-
-
Notifications
You must be signed in to change notification settings - Fork 3.3k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Bug]068版本以后tproxy下docker的udp不通 #4311
Comments
你的意思是docker的udp不通? |
+1,应该同样问题,70版本会导致内网穿透服务失效 |
wireguard和tailscale都正常啊,docker的udp不通是因为现在的版本默认代理路由自身的udp |
我是用的istore易有云,这东西应该是运行在host网络的,70版本无法打洞,64版本一下就打洞成功了,不过这东西没有相关日志,难以排查。还有麻烦请教下V佬各dev版本有存档能下载嘛,我记得64后一个dev版本的openclash于我而言用着没什么问题,想先装回去用。 |
排查了一下 |
我在升级后遇到了docker pull失败的情况,DNS解析是没问题的 |
那直接把udp代理关了试试,tproxy应该还是受docker的bridge-nf-call-iptables影响 |
目前是重启内核后tailscale的打洞没有问题,我的tailscale在docker,但是观察日志openclash出现一次防火墙重置后,在外用WiFi打洞不成功,蜂窝网5G还能成功,但是防火墙重置几次后蜂窝网也打洞失败,需要重启内核后又恢复正常! |
Verify Steps
OpenClash Version
v0.46.070
Bug on Environment
Istoreos
OpenWrt Version
istoresos 22.03.7
Bug on Platform
Linux-amd64(x86-64)
Describe the Bug
068版本开始,docker如果网络模式是host,tproxy的udp均不通,tun正常,不管是纯tun还是混合,我知道固件如果有docker建议用tun,但068版本以前tproxy的udp也正常。
istoreos的防火墙版本是firewall3
To Reproduce
必然覆现
OpenClash Log
OpenClash Config
Expected Behavior
希望tproxy恢复docker在host网络下udp正常
Additional Context
No response
The text was updated successfully, but these errors were encountered: