:37 Go to next message
cberic3 is currently offline  cberic3
Messages: 8
Registered: March 2007
Junior Member
**n00b alert**

Can anyone duplicate the efforts that have been done for FC5 for FC6 (2.6.20 if possible)?

I tried using the RHEL5 newly released ovz kernel on a fresh install of FC6 20070111 Re-Spin, but ssh stopped working.

-Eric

[Updated on: Fri, 23 March 2007 07:33] by Moderator

Report message to a moderator

Re: Kernel Request -FC6 OpenVZ [message #11339 is a reply to message #11334] Tue, 20 March 2007 06:55 Go to previous messageGo to next message
Vasily Tarasov is currently offline  Vasily Tarasov
Messages: 1345
Registered: January 2006
Senior Member
Hello,

Currently porting of OpenVZ to 2.6.20 is in process.

However, ssh should perfectly work on RHEL5-based kernel. Moreover, I convinced, that your problem is not kernel-related: something is tuned not properly. Give us more information and we will try to help you.

Vaily.
Re: Kernel Request -FC6 OpenVZ [message #11343 is a reply to message #11334] Tue, 20 March 2007 08:00 Go to previous messageGo to next message
kir is currently offline  kir
Messages: 1645
Registered: August 2005
Location: Moscow, Russia
Senior Member

I suspect the trick is to remove the following line from /etc/modules.conf (or /etc/modprobe.conf) and reboot. The line is:

options ip_conntrack ip_conntrack_disable_ve0=1


Kir Kolyshkin
http://static.openvz.org/userbars/openvz-developer.png
Re: Kernel Request -FC6 OpenVZ [message #11349 is a reply to message #11343] Tue, 20 March 2007 12:54 Go to previous messageGo to next message
cberic3 is currently offline  cberic3
Messages: 8
Registered: March 2007
Junior Member
Basically, I was just at the point of installing all the necessary RPM's for OpenVZ and installing the kernel. I was trying to ssh from the hardware node to another physical machine as well as another physical machine to this particular hardware node. I hadn't gotten to the point of creating a VPS.

-Eric
Re: Kernel Request -FC6 OpenVZ [message #11411 is a reply to message #11334] Thu, 22 March 2007 20:34 Go to previous messageGo to next message
cberic3 is currently offline  cberic3
Messages: 8
Registered: March 2007
Junior Member
I just tried the kernel on a node that was setup the same day in an almost identical manner. It worked fine.

I went to the other non working node, shut off iptables and now I can connect. I'm not sure what is different, but I did a diff from the iptables and iptables-config from the working node and they are the same configurations.

-Eric
Re: Kernel Request -FC6 OpenVZ [message #11413 is a reply to message #11343] Thu, 22 March 2007 21:36 Go to previous messageGo to next message
cberic3 is currently offline  cberic3
Messages: 8
Registered: March 2007
Junior Member
kir, you are right~!

How did that line get on one node but not the other? What does this line do?

-Eric
Re: Kernel Request -FC6 OpenVZ [message #11417 is a reply to message #11413] Fri, 23 March 2007 01:29 Go to previous message
kir is currently offline  kir
Messages: 1645
Registered: August 2005
Location: Moscow, Russia
Senior Member

The line was (mistakenly) added by postinstall script from rhel5 028stab021 kernel. For 023 kernel, this script was fixed.

This option disables firewall connection tracking for VE0 (and only for VE0) -- and looks like your VE0 firewall uses some conntracks rules.


Kir Kolyshkin
http://static.openvz.org/userbars/openvz-developer.png
Previous Topic: "VE already locked" after unsuccessful migration
Next Topic: *SOLVED* routing problem
Goto Forum:
  


Current Time: Fri Aug 01 22:43:56 GMT 2025

Total time taken to generate the page: 1.26356 seconds