问题描述
配置如下:network_manager=nova.network.manager.FlatDHCPManagerfirewall_driver=nova.virt.libvirt.firewall.IptalbesFirewallDrivernetwork_size=254allow_same_net_traffic=Falsemulti_host=Truesend_arp_for_ha=Trueshare_dhcp_address=Trueforce_dhcp_release=Trueflat_interface=eth1flat_network_bridge=br100public_interface=eth1[root@compute1~]#routeKernelIProutingtableDestinationGatewayGenmaskFlagsMetricRefUseIface192.168.70.0*255.255.255.0U000eth010.0.0.0*255.255.255.0U000br100192.168.122.0*255.255.255.0U000virbr0link-local*255.255.0.0U100200eth0default10.0.0.10.0.0.0UG000br100结果如下:[root@compute1~]#pingwww.baidu.comping:unknownhostwww.baidu.cometh0配置的192段eth1配置的10段[root@compute1~]#iptables-tfilter-S-PINPUTACCEPT-PFORWARDACCEPT-POUTPUTACCEPT-Nnova-api-metadat-FORWARD-Nnova-api-metadat-INPUT-Nnova-api-metadat-OUTPUT-Nnova-api-metadat-local-Nnova-filter-top-Nnova-network-FORWARD-Nnova-network-INPUT-Nnova-network-OUTPUT-Nnova-network-local-AINPUT-jnova-network-INPUT-AINPUT-jnova-api-metadat-INPUT-AINPUT-ivirbr0-pudp-mudp--dport53-jACCEPT-AINPUT-ivirbr0-ptcp-mtcp--dport53-jACCEPT-AINPUT-ivirbr0-pudp-mudp--dport67-jACCEPT-AINPUT-ivirbr0-ptcp-mtcp--dport67-jACCEPT-AINPUT-mstate--stateRELATED,ESTABLISHED-jACCEPT-AINPUT-picmp-jACCEPT-AINPUT-ilo-jACCEPT-AINPUT-ptcp-mstate--stateNEW-mtcp--dport22-jACCEPT-AINPUT-jREJECT--reject-withicmp-host-prohibited-AFORWARD-jnova-filter-top-AFORWARD-jnova-network-FORWARD-AFORWARD-jnova-api-metadat-FORWARD-AFORWARD-d192.168.122.0/24-ovirbr0-mstate--stateRELATED,ESTABLISHED-jACCEPT-AFORWARD-s192.168.122.0/24-ivirbr0-jACCEPT-AFORWARD-ivirbr0-ovirbr0-jACCEPT-AFORWARD-ovirbr0-jREJECT--reject-withicmp-port-unreachable-AFORWARD-ivirbr0-jREJECT--reject-withicmp-port-unreachable-AFORWARD-jREJECT--reject-withicmp-host-prohibited-AOUTPUT-jnova-filter-top-AOUTPUT-jnova-network-OUTPUT-AOUTPUT-jnova-api-metadat-OUTPUT-Anova-api-metadat-INPUT-d192.168.70.201/32-ptcp-mtcp--dport8775-jACCEPT-Anova-filter-top-jnova-network-local-Anova-filter-top-jnova-api-metadat-local-Anova-network-FORWARD-d255.255.255.255/32-pudp-mphysdev--physdev-ineth1-mudp--dport67-jDROP-Anova-network-FORWARD-d255.255.255.255/32-pudp-mphysdev--physdev-outeth1-mudp--dport67-jDROP-Anova-network-FORWARD-d10.0.0.1/32-mphysdev--physdev-ineth1-jDROP-Anova-network-FORWARD-s10.0.0.1/32-mphysdev--physdev-outeth1-jDROP-Anova-network-FORWARD-ibr100-jACCEPT-Anova-network-FORWARD-obr100-jACCEPT-Anova-network-INPUT-ibr100-pudp-mudp--dport67-jACCEPT-Anova-network-INPUT-ibr100-ptcp-mtcp--dport67-jACCEPT-Anova-network-INPUT-ibr100-pudp-mudp--dport53-jACCEPT-Anova-network-INPUT-ibr100-ptcp-mtcp--dport53-jACCEPT[root@compute1~]#iptables-tnat-S-PPREROUTINGACCEPT-PPOSTROUTINGACCEPT-POUTPUTACCEPT-Nnova-api-metadat-OUTPUT-Nnova-api-metadat-POSTROUTING-Nnova-api-metadat-PREROUTING-Nnova-api-metadat-float-snat-Nnova-api-metadat-snat-Nnova-network-OUTPUT-Nnova-network-POSTROUTING-Nnova-network-PREROUTING-Nnova-network-float-snat-Nnova-network-snat-Nnova-postrouting-bottom-APREROUTING-jnova-network-PREROUTING-APREROUTING-jnova-api-metadat-PREROUTING-APOSTROUTING-jnova-network-POSTROUTING-APOSTROUTING-jnova-api-metadat-POSTROUTING-APOSTROUTING-jnova-postrouting-bottom-APOSTROUTING-s192.168.122.0/24!-d192.168.122.0/24-ptcp-jMASQUERADE--to-ports1024-65535-APOSTROUTING-s192.168.122.0/24!-d192.168.122.0/24-pudp-jMASQUERADE--to-ports1024-65535-APOSTROUTING-s192.168.122.0/24!-d192.168.122.0/24-jMASQUERADE-AOUTPUT-jnova-network-OUTPUT-AOUTPUT-jnova-api-metadat-OUTPUT-Anova-api-metadat-snat-jnova-api-metadat-float-snat-Anova-network-POSTROUTING-s10.0.0.0/24-d192.168.70.201/32-jACCEPT-Anova-network-POSTROUTING-s10.0.0.0/24-d10.0.0.0/24-mconntrack!--ctstateDNAT-jACCEPT-Anova-network-PREROUTING-d169.254.169.254/32-ptcp-mtcp--dport80-jDNAT--to-destination192.168.70.201:8775-Anova-network-snat-jnova-network-float-snat-Anova-network-snat-s10.0.0.0/24-oeth0-jSNAT--to-source192.168.70.201-Anova-postrouting-bottom-jnova-network-snat-Anova-postrouting-bottom-jnova-api-metadat-snat求帮助
解决方案
解决方案二:
Thewarningis'unknowhostname'.MaybethereissomethingwrongwiththeDNS.Pleasecheckonthe/etc/resolve.confortrytoconnectwww.baidu.comwithitspublicIP.Ifyoucouldconnectthewww.baidu.comwithitspublicIP,thentheremaybesomethingwrongwithDNS.