vnt icon indicating copy to clipboard operation
vnt copied to clipboard

点对点通但是点对网不通

Open panther1942 opened this issue 1 year ago • 5 comments

局域网192.168.3.0/24,局域网内linux机器局域网地址192.168.3.2/24,vnt地址10.26.0.2,我笔记本vnt地址10.26.0.3,现在的情况是我笔记本可以通过10.26.0.2访问局域网内的linux机器,能ping通192.168.3.0/24内的nas,软路由,和其他内网设备。但是无法访问这些设备,包括无法通过192.168.3.2访问那台linux机器。iptables已做配置,forward已放通,路由后地址转换也做了,ping的时候在其他设备上用tcpdump能看到是从linux机器(192.168.3.2)过来的数据包,但是像http这些协议就过不来,抓包显示一直在重传。 顺便问一下,p2p建立后两端的设备之间建立的是tcp还是udp连接,udp运营商封的比较厉害,尤其是限速很严重,开网页都费劲。

panther1942 avatar Dec 17 '24 01:12 panther1942

看用telnet能不能通,p2p一般都是udp

vnt-dev avatar Dec 17 '24 01:12 vnt-dev

看用telnet能不能通,p2p一般都是udp

telnet也不通,以下是跳板机tcpdump抓包记录 sudo tcpdump -vv -nn ! port 22(已排除ssh流量)

10.26.0.4 > 10.26.0.2: ip-proto-17 09:54:57.064541 IP (tos 0x0, ttl 64, id 47099, offset 0, flags [DF], proto UDP (17), length 78) 10.26.0.4.45646 > 10.26.0.2.37308: [udp sum ok] UDP, length 50 09:54:57.098537 IP (tos 0x0, ttl 64, id 41679, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.34492 > 10.26.0.2.40845: Flags [S], cksum 0xeea9 (correct), seq 2959356945, win 64860, options [mss 1380,sackOK,TS val 2840892411 ecr 0,nop,wscale 7], length 0 09:54:57.102659 IP (tos 0x0, ttl 64, id 2987, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.33442 > 10.26.0.2.40845: Flags [S], cksum 0x361a (correct), seq 1079009482, win 64860, options [mss 1380,sackOK,TS val 2840892416 ecr 0,nop,wscale 7], length 0 09:54:58.150110 IP (tos 0x0, ttl 64, id 2988, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.33442 > 10.26.0.2.40845: Flags [S], cksum 0x3206 (correct), seq 1079009482, win 64860, options [mss 1380,sackOK,TS val 2840893460 ecr 0,nop,wscale 7], length 0 09:54:58.150677 IP (tos 0x0, ttl 64, id 41680, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.34492 > 10.26.0.2.40845: Flags [S], cksum 0xea90 (correct), seq 2959356945, win 64860, options [mss 1380,sackOK,TS val 2840893460 ecr 0,nop,wscale 7], length 0 09:54:59.170752 IP (tos 0x0, ttl 64, id 41681, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.34492 > 10.26.0.2.40845: Flags [S], cksum 0xe690 (correct), seq 2959356945, win 64860, options [mss 1380,sackOK,TS val 2840894484 ecr 0,nop,wscale 7], length 0 09:54:59.171266 IP (tos 0x0, ttl 64, id 2989, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.33442 > 10.26.0.2.40845: Flags [S], cksum 0x2e06 (correct), seq 1079009482, win 64860, options [mss 1380,sackOK,TS val 2840894484 ecr 0,nop,wscale 7], length 0 09:55:00.197821 IP (tos 0x0, ttl 64, id 2990, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.33442 > 10.26.0.2.40845: Flags [S], cksum 0x2a06 (correct), seq 1079009482, win 64860, options [mss 1380,sackOK,TS val 2840895508 ecr 0,nop,wscale 7], length 0 09:55:00.198039 IP (tos 0x0, ttl 64, id 41682, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.34492 > 10.26.0.2.40845: Flags [S], cksum 0xe290 (correct), seq 2959356945, win 64860, options [mss 1380,sackOK,TS val 2840895508 ecr 0,nop,wscale 7], length 0 09:55:01.222225 IP (tos 0x0, ttl 64, id 41683, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.34492 > 10.26.0.2.40845: Flags [S], cksum 0xde90 (correct), seq 2959356945, win 64860, options [mss 1380,sackOK,TS val 2840896532 ecr 0,nop,wscale 7], length 0 09:55:01.222478 IP (tos 0x0, ttl 64, id 2991, offset 0, flags [DF], proto TCP (6), length 60) 10.26.0.4.33442 > 10.26.0.2.40845: Flags [S], cksum 0x2606 (correct), seq 1079009482, win 64860, options [mss 1380,sackOK,TS val 2840896532 ecr 0,nop,wscale 7], length 0 09:55:02.011716 IP (tos 0x0, ttl 64, id 62168, offset 0, flags [+], proto UDP (17), length 1420)

panther1942 avatar Dec 17 '24 02:12 panther1942

还有一件事 服务端我是ecs自建的 上面还建了wg vnts我只指定了端口号 还需要作别的配置吗 ipv4转发已经打开了

panther1942 avatar Dec 17 '24 03:12 panther1942

1.2.16 版本点对网 异常,1.2.15版本是可以正常使用的

Eric-Qiu1994 avatar Mar 06 '25 03:03 Eric-Qiu1994

1.2.16 版本点对网 异常,1.2.15版本是可以正常使用的

额,苦逼调了一天了,到最后才怀疑的版本问题

steinvenic avatar Mar 25 '25 10:03 steinvenic