Max Hofer
2024-12-17 11:20:01 UTC
Reply
PermalinkVersion: 10.10.0-3
Severity: normal
Upgrading to libvirt breaks the internett access to my guest machines
using NAT forwarding. Default firewalld is installed.
I attached the iptables rules from libvirt 10.10.0-1 (using iptables as
firewall backend) and the new one after the upgrade with the nftables as
backend.
Workaround: enable setting 'firewall_backend = "iptables"' in
/etc/libvirt/network.conf restores the old behavior.
-- System Information:
Debian Release: trixie/sid
APT prefers unstable
APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)
Kernel: Linux 6.11.6-amd64 (SMP w/16 CPU threads; PREEMPT)
Kernel taint flags: TAINT_WARN
Locale: LANG=C.UTF-8, LC_CTYPE=C.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled
Versions of packages libvirt-daemon-driver-network depends on:
ii dnsmasq-base [dnsmasq-base] 2.90-6
ii iptables 1.8.11-2
ii libc6 2.40-4
ii libgcc-s1 14.2.0-11
ii libglib2.0-0t64 2.82.4-1
ii libvirt-common 10.10.0-3
ii libvirt-daemon 10.10.0-3
ii libvirt0 10.10.0-3
ii nftables 1.1.1-1
libvirt-daemon-driver-network recommends no packages.
libvirt-daemon-driver-network suggests no packages.
-- no debconf information