hi,
thank you for helping.
if something is unclear i can better explain this in german.
i have tried something:
i have changed the mac for the virtio nic in proxmox-options.
i have reconfigured all network cards, bridges and settings in nethserver.
i have soft-changed the mac for eth0 and/or br0 in in centos (ip link set)
i have removed and added all bridges in centos.
there are no difference at all.
the mac from the br0 will “reset” to “nsdc” mac after the vb-nsdc is/was reactivated.
(after restart or some other netserver signal routine)
on time i have reconfigured ALL network settings as described here:
https://docs.nethserver.org/projects/nethserver-devel/en/latest/nethserver-base.html#reset-network-configuration
the strangeness with the mac behavior (that my internet router shows the same ip on eth0 and br0 mac) persist but maybe this is not the cause for my actual problem with the nethserver dns (in opposite to my previos post).
my main problem is that the nethserver dns is not responding (after a while) if a green AND a “red” interface is configured. without a red interface the dns works as espected. (independent from the mac behavior and that my internet router shows the same ip on eth0 and br0 mac)
if i configure one or more nic (or bridges) as “green” the dns works and i can use the br0-ip, the nsdc-ip or some other “green” ip from nethserver as dns.
but if i configure a “red” interface additional or instead the behavior is strange.
first the dns will responding from br0-ip , nsdc-ip AND from the “red” ip (if i permit this in service settings) but after some time (not measured exactly) all clients in my network (all in green network) receiving no answers from dns.
this persists until (some times but not sure) the client gets a new dhcl lease from router (no matter of the ip is new or the same). but after some time again the clients will no get answers from dns.
sometimes the dns works fine despite from the existence of a red interface for example after reconfiguring the eth1 role from green to red but after a restart the problem is the same.
ALL the time the ip(s) from dns response to ping command.
so why i use the red interface and not the green only?
i need the red interface because i wanna use openvpn-roadwarrior in routed mode (tun) and the vpn-clients can only connect to other devices in the green network if a red interface is used.
so, here are my settings for now: (“x,y,z” represents anonymized places)
network:
dsl-router (fritz-box) for internet connection and as dhcp-server (and something)
his ip is: 192.168.x.99 (the gateway)
the router has an 4 internally switch-ports (unmanaged)
the router was already restarted, reconfigured etc…
netgear network switch (unmanaged)
tp-link network switch (unmanaged)
(both already restarted)
proxmox ve host (up to date and restarted):
the proxmox ve host has one nic and a soft-bridge.
the nic has no ip.
the bridge (vmbr0) ip is (manual): 192.168.x.9
the mac of the soft-bridge is identical with the nic:
xx:xx:xx:ab:e0:71
proxmox ve guest:
the nethserver guest has two nic and both are virtio.
the first nic (net0) is defined as: xx:xx:xx:2f:00:02 (in nethserver eth0)
the second nic (net1) is defined as: xx:xx:xx:2f:00:10 (in nethserver eth1)
nethserver vm at running:
the first nic (eth0) has no ip as is bridged to br0.
the eth0 role is “bridged”
the eth0 mac is: xx:xx:xx:2f:00:02
the bridge br0 has the ip: 192.168.x.2
the br0 mac is (shown in ipconfig): xx:xx:xx:28:7a:17
the br0 role is “green”
the bridge mac is identical as the mac from vb-nsdc:
(shown in ipconfig): xx:xx:xx:28:7a:17
the second nic (eth1) has the ip: 192.168.x.10
the eth1 role is “red”
the eth1 mac is: xx:xx:xx:2f:00:10
nethserver database settings:
db networks show:
br0=bridge
FwInBandwidth=
FwOutBandwidth=
bootproto=none
gateway=192.168.x.99
ipaddr=192.168.x.2
netmask=255.255.255.0
nslabel=
role=green
eth0=ethernet
bridge=br0
role=bridged
eth1=ethernet
FwInBandwidth=
FwOutBandwidth=
bootproto=none
gateway=192.168.x.99
ipaddr=192.168.x.10
netmask=255.255.255.0
nslabel=
role=red
ppp0=xdsl-disabled
AuthType=auto
FwInBandwidth=
FwOutBandwidth=
Password=
name=PPPoE
provider=xDSL provider
role=red
user=
red1=provider
interface=eth1
weight=1
brctl show:
bridge name bridge id STP enabled interfaces
br0 8000.xxxxxx287a17 no eth0
vb-nsdc
ifconfig:
br0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet 192.168.X.2 netmask 255.255.255.0 broadcast 192.168.x.255
inet6 fe80::xxxx:xxxx:xx28:7a17 prefixlen 64 scopeid 0x20
ether xx:xx:xx:28:7a:17 txqueuelen 1000 (Ethernet)
RX packets 632112 bytes 45590844 (43.4 MiB)
RX errors 0 dropped 530062 overruns 0 frame 0
TX packets 871 bytes 50504 (49.3 KiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
eth0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet6 fe80::xxxx:xxxx:xx2f:2 prefixlen 64 scopeid 0x20
ether xx:xx:xx:2f:00:02 txqueuelen 1000 (Ethernet)
RX packets 922822 bytes 74880776 (71.4 MiB)
RX errors 0 dropped 47 overruns 0 frame 0
TX packets 19940 bytes 7988382 (7.6 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
eth1: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet 192.168.x.10 netmask 255.255.255.0 broadcast 192.168.18.255
inet6 fe80::xxxx:xxxx:xx2f:10 prefixlen 64 scopeid 0x20
ether xx:xx:xx:2f:00:10 txqueuelen 1000 (Ethernet)
RX packets 1445846 bytes 341905813 (326.0 MiB)
RX errors 0 dropped 795202 overruns 0 frame 0
TX packets 577653 bytes 650535073 (620.3 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
lo: flags=73<UP,LOOPBACK,RUNNING> mtu 65536
inet 127.0.0.1 netmask 255.0.0.0
inet6 ::1 prefixlen 128 scopeid 0x10
loop txqueuelen 1000 (Local Loopback)
RX packets 148872 bytes 19740324 (18.8 MiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 148872 bytes 19740324 (18.8 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
tunrw: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 192.168.y.1 netmask 255.255.255.255 destination 192.168.y.2
inet6 fe80::xxxx:xxxx:xx06:4a03 prefixlen 64 scopeid 0x20
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 100 (UNSPEC)
RX packets 144 bytes 17412 (17.0 KiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 159 bytes 106535 (104.0 KiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
vb-nsdc: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet6 fe80::xxxx:xxxx:xx28:7a17 prefixlen 64 scopeid 0x20
ether xx:xx:xx:28:7a:17 txqueuelen 1000 (Ethernet)
RX packets 16908 bytes 6892620 (6.5 MiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 833629 bytes 60786822 (57.9 MiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
(edit=some characters)