[Floating IP][Networking issue] Not able to connect to VM using Floating IP
Jay See
jayachander.it at gmail.com
Mon Jun 3 15:42:13 UTC 2019
Hi,
I have followed OpenStack installation guide for Queens [0][1].
In my setup: I have 3 servers. 1 controller , 2 compute nodes - with Ubuntu
16.04, behind my firewall (OpenBSD)
*Issue 1:* All my severs have several NIC, but I wanted to use at least two
NIC, but I am able to connect to my servers only with one of the NIC. I
could not figure, what is wrong with my settings.
root at h018:~# cat /etc/network/interfaces
# This file describes the network interfaces available on your system
# and how to activate them. For more information, see interfaces(5).
source /etc/network/interfaces.d/*
# The loopback network interface
auto lo
iface lo inet loopback
iface eth5 inet static
iface eth4 inet static
auto eth3
iface eth3 inet static
address 10.4.15.118
netmask 255.255.255.0
network 10.4.15.0
broadcast 10.4.15.255
gateway 10.4.15.1
auto eth2
iface eth2 inet static
address 10.3.15.118
netmask 255.255.255.0
network 10.3.15.0
broadcast 10.3.15.255
gateway 10.3.15.1
auto eth1
iface eth1 inet static
address 10.2.14.118
netmask 255.255.255.0
network 10.2.14.0
broadcast 10.2.14.255
gateway 10.2.14.1
# The primary network interface
auto eth0
iface eth0 inet static
address 10.1.14.118
netmask 255.255.255.0
network 10.1.14.0
broadcast 10.1.14.255
gateway 10.1.14.1
# dns-* options are implemented by the resolvconf package, if installed
dns-nameservers 10.1.14.1 8.8.8.8 8.8.4.4
*Issue 2:* I have completed my OpenStack installation by following [1],
after creating the VM and associating the floating IP, everything is fine.
But I am not able to ping or SSH to the VM. I have add the ICMP and SSH to
my security group rules.
I configured my l2 bridge to use Eth1, which is not reachable from firewall
or this might be all together a different problem, as my VM creation is
successful without any errors.
root at h018:~# openstack network create --share --external
--provider-physical-network provider --provider-network-type flat
provider-network
+---------------------------+--------------------------------------+
| Field | Value |
+---------------------------+--------------------------------------+
| admin_state_up | UP |
| availability_zone_hints | |
| availability_zones | |
| created_at | 2019-06-03T09:45:20Z |
| description | |
| dns_domain | None |
| id | 5e8f5ec9-9a65-4259-a246-1c7f95a2f33a |
| ipv4_address_scope | None |
| ipv6_address_scope | None |
| is_default | False |
| is_vlan_transparent | None |
| mtu | 1500 |
| name | provider-network |
| port_security_enabled | True |
| project_id | bb0f22d6efd64b31be6c37edc796d53e |
| provider:network_type | flat |
| provider:physical_network | provider |
| provider:segmentation_id | None |
| qos_policy_id | None |
| revision_number | 5 |
| router:external | External |
| segments | None |
| shared | True |
| status | ACTIVE |
| subnets | |
| tags | |
| updated_at | 2019-06-03T09:45:20Z |
+---------------------------+--------------------------------------+
root at h018:~#
root at h018:~# openstack subnet create --network provider-network \
> --allocation-pool start=XX.XX.169.101,end=XX.XX.169.250 \
> --dns-nameserver 8.8.4.4 --gateway XX.XX.169.1 \
> --subnet-range XX.XX.169.0/24 provider
+-------------------+--------------------------------------+
| Field | Value |
+-------------------+--------------------------------------+
| allocation_pools | XX.XX.169.101-XX.XX.169.250 |
| cidr | XX.XX.169.0/24 |
| created_at | 2019-06-03T09:49:45Z |
| description | |
| dns_nameservers | 8.8.4.4 |
| enable_dhcp | True |
| gateway_ip | XX.XX.169.1 |
| host_routes | |
| id | 51fb740f-1f06-4f6c-93c5-3690488e3980 |
| ip_version | 4 |
| ipv6_address_mode | None |
| ipv6_ra_mode | None |
| name | provider |
| network_id | 5e8f5ec9-9a65-4259-a246-1c7f95a2f33a |
| project_id | bb0f22d6efd64b31be6c37edc796d53e |
| revision_number | 0 |
| segment_id | None |
| service_types | |
| subnetpool_id | None |
| tags | |
| updated_at | 2019-06-03T09:49:45Z |
+-------------------+--------------------------------------+
root at h018:~# neutron net-external-list
neutron CLI is deprecated and will be removed in the future. Use openstack
CLI instead.
+--------------------------------------+------------------+----------------------------------+------------------------------------------------------+
| id | name | tenant_id
| subnets |
+--------------------------------------+------------------+----------------------------------+------------------------------------------------------+
| 5e8f5ec9-9a65-4259-a246-1c7f95a2f33a | provider-network |
bb0f22d6efd64b31be6c37edc796d53e | 51fb740f-1f06-4f6c-93c5-3690488e3980
XX.XX.169.0/24 |
+--------------------------------------+------------------+----------------------------------+------------------------------------------------------+
root at h018:~# openstack network list
+--------------------------------------+------------------+--------------------------------------+
| ID | Name | Subnets
|
+--------------------------------------+------------------+--------------------------------------+
| 3ee95928-012f-4a55-a0b3-e277c2d45080 | demo-network |
3427b6ac-3bc0-4529-9035-33e1ab05cb64 |
| 5e8f5ec9-9a65-4259-a246-1c7f95a2f33a | provider-network |
51fb740f-1f06-4f6c-93c5-3690488e3980 |
+--------------------------------------+------------------+--------------------------------------+
root at h018:~# nova list
+--------------------------------------+--------+--------+------------+-------------+----------------------------------------+
| ID | Name | Status | Task State |
Power State | Networks |
+--------------------------------------+--------+--------+------------+-------------+----------------------------------------+
| 3f8ab4c2-9047-47c4-8634-0c93cf7d7460 | test15 | ACTIVE | - |
Running | demo-network=10.1.0.12, XX.XX.169.108 |
+--------------------------------------+--------+--------+------------+-------------+----------------------------------------+
root at h018:~# openstack port list
+--------------------------------------+------+-------------------+-------------------------------------------------------------------------------+--------+
| ID | Name | MAC Address | Fixed
IP Addresses |
Status |
+--------------------------------------+------+-------------------+-------------------------------------------------------------------------------+--------+
| 037d801d-5cae-4d88-ae2d-a4289a542057 | | fa:16:3e:a6:68:7b |
ip_address='10.1.0.2', subnet_id='3427b6ac-3bc0-4529-9035-33e1ab05cb64'
| ACTIVE |
| 327fe5fe-4288-4d80-850c-fa7d7e29d3aa | | fa:16:3e:2f:0f:dd |
ip_address='XX.XX.169.101',
subnet_id='51fb740f-1f06-4f6c-93c5-3690488e3980' | ACTIVE |
| 4208ac23-42bf-44ed-8b0d-af1e615b2542 | | fa:16:3e:c5:cb:94 |
ip_address='XX.XX.169.108',
subnet_id='51fb740f-1f06-4f6c-93c5-3690488e3980' | N/A | (VM)
| 642729e6-f84c-4742-89b2-e5924d8e188e | | fa:16:3e:37:97:eb |
ip_address='XX.XX.169.107',
subnet_id='51fb740f-1f06-4f6c-93c5-3690488e3980' | ACTIVE |
| bf5c3061-0c40-41da-bebf-95650e055ce2 | | fa:16:3e:03:bd:f8 |
ip_address='10.1.0.1', subnet_id='3427b6ac-3bc0-4529-9035-33e1ab05cb64'
| ACTIVE |
| fdf976c0-99c6-49e4-b3db-9f26a09da7a9 | | fa:16:3e:c0:be:e9 |
ip_address='10.1.0.12', subnet_id='3427b6ac-3bc0-4529-9035-33e1ab05cb64'
| ACTIVE |
+--------------------------------------+------+-------------------+-------------------------------------------------------------------------------+--------+
root at h018:~# ping -c4 XX.XX.169.101
PING XX.XX.169.101 (XX.XX.169.101) 56(84) bytes of data.
--- XX.XX.169.101 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3024ms
root at h018:~# ping -c4 XX.XX.169.107
PING XX.XX.169.107 (XX.XX.169.107) 56(84) bytes of data.
--- XX.XX.169.107 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3023ms
root at h018:~# ping -c4 XX.XX.169.108
PING XX.XX.169.108 (XX.XX.169.108) 56(84) bytes of data.
--- XX.XX.169.108 ping statistics ---
4 packets transmitted, 0 received, 100% packet loss, time 3001ms
root at h018:~# openstack server list
+--------------------------------------+--------+--------+----------------------------------------+-------------+----------+
| ID | Name | Status | Networks
| Image | Flavor |
+--------------------------------------+--------+--------+----------------------------------------+-------------+----------+
| 3f8ab4c2-9047-47c4-8634-0c93cf7d7460 | test15 | ACTIVE |
demo-network=10.1.0.12, XX.XX.169.108 | Ubuntu16.04 | m1.small |
+--------------------------------------+--------+--------+----------------------------------------+-------------+----------+
root at h018:~# ip route
default via 10.1.14.1 dev eth0
10.1.14.0/24 dev eth0 proto kernel scope link src 10.1.14.118
10.2.14.0/24 dev brq5e8f5ec9-9a proto kernel scope link src 10.2.14.118
10.3.15.0/24 dev eth2 proto kernel scope link src 10.3.15.118
10.4.15.0/24 dev eth3 proto kernel scope link src 10.4.15.118
root at h018:~# ifconfig
brq3ee95928-01 Link encap:Ethernet HWaddr 72:77:4f:54:6a:93
inet6 addr: fe80::4459:b6ff:feb0:3352/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1450 Metric:1
RX packets:34 errors:0 dropped:0 overruns:0 frame:0
TX packets:10 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:3144 (3.1 KB) TX bytes:828 (828.0 B)
brq5e8f5ec9-9a Link encap:Ethernet HWaddr 24:6e:96:84:25:1a
inet addr:10.2.14.118 Bcast:10.2.14.255 Mask:255.255.255.0
inet6 addr: fe80::286d:e0ff:fefa:15a4/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:118004 errors:0 dropped:0 overruns:0 frame:0
TX packets:10175 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:5834402 (5.8 MB) TX bytes:1430189 (1.4 MB)
eth0 Link encap:Ethernet HWaddr 24:6e:96:84:25:18
inet addr:10.1.14.118 Bcast:10.1.14.255 Mask:255.255.255.0
inet6 addr: fe80::266e:96ff:fe84:2518/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:1977142 errors:0 dropped:0 overruns:0 frame:0
TX packets:2514801 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:1013827869 (1.0 GB) TX bytes:1529933345 (1.5 GB)
eth1 Link encap:Ethernet HWaddr 24:6e:96:84:25:1a
inet6 addr: fe80::266e:96ff:fe84:251a/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:2622581 errors:0 dropped:14027 overruns:0 frame:0
TX packets:327841 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:166482697 (166.4 MB) TX bytes:28701550 (28.7 MB)
eth2 Link encap:Ethernet HWaddr b4:96:91:0f:cd:28
inet addr:10.3.15.118 Bcast:10.3.15.255 Mask:255.255.255.0
inet6 addr: fe80::b696:91ff:fe0f:cd28/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:272 errors:0 dropped:0 overruns:0 frame:0
TX packets:45 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:16452 (16.4 KB) TX bytes:2370 (2.3 KB)
eth3 Link encap:Ethernet HWaddr b4:96:91:0f:cd:2a
inet addr:10.4.15.118 Bcast:10.4.15.255 Mask:255.255.255.0
inet6 addr: fe80::b696:91ff:fe0f:cd2a/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:7546483 errors:0 dropped:0 overruns:0 frame:0
TX packets:43 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:452789254 (452.7 MB) TX bytes:2118 (2.1 KB)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
inet6 addr: ::1/128 Scope:Host
UP LOOPBACK RUNNING MTU:65536 Metric:1
RX packets:42373349 errors:0 dropped:0 overruns:0 frame:0
TX packets:42373349 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1
RX bytes:12244256693 (12.2 GB) TX bytes:12244256693 (12.2 GB)
tap037d801d-5c Link encap:Ethernet HWaddr ba:7a:4c:72:fb:05
UP BROADCAST RUNNING MULTICAST MTU:1450 Metric:1
RX packets:9 errors:0 dropped:0 overruns:0 frame:0
TX packets:40 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:1950 (1.9 KB) TX bytes:4088 (4.0 KB)
tap327fe5fe-42 Link encap:Ethernet HWaddr 6e:a2:fd:08:dc:bb
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:7 errors:0 dropped:0 overruns:0 frame:0
TX packets:107768 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:618 (618.0 B) TX bytes:6253098 (6.2 MB)
tap642729e6-f8 Link encap:Ethernet HWaddr 5a:11:77:05:54:e0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:11858 errors:0 dropped:0 overruns:0 frame:0
TX packets:94601 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:498656 (498.6 KB) TX bytes:5676060 (5.6 MB)
tapbf5c3061-0c Link encap:Ethernet HWaddr 72:77:4f:54:6a:93
UP BROADCAST RUNNING MULTICAST MTU:1450 Metric:1
RX packets:9122 errors:0 dropped:0 overruns:0 frame:0
TX packets:9186 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:928979 (928.9 KB) TX bytes:711090 (711.0 KB)
vxlan-8 Link encap:Ethernet HWaddr a6:77:6e:2b:f7:1f
UP BROADCAST RUNNING MULTICAST MTU:1450 Metric:1
RX packets:9186 errors:0 dropped:0 overruns:0 frame:0
TX packets:9113 errors:0 dropped:19 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:582486 (582.4 KB) TX bytes:801919 (801.9 KB)
root at h018:~#
If any other information is required , please let me know. I will share the
info. I have seen many posts with similar issues, steps which worked for
them are not working in my setup. May be I have done something wrong, not
able to figure out that on my own.
Thanks and regards,
Jayachander.
[0] https://docs.openstack.org/install-guide/.
[1]
https://docs.openstack.org/install-guide/openstack-services.html#minimal-deployment-for-queens
--
P *SAVE PAPER – Please do not print this e-mail unless absolutely
necessary.*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack-discuss/attachments/20190603/cc232c88/attachment-0001.html>
More information about the openstack-discuss
mailing list