OpenVZ Forum


Home » General » Support » Can not make VE work on external IP
Can not make VE work on external IP [message #20525] Wed, 19 September 2007 19:36 Go to next message
smilie is currently offline  smilie
Messages: 20
Registered: September 2007
Junior Member
Hi,

I have very very simple config, yet can not get it working.

Situation:

VE0 (host):
eth0 Link encap:Ethernet HWaddr 00:30:05:E3:85:FF
inet addr:85.31.186.66 Bcast:85.31.187.255 Mask:255.255.254.0
inet6 addr: fe80::230:5ff:fee3:85ff/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:424372 errors:0 dropped:0 overruns:0 frame:0
TX packets:89904 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:189585227 (180.8 MiB) TX bytes:9085092 (8.6 MiB)
Interrupt:209 Base address:0x4000

lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:10 errors:0 dropped:0 overruns:0 frame:0
TX packets:10 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:1120 (1.0 KiB) TX bytes:1120 (1.0 KiB)

venet0 Link encap:UNSPEC HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00
UP BROADCAST POINTOPOINT RUNNING NOARP MTU:1500 Metric:1
RX packets:5407 errors:0 dropped:0 overruns:0 frame:0
TX packets:4719 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:807407 (788.4 KiB) TX bytes:453922 (443.2 KiB)


VE 10 needs to get following network data:
IP: 85.31.187.53
Broadcast: 85.31.187.255
Netmask: 255.255.254.0
Gateway: 85.31.187.1

I have tried simple venet and also veth, but I can not get it working Sad

With venet, once logged into VE I can go outside (internet), I can also ping VE from VE0 (host), but I can not reach it from internet Sad

Please help!? Smile

Thanx
Aleks
Re: Can not make VE work on external IP [message #20560 is a reply to message #20525] Thu, 20 September 2007 21:44 Go to previous messageGo to next message
smilie is currently offline  smilie
Messages: 20
Registered: September 2007
Junior Member
For crying out loud...

I am almost there Smile

Now, all works: except HN firewall (iptables) is blocking my VE to do DNS resolving.

Meaning, from VE:

[root@www /]# ping www.google.com
ping: unknown host www.google.com

If I stop iptables on HN, then it works Sad

I scooped through forum, tried many different solutions, yet it is not working Sad

Please - HELP! Smile

Thanx,
Aleks
Re: Can not make VE work on external IP [message #20570 is a reply to message #20560] Fri, 21 September 2007 08:13 Go to previous messageGo to next message
maratrus is currently offline  maratrus
Messages: 1495
Registered: August 2007
Location: Moscow
Senior Member
Hi,

You can reach your VE from internet with running firewall on your HN and with downing iptables you can DNS resolving, can't you?

Please, check, that the packets following from/to VE are not drop by firewall and DNS server is set on VE.

Re: Can not make VE work on external IP [message #20596 is a reply to message #20570] Fri, 21 September 2007 16:47 Go to previous messageGo to next message
smilie is currently offline  smilie
Messages: 20
Registered: September 2007
Junior Member
Hi,

How can I work around which traffic should be open?! Neutral I really have very limited knowlegde of networks / networking Sad

Please help (if you need info from some commands, that is not a problem)...

Regards,
Aleks
Re: Can not make VE work on external IP [message #20618 is a reply to message #20596] Mon, 24 September 2007 06:52 Go to previous messageGo to next message
maratrus is currently offline  maratrus
Messages: 1495
Registered: August 2007
Location: Moscow
Senior Member
Quote:

[root@www /]# ping www.google.com
ping: unknown host www.google.com

1. Can you ping www.google.com using it IP address if firewall on your HN is on?
2. Please, type this command into VE and show the result:
"cat /etc/resolv.conf"
3. Can you show the result of "iptables -t filter -L" command on HN?
4. Also "iptables -t nat -L" (on HN)?
[SOLVED] Re: Can not make VE work on external IP [message #20625 is a reply to message #20618] Mon, 24 September 2007 07:28 Go to previous message
smilie is currently offline  smilie
Messages: 20
Registered: September 2007
Junior Member
Hi,

I have disabled iptables on HN. It has further no services running on it as I will be running all from VPS itself.

Now it works all ok. I just had no time, nor nerves to bother with IP forwarding Smile

Regards,
Aleks
Previous Topic: Weird memory numbers
Next Topic: VPS's acting weird after NIC change
Goto Forum:
  


Current Time: Sat Nov 16 10:00:01 GMT 2024

Total time taken to generate the page: 0.03434 seconds