From owner-freebsd-net@freebsd.org Wed Jul 3 07:08:59 2019 Return-Path: Delivered-To: freebsd-net@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id BD94B15C9691 for ; Wed, 3 Jul 2019 07:08:59 +0000 (UTC) (envelope-from artemrts@ukr.net) Received: from frv198.fwdcdn.com (frv198.fwdcdn.com [212.42.77.198]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "*.ukr.net", Issuer "Thawte RSA CA 2018" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 085CF8CAF2 for ; Wed, 3 Jul 2019 07:08:57 +0000 (UTC) (envelope-from artemrts@ukr.net) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ukr.net; s=ffe; h=Content-Type:MIME-Version:Message-Id:Cc:To:Subject:From:Date:Sender: Reply-To:Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date :Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To: References:List-Id:List-Help:List-Unsubscribe:List-Subscribe:List-Post: List-Owner:List-Archive; bh=zdLaUJtw9+2wxXXQf95noeshVq7pTt6ygIm276thVz4=; b=o Rg5oPbABOzdFpBhLhxUenKAftdA+ZwVDHvMu/YBWFhsoX5BxdGpgH14NkJciXYp0xXmxQczkAxRoe ug9IqDodc0YRQrRd5igLyYWcy3Twuhwjlau1kBDJ0QDTZtsyfrEpg1bhW986FmNbe6h3vWZZOjZRA JFf7DM4HMw4S4kTA=; Received: from [10.10.10.50] (helo=frv50.fwdcdn.com) by frv198.fwdcdn.com with smtp ID 1hiZNo-0005Ds-6c for freebsd-net@freebsd.org; Wed, 03 Jul 2019 10:08:48 +0300 Date: Wed, 03 Jul 2019 10:08:48 +0300 From: wishmaster Subject: Network issues while jails are starting To: freebsd-net@freebsd.org Cc: Received: from artemrts@ukr.net by frv50.fwdcdn.com; Wed, 03 Jul 2019 10:08:48 +0300 Message-Id: <1562134249.868399000.r0je57so@frv50.fwdcdn.com> X-Mailer: mail.ukr.net 5.0 MIME-Version: 1.0 X-Rspamd-Queue-Id: 085CF8CAF2 X-Spamd-Bar: ------ Authentication-Results: mx1.freebsd.org; dkim=pass header.d=ukr.net header.s=ffe header.b=o Rg5oPb; dmarc=pass (policy=none) header.from=ukr.net; spf=pass (mx1.freebsd.org: domain of artemrts@ukr.net designates 212.42.77.198 as permitted sender) smtp.mailfrom=artemrts@ukr.net X-Spamd-Result: default: False [-6.37 / 15.00]; ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000,0]; R_DKIM_ALLOW(-0.20)[ukr.net:s=ffe]; FROM_HAS_DN(0.00)[]; R_SPF_ALLOW(-0.20)[+ip4:212.42.77.0/24]; FREEMAIL_FROM(0.00)[ukr.net]; MIME_GOOD(-0.10)[multipart/alternative,text/plain]; TO_DN_NONE(0.00)[]; NEURAL_HAM_LONG(-1.00)[-1.000,0]; RCPT_COUNT_ONE(0.00)[1]; DWL_DNSWL_LOW(-1.00)[ukr.net.dwl.dnswl.org : 127.0.5.1]; RCVD_COUNT_THREE(0.00)[3]; IP_SCORE(-1.51)[ipnet: 212.42.77.0/24(-4.17), asn: 8856(-3.47), country: UA(0.08)]; TO_MATCH_ENVRCPT_ALL(0.00)[]; DKIM_TRACE(0.00)[ukr.net:+]; MIME_BASE64_TEXT(0.10)[]; DMARC_POLICY_ALLOW(-0.50)[ukr.net,none]; MX_GOOD(-0.01)[mxs.ukr.net]; NEURAL_HAM_SHORT(-0.95)[-0.947,0]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+,1:+]; FREEMAIL_ENVFROM(0.00)[ukr.net]; ASN(0.00)[asn:8856, ipnet:212.42.77.0/24, country:UA]; RCVD_TLS_LAST(0.00)[] Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: binary X-Content-Filtered-By: Mailman/MimeDel 2.1.29 X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 03 Jul 2019 07:09:00 -0000 Hi, the office's server has 6 jails and 2 bhyve virtual servers. The problem is when I restart server, jails start for a long time (about 6 minutes). All this time the server does not acts as router, that is no packets between interfaces. From within the server packets are transmitted and received (ping works correctly), but from LAN - no. I do not remember either this issue has appeared after upgrading to 12.0 or switching from STABLE to RELEASE branch, but this issue has been appearing for about half of year or little more. Toggle sysctl net.inet.ip.forwarding while jails are starting don't help. root@e-server: uname -a FreeBSD e-server 12.0-RELEASE-p3 FreeBSD 12.0-RELEASE-p3 GENERICĀ  amd64 jail_enable="YES" jail_parallel_start="NO" jail_list="basejail jdb jphp jwww jmail jdns" jail_reverse_stop="YES" Any advices? -- Vitalic