Domäne01 kein Netz verfügbar


#1

gibt es probl. mit den servern?
bin zwar eingewählt aber es kommt keine verbindung zustande, knoten freifunk-M2 und ff-offload
kann das jemand testen?


#2

Soweit ich es testen konnte, tritt das am Gateway greyworm-01 auf. Dieses Gateway hängt (u. a.) am Backbone-Server des1. Hier scheint jedoch die Verbindung gestört zu sein. Das syslog auf des1 meldet folgendes:

Jan 14 17:52:03 des1 kernel: [68582.761590] net_ratelimit: 3 callbacks suppressed
Jan 14 17:52:03 des1 kernel: [68582.761596] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:03 des1 kernel: [68582.915755] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:03 des1 kernel: [68583.107147] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:04 des1 kernel: [68583.601720] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:04 des1 kernel: [68583.684505] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:52:04 des1 kernel: [68583.736323] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:04 des1 kernel: [68583.886616] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:09 des1 kernel: [68588.331350] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:09 des1 kernel: [68588.548852] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:11 des1 kernel: [68590.654897] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:52:16 des1 kernel: [68595.462468] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:24 des1 kernel: [68604.186963] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:52:24 des1 kernel: [68604.191202] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:25 des1 kernel: [68604.741923] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:25 des1 kernel: [68604.741958] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:25 des1 kernel: [68605.011377] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:25 des1 kernel: [68605.011429] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:25 des1 kernel: [68605.052351] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:26 des1 kernel: [68605.954423] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:26 des1 kernel: [68606.230416] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:31 des1 kernel: [68610.440990] net_ratelimit: 15 callbacks suppressed
Jan 14 17:52:31 des1 kernel: [68610.441013] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:31 des1 kernel: [68611.129873] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:31 des1 kernel: [68611.129907] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:31 des1 kernel: [68611.249199] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:33 des1 kernel: [68612.511829] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:33 des1 kernel: [68612.511854] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:38 des1 kernel: [68617.315851] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:38 des1 kernel: [68617.316208] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68621.698271] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.071045] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.073370] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.073394] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.094323] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.094781] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:42 des1 kernel: [68622.101378] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:43 des1 kernel: [68622.402606] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:52:43 des1 kernel: [68622.763464] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:52:48 des1 bird: Netlink: File exists
Jan 14 17:52:48 des1 kernel: [68627.670230] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:48 des1 kernel: [68627.670548] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:52:48 des1 kernel: [68627.670753] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:02 des1 kernel: [68641.748018] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:53:02 des1 kernel: [68641.748032] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:06 des1 kernel: [68645.995449] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:07 des1 kernel: [68646.976983] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:53:09 des1 kernel: [68648.521447] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:09 des1 kernel: [68649.001257] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:09 des1 kernel: [68649.164446] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:53:12 des1 kernel: [68651.405415] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:13 des1 kernel: [68653.023914] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:13 des1 kernel: [68653.028046] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:14 des1 kernel: [68653.809866] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:53:14 des1 kernel: [68653.959481] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:14 des1 kernel: [68653.995169] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x29
Jan 14 17:53:15 des1 kernel: [68654.369127] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a
Jan 14 17:53:15 des1 kernel: [68654.664546] ip_tunnel: non-ECT from 89.163.247.45 with TOS=0x2a

Wir sind dran.


#3

Update:
Habe den Tunnel zwischen des1 und greyworm-01 gerade temporär eingerissen. Jetzt wird wieder über Backbone fanlin geroutet. Meine Tests funktionieren nun wieder, magst du eben testen?


#4

danke für die info :kissing:


#5

Ich habe das gleich mit dem tunnel von ffwaf-srv2 gemacht. Ich hatte geschaut, ob bgp nicht rausgeht und co., aber schien alles in Ordnung.


#6

jo läuft wieder flüssig :smile:


#7

Techniker-Gerbrabbel:

NAT ist kaputt. Wir schicken in Richtung Rheinland, aber es kommt nix zurück:

root@des1 ~ # cat /proc/net/ip_conntrack  | wc -l
2401
root@des1 ~ # cat /proc/net/ip_conntrack  | grep UNREPLIED | wc -l
2443