Uploaded image for project: 'OpenVZ'
  1. OpenVZ
  2. OVZ-4777

ip6tables does not work in VE

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Major
    • Resolution: Duplicate
    • Fix Version/s: OpenVZ-legacy
    • Component/s: Containers::Userspace
    • Security Level: Public
    • Environment:
      Operating System: Debian
      Platform: x86_64 (AMD64)

      Description

      For more information see http://bugs.debian.org/590321


      Hi,

      I've just discovered, that in a squeeze VE on a squeeze OpenVZ host, ip6tables does not work:

      root@guest:~# ip6tables -nL
      FATAL: Module ip6_tables not found.
      ip6tables v1.4.8: can't initialize ip6tables table `filter': Permission denied (you must be root)
      Perhaps ip6tables or your kernel needs to be upgraded.

      vz.conf vars:
      ## IPv4 iptables kernel modules
      IPTABLES="ipt_REJECT ipt_tos ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length"

      ## Enable IPv6
      IPV6="yes"

      ## IPv6 ip6tables kernel modules
      IP6TABLES="ip6_tables ip6table_filter ip6table_mangle ip6t_REJECT"

      root@guest:~# cat /proc/net/ip6_tables_names
      mangle
      filter


      I'm unsure where to go debug next; filing against vzctl as I think this is probably a configuration problem.

      Thanks,
      Christian

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              kir Kir Kolyshkin
              Reporter:
              ola@inguza.com Ola Lundqvist
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved: