netns-isolation: don't auto-assign IPv6 addrs to peer links
This simplifies the host's address configuration. This also removes unused addresses that are returned when resolving container hostnames via nss-mymachines: `getent ahosts nb-test`
This commit is contained in:
parent
6584540828
commit
c30fe1919b
@ -173,6 +173,8 @@ in {
|
|||||||
${ip} link add ${veth} type veth peer name ${peer}
|
${ip} link add ${veth} type veth peer name ${peer}
|
||||||
${ip} link set ${veth} netns ${netnsName}
|
${ip} link set ${veth} netns ${netnsName}
|
||||||
${ipNetns} addr add ${v.address}/24 dev ${veth}
|
${ipNetns} addr add ${v.address}/24 dev ${veth}
|
||||||
|
# The peer link is never used directly, so don't auto-assign an IPv6 address
|
||||||
|
echo 1 > /proc/sys/net/ipv6/conf/${peer}/disable_ipv6
|
||||||
${ip} link set ${peer} up
|
${ip} link set ${peer} up
|
||||||
${ipNetns} link set ${veth} up
|
${ipNetns} link set ${veth} up
|
||||||
${ip} link set ${peer} master nb-br
|
${ip} link set ${peer} master nb-br
|
||||||
|
Loading…
Reference in New Issue
Block a user