Repository navigation
Error on stop/start/deploy instances while connected on VPN #11677
Description
Activity
Thanks for opening your first issue here! Be sure to follow the issue template!
@leolns
can you log into the VR, and share the output ofip acommand ?1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 02:01:00:ca:00:a1 brd ff:ff:ff:ff:ff:ff
altname enp3s0
altname ens160
inet 10.254.254.192/23 brd 10.254.255.255 scope global eth0
valid_lft forever preferred_lft forever
3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 1e:00:0e:00:00:a7 brd ff:ff:ff:ff:ff:ff
altname enp11s0
altname ens192
inet X.X.X.51/24 brd X.X.X.255 scope global eth1
valid_lft forever preferred_lft forever
inet X.X.X.56/24 brd X.X.X.255 scope global secondary eth1
valid_lft forever preferred_lft forever
inet X.X.X.52/24 brd X.X.X.255 scope global secondary eth1
valid_lft forever preferred_lft forever
inet X.X.X.57/24 brd X.X.X.255 scope global secondary eth1
valid_lft forever preferred_lft forever
4: eth2: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 02:01:00:d8:00:1f brd ff:ff:ff:ff:ff:ff
altname enp19s0
altname ens224
inet 10.72.2.141/24 brd 10.72.2.255 scope global eth2
valid_lft forever preferred_lft forever
inet 10.72.2.1/24 brd 10.72.2.255 scope global secondary eth2
valid_lft forever preferred_lft forever
14: ppp0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1410 qdisc fq_codel state UNKNOWN group default qlen 3
link/ppp
inet 10.1.2.1 peer 10.1.2.2/32 scope global ppp0
valid_lft forever preferred_lft forever
15: ppp1: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1400 qdisc fq_codel state UNKNOWN group default qlen 3
link/ppp
inet 10.1.2.1 peer 10.1.2.3/32 scope global ppp1
valid_lft forever preferred_lft forever@leolns
can you test the changes below with /opt/cloud/bin/cs/CsDhcp.py ?diff --git a/systemvm/debian/opt/cloud/bin/cs/CsDhcp.py b/systemvm/debian/opt/cloud/bin/cs/CsDhcp.py index 0f9f4a59374..e831001626d 100755 --- a/systemvm/debian/opt/cloud/bin/cs/CsDhcp.py +++ b/systemvm/debian/opt/cloud/bin/cs/CsDhcp.py @@ -231,7 +231,7 @@ class CsDhcp(CsDataBag): i = IPAddress(entry['ipv4_address']) # Calculate the device for v in self.devinfo: - if i > v['network'].network and i < v['network'].broadcast: + if i > v['network'].network and v['network'].broadcast and i < v['network'].broadcast: v['dnsmasq'] = True # Virtual Router v['gateway'] = entry['default_gateway']It tested it and it worked!
Thanks
Reacted by Wei Zhou- linked a pull request that will close this issueVR: consider NICs for remote access VPN when apply dhcp entry #11681
on Sep 19, 2025 fixed by #11681
- moved this from ready for Review to Done in Apache CloudStack BugFest - Issues
on Sep 23, 2025
problem
When a client is connected to the VPN, any operation to stop, start, or create a new instance from the console results in an error. Version 4.21.0.0
In the server's log:
Inside the virtual router at /opt/cloud/bin/cs/CsDhcp.py:
if i > v['network'].network and i < v['network'].broadcast:While a VPN connection exists, the VPN interface returns an empty broadcast, which triggers the error.
versions
Cloudstack 4.21.0.0
Esxi 8.0u3g
VPC with dual redundant VR on a Isolated Network
The steps to reproduce the bug
What to do about it?
No response