Error anbox-cloud init
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Anbox Cloud |
Incomplete
|
High
|
Unassigned |
Bug Description
Hi All,
I'm trying installing anbox-cloud in a OCI instance following this guide https:/
root@instance-
2023-11-19 13:35:06 LXD network name set to lxdfan0
Since Juju 2 is being run for the first time, it has downloaded the latest public cloud information.
Only clouds with registered credentials are shown.
There are more clouds, use --all to see them.
2023-11-19 13:35:14 Public location: 144.22.143.188
2023-11-19 13:35:14 Public address: 144.22.143.188
2023-11-19 13:35:14 Private address: 10.0.0.241
2023-11-19 13:35:14 Private subnet: 10.0.0.0/24
2023-11-19 13:35:14 Running on OCI, applying firewall rules
iptables v1.8.7 (nf_tables): chain `anbox-ingress' in table `filter' is incompatible, use 'nft' tool.
iptables v1.8.7 (nf_tables): chain `anbox-forward' in table `filter' is incompatible, use 'nft' tool.
run-parts: executing /usr/share/
run-parts: executing /usr/share/
2023-11-19 13:35:14 Using UA subscription from host
2023-11-19 13:35:14 Successfully extracted credentials from UA subscription
2023-11-19 13:35:15 Starting installation of dependencies
WARNING: apt does not have a stable CLI interface. Use with caution in scripts.
Hit:1 http://
Get:2 http://
Get:3 http://
Hit:4 https:/
Hit:5 https:/
Hit:6 http://
Hit:7 https:/
Get:8 https:/
Hit:9 https:/
Get:10 http://
Get:11 http://
Fetched 2392 kB in 7s (327 kB/s)
Reading package lists...
Building dependency tree...
Reading state information...
All packages are up to date.
W: Target Packages (main/binary-
W: Target Packages (main/binary-
W: Target Translations (main/i18n/
W: Target CNF (main/cnf/
W: Target CNF (main/cnf/
W: Target Packages (main/binary-
W: Target Packages (main/binary-
W: Target Translations (main/i18n/
W: Target CNF (main/cnf/
W: Target CNF (main/cnf/
WARNING: apt does not have a stable CLI interface. Use with caution in scripts.
Reading package lists...
Building dependency tree...
Reading state information...
linux-headers-
linux-headers-
linux-headers-
linux-modules-
linux-modules-
The following additional packages will be installed:
libcpufreq0 tcl-expect
Suggested packages:
tk8.6
The following NEW packages will be installed:
cpufrequtils expect libcpufreq0 tcl-expect
0 upgraded, 4 newly installed, 0 to remove and 0 not upgraded.
Need to get 289 kB of archives.
After this operation, 783 kB of additional disk space will be used.
Get:1 http://
Get:2 http://
Get:3 http://
Get:4 http://
Preconfiguring packages ...
Fetched 289 kB in 1s (211 kB/s)
Selecting previously unselected package libcpufreq0.
(Reading database ... 106260 files and directories currently installed.)
Preparing to unpack .../libcpufreq0
Unpacking libcpufreq0 (008-2build1) ...
Selecting previously unselected package cpufrequtils.
Preparing to unpack .../cpufrequtil
Unpacking cpufrequtils (008-2build1) ...
Selecting previously unselected package tcl-expect:amd64.
Preparing to unpack .../tcl-
Unpacking tcl-expect:amd64 (5.45.4-2build1) ...
Selecting previously unselected package expect.
Preparing to unpack .../expect_
Unpacking expect (5.45.4-2build1) ...
Setting up tcl-expect:amd64 (5.45.4-2build1) ...
Setting up libcpufreq0 (008-2build1) ...
Setting up expect (5.45.4-2build1) ...
Setting up cpufrequtils (008-2build1) ...
update-rc.d: warning: start and stop actions are no longer supported; falling back to defaults
update-rc.d: warning: start and stop actions are no longer supported; falling back to defaults
Processing triggers for man-db (2.10.2-1) ...
Processing triggers for libc-bin (2.35-0ubuntu3.4) ...
NEEDRESTART-VER: 3.5
NEEDRESTART-KCUR: 5.15.0-1047-oracle
NEEDRESTART-KEXP: 5.15.0-1047-oracle
NEEDRESTART-KSTA: 1
Packages installation done in parallel
fs.inotify.
fs.inotify.
fs.inotify.
vm.max_map_count = 262144
kernel.
kernel.pid_max = 4194304
net.ipv4.
net.ipv6.
kernel.keys.maxkeys = 2000
kernel.
fs.aio-max-nr = 524288
net.ipv4.
2023-11-19 13:38:16 LXD is ready, continuing with its initialization
2023-11-19 13:38:16 Using the following preseed configuration:
config:
cluster.
core.
cluster:
enabled: true
server_name: lxd0
networks:
- name: lxdfan0
type: bridge
config:
ipv4.nat: true
ipv4.
fan.
fan.
bridge.mode: fan
profiles:
- name: default
devices:
root:
path: /
pool: data
type: disk
eth0:
type: nic
nictype: bridged
parent: lxdfan0
storage_pools:
- name: data
driver: zfs
config:
size: 32212254720
Storage volume backups created
Storage volume images created
Restarted.
2023-11-19 13:38:44 Configuring Juju for our LXD cloud
......+
..+...+
-----
2023-11-19 13:38:51 Using following Juju cloud configuration:
clouds:
appliance:
type: lxd
auth-types: [certificate]
endpoint: https:/
config:
ssl-
Cloud "appliance" successfully added to your local client.
You will need to add a credential for this cloud (`juju add-credential appliance`)
before you can use it to bootstrap a controller (`juju bootstrap appliance`) or
to create a model (`juju add-model <your model name> appliance`).
Credential "admin" added locally for cloud "appliance".
2023-11-19 13:38:58 Successfully configured Juju
Creating Juju controller "appliance" on appliance/default
Looking for packaged Juju agent version 2.9.42 for amd64
Located Juju agent version 2.9.42-ubuntu-amd64 at https:/
To configure your system to better support LXD containers, please see: https:/
Launching controller instance(s) on appliance/
ERROR failed to bootstrap model: cannot start bootstrap instance in availability zone "lxd0": write tcp 10.0.0.
ty
Changed in anbox-cloud: | |
assignee: | Simon Fels (morphis) → nobody |
Hey Eduardo,
the actual problem seems to be
2023-11-19 13:35:14 Running on OCI, applying firewall rules
iptables v1.8.7 (nf_tables): chain `anbox-ingress' in table `filter' is incompatible, use 'nft' tool.
iptables v1.8.7 (nf_tables): chain `anbox-forward' in table `filter' is incompatible, use 'nft' tool.
We have to apply additional firewall rules as OCI is a bit special in its instance firewalling. As the commands fails we subsequent Juju bootstrap will fail as well as external access on 10.0.0.241:8443 (LXD) is denied.
I will try and reproduce this and come up with a workaround and fix for the next patch release.