lively-salesclerk-37295
08/20/2022, 2:48 PMyml
- traefik.enable=true
- traefik.tcp.routers.mqtts.rule=HostSNI(`broker.NETMAKER_BASE_DOMAIN`)
- traefik.tcp.routers.mqtts.tls.passthrough=true
- traefik.tcp.services.mqtts-svc.loadbalancer.server.port=8883
- traefik.tcp.routers.mqtts.service=mqtts-svc
- traefik.tcp.routers.mqtts.entrypoints=websecure
As far as I understand, I take the raw stream
on port 443 and pass it to mqtt port 8883
without any form of TLS decapsulation? Should nginx apply TLS or leave that to mqtt as well?bored-island-21407
08/20/2022, 2:51 PMlively-salesclerk-37295
08/20/2022, 2:51 PMNET::ERR_CERT_INVALID
bored-island-21407
08/20/2022, 2:52 PMlively-salesclerk-37295
08/20/2022, 2:53 PMbored-island-21407
08/20/2022, 2:53 PMlively-salesclerk-37295
08/20/2022, 8:49 PM1661029220: Client <unknown> disconnected: Protocol error.
1661029224: New connection from xxx:yyy on port zzz.
1661029224: OpenSSL Error[0]: error:14094412:SSL routines:ssl3_read_bytes:sslv3 alert bad certificate
I tried a full reinstall of all containers and volumes but nothing changed. I also tried the troubeshooting steps in above gist, but no help either.bored-island-21407
08/20/2022, 9:21 PMlively-salesclerk-37295
08/20/2022, 9:21 PMbored-island-21407
08/20/2022, 9:22 PMlively-salesclerk-37295
08/20/2022, 9:23 PMbored-island-21407
08/20/2022, 9:23 PMlively-salesclerk-37295
08/20/2022, 9:23 PMMQ_PORT
is that okay?bored-island-21407
08/20/2022, 9:24 PMlively-salesclerk-37295
08/20/2022, 9:24 PM[netmaker] 2022-08-20 21:23:54 checking keys and certificates
[netmaker] 2022-08-20 21:23:54 generating new root key
[netmaker] 2022-08-20 21:23:54 generating new root CA
[netmaker] 2022-08-20 21:23:54 generating new server key/certificate
[netmaker] 2022-08-20 21:23:54 generating new server client key/certificate
[netmaker] 2022-08-20 21:23:54 ensure the root.pem, root.key, server.pem, and server.key files are updated on your broker
[netmaker] 2022-08-20 21:23:54 REST Server successfully started on port 8081 (REST)
[netmaker] 2022-08-20 21:23:54 connecting to mq broker at netmaker-mq:1883 with TLS? false
[netmaker] 2022-08-20 21:23:55 successfully connected to mq broker
bored-island-21407
08/20/2022, 9:24 PMlively-salesclerk-37295
08/20/2022, 9:25 PMbored-island-21407
08/20/2022, 9:25 PMlively-salesclerk-37295
08/20/2022, 9:25 PMlively-salesclerk-37295
08/20/2022, 9:27 PM[netclient.exe] 2022-08-20 22:27:22 could not connect to broker at website:port
bored-island-21407
08/20/2022, 9:29 PMlively-salesclerk-37295
08/20/2022, 9:30 PM2022/08/20 22:29:53 daemon restart failed failed to find pid could not read pid file open /var/run/netclient.pid: no such file or directory
[netclient-arm64] 2022-08-20 22:29:54 error running command: systemctl restart netclient.service
[netclient-arm64] 2022-08-20 22:29:54 Failed to restart netclient.service: Unit netclient.service not found.
bored-island-21407
08/20/2022, 9:31 PMlively-salesclerk-37295
08/20/2022, 9:31 PMbored-island-21407
08/20/2022, 9:33 PM.netclient install
before you do the join or run ./netclient join
with --deamon install
flaglively-salesclerk-37295
08/20/2022, 9:33 PMbored-island-21407
08/20/2022, 9:34 PMlively-salesclerk-37295
08/20/2022, 9:35 PM[netclient-arm64] 2022-08-20 22:38:09 network: mesh error setting cfg.Node.Endpoint.
[netclient-arm64] 2022-08-20 22:38:09 error installing: public address not found
bored-island-21407
08/20/2022, 9:40 PMlively-salesclerk-37295
08/20/2022, 9:40 PMbored-island-21407
08/20/2022, 9:40 PMlively-salesclerk-37295
08/20/2022, 9:41 PM[netclient-arm64] 2022-08-20 22:40:49 [join.go-91] JoinNetwork(): network: mesh error setting cfg.Node.Endpoint.
[netclient-arm64] 2022-08-20 22:40:49 [commands.go-23] Join(): error installing: public address not found
[netclient-arm64] 2022-08-20 22:40:49 [systemd.go-124] RemoveSystemDServices(): removed systemd remnants if any existed
bored-island-21407
08/20/2022, 9:42 PMcurl ifconfig.me
return on that machinelively-salesclerk-37295
08/20/2022, 9:44 PMbored-island-21407
08/20/2022, 9:44 PMlively-salesclerk-37295
08/20/2022, 9:45 PMbored-island-21407
08/20/2022, 9:46 PMlively-salesclerk-37295
08/20/2022, 9:47 PMbored-island-21407
08/20/2022, 9:48 PMlively-salesclerk-37295
08/20/2022, 9:49 PMbored-island-21407
08/20/2022, 9:49 PMlively-salesclerk-37295
08/20/2022, 9:49 PMbored-island-21407
08/20/2022, 9:50 PMlively-salesclerk-37295
08/20/2022, 9:50 PMbored-island-21407
08/20/2022, 9:51 PMlively-salesclerk-37295
08/20/2022, 9:52 PMnetclient install
breaks my DNS on Ubuntunetclient install
, ping google.com
works, right after, it fails with Temporary failure in name resolution
bored-island-21407
08/20/2022, 9:54 PMlively-salesclerk-37295
08/20/2022, 9:55 PMbored-island-21407
08/20/2022, 9:55 PMsystemctl --failed
after the installlively-salesclerk-37295
08/20/2022, 9:57 PMroot@user:~# systemctl --failed
UNIT LOAD ACTIVE SUB DESCRIPTION
0 loaded units listed.
bored-island-21407
08/20/2022, 9:58 PMlively-salesclerk-37295
08/20/2022, 9:58 PMsystemctl status systemd-resolved
before and after, absolutely no differencebored-island-21407
08/20/2022, 10:01 PMlively-salesclerk-37295
08/20/2022, 10:02 PMbored-island-21407
08/20/2022, 10:03 PMlively-salesclerk-37295
08/20/2022, 10:04 PMsystemctl daemon-reload
and it did not break DNSbored-island-21407
08/20/2022, 10:05 PMlively-salesclerk-37295
08/20/2022, 10:05 PMwinsw.exe
and put it next to it?