Docker Community Forums

Share and learn in the Docker community.

Docker update on Fedora 22 can not link containers

(Kayvan Sylvan) #1

Up until the latest update, networking between linked containers worked great. Now, it does not.

Here’s my easy test case:

$ rpm -q docker

In one window:

$ docker run --rm -it --name=one /bin/sh
/ # nc -l -p 4444

On the Fedora 22 host:

$ docker inspect one | grep 172
    "Gateway": "",
    "IPAddress": "",

$ nc 4444

And the “hello” shows up in the “one” container.

Now, on the host again, fire up another container linked with the first:

$ docker run --rm -it --name=two --link one:one /bin/sh
/ # 

Now, inside the “two” container:

/ # ping one
PING one ( 56 data bytes
64 bytes from seq=0 ttl=64 time=0.160 ms
64 bytes from seq=1 ttl=64 time=0.100 ms
--- one ping statistics ---
2 packets transmitted, 2 packets received, 0% packet loss
round-trip min/avg/max = 0.100/0.130/0.160 ms

Looks like I can ping the other container, but this:

/ # nc one 4444
nc: can't connect to remote host ( No route to host
/ #

Up till this last update, this all worked. Any suggestions? I added all this info to the bugzilla bug:

(Kayvan Sylvan) #2

Another update for anyone else following this:

Here is a (better) workaround till this gets fixed in the Fedora package:

After bringing up the docker daemon (so the DOCKER) firewall chain is there, as root, run:

iptables -A DOCKER --source --destination \
  -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT

iptables -A DOCKER --destination --source -j ACCEPT

Now the forwarding works as expected and linked containers work.