Ask Your Question
1

Cant ping or SSH Cirros VM

asked 2015-07-08 00:41:59 -0500

abhishek-talwar gravatar image

updated 2015-07-08 02:15:20 -0500

SGPJ gravatar image

I have a multinode OpenStack kilo setup with a controller node, network node and 2 compute nodes. I followed all the steps (http://docs.openstack.org/kilo/instal...) given in the OpenStack kilo install guide. I am able to boot a VM and it goes to active state but cannot ping it from Controller or any external network.

The external network interface (eth3) has a gateway of 192.168.56.105 and we can ping it from any external network.

I have assigned a floting ip to the VM, and added the icmp and tcp rules to allow the ping and SSH but we can't ping to the VM.

Moreover, as per the install guide the VM should be able to ping “openstack.org” to verify ext-net connectivity it is not doing that. The VM is able to ping the tenant router gateway of the external network interface “192.168.56.105”.

How should we proceed further to enable the ping and SSH functionality.

The setup details are listed as follows:

**#Controller Node**

# The primary network interface - NAT connection
auto eth0
iface eth0 inet dhcp

# vboxnet0 - OpenStack management network
auto eth1
iface eth1 inet static
address 10.0.0.11
netmask 255.255.255.0

**#Network Node**

# vboxnet0 - OpenStack management network
auto eth1
iface eth1 inet static
address 10.0.0.21
netmask 255.255.255.0

# vboxnet2 - OpenStack data/communication network
auto eth2
iface eth2 inet static
address 10.0.1.21
netmask 255.255.255.0

#vboxnet0 - For exposing external network
auto eth3
iface eth3 inet manual
        up ip link set dev $IFACE up
        down ip link set dev $IFACE down



**#Compute Node** 

# The primary network interface - NAT connection
auto eth0
iface eth0 inet dhcp

# vboxnet0 - OpenStack management network
auto eth1
iface eth1 inet static
address 10.0.0.31
netmask 255.255.255.0

# vboxnet2 - OpenStack VM data/communication network
auto eth2
iface eth2 inet static
address 10.0.1.31
netmask 255.255.255.0


**#Compute1 Node** 

# The primary network interface - NAT connection
auto eth0
iface eth0 inet dhcp

# vboxnet0 - OpenStack management network
auto eth1
iface eth1 inet static
address 10.0.0.32
netmask 255.255.255.0

# vboxnet2 - OpenStack VM data/communication network
auto eth2
iface eth2 inet static
address 10.0.1.32
netmask 255.255.255.0

**#neutron net-list**

------------------------------------------+ 
| id                                   | name      | subnets                                             | 
+--------------------------------------+-----------+-----------------------------------------------------+ 
| 
| 6c91a7e8-4182-4fb7-8d42-b83ca6775e57 | ext-net   | c4dac528-3fa9-47db-a5c4-50590ed8edf5                | 
| 314323cd-cbd1-43e9-a5f5-58213a6afdee | demo-net1 | 7412369e-a91f-4228-af55-2792fde85d3d 192.168.1.0/24 | 
+--------------------------------------+-----------+-----------------------------------------------------+ 


**# neutron floatingip-list**
-----------------+--------------------------------------+ 
| id                                   | fixed_ip_address | floating_ip_address | port_id                              | 
+--------------------------------------+------------------+---------------------+--------------------------------------+ 
| 65872868-6318-4eb3-bce4-6bd8922b90e1 | 192.168.1.3      | 192.168.56.109      | 3a2f47f7-cbc4-4558-b91c-2886de545cd7 | 
+--------------------------------------+------------------+---------------------+--------------------------------------+ 

**# nova list**
------+-------------+---------------------------------------+ 
| ID                                   | Name  | Status | Task State | Power State | Networks                              | 
+--------------------------------------+-------+--------+------------+-------------+---------------------------------------+ 
| 1ebf21e7-3073-4d68-ae59-ec168c3e51c7 | vm786 | ACTIVE | -          | Running     | demo-net1=192.168.1.3, 192.168.56.109 | 







**Added the rules to the default security group:**

a. Permit ICMP (ping):
$ nova secgroup-add-rule default icmp -1 -1 0.0.0.0/0
+-------------+-----------+---------+-----------+--------------+
| IP Protocol | From Port | To Port | IP Range  | Source Group |
+-------------+-----------+---------+-----------+--------------+
| icmp        | -1        | -1      | 0.0.0.0/0 |              |
+-------------+-----------+---------+-----------+--------------+

b. Permit secure shell (SSH) access:
$ nova secgroup-add-rule default tcp 22 22 0.0.0.0/0
+-------------+-----------+---------+-----------+--------------+
| IP ...
(more)
edit retag flag offensive close merge delete

1 answer

Sort by » oldest newest most voted
0

answered 2015-07-08 10:44:40 -0500

nd gravatar image

updated 2015-07-09 21:23:41 -0500

Can you set eth3 interface in promiscuous mode and check once?

ifconfig eth3 promisc

Also, if you are have installed your openstack setup inside VMs on say Virtualbox, you need to edit the interface of your network node - corresponding to eth3 - and set adapter type to Paravirtualized(virtio-net) and Promiscuous mode to "Allow All"

Thnx

edit flag offensive delete link more

Comments

ifconfig -a ovs-vsct show

SIOCSIFADDR: No such device ovs-vsctl: ERROR while getting interface flags: No such device

abhishek-talwar gravatar imageabhishek-talwar ( 2015-07-09 00:42:13 -0500 )edit

Ohh, seems the formatting for this forum needs extra line feeds. I meant can you paste outputs of

ifconfig -a

ovs-vsctl show

But I notice that you have already pasted output of ovs-vsctl show which I missed previously, so ignore the above request and please check my update to the answer

nd gravatar imagend ( 2015-07-09 21:20:48 -0500 )edit

Hi nd,

I am able to ping and ssh to the VM now. But I can't ping google and have no internet connectivity on the VM.

How do we enable internet on the VM. I have already tried sudo iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE (where eth0 is my interface for VM)

abhishek-talwar gravatar imageabhishek-talwar ( 2015-07-10 05:49:34 -0500 )edit

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Get to know Ask OpenStack

Resources for moderators

Question Tools

1 follower

Stats

Asked: 2015-07-08 00:41:59 -0500

Seen: 1,836 times

Last updated: Jul 09 '15