> Clearly the traffic between interfaces (br-81fbb014aa75 and veth0bab8b8 is > 'rejected.
> Are the containers on a bridge? > It looks like the interfaces are not properly defined in the zones. > You said that you used 'docker0' in your interfaces file. The /etc/shorewall/zones is: net ipv4 fw firewall dock ipv4 #'dock' is just an example -- call it anything you like See the attached file. > Are you trying to access those containers remotely, if so you need to > allow traffic from the net zone to the containers zone. > From the log: > "SRC=172.18.0.6 DST=172.18.0.1" > This looks to indicate that ip 0.6 is trying to access 0.1 in the same > subnet. > But 'ddev' is listening on 127.0.0.1. > Any one here using 'ddev' and Shorewall? > If you are still not getting anywhere, please follow the instructions at > (2) followed by (3). > Some more explanation from the OP (1). > 1) https://forums.mageia.org/en/viewtopic.php?t=14305&p=83812 Yes, this is the same problem. And not solution is found. > 2) https://shorewall.org/troubleshoot.htm#Connections > 3) https://shorewall.org/support.htm#Guidelines > And (4) to read before (2) and 3). > 4) https://shorewall.org/#GettingStarted I will have a look on it. - Franz
docker-bridge.txt.gz
Description: docker-bridge.txt.gz
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users