OpenVZ Forum


Home » General » Support » OpenVZ and IP masquerading
Re: OpenVZ and IP masquerading [message #2747 is a reply to message #2725] Wed, 19 April 2006 13:45 Go to previous messageGo to previous message
dev is currently offline  dev
Messages: 1693
Registered: September 2005
Location: Moscow
Senior Member

See FAQ issue here:
http://openvz.org/documentation/faq

Quote:


Q. My node is unaccessible through the network after reboot...

A. You need to check your firewall rules. The problem is that default stateful firewall rules are not available on the host system. To make this functionality available, load the ip_conntrack module with the additional parameter "ip_conntrack_enable_ve0=1". However, this method is highly not recommended because tracking all the connection on the host system lead to performance degradation, more memory usage and also may lead to the total server inaccessibility due to reaching of the overall connection limit.



In latests kernels this behaviour was changed and conntracks are enabled in host system by default.


http://static.openvz.org/userbars/openvz-developer.png
 
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: vzpkgcache issue
Next Topic: *SOLVED* compiling errors with ovzkernel 2.6.16-026test009.1
Goto Forum:
  


Current Time: Thu Jul 11 07:29:13 GMT 2024

Total time taken to generate the page: 0.02289 seconds