LXC containers (partially) lose inbound packets

N0T3P4D

New Member
Aug 30, 2016
2
0
1
34
Hi,

I run Proxmox on a OVH server in bridge mode. Each LXC container is assigned one or multiple public IPs. From time to time, some containers suffer from the problem that they can't get accessed from outside anymore (like ICMP or TCP packets). Pinging the IP from the host does not work, pinging it from inside the container does. Also, connections initiated from within the container like pinging an outside host or HTTP connections work as expected.

I've unsuccessfully tried to debug the issue. Unfortunately, I cannot seem to find any related log entries. When collecting packets with tcpdump on the host, the incoming packets are recorded correctly.

After some time, everything usually works again as expected. Sometimes, rebooting the container helps, sometimes it doesn't.

Unfortunately, the problem does not seem to be reliably reproducible. However, I _think_ that is somehow related to running PHP FPM in the container, as accessing certain web applications seems to sometimes trigger the problem. I haven't done extensive testing, but I think that running "ordinary" PHP does not cause the problem. Other containers are unaffected, as are other IPs in the affected container.

Proxmox is the latest version from the pve-no-subscription repository. The problem is not new and has occasionally occurred since I deployed the server.

Any help is appreciated!

Regards
N0T3P4D
 
Thanks for the link! Can you ping the server or are there just some affected services like telnet or Samba? Back then when I deployed the server, Proxmox 4 was just released and I think that the problem occurred back then, too. However, I did not upgrade from Proxmox 3 as in your case. My mail-only (Postfix, Dovecot and related stuff) VM works without any issues.
 
My ping works well.
the vm postfix works well too
just a vm with telnet and samba that problem,

but everything works comes in versions 4.0 and earlier
 
Hello,
in my case it seems that decided.

In the VMs that are in Proxmox 4.2 changed all network cards for E1000 and everything seems fine.

In the VMs that are in Proxmox 3.1 / 3.3 the same VMs work with Virtio network card, but the virtio does not work well in Proxmox 4.2
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!