I am trying to setup it up in an LXD container, but I am running into some issues. The container itself is configured the same as for Zentyal, which worked fine with such configuration:
physical NIC on host is given exclusively to the guest LXC so when the container boots, the NIC disappears from host and becomes visible as eht0 in CentOS with NethServer. This part works fine.
The problem is with the other nic:
The second NIC is actually a bridge on host. LXC is configured to create a veth bridged to it. It is visible as eth1 in CentOS with NethServer.
The thing is, that even though it is well visible to the CentOS itself, NethServer does not seem to see it at all. Only eth0 is visible and configured, and when I go to add “New Logical Interface”, every option there can be only selected with eth0 as dependency. No eth1 whatsoever.
On Zentyal, eth1 was perfectly visible and configurable as just a regular NIC with connectivity to the bridge on host machine.
On NS 6 (CentOS 6) both interfaces get the IP: eth0 from ISP’s DHCP, eth1 from static settings in the config.
However, on NS7 (CentOS 7), while the eth0 is working fine and there is internet connectivity, the eth1 remains with IP unassigned. Even if I assign the IP manually using ifconfig eth1 192.168.7.1 there still is no connectivity and pinging other LAN hosts is impossible:
ping 192.168.7.2
PING 192.168.7.2 (192.168.7.2) 56(84) bytes of data.
From 192.168.7.1 icmp_seq=1 Destination Host Unreachable
ping: sendmsg: Operation not permitted
From 192.168.7.1 icmp_seq=2 Destination Host Unreachable
ping: sendmsg: Operation not permitted
From 192.168.7.1 icmp_seq=3 Destination Host Unreachable
ping: sendmsg: Operation not permitted
From 192.168.7.1 icmp_seq=4 Destination Host Unreachable
ping: sendmsg: Operation not permitted
So there was either a change in configuration in NS7, or a bug. Can anyone comment?
The permission problem lead me to the firewall (shorewall).
Try to temporarily disable it with: shorewall clear
If the problems comes from the firewall, the configuration stored in nethserver database is not correct.
Check with db networks show,
adjust with config setprop eth1 ipaddr x.x.x.x netmask x.x.x.x ...
Apply with signal-event interface-update