> Clearly the traffic between interfaces (br-81fbb014aa75 and veth0bab8b8 is 
> 'rejected.

> Are the containers on a bridge?

> It looks like the interfaces are not properly defined in the zones.

> You said that you used 'docker0' in your interfaces file.


The /etc/shorewall/zones is:

net     ipv4
fw      firewall
dock    ipv4        #'dock' is just an example -- call it anything you like


See the attached file.

> Are you trying to access those containers remotely, if so you need to
> allow traffic from the net zone to the containers zone.

> From the log:

> "SRC=172.18.0.6 DST=172.18.0.1"

> This looks to indicate that ip 0.6 is trying to access 0.1 in the same
> subnet.

> But 'ddev' is listening on 127.0.0.1.


> Any one here using 'ddev' and Shorewall?

> If you are still not getting anywhere, please follow the instructions at
> (2) followed by (3).


> Some more explanation from the OP (1).


> 1) https://forums.mageia.org/en/viewtopic.php?t=14305&p=83812
Yes, this is the same problem. And not solution is found.

> 2) https://shorewall.org/troubleshoot.htm#Connections
> 3) https://shorewall.org/support.htm#Guidelines

> And (4) to read before (2) and 3).
> 4) https://shorewall.org/#GettingStarted

I will have a look on it.


- Franz




Attachment: docker-bridge.txt.gz
Description: docker-bridge.txt.gz

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to