New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Docker/iptables networking sanity check #119
Comments
Have you double-checked the Honestly I'm not an iptables expert, I generally let |
So nothing wrong in docker-compose or daemon,json it seems. I have the below for NGINX, But if I run docker port malcolm_nginx-proxy_1 I get the below output, netstat verifies the same for 9200 Which explains why I can curl 443 and 448 but neither 9200 or 5601 I just can't work out what is interfering to cause this. Host is vanilla Ubuntu build on GCP with Malcolm installed from script. I'll keep poking at it! |
Doesn't make sense to me, what's in the compose file and what the output of those commands is showing is completely contradictory. There are two docker-compose files in a repository checkout (one is named "-standalone"), maybe you're editing one and using the other? Check both? I'm stymied. |
Join the club :) Thanks anyway |
Finally solved in so much as I created a new vm, cloned from github and installed again. No idea what I did differently but I ensured I followed the guide to the letter and now have a functioning Malcolm instance which seems to be working as expected. Now on to Hedgehog sensor which has at least passed the forwarding configuration stage this time around where I was previously getting connection refused error 400. Thanks for the help and support. |
I'm struggling to get a Hedgehog sensor to connect to Malcolm still (Connection refused) and have been digging in to iptables on the Malcolm host. Could someone sanity check the below for me please as it seems to me the IP assigned to Opensearch does not align with what I see in iptables (for port 9200 specifically)
Chain DOCKER (2 references)
pkts bytes target prot opt in out source destination
0 0 RETURN all -- docker0 * 0.0.0.0/0 0.0.0.0/0
0 0 RETURN all -- br-035c5311173a * 0.0.0.0/0 0.0.0.0/0
docker network inspect malcolm_default
The text was updated successfully, but these errors were encountered: