On 10/25/2011 03:09 PM, Serge E. Hallyn wrote:
> Quoting Ulli Horlacher (frams...@rus.uni-stuttgart.de):
>> On Mon 2011-10-24 (18:56), Ulli Horlacher wrote:
>>
>>> vms1 is an Ubuntu 10.04 based host system (4 * Xeon 64bit) with:
>>>
>>> root@vms1:/lxc# uname -a
>>> Linux vms1 2.6.38-11-server #50~l
Quoting Ulli Horlacher (frams...@rus.uni-stuttgart.de):
> On Mon 2011-10-24 (18:56), Ulli Horlacher wrote:
>
> > vms1 is an Ubuntu 10.04 based host system (4 * Xeon 64bit) with:
> >
> > root@vms1:/lxc# uname -a
> > Linux vms1 2.6.38-11-server #50~lucid1-Ubuntu SMP Tue Sep 13 22:10:53 UTC
> > 201
Le 25/10/2011 14:39, Ulli Horlacher a écrit :
> On Tue 2011-10-25 (08:58), Jean-Philippe Menil wrote:
>
>> Do you use the recent match in your iptables rules?
> THIS was the decisive tip!
>
> After commenting out the "iptables -m recent" rules in the container
> boot configuration, the host does no
On Tue 2011-10-25 (08:58), Jean-Philippe Menil wrote:
> Do you use the recent match in your iptables rules?
THIS was the decisive tip!
After commenting out the "iptables -m recent" rules in the container
boot configuration, the host does not crash any more on lxc-stop!
I can live without the ip
On Tue 2011-10-25 (12:50), Joerg Gollnick wrote:
> Am Dienstag, 25. Oktober 2011, 12:36:36 schrieb Ulli Horlacher:
> > On Tue 2011-10-25 (09:11), Joerg Gollnick wrote:
> > > Try to modprobe nfnetfilter as early as possible in user space (Ubuntu
> > > hint add to /etc/modules).
> >
> > There is no
Am Dienstag, 25. Oktober 2011, 12:36:36 schrieb Ulli Horlacher:
> On Tue 2011-10-25 (09:11), Joerg Gollnick wrote:
> > Try to modprobe nfnetfilter as early as possible in user space (Ubuntu
> > hint add to /etc/modules).
>
> There is no such module:
>
> root@vms1:/etc# lsmod | grep filter
> iptab
On Tue 2011-10-25 (08:58), Jean-Philippe Menil wrote:
> your kernel seems to have CONFIG_NETFILTER_XT_MATCH_RECENT set?
root@vms1:/etc# uname -a
Linux vms1 2.6.38-12-server #51~lucid1-Ubuntu SMP Thu Sep 29 20:09:53 UTC 2011
x86_64 GNU/Linux
root@vms1:/etc# grep CONFIG_NETFILTER_XT_MATCH_RECENT
On Tue 2011-10-25 (09:11), Joerg Gollnick wrote:
> Try to modprobe nfnetfilter as early as possible in user space (Ubuntu hint
> add
> to /etc/modules).
There is no such module:
root@vms1:/etc# lsmod | grep filter
iptable_filter 12810 1
ip_tables 27177 2 iptable_nat,ipt
Am Dienstag, 25. Oktober 2011, 08:52:58 schrieb Ulli Horlacher:
> On Mon 2011-10-24 (18:56), Ulli Horlacher wrote:
> > vms1 is an Ubuntu 10.04 based host system (4 * Xeon 64bit) with:
> >
> > root@vms1:/lxc# uname -a
> > Linux vms1 2.6.38-11-server #50~lucid1-Ubuntu SMP Tue Sep 13 22:10:53
> > UTC