No networking in containers, missing dnsmasq? snap on debian

Hi,

I’ve been happily using the lxd snap on Debian buster for some time, with many containers.

I recently upgraded to Debian bullseye, and after a reboot, my containers didn’t have any networking anymore.

When I would lxc shell into one of the containers, I would see this:

WARNING: cgroup v2 is not fully supported yet, proceeding with partial confinement

I searched around and found some posts related to this and I found that if I added systemd.unified_cgroup_hierarchy=0 to my grub linux commandline, rebuild the grub config and then rebooted, that message went away.

However, I still do not have networking. I see that lxd network list shows me the bridge interface and it has an IP.

I noticed I could enter the container and manually set an IP on the interface, and set the default route, and then edit the resolv.conf and things worked. So it seems like the containers are not successfully doing DHCP.

I seem to recall seeing on the host a LXD-specific dnsmasq running, but I dont see that now.

What can I look for to find out why this dnsmasq isn’t being launched with my lxd?

Thanks for any suggestions! I’m happy to provide any debugging info I can.

Please provide output of the following on the host:

ip a
ip r
sudo ps aux | grep dnsmasq
sudo ss -ulpn
# ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: enp0s25: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether d0:50:99:8e:a7:87 brd ff:ff:ff:ff:ff:ff
    inet 192.168.1.111/24 brd 192.168.1.255 scope global dynamic noprefixroute enp0s25
       valid_lft 42008sec preferred_lft 42008sec
    inet6 fe80::d250:99ff:fe8e:a787/64 scope link noprefixroute 
       valid_lft forever preferred_lft forever
3: lxdbr0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UP group default qlen 1000
    link/ether 00:16:3e:e2:8d:a0 brd ff:ff:ff:ff:ff:ff
    inet 10.155.80.1/24 scope global lxdbr0
       valid_lft forever preferred_lft forever
    inet6 fd42:fce7:f7ba:df2a::1/64 scope global 
       valid_lft forever preferred_lft forever
    inet6 fe80::216:3eff:fee2:8da0/64 scope link 
       valid_lft forever preferred_lft forever
7: veth3417b0c8@if6: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue master lxdbr0 state UP group default qlen 1000
    link/ether de:6b:7f:45:1a:26 brd ff:ff:ff:ff:ff:ff link-netnsid 0
9: veth42575a99@if8: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue master lxdbr0 state UP group default qlen 1000
    link/ether c2:02:bb:ad:a0:58 brd ff:ff:ff:ff:ff:ff link-netnsid 1
# ip r
default via 192.168.1.1 dev enp0s25 proto dhcp metric 100 
10.155.80.0/24 dev lxdbr0 proto kernel scope link src 10.155.80.1 
192.168.1.0/24 dev enp0s25 proto kernel scope link src 192.168.1.111 metric 100 
# ps aux |grep dnsmasq
dnsmasq    16512  0.0  0.0  19872  2156 ?        S    Apr13   0:00 /usr/sbin/dnsmasq -x /run/dnsmasq/dnsmasq.pid -u dnsmasq -r /run/dnsmasq/resolv.conf -7 /etc/dnsmasq.d,.dpkg-dist,.dpkg-old,.dpkg-new --local-service --trust-anchor=.,20326,8,2,e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d
root     1587752  0.0  0.0  11536   716 pts/13   S+   10:19   0:00 grep dnsmasq
# ss -ulpn
State                Recv-Q                Send-Q                                                     Local Address:Port                                Peer Address:Port               Process                                                                 
UNCONN               0                     0                                                                0.0.0.0:48869                                    0.0.0.0:*                   users:(("mosh-client",pid=12566,fd=4))                                 
UNCONN               0                     0                                                                0.0.0.0:53                                       0.0.0.0:*                   users:(("dnsmasq",pid=16512,fd=4))                                     
UNCONN               0                     0                                                                0.0.0.0:111                                      0.0.0.0:*                   users:(("rpcbind",pid=864,fd=5),("systemd",pid=1,fd=57))               
UNCONN               0                     0                                                            10.155.80.1:123                                      0.0.0.0:*                   users:(("ntpd",pid=1096,fd=25))                                        
UNCONN               0                     0                                                          192.168.1.111:123                                      0.0.0.0:*                   users:(("ntpd",pid=1096,fd=23))                                        
UNCONN               0                     0                                                              127.0.0.1:123                                      0.0.0.0:*                   users:(("ntpd",pid=1096,fd=18))                                        
UNCONN               0                     0                                                                0.0.0.0:123                                      0.0.0.0:*                   users:(("ntpd",pid=1096,fd=17))                                        
UNCONN               0                     0                                                                0.0.0.0:49705                                    0.0.0.0:*                   users:(("rpc.mountd",pid=1076,fd=8))                                   
UNCONN               0                     0                                                                0.0.0.0:631                                      0.0.0.0:*                   users:(("cups-browsed",pid=1174752,fd=7))                              
UNCONN               0                     0                                                                0.0.0.0:2049                                     0.0.0.0:*                                                                                          
UNCONN               0                     0                                                                0.0.0.0:44225                                    0.0.0.0:*                                                                                          
UNCONN               0                     0                                                                0.0.0.0:52577                                    0.0.0.0:*                   users:(("apt-cacher-ng",pid=1047,fd=13))                               
UNCONN               0                     0                                                                0.0.0.0:54681                                    0.0.0.0:*                   users:(("rpc.mountd",pid=1076,fd=12))                                  
UNCONN               0                     0                                                                0.0.0.0:39338                                    0.0.0.0:*                   users:(("rpc.mountd",pid=1076,fd=16))                                  
UNCONN               0                     0                                                                   [::]:53                                          [::]:*                   users:(("dnsmasq",pid=16512,fd=6))                                     
UNCONN               0                     0                                                                   [::]:111                                         [::]:*                   users:(("rpcbind",pid=864,fd=7),("systemd",pid=1,fd=60))               
UNCONN               0                     0                                      [fe80::216:3eff:fee2:8da0]%lxdbr0:123                                         [::]:*                   users:(("ntpd",pid=1096,fd=27))                                        
UNCONN               0                     0                                               [fd42:fce7:f7ba:df2a::1]:123                                         [::]:*                   users:(("ntpd",pid=1096,fd=26))                                        
UNCONN               0                     0                                    [fe80::d250:99ff:fe8e:a787]%enp0s25:123                                         [::]:*                   users:(("ntpd",pid=1096,fd=24))                                        
UNCONN               0                     0                                                                  [::1]:123                                         [::]:*                   users:(("ntpd",pid=1096,fd=19))                                        
UNCONN               0                     0                                                                   [::]:123                                         [::]:*                   users:(("ntpd",pid=1096,fd=16))                                        
UNCONN               0                     0                                                                   [::]:57838                                       [::]:*                   users:(("rpc.mountd",pid=1076,fd=18))                                  
UNCONN               0                     0                                                                   [::]:59132                                       [::]:*                   users:(("rpc.mountd",pid=1076,fd=14))                                  
UNCONN               0                     0                                                                   [::]:2049                                        [::]:*                                                                                          
UNCONN               0                     0                                                                   [::]:59915                                       [::]:*                                                                                          
UNCONN               0                     0                                                                   [::]:54387                                       [::]:*                   users:(("rpc.mountd",pid=1076,fd=10))                                  

You have another instance of dnsmasq that is listening on port 53 on all interfaces, this will prevent LXD’s dnsmasq from starting and listening only on lxdbr0 for DNS and DHCP.

Please disable the dnsmasq instance or reconfigure it to not listen on lxdbr0.

Indeed, this seems to be the problem. Thank you!!

1 Like

Hi, Friends!

I’m facing a similar problem, but get no idea how to solve it. That’s my outputs:

ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: enp5s0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 24:4b:fe:0c:5c:09 brd ff:ff:ff:ff:ff:ff
    inet 192.168.1.10/24 brd 192.168.1.255 scope global noprefixroute enp5s0
       valid_lft forever preferred_lft forever
    inet6 fe80::294d:1be8:caee:7364/64 scope link noprefixroute 
       valid_lft forever preferred_lft forever
4: lxdbr0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default qlen 1000
    link/ether 00:16:3e:db:ee:60 brd ff:ff:ff:ff:ff:ff
    inet 10.254.233.1/24 scope global lxdbr0
       valid_lft forever preferred_lft forever
    inet6 fd42:53f3:ffdb:5353::1/64 scope global 
       valid_lft forever preferred_lft forever
    inet6 fe80::216:3eff:fedb:ee60/64 scope link 
       valid_lft forever preferred_lft forever

ip r
default via 192.168.1.1 dev enp5s0 proto static metric 100 
10.254.233.0/24 dev lxdbr0 proto kernel scope link src 10.254.233.1 linkdown 
192.168.1.0/24 dev enp5s0 proto kernel scope link src 192.168.1.10 metric 100 

sudo ps aux | grep dnsmasq
[sudo] senha para alex: 
lxd         4261  0.0  0.0   7212  3720 ?        Ss   16:27   0:00 dnsmasq --keep-in-foreground --strict-order --bind-interfaces --except-interface=lo --pid-file= --no-ping --interface=lxdbr0 --dhcp-rapid-commit --quiet-dhcp --quiet-dhcp6 --quiet-ra --listen-address=10.254.233.1 --dhcp-no-override --dhcp-authoritative --dhcp-leasefile=/var/snap/lxd/common/lxd/networks/lxdbr0/dnsmasq.leases --dhcp-hostsfile=/var/snap/lxd/common/lxd/networks/lxdbr0/dnsmasq.hosts --dhcp-range 10.254.233.2,10.254.233.254,1h --listen-address=fd42:53f3:ffdb:5353::1 --enable-ra --dhcp-range ::,constructor:lxdbr0,ra-stateless,ra-names -s lxd --interface-name _gateway.lxd,lxdbr0 -S /lxd/ --conf-file=/var/snap/lxd/common/lxd/networks/lxdbr0/dnsmasq.raw -u lxd -g lxd
alex        4882  0.0  0.0   6200   656 pts/1    S+   16:29   0:00 grep dnsmasq

sudo ss -ulpn
State  Recv-Q  Send-Q              Local Address:Port    Peer Address:Port Process                                 
UNCONN 0       0                         0.0.0.0:5353         0.0.0.0:*     users:(("avahi-daemon",pid=807,fd=12)) 
UNCONN 0       0                    10.254.233.1:53           0.0.0.0:*     users:(("dnsmasq",pid=4261,fd=8))      
UNCONN 0       0                  0.0.0.0%lxdbr0:67           0.0.0.0:*     users:(("dnsmasq",pid=4261,fd=4))      
UNCONN 0       0                         0.0.0.0:631          0.0.0.0:*     users:(("cups-browsed",pid=1041,fd=7)) 
UNCONN 0       0                         0.0.0.0:34163        0.0.0.0:*     users:(("avahi-daemon",pid=807,fd=14)) 
UNCONN 0       0                            [::]:5353            [::]:*     users:(("avahi-daemon",pid=807,fd=13)) 
UNCONN 0       0                            [::]:46014           [::]:*     users:(("avahi-daemon",pid=807,fd=15)) 
UNCONN 0       0        [fd42:53f3:ffdb:5353::1]:53              [::]:*     users:(("dnsmasq",pid=4261,fd=10))     
UNCONN 0       0                     [::]%lxdbr0:547             [::]:*     users:(("dnsmasq",pid=4261,fd=6))      
UNCONN 0       0                               *:1716               *:*     users:(("kdeconnectd",pid=2622,fd=20))

Thanks in advance

Dnsmasq looks OK, its most likely a firewall issue.

Can you show output of sudo iptables-save and sudo nft list ruleset.

Also, show output of ip a on host. Thanks

That’s the outputs:

sudo iptables-save
[sudo] senha para alex:

Warning: iptables-legacy tables present, use iptables-legacy-save to see them

sudo iptables-legacy-save

Generated by iptables-save v1.8.7 on Mon Nov 22 14:49:09 2021

*raw
:PREROUTING ACCEPT [5769:6200871]
:OUTPUT ACCEPT [5334:573885]
COMMIT

Completed on Mon Nov 22 14:49:09 2021

Generated by iptables-save v1.8.7 on Mon Nov 22 14:49:09 2021

*mangle
:PREROUTING ACCEPT [5769:6200871]
:INPUT ACCEPT [5769:6200871]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [5334:573885]
:POSTROUTING ACCEPT [5381:581332]
COMMIT

Completed on Mon Nov 22 14:49:09 2021

Generated by iptables-save v1.8.7 on Mon Nov 22 14:49:09 2021

*nat
:PREROUTING ACCEPT [3:960]
:INPUT ACCEPT [3:960]
:OUTPUT ACCEPT [381:27570]
:POSTROUTING ACCEPT [380:27466]
COMMIT

Completed on Mon Nov 22 14:49:09 2021

Generated by iptables-save v1.8.7 on Mon Nov 22 14:49:09 2021

*filter
:INPUT ACCEPT [5769:6200871]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [5334:573885]
COMMIT

Completed on Mon Nov 22 14:49:09 2021

sudo nft list ruleset
sudo: nft: command not found

ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: enp5s0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether 24:4b:fe:0c:5c:09 brd ff:ff:ff:ff:ff:ff
inet 192.168.1.10/24 brd 192.168.1.255 scope global noprefixroute enp5s0
valid_lft forever preferred_lft forever
inet6 fe80::294d:1be8:caee:7364/64 scope link noprefixroute
valid_lft forever preferred_lft forever
3: lxdbr1: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default qlen 1000
link/ether 00:16:3e:ba:47:ea brd ff:ff:ff:ff:ff:ff
inet 10.4.101.1/24 scope global lxdbr1
valid_lft forever preferred_lft forever
inet6 fd42:9c75:2e7d:6b8::1/64 scope global
valid_lft forever preferred_lft forever

This specific system comes from a Buster update. I’ve just noticed that the problem occur with existent containers - new ones work as expected. I already tried to replace lxdbr0 and to run lxd init again, but no success with them.

OK so this could be an issue with the DHCP client not being able to run inside the container.
Possibly due to a systemd-networkd update and/or cgroupv2 issues.

Can you run dhclient -i eth0 inside the container and see if that works.

dhclient -i generated no output and didn’t solve the problem.

You’ll need to identify whether the DHCP request packets are making it from the container to the lxdbr0, using sudo tcpdump -i lxdbr0 -n on the host and then running dhclient -i eth0 (assuming eth0 is the device inside the container) and checking you see the DHCP requests packets arriving on the bridge.

That’s what I get:

sudo tcpdump -i lxdbr1 -n
tcpdump: verbose output suppressed, use -v[v]… for full protocol decode
listening on lxdbr1, link-type EN10MB (Ethernet), snapshot length 262144 bytes
15:43:27.197096 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:27.197166 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:28.098673 IP 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from 00:16:3e:07:c0:74, length 300
15:43:28.105065 IP6 fd42:9c75:2e7d:6b8::1 > fd42:9c75:2e7d:6b8:216:3eff:fe07:c074: ICMP6, echo request, id 52468, seq 256, length 8
15:43:28.105085 IP6 fd42:9c75:2e7d:6b8:216:3eff:fe07:c074 > fd42:9c75:2e7d:6b8::1: ICMP6, echo reply, id 52468, seq 256, length 8
15:43:28.105139 IP 10.4.101.1.67 > 10.4.101.89.68: BOOTP/DHCP, Reply, length 304
15:43:28.198433 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:28.198495 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:30.019491 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] PTR (QM)? _ipps._tcp.local. PTR (QM)? _ipp._tcp.local. (45)
15:43:30.020659 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] PTR (QM)? _ipps._tcp.local. PTR (QM)? _ipp._tcp.local. (45)
15:43:30.198149 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:30.198179 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:33.118361 ARP, Request who-has 10.4.101.89 tell 10.4.101.1, length 28
15:43:33.118439 IP6 fe80::216:3eff:feba:47ea > fd42:9c75:2e7d:6b8:216:3eff:fe07:c074: ICMP6, neighbor solicitation, who has fd42:9c75:2e7d:6b8:216:3eff:fe07:c074, length 32
15:43:33.118421 IP6 fe80::216:3eff:fe07:c074 > fd42:9c75:2e7d:6b8::1: ICMP6, neighbor solicitation, who has fd42:9c75:2e7d:6b8::1, length 32
15:43:33.118503 IP6 fd42:9c75:2e7d:6b8::1 > fe80::216:3eff:fe07:c074: ICMP6, neighbor advertisement, tgt is fd42:9c75:2e7d:6b8::1, length 24
15:43:33.118469 ARP, Reply 10.4.101.89 is-at 00:16:3e:07:c0:74, length 28
15:43:33.118511 IP6 fd42:9c75:2e7d:6b8:216:3eff:fe07:c074 > fe80::216:3eff:feba:47ea: ICMP6, neighbor advertisement, tgt is fd42:9c75:2e7d:6b8:216:3eff:fe07:c074, length 24
15:43:38.238405 IP6 fe80::216:3eff:feba:47ea > fe80::216:3eff:fe07:c074: ICMP6, neighbor solicitation, who has fe80::216:3eff:fe07:c074, length 32
15:43:38.238378 IP6 fe80::216:3eff:fe07:c074 > fe80::216:3eff:feba:47ea: ICMP6, neighbor solicitation, who has fe80::216:3eff:feba:47ea, length 32
15:43:38.238514 IP6 fe80::216:3eff:feba:47ea > fe80::216:3eff:fe07:c074: ICMP6, neighbor advertisement, tgt is fe80::216:3eff:feba:47ea, length 24
15:43:38.238522 IP6 fe80::216:3eff:fe07:c074 > fe80::216:3eff:feba:47ea: ICMP6, neighbor advertisement, tgt is fe80::216:3eff:fe07:c074, length 24
15:43:44.205184 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:44.205254 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:45.206471 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:45.206533 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:47.208369 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:43:47.208438 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:01.215292 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:01.215363 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:02.216470 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:02.216539 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:04.218277 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:04.218347 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:18.225163 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:18.225237 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:19.227337 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:19.227398 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:21.229349 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:21.229418 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:35.235115 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:35.235187 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:36.236564 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:36.236626 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:38.238804 IP6 fd42:9c75:2e7d:6b8::1.5353 > ff02::fb.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
15:44:38.238874 IP 10.4.101.1.5353 > 224.0.0.251.5353: 0 [2q] SRV (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. TXT (QM)? Officejet Pro 8600 [0B9E2B]._ipp._tcp.local. (67)
^C
46 packets captured
46 packets received by filter
0 packets dropped by kernel

Please show output of lxc network ls, lxc network show lxdbr0 and lxc network show lxdbr1.

Also please show output of lxc config show <instance> --expanded, and ip a and ip r again from the host. Thanks

I tried to delete and recreate the bridge. There’s no lxdbr0 anymore, just lxdbr1. Sorry if this messed things up. Anyway, that’s the output:

WARNING: cgroup v2 is not fully supported yet, proceeding with partial confinement
±-------±---------±--------±--------------±-------------------------±------------±--------+
| NAME | TYPE | MANAGED | IPV4 | IPV6 | DESCRIPTION | USED BY |
±-------±---------±--------±--------------±-------------------------±------------±--------+
| enp5s0 | physical | NO | | | | 0 |
±-------±---------±--------±--------------±-------------------------±------------±--------+
| lxdbr1 | bridge | YES | 10.4.101.1/24 | fd42:9c75:2e7d:6b8::1/64 | | 4 |
±-------±---------±--------±--------------±-------------------------±------------±--------+

lxc network show lxdbr1
WARNING: cgroup v2 is not fully supported yet, proceeding with partial confinement
config:
ipv4.address: 10.4.101.1/24
ipv4.nat: “true”
ipv6.address: fd42:9c75:2e7d:6b8::1/64
ipv6.nat: “true”
description: “”
name: lxdbr1
type: bridge
used_by:

  • /1.0/instances/Caixa
  • /1.0/instances/gui1804
  • /1.0/instances/ubunteste
  • /1.0/profiles/default
    managed: true
    status: Created
    locations:
  • none

I would like to say that I really, really, appreciate your attention in helping me with this. I know how boring this kind of support can be.

Please can you show the output from the other commands I requested too. Thanks

Also, why do you think you are seeing "Officejet Pro 8600 " packets on the lxdbr1? Seems odd.
Do you have a print server running on the LXD host perhaps?

lxc config show Caixa
WARNING: cgroup v2 is not fully supported yet, proceeding with partial confinement
architecture: x86_64
config:
image.architecture: amd64
image.description: ubuntu 16.04 LTS amd64 (release) (20200708)
image.label: release
image.os: ubuntu
image.release: xenial
image.serial: “20200708”
image.type: squashfs
image.version: “16.04”
volatile.base_image: 6be2a8c660ebaf93a5ea10b2313edc0804375c44bfcb39c76c45900fe1647376
volatile.eth0.hwaddr: 00:16:3e:07:c0:74
volatile.idmap.base: “0”
volatile.idmap.current: ‘[{“Isuid”:true,“Isgid”:false,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000},{“Isuid”:false,“Isgid”:true,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000}]’
volatile.idmap.next: ‘[{“Isuid”:true,“Isgid”:false,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000},{“Isuid”:false,“Isgid”:true,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000}]’
volatile.last_state.idmap: ‘[{“Isuid”:true,“Isgid”:false,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000},{“Isuid”:false,“Isgid”:true,“Hostid”:1000000,“Nsid”:0,“Maprange”:1000000000}]’
volatile.last_state.power: STOPPED
volatile.uuid: 6ecebd5d-221d-49b7-b039-c7329ff2bd18
devices:
Downloads:
path: /home/ubuntu/Downloads
source: /home/alex/Downloads
type: disk
ephemeral: false
profiles:

  • default
  • x11
    stateful: false
    description: “”

ip a
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: enp5s0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether 24:4b:fe:0c:5c:09 brd ff:ff:ff:ff:ff:ff
inet 192.168.1.10/24 brd 192.168.1.255 scope global noprefixroute enp5s0
valid_lft forever preferred_lft forever
inet6 fe80::294d:1be8:caee:7364/64 scope link noprefixroute
valid_lft forever preferred_lft forever
3: lxdbr1: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default qlen 1000
link/ether 00:16:3e:ba:47:ea brd ff:ff:ff:ff:ff:ff
inet 10.4.101.1/24 scope global lxdbr1
valid_lft forever preferred_lft forever
inet6 fd42:9c75:2e7d:6b8::1/64 scope global
valid_lft forever preferred_lft forever

ip r
default via 192.168.1.1 dev enp5s0 proto static metric 100
10.4.101.0/24 dev lxdbr1 proto kernel scope link src 10.4.101.1 linkdown
192.168.1.0/24 dev enp5s0 proto kernel scope link src 192.168.1.10 metric 100

I have no idea why Officejet packets are there. I have this printer on this network, but I didn’t do any setup on the host. It was autodetected since ever.

OK so lxdbr1 is showing as DOWN.
Is this still the case after reloading LXD and making sure your container is running?

If so then something on your host system is trying to manage lxdbr1 and taking it down.

Yes, the container is running. But what intrigues me is that this issue only happens with old containers, those created (and used) before upgrading to Bullseye.

Does lxdbr1 still show as DOWN when you have a working container running?

If so then it must be connected to a different bridge?

No, no. It is shown as UP with new containers.