<table cellspacing="0" cellpadding="0" border="0" ><tr><td valign="top" style="font: inherit;">OK, to reiterate, the server in the jail works but is very slow to access (normally just a few seconds but now more like 15 seconds or more) and it cannot talk to the internet. This seems to happen every time I make some change to the network, like switching from DHCP to static, if I remember correctly. The weird thing is very occasionally the server responds quickly for a few seconds it seems and then is slow again.<br><br>Sorry, it's all a bit Greek to me, but here is some additional info:<br><br># ifconfig<br>re0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500<br> options=389b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,WOL_UCAST,WOL_MCAST,WOL_MAGIC><br> ether 00:24:8c:a1:b3:f7<br>
inet6 fe80::224:8cff:fea1:b3f7%re0 prefixlen 64 scopeid 0x1<br> media: Ethernet autoselect (100baseTX <full-duplex>)<br> status: active<br>lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384<br> options=3<RXCSUM,TXCSUM><br> inet 127.0.0.1 netmask 0xff000000<br> inet6 ::1 prefixlen 128<br> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2<br>pflog0: flags=0<> metric 0 mtu 33152<br>pfsync0: flags=0<> metric 0 mtu 1460<br> syncpeer: 224.0.0.240 maxupd: 128<br>lagg0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500<br>
options=389b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,WOL_UCAST,WOL_MCAST,WOL_MAGIC><br> ether 00:24:8c:a1:b3:f7<br> inet 192.168.1.10 netmask 0xffffff00 broadcast 192.168.1.255<br> inet6 fe80::224:8cff:fea1:b3f7%lagg0 prefixlen 64 scopeid 0x5<br> inet 192.168.1.12 netmask 0xffffffff broadcast 192.168.1.12<br> media: Ethernet autoselect<br> status: active<br> laggproto failover<br> laggport: re0 flags=5<MASTER,ACTIVE><br>lo1: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384<br>
options=3<RXCSUM,TXCSUM><br> inet 10.1.1.1 netmask 0xffffff00<br>-------------------------------------------------<br><br># netstat -rn <br>Routing tables <br><br>Internet:<br>Destination Gateway Flags Refs Use Netif
Expire<br>default 192.168.1.2 UGS 6 196389 lagg0 <br>10.1.1.1 link#6 UH 0 154 lo1 <br>127.0.0.1 link#2 UH 0 89 lo0
<br>192.168.1.0/24 link#5 U 0 19518 lagg0 <br>192.168.1.10 link#5 UHS 0 0 lo0 <br>192.168.1.12 link#5 UHS 0 8908 lo0 => <br>192.168.1.12/32 link#5
U 0 0 lagg0 <br><br>AppleTalk:<br>Destination Gateway Flags Netif Expire<br><br>Internet6:<br>Destination Gateway Flags Netif Expire<br>::/96
::1 UGRS lo0 <br>::1 ::1 UH lo0 <br>::ffff:0.0.0.0/96
::1 UGRS lo0 <br>fe80::/10 ::1 UGRS lo0 <br>fe80::%re0/64 link#1
U re0 <br>fe80::224:8cff:fea1:b3f7%re0 link#1 UHS lo0 <br>fe80::%lo0/64 link#2 U lo0 <br>fe80::1%lo0
link#2 UHS lo0 <br>fe80::%lagg0/64 link#5 U lagg0<br>fe80::224:8cff:fea1:b3f7%lagg0 link#5 UHS
lo0<br>ff01:1::/32 fe80::224:8cff:fea1:b3f7%re0 U re0<br>ff01:2::/32 ::1 U lo0<br>ff01:5::/32 fe80::224:8cff:fea1:b3f7%lagg0 U
lagg0<br>ff02::/16 ::1 UGRS lo0<br>ff02::%re0/32 fe80::224:8cff:fea1:b3f7%re0 U re0<br>ff02::%lo0/32 ::1
U lo0<br>ff02::%lagg0/32 fe80::224:8cff:fea1:b3f7%lagg0 U lagg0<br><br><br>--- On <b>Fri, 5/7/10, Brodey Dover <i><doverosx@gmail.com></i></b> wrote:<br><blockquote style="border-left: 2px solid rgb(16, 16, 255); margin-left: 5px; padding-left: 5px;"><br>From: Brodey Dover <doverosx@gmail.com><br>Subject: Re: [PC-BSD Testing] BIND problem in jail<br>To: "PC-BSD Testing list" <testing@lists.pcbsd.org><br>Date: Friday, May 7, 2010, 5:58 PM<br><br><div id="yiv331483024">Kris,<div><br></div><div>for lagg do you set the default to fail-over? If not, I've had this issue with round-robin and load-balancing options. As far as I know load-balancing is known and documented to cause "issues" because of the non-standard packet
sequencing.</div>
<div><br></div><div>Brodey</div><div><br><br><div class="gmail_quote">On Fri, May 7, 2010 at 7:36 AM, Kris Moore <span dir="ltr"><<a rel="nofollow" ymailto="mailto:kris@pcbsd.org" target="_blank" href="/mc/compose?to=kris@pcbsd.org">kris@pcbsd.org</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin: 0pt 0pt 0pt 0.8ex; border-left: 1px solid rgb(204, 204, 204); padding-left: 1ex;">
<div><div><div></div><div class="h5">
On 05/07/2010 14:09, Jeff wrote:
<blockquote type="cite">
<table border="0" cellpadding="0" cellspacing="0">
<tbody>
<tr>
<td style="font: inherit;" valign="top">
<div>Well, this has come back to bite me
again.<br>
<br>
I was living in Thailand when it I fixed it, using a Dlink ADSL router
and used DHCP for the PCBSD box. Then I moved back to the US and set
up my old network using a Linksys router and a Linksys wireless bridge
to connect my PCBSD box to the router and the internet.<br>
<br>
I'm using lagg0 for the jail but set up the box with a static IP. So
now the original problem is back - slow server response in the jail and
Drupal cannot talk to the internet for updates and such. Set it up
with DHCP and same problem.<br>
<br>
Oddly enough, when I had it setup with a static IP, Firefox was really
slow accessing the server site, like 10 seconds lag, but Opera was the
normal 1 or 2 seconds. When I changed to DHCP both were slow, taking
nearly 20 seconds to respond - it's all lag time - the page loads very
fast after that.<br>
<br>
I noticed at boot there is a message something to the effect of re0
busy. Also noticed in Webmin, the network interface is reported as:<br>
<br>
<table width="100%">
<thead><tr bgcolor="#427ad1">
<td width="5"><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#"><span> </span></a></b></td>
<td width="20%"><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#">Name<span> </span></a></b></td>
<td width="20%"><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#">Type<span> </span></a></b></td>
<td width="20%"><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#">IP
Address<span> </span></a></b></td>
<td width="20%"><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#">Netmask<span> </span></a></b></td>
<td><b><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/list_ifcs.cgi?mode=active#">Status<span> </span></a></b></td>
</tr>
</thead> <tbody>
<tr>
<td width="5"><br>
</td>
<td width="20%">lagg0</td>
<td width="20%">Unknown</td>
<td width="20%">192.168.1.101</td>
<td width="20%">255.255.255.0</td>
<td>Up</td>
</tr>
<tr>
<td width="5"><br>
</td>
<td width="20%"> lagg0:0</td>
<td width="20%">Unknown (Virtual)</td>
<td width="20%">192.168.1.12</td>
<td width="20%">255.255.255.255</td>
<td>Up</td>
</tr>
<tr bgcolor="#efefef">
<td width="5"><input name="d" value="lo0" type="checkbox"> </td>
<td width="20%"><a rel="nofollow" target="_blank" href="http://127.0.0.1:10000/net/edit_aifc.cgi?idx=0">lo0</a></td>
<td width="20%"><label>Loopback</label></td>
<td width="20%"><label>127.0.0.1</label></td>
<td width="20%"><label>255.0.0.0</label></td>
<td><label>Up</label></td>
</tr>
</tbody>
</table>
<br>
192.168.1.12 is the IP for the jail and .101 is the network interface
card on DHCP.<br>
<br>
I have had similar problems with PCBSD going way back and never
resolved them. I just keep fiddling and rebooting and somehow it
magically gets fixed but I never know why. Now however, I can't get it
to work properly no matter what I try.<br>
<br>
What in the world causes this behavior and how do I fix it?<br>
<br>
...Jeff<br>
</div>
</td>
</tr>
</tbody>
</table>
</blockquote>
<br>
<br></div></div>
Well, I'm unsure which is causing the failure here. Maybe a good thing
to try is taking the "lagg0" device out of the loop and see if the
problem goes away. You'll need to edit /etc/rc.conf manually, remove
the ifconfig_lagg0 line, and setup ifconfig_re0 to DHCP. Switch your
jail to running on re0 as well, and test, does it work better?<br>
<br>
If that doesn't solve it, then you may be uncovering some other
networking bug :( I would recommend reporting it over to the
freebsd-net mailing lists:<br>
<br>
<a rel="nofollow" target="_blank" href="http://lists.freebsd.org/mailman/listinfo/freebsd-net">http://lists.freebsd.org/mailman/listinfo/freebsd-net</a><br>
<br>
Some of the folks over there could probably track it down relatively
quickly :)<div class="im"><br>
<br>
<br>
<pre>-- <br>Kris Moore<br>PC-BSD Software<br>iXsystems</pre>
</div></div>
<br>_______________________________________________<br>
Testing mailing list<br>
<a rel="nofollow" ymailto="mailto:Testing@lists.pcbsd.org" target="_blank" href="/mc/compose?to=Testing@lists.pcbsd.org">Testing@lists.pcbsd.org</a><br>
<a rel="nofollow" target="_blank" href="http://lists.pcbsd.org/mailman/listinfo/testing">http://lists.pcbsd.org/mailman/listinfo/testing</a><br>
<br></blockquote></div><br></div>
</div><br>-----Inline Attachment Follows-----<br><br><div class="plainMail">_______________________________________________<br>Testing mailing list<br><a ymailto="mailto:Testing@lists.pcbsd.org" href="/mc/compose?to=Testing@lists.pcbsd.org">Testing@lists.pcbsd.org</a><br><a href="http://lists.pcbsd.org/mailman/listinfo/testing" target="_blank">http://lists.pcbsd.org/mailman/listinfo/testing</a><br></div></blockquote></td></tr></table><br>