mirror of
https://github.com/netbirdio/netbird.git
synced 2026-06-10 09:22:09 -04:00
Unable to ping other peers on netbird network #597
Open
opened 2025-11-20 05:14:26 -05:00 by saavagebueno
·
23 comments
No Branch/Tag Specified
main
dependabot/go_modules/testcontainers-9a9ed843ba
dependabot/go_modules/github.com/fsnotify/fsnotify-1.10.1
peer-acl-multi-source
relay-transport-observability
embedded-vnc
windows-dns-firewall
ui-refactor
tests/enable-race-on-tests
dependabot/go_modules/aws-sdk-e0d7f0be02
dependabot/github_actions/actions-1b76ec1a46
dependabot/go_modules/pion-04391f0276
dependabot/go_modules/otel-e34c790afd
dependabot/go_modules/gorm-2271c8195b
dependabot/go_modules/wireguard-dbd6b95108
feature/affected-peers
mdm_integration
ui-refactor-gtk3
wasm-websocket-dial
feature/affected-peers-grpc
profile-id-name
remove-deprecated-remote-peers
profile-id
lazyconn-first-packet-fix-v2
claude/focused-gates-VMTgb
feature/immediate-handshake-on-endpoint-change
refactor/mgmt-bootstrap
dependabot/go_modules/github.com/quic-go/quic-go-0.59.1
fix/ios-login-expiry-blackhole
fix/ios-debug-bundle
fix/exit-node-v6-deselect-propagation
ui-tray-linux-leftclick
dependabot/go_modules/github.com/rs/cors-1.11.1
dependabot/go_modules/github.com/ebitengine/purego-0.10.1
dependabot/go_modules/github.com/c-robinson/iplib-1.0.8
dependabot/go_modules/github.com/redis/go-redis/v9-9.20.0
dependabot/go_modules/github.com/cilium/ebpf-0.21.0
dependabot/go_modules/github.com/coreos/go-iptables-0.8.0
dependabot/go_modules/golang.org/x/mod-0.36.0
dependabot/go_modules/github.com/spf13/pflag-1.0.10
fix/ctx-enrichment
nmap/components-impl
daemon-owner
dependabot/go_modules/github.com/crowdsecurity/crowdsec-1.7.8
client-json-socket
feature/android-client-ssh
feature/ios-ssh
worktree-accept-ra-forwarding
nmap/combined-deploy
task/align_protobuff_toolset
feature/session-extend
add-json-yaml-flags
refactor/ephemeral-cleanup
claude/webtransport-relay-wasm-mUjY9
claude/vnc-udp-feasibility-6KB1U
fix-ssh-authorized-users-multi-rule
fix/wgport-config
drop-candidateviaroutes-filter
e2e-windows-dns-combined
dependabot/go_modules/github.com/Azure/go-ntlmssp-0.1.1
debug-logs
dependabot/go_modules/github.com/jackc/pgx/v5-5.9.2
fix/login-cmd-root-flags
feat/reseller-openapi-spec
github-issue-resolver
add-steamos-support
fix-darwin-uninstaller
flutter-test
dependabot/npm_and_yarn/proxy/web/postcss-8.5.12
ci/freebsd-pkg-bootstrap
cached-serial-check-on-sync
fix-mgmt-cache-bypass-overlay
revert-easyjson-5938
revert-ice-5820
revert-firewalld-5928
refactor/permissions-manager
revert-dns-5935-systemd-resolved
revert-dns-5935-5945
revert-dns-5945-mgmt-cache
feature/log-most-busy-peers
prototype/ui-wails
coderabbitai/utg/8ae8f20
feature/use-peer-fqdn-on-https
dependabot/go_modules/golang.org/x/image-0.38.0
feature/metrics-push-management-control
release/0.68.3
dependabot/go_modules/github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream-1.7.8
dependabot/go_modules/github.com/aws/aws-sdk-go-v2/service/s3-1.97.3
add-slack-channel
claude/rdp-token-passthrough-eNcqW
transparent-proxy
fix/macos-stale-route-eexist
crowdsec-selfhosted
fix/remove-otel-units
entire/checkpoints/v1
dependabot/go_modules/github.com/go-jose/go-jose/v4-4.1.4
fix/getting-started
feat/static-connectors-combined-server
feature/use-local-keys-embedded
feature/fleetdm
set-env-only-if-not-fork
feature/expose-has-channel
fix/connection-status-race
fix/filter-cgnat-cni-ice-candidates
feature/check-cert-locker-before-acme
test/proxy-fixes
test/proxy-mtu
prototype/ui-tauri
test/proxy-speed
fix-reused-ports
feat/migrate-to-embedded-idp
feature/add-serial-to-proxy-merged
deploy/proxy-serial
test/connection
feature/disable-legacy-port
feature/flag-to-disable-legacy-port
test/perftest
dependabot/go_modules/github.com/pion/dtls/v3-3.0.11
fix/http-redirect
poc-token-command
dn-reverse-proxy
prototype/reverse-proxy-rename
prototype/reverse-proxy-logs-pagination
feature/client-metrics
prototype/reverse-proxy-clusters
debug-dns-route
fix/win-dns-batch
add-extra-route-logs
job-stream-notify-disconnection-eof
deploy/secrets-manager
trigger-proxy-update
bug/update-ios-client-code-build-tags
sync-client-netmap-serial
log/conn-disconn
nmap/compaction-deploy
ci-win-test
feature/disk-encryption-check
wasm-debug
swap-dns-prio
fix/dex-config
feature/migrate-auto-groups-to-table
dependabot/go_modules/github.com/quic-go/quic-go-0.57.0
nmap/compaction
dex-nocgo-stub
feature/exclude-terraform-from-rate-limiting
test-freebsd
retries-refactor
coderabbitai/docstrings/b7e98ac
feat/integrate-zitadel
bug/ios-hanging-reconection
zitadel-idp
feat/network-map-serial
refactor/get-account-no-users
feat/auto-upgrade
feature/report-high-pat-id
feature/temporary-access-for-resource
fix/nmap-fwrules
dont-restart-dns
prototype/ui
update-gomobile
go-dns-for-ice
wasm-ldflags
test-ldflags
wasmbuild-test
feature/networks-s2s
vk/compare-nmaps
dbg/bothmaps
feature/changeset
reorder-dns-shutdown
fix/relay-reconnection-race
fix/nmap-exitnodes
vk/debug/nmap-both
move-licensed-code
feat/better-daemon-connection-lost-message
feat/auto-update-2
test/timings
refactor/getaccount-raw
tests/nmap-getaccount
refactor/nmap
refactor/nmap-limit-buffer
feature/detect-mac-wakeup
feature/extract-modules
quick-setings
feat/sync-limiter
feature/store-cache-impl
fix-install-version
feature/store-metrics
feature/metrics-on-store
feature/use-gorm-cache
loadtest-signal
unsymmetrical-squash
refactor/reducate-signaling
test/update-reduce
feature/store-cache
feature/remote-debug
cli-ws-proxy-backend-addr
feat/mgmt-map-serial
snyk-fix-d9d0081a4c7f9137bdb59d0d50a141a2
snyk-fix-7415cea5a11acd66753540ca2c598c63
job-yml-update
feature/android-allow-selecting-routes
fix/up-sequence
fix/dns-hash-update
snyk-fix-967adae9863f17f108ce8948d9117b8d
log/getaccount-by-peer
signal-suppressor
dns-exit-node
feature/auto-updates
feature/cache-srv-key
merged-fixes
fix/missed-offers-and-debug
debug-and-fixes
poc-wasm-clean-backend-s2s
test/remote-debug
debug-api
dependabot/go_modules/github.com/docker/docker-28.0.0incompatible
fix/remove-gpo-if-empty
fix/test-freebsd
fix/mysql-setup
fix/remove-logout-btn
handle-existing-domain-user
chore/unify-domain-validation
snyk-fix-c5fafc8a50ce1f29046e25a1fc346185
feat/profile-edit-btn
snyk-fix-a54966211e18d4cf67e5a2757cc006d1
log-short-id
feat/logout-ephemeral
log-checks
batch-wg-ops
nb-interface-default
feat/aws-integration
add/race-test
feature/relay-feature-versioning
fix/systemd-service-logs
poc/preprocessed-map
add-account-onboarding
bind-ipv6
fix/merge-main
logs/peerlogs-addpeer
feature/net-297-network-migration
feature/support-skip-auto-apply-exit-node-routes
set-cmd
set-command-with-cursor
feature/limit-update-channel
stop-using-locking-share
feature/poc-lazy-detection
feature/net-248-removal-of-sync-mutex-locks
test/multiple-peer-logging
preresolve
add-ns-punnycode-support
apply-routes-early
windows-search-domains
fix/connecting-route-filter
feature/management/rest-client/impersonate
debug-local-records
resource-fields-snake-case
test/grpc-rate-limit
traffic-correlation-policy
feature/rest-client-options
feat/events-metrics
feature/buf-cli
test/add-ratelimiter
test/remove-write-lock-on-add-peer
fix/add-peer-semaphore
feature/users-roles-endpoint
mlsmaycon-patch-1
debug-user-role
chore/primary-key-on-networks
feature/update-account-peers-buffer-startup
remove-ubuntu2004-runners
refactor/permissions-no-pat-allowed
ref/logrus-factory
use-conntrack-zone
deploy/permissions-account
feature/lazy-connection-idle
ref/improve-test-cov
restore-pr-3440
test/increase-grpc-timeouts
feat/buffer-account-peers-update
test/networkmapgeneration-changes
feature/base-manager
feature/flow-receiver
chore/benchmark-with-large-runner
refactor/handshake-initiator
client/ui-update-systray-icons
userspace-router
wgwatcher-test
output-if-key-already-exists
fix/relay-reconnection
feature/port-forwarding-client-codecleaning
detached2
test/callbacks-nil-iceconninfo
refactor/optimize-peer-expiration
enable-udp-port-for-docker-template
fix/relay-update
feature/apply-posture-netmap
fix/group-update-existing-resource
conntrack-stats
upgrade-okta-sdk
multi-price
test/conn-stat
set-min-parallel-tests-for-management
dns-interceptor
debug-dns
router-dns
add-static-system-info
debug-0.29.4
debug-0.33.0
account-refactoring
relay/2800_quic
route-get-account-refactoring
test/seed-random-routes
feature/get-account-refactoring
test/reconnect-race-condition
refactor/get-account-usage
feature/add-session-id-to-update-channel
improve-ipv4conn
fix/async-pion-event-handling
debug
add-offload
feature/validate-group-association-debug
fix/limit-conn-for-sqlite
test/engine-iface
test/transaction-for-jwt-sync
fix/engine-stop-in-foreground
feature/add-mysql-support
test-migration
refactor/header-size-values
relay/eliminate-gob
test/signal-dispatcher-with-relay
relay/debug
validate-icon
feature/ipv6-support
use-pre-expanded-peers-map
feature/use-signal-dispatcher
validate/peer-status
add-read-write-times
fix/sync-peer-race
feature/relay-status
netmap
evaluate/network-map-hash
fix/lower-dns-resolve-interval-on-fail
feature/relay
fix/go-mod-version
upgrade-nftables
synology-userspace-mode
fix/use-ip-for-default-routes-on-darwin
fix/proxy_close
enable-release-workflow-on-pr
deploy/peer-performance
feature/permanent-turn
feature/permanent-turn-proxy
deploy/posture-check-sqlite
feature/optimize_sqlite_save
debug-ios-behavior
fix/delete-route-only-after-adding
tshoot/windows-logger
remove-new-routing
refactor/eliminate-repo-dependency
add-arm-to-ci
refactor-demo-account-object
test/abc2
test/abc
send-ssh-rosenpass-config-meta
refactor-demo
ensure-schedule-never-runs-non-positive
feature/peer-validator-groupmgm
feature/peer-validator-fix
fix/include-active-dashboard-users
fix/handle-canceling-schedule
fix/geo-download
debug-google-workspace
yury/resolve-ip-to-location
feature/extend-sysinfo
sqlite-async-peer-status
yury/add-postgresql-store
fix/route
test-build
posture-checks-poc
debug-keycloak-idp
poc/netstack
for-pascal-tmp
peer-logout-management
manual-peer-logout
detached
chore/refactor-management
test/dns-bind
fix/enforce-acl-for-containers
yury/use-sync-map-in-updatechannel
fix/events-key-handling
filter-cache-on-load-account
fix/user-expiration
handle-user-context-cancellation
nb-client-k8s-statefulset
fake-addr
fix/iptables_in_docker
ebpf-debug
update-getting-started-flow-use-postgres
fix/peer_list_notification
feature/device-authentication-with-client-secret
feature/keep_alive
feat-groups-from-jwt
separate_proxy_from_wgconfig
fix/wg_conn
wg_conn_fix
wg_bind_parallel_processing
fix-rollback-get-acls
proxy_cfg_cleanup
performance-improvement-rego
update-lock-log-level
feat-client-side-acl
refactor/move_grpcserver_logic_to_account_manager
feature/event-storage
feature/update-idp-redeeming-invite
feature/api-peer-info
return-groupminimum-setupkey
feature/interface-bind
documentation_enhancement
fix-peer-registration
ssh
users_cache
pass-client-caller
client_caller_type
revert-283-feat-fix-windows-installer
periodic-peer-updates
ebpf
braginini/wasm
v0.72.2
v0.72.1
v0.72.0
v0.71.4
v0.71.3
v0.71.2
v0.71.1
v0.71.0
v0.70.5
v0.70.4
v0.70.3
v0.70.2
v0.70.1
v0.70.0
v0.69.0
v0.68.3
v0.68.2
v0.68.1
v0.68.0
v0.67.4
v0.67.3
v0.67.2
v0.67.1
v0.67.0
v0.66.4
v0.66.3
v0.66.2
v0.66.1
v0.66.0
v0.65.3
v0.65.2
v0.65.1
v0.65.0
v0.64.6
v0.64.5
v0.64.4
v0.64.3
v0.64.2
v0.64.1
v0.64.0
v0.63.0
v0.62.3
v0.62.2
v0.62.1
v0.62.0
v0.61.2
v0.61.1
v0.61.0
v0.60.9
v0.60.8
v0.60.7
v0.60.6
v0.60.5
v0.60.4
v0.60.3
v0.60.2
v0.60.1
v0.60.0
v0.59.13
v0.59.12
v0.59.11
v0.59.10
v0.59.9
v0.59.8
v0.59.7
v0.59.6
v0.59.5
v0.59.4
v0.59.3
v0.59.2
v0.59.1
v0.59.0
v0.58.2
v0.58.1
v0.58.0
v0.57.1
v0.57.0
v0.56.1
v0.56.0
v0.55.1
v0.55.0
v0.54.2
v0.54.1
v0.54.0
v0.53.0
v0.52.2
v0.52.1
v0.52.0
v0.51.2
v0.51.1
v0.51.0
v0.50.3
v0.50.2
v0.50.1
v0.50.0
v0.49.0
v0.48.0-dev2
v0.48.0
v0.47.2
v0.47.1
v0.47.0
v0.46.0
v0.45.3
v0.45.2
v0.45.1
v0.45.0
v0.44.0
v0.43.3
v0.43.2
v0.43.1
v0.43.0
v0.42.0
v0.41.3
v0.41.2
v0.41.1
v0.41.0
v0.40.1
v0.40.0
v0.39.2
v0.39.1
v0.39.0
v0.38.2
v0.38.1
v0.38.0
v0.37.2
v0.37.1
v0.37.0
v0.36.7
v0.36.6
v0.36.5
v0.36.4
v0.36.3
v0.36.2
v0.36.1
v0.36.0
v0.35.2
v0.35.1
v0.35.0
v0.34.1
v0.34.0
v0.33.0
v0.32.0
v0.31.1
v0.31.0
v0.30.3
v0.30.2
v0.30.1
v0.30.0
v0.29.4
v0.29.3
0.29.3
v0.29.2
v0.29.1
v0.29.0
v0.28.9
v0.28.8
v0.28.7
v0.28.6
v0.28.5
v0.28.4
v0.28.3
v0.28.2
v0.28.1
v0.28.0
v0.27.10
v0.27.9
v0.27.8
v0.27.7
v0.27.6
v0.27.5
v0.27.4
v0.27.3
v0.27.2
v0.27.1
v0.27.0
v0.26.7
v0.26.6
v0.26.5
v0.26.4
v0.26.3
v0.26.2
v0.26.1
v0.26.0
v0.25.9
v0.25.8
v0.25.7
v0.25.6
v0.25.5
v0.25.4
v0.25.3
v0.25.2
v0.25.1
v0.25.0
v0.24.4
v0.24.3
v0.24.2
v0.24.1
v0.24.0
v0.23.9
v0.23.8
v0.23.7
v0.23.6
v0.23.5
v0.23.4
v0.23.3
v0.23.2
v0.23.1
v0.23.0
v0.22.7
v0.22.6
v0.22.5
v0.22.4
v0.22.3
v0.22.2
v0.22.1
v0.22.0
v0.21.11
v0.21.10
v0.21.9
v0.21.8
v0.21.7
v0.21.6
v0.21.5
v0.21.4
v0.21.3
v0.21.2
v0.21.1
v0.21.0
v0.20.8
v0.20.7
v0.20.6
v0.20.5
v0.20.4
v0.20.3
v0.20.2
v0.20.1
v0.20.0
v0.19.0
v0.18.1
v0.18.0
v0.17.0
v0.16.0
v0.15.3
v0.15.2
v0.15.1
v0.15.0
v0.14.6
v0.14.5
v0.14.4
v0.14.3
v0.14.2
v0.14.1
v0.14.0
v0.13.0
v0.12.0
v0.11.6
v0.11.5
v0.11.4
v0.11.3
v0.11.2
v0.11.1
v0.11.0
v0.10.10
v0.10.9
v0.10.8
v0.10.7
v0.10.6
v0.10.5
v0.10.4
v0.10.3
v0.10.2
v0.10.1
v0.10.0
v0.9.8
v0.9.7
v0.9.6
v0.9.5
v0.9.4
v0.9.3
v0.9.2
v0.9.1
v0.9.0
v0.8.12
v0.8.11
v0.8.10
v0.8.9
v0.8.8
v0.8.7
v0.8.6
v0.8.5
v0.8.4
v0.8.3
v0.8.2
v0.8.1
v0.8.0
v0.7.1
v0.7.0
v0.6.4
v0.6.3
v0.6.2
v0.6.1
v0.6.0
v0.5.11
v0.5.10
v0.5.1
v0.5.0
v0.4.0
v0.3.5
v0.3.4
v0.3.3
v0.3.2
v0.3.1
v0.3.0
v0.2.3
v0.2.2-beta.1
v0.2.1-beta.5
v0.2.0-beta.5
v0.2.0-beta.4
v0.2.0-beta.3
v0.2.0-beta.2
v0.2.0-beta.1
v0.1.0-beta.3
v0.1.0-beta.2
v0.1.0-beta.1
v0.1.0-rc.2
v0.1.0-rc-1
v0.0.8-hotfix-1
v0.0.8
v0.0.7
v0.0.6
v0.0.5
v0.0.4
v0.0.3
v0.0.2
v0.0.1
v0.0.0
Labels
Clear labels
2021 Q4
2022 Q1
2022 Q1
accessibility
acl
agent
agent
Android
Android
api
authentik
automation
azure
battery-usage
bug
cache
client
client-ui
cloud
cloud-only
cloudflare
community
compatibility
config-idp
config-issue
connection
contribution
coturn
cross-vpn
dashboard
data-usage
distribution
dns
docker
documentation
duplicate
enhancement
enhancement
event-stream
feature-request
freebsd
getting-started
go
good first issue
gui
help wanted
home-assistant
idp
inconsistency
integration
integrations
ios
ipv6
jwt
k8s
keycloak
linux
login
macos
management-service
missing-docs
mobile
moved-internal
needs-review
netbird-ui
networking
new-platform
nginx
notification
okta
openwrt
packaging
peer-management
peer-management
peer-management
performance
postgres
posture-checks
psk
pull-request
question
refactor
relay
release
rfc
routes
security
security-related
self-hosting
server
signal
sleep-issue
ssh
ssl
status
store
synology
system-compatibility-issue
test-suite
third-party-integration
triage
triage-needed
troubleshooting
UX
waiting-feedback
windows
wontfix
zitadel
Mirrored from GitHub Pull Request
Milestone
No items
No Milestone
Projects
Clear projects
No project
Assignees
saavagebueno
Clear assignees
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: SVI/netbird#597
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @bmcgonag on GitHub (Jan 29, 2024).
Describe the problem
I have setup a netbird self-hosted network with Authentik as the IdP.
I have added two linux devices and one iphone.
I try to ping from one linux machine to the other on it's netbird ip address.
netbird status -don each linux machine shows the other as a peer, as well as the iphone as a peer that is currently offline.I saw some other posts about similar issues where the person found their turn server config to be incorrect.
I used the site at https://webrtc.github.io/samples/src/content/peerconnection/trickle-ice/ to test my turn configuration and get the following:
I believe everything is setup correctly, but still I am unable to ping the other machine successfully.
In the management.json file I also verified that the turn server credentials match those in the turnserver.conf file.
I have setup 1 extra group called personal, and added all three machines to it. I added an ACL for that group to allow traffic between the machines in the group and made sure it's enabled. Additionally, I have not removed the 'ALL' group, just to be able to compare and contrast having ALL enabled or disabled. No difference.
To Reproduce
Steps to reproduce the behavior:
Expected behavior
I would expect communication between the machines in a group being handled by an ACL to allow communication. At the very least I would expect the machines on the ALL group to be able to communicate.
Are you using NetBird Cloud?
Self-hosted
NetBird version
Server: Docker - version set to
latestClients: Linux Desktops - Fedora 39 -
0.25.4Linux Dekstops - Ubuntu 23.10 -
0.25.5NetBird status -d output:
From the Fedora desktop:
If applicable, add the `netbird status -d' command output.
Screenshots
If applicable, add screenshots to help explain your problem.
Additional context
Add any other context about the problem here.
@bmcgonag commented on GitHub (Jan 30, 2024):
Additional information. I updated my fedora client to 0.25.5-1, and still see the same issue.
@bmcgonag commented on GitHub (Jan 31, 2024):
I completely remade my setup using a new domain name, and still have the following:
netbird status -d.Watched the logs of the
docker compose up -dwhen I started up the new system. Had no errors at all.Everything appears to be communicating properly, except the clients can't seem to communicate with each other. No idea why.
Any help is greatly appreciated.
@wisetux commented on GitHub (Jan 31, 2024):
Hello @bmcgonag, please confirm the VPC you are using to host NetBird server. Might be an issue with reachability to Coturn.
Are you able to ping different hosts on same network using their NetBird hostname?
@bmcgonag commented on GitHub (Feb 1, 2024):
I'm using Digital Ocean. I posted my coturn test results in the original message using Trickle-ice. I don't think that's the issue, but not 100% ceertain of that.
I am unable to ping the hosts by IPv4 or by Hostname. Any direction or help is greatly appreciated.
@bmcgonag commented on GitHub (Feb 2, 2024):
also @wisetux the server I have setup is 1vCPU and 2GB RAM running Ubuntu 22.04 LTS server. Nothing else running on that server, just Netbird.
@wisetux commented on GitHub (Feb 2, 2024):
Thank you for the info. The server specs should be fine as NetBird is very light on resources. However Trickle ICE output looks a little different. This is what I have:
Can you try connecting from a different network or a mobile Hotspot maybe?
@bmcgonag commented on GitHub (Feb 2, 2024):
Ok, yeah I see how your's is different. Any idea what it might be @wisetux ? I have my own Coturn server setup that I use for Matrix, NextCloud, and others, but it uses "static-auth" not "lt-cred-mesh". Can Netbird do "static-auth"?
@bmcgonag commented on GitHub (Feb 3, 2024):
Results when connected through mobile hotspot
@wisetux commented on GitHub (Feb 3, 2024):
I'm not well versed with Coturn server setup and I use a dedicated instance just for Netbird. Maybe this issue might give you more info regarding static-auth configuration:
https://github.com/netbirdio/netbird/issues/569
@magixus commented on GitHub (Feb 6, 2024):
Do you have DNS resolv issue ?
Maybe one of the ERROR below in
/var/log/netbird/client.logfull issue refered here: #1451
@bmcgonag commented on GitHub (Feb 8, 2024):
No. Checked logs, and no errors shown. I have a few WARN, and a lot of INFO states, but no ERRORs logged.
Even tailed the logs while logging in, as well as trying to ping the peer after login.
@tarocjsu commented on GitHub (Feb 19, 2024):
Same sympton here:
root@docker219 ~# netbird status -d
Peers detail:
pve.netbird.selfhosted:
NetBird IP: 100.86.4.26
Public key: dIuwdZzyZpSQPx64I7wo8uzl/su75PaNpklHVhZFkCw=
Status: Connected
-- detail --
Connection type: Relayed
Direct: false
ICE candidate (Local/Remote): relay/host
ICE candidate endpoints (Local/Remote): 114.37.176.127:61298/192.168.1.2:61298
Last connection update: 2024-02-19 14:09:49
Last Wireguard handshake: 2024-02-19 14:32:53
Transfer status (received/sent) 1.1 KiB/3.7 KiB
d9e3486ac0e6.netbird.selfhosted:
NetBird IP: 100.86.24.123
Public key: kMnnFpG4JtOASFHcGO3otQxKFAJQ7lDK1iNpkp9TOyo=
Status: Disconnected
-- detail --
Connection type: Relayed
Direct: false
ICE candidate (Local/Remote): relay/host
ICE candidate endpoints (Local/Remote): 114.37.176.127:57500/192.168.1.236:57500
Last connection update: -
Last Wireguard handshake: 2024-02-19 14:32:00
Transfer status (received/sent) 1.4 KiB/640 B
desktop-0d03977.netbird.selfhosted:
NetBird IP: 100.86.71.168
Public key: BI3zBLxEDNOTo/ouFcrfx+nU8PAbfueTRWfPyUFgFEk=
Status: Connected
-- detail --
Connection type: P2P
Direct: true
ICE candidate (Local/Remote): host/srflx
ICE candidate endpoints (Local/Remote): 192.168.10.219:51820/118.163.170.24:51820
Last connection update: 2024-02-19 14:09:49
Last Wireguard handshake: 2024-02-19 14:33:20
Transfer status (received/sent) 2.9 KiB/2.1 KiB
netbird.netbird.selfhosted:
NetBird IP: 100.86.138.236
Public key: hgOPbz+D5cSiOmIdLbyjzMT85sojs8hGfe8r33/tYTY=
Status: Connected
-- detail --
Connection type: Relayed
Direct: false
ICE candidate (Local/Remote): relay/host
ICE candidate endpoints (Local/Remote): 114.37.176.127:57500/192.168.1.236:57500
Last connection update: 2024-02-19 14:25:15
Last Wireguard handshake: 2024-02-19 14:32:00
Transfer status (received/sent) 1.4 KiB/640 B
pve-dell.netbird.selfhosted:
NetBird IP: 100.86.139.76
Public key: s4KxhTaOhrZgrvi2WDeHDKwIRg2YmeBoNjNGOxrkeyE=
Status: Connected
-- detail --
Connection type: P2P
Direct: true
ICE candidate (Local/Remote): host/host
ICE candidate endpoints (Local/Remote): 192.168.10.219:51820/192.168.10.3:51820
Last connection update: 2024-02-19 14:09:48
Last Wireguard handshake: 2024-02-19 14:31:06
Transfer status (received/sent) 2.9 KiB/2.8 KiB
Daemon version: 0.25.9
CLI version: 0.25.9
Management: Connected to https://netbird.tarosu.eu.org:443
Signal: Connected to https://netbird.tarosu.eu.org:443
Relays:
[stun:netbird.tarosu.eu.org:3478] is Available
[turn:netbird.tarosu.eu.org:3478?transport=udp] is Available
FQDN: docker219.netbird.selfhosted
NetBird IP: 100.86.194.133/16
Interface type: Kernel
Peers count: 4/5 Connected
Only desktop-0d03977.netbird.selfhosted can ping netbird.netbird.selfhosted together, but cannot ping other peers, also other peers cannot ping those two node.
週一 14:18 C:\Users\S2306005
Ping netbird.netbird.selfhosted [100.86.138.236] (使用 32 位元組的資料):
回覆自 100.86.138.236: 位元組=32 時間=10ms TTL=64
回覆自 100.86.138.236: 位元組=32 時間=10ms TTL=64
回覆自 100.86.138.236: 位元組=32 ���間=13ms TTL=64
回覆自 100.86.138.236: 位元組=32 時間=13ms TTL=64
100.86.138.236 的 Ping 統計資料:
封包: 已傳送 = 4,已收到 = 4, 已遺失 = 0 (0% 遺失),
大約的來回時間 (毫秒):
最小值 = 10ms,最大值 = 13ms,平均 = 11ms
週一 14:36 C:\Users\S2306005
Ping pve-dell.netbird.selfhosted [100.86.139.76] (使用 32 位元組的資料):
要求等候逾時。
要求等候逾時。
要求等候逾時。
要求等候逾時。
100.86.139.76 的 Ping 統計資料:
封包: 已傳送 = 4,已收到 = 0, 已遺失 = 4 (100% 遺失),
@tarocjsu commented on GitHub (Feb 19, 2024):
root@netbird:~# netbird status
Daemon version: 0.25.9
CLI version: 0.25.9
Management: Connected
Signal: Connected
Relays: 2/2 Available
FQDN: netbird.netbird.selfhosted
NetBird IP: 100.86.138.236/16
Interface type: Kernel
Peers count: 4/5 Connected
root@netbird:~# ping docker219.netbird.selfhosted
PING docker219.netbird.selfhosted (100.86.194.133) 56(84) bytes of data.
^C
--- docker219.netbird.selfhosted ping statistics ---
17 packets transmitted, 0 received, 100% packet loss, time 16373ms
root@netbird:~# ping desktop-0d03977.netbird.selfhosted
PING desktop-0d03977.netbird.selfhosted (100.86.71.168) 56(84) bytes of data.
64 bytes from 100.86.71.168: icmp_seq=1 ttl=128 time=17.7 ms
64 bytes from 100.86.71.168: icmp_seq=2 ttl=128 time=23.2 ms
64 bytes from 100.86.71.168: icmp_seq=3 ttl=128 time=19.4 ms
64 bytes from 100.86.71.168: icmp_seq=4 ttl=128 time=24.3 ms
64 bytes from 100.86.71.168: icmp_seq=5 ttl=128 time=32.5 ms
^C
--- desktop-0d03977.netbird.selfhosted ping statistics ---
5 packets transmitted, 5 received, 0% packet loss, time 4006ms
rtt min/avg/max/mdev = 17.671/23.421/32.476/5.136 ms
@tarocjsu commented on GitHub (Feb 19, 2024):
ping hostname (FQDN) can been translate to the IP address, only use default ALL group, and Default all pass Access Control setting.
@tarocjsu commented on GitHub (Feb 19, 2024):
Found root cause for my network environment, all cannot ping or been ping system network already install Tailscale daemon, after remove/uninstall the Tailscale daemon, cannot ping issue gone/solved.
@rhinot commented on GitHub (Sep 12, 2024):
Hi All - I have the same issue:
netbird status -d<hostname>.netbird.cloudcorrectly resolves IPThese are new installs (no config other than setup keys) on physical linux, mac, and android devices. I'm wondering if I missed a step in setup.
@bmcgonag Did you ever resolve?
UPDATE: I updated all clients to 29.2, which came out 2 hours ago. While it resolved some errors from the logs, the issue remains.
Ping & traceroute (on first hop) immediately both timeout.
The following is the only ERROR in my logs:
2024-09-12T16:54:05-04:00 ERRO signal/client/grpc.go:399: error while handling message of Peer [key: ] error: [wrongly addressed message ]
@bmcgonag commented on GitHub (Sep 13, 2024):
@rhinot I found, eventually, that I had a tailscale client working with a headscale server on the same machines. So I disconnected the tailscale client, and when I did, Netbird client started working. Not sure why it was such an issue, as they should in theory be using separate virtual networks.
@rhinot commented on GitHub (Sep 13, 2024):
Thanks for the update.
Any guidance on how you were able to debug?
I'm not running tailscale, or any other VPN, on these devices, so I'm perplexed why they can't find routes to each other.
@mrwsl commented on GitHub (Sep 14, 2024):
I was facing the same issue. The solution was to set up a DNS manually to get it working.
@rhinot commented on GitHub (Sep 14, 2024):
@herrwusel thanks for the pointer.
My domains are resolving to IPs, but I used the DNS instructions to add Cloudflare anyway, just in case.
No dice.
Did you do anything different than add one of the generic providers?
@nazarewk commented on GitHub (Apr 28, 2025):
Hello @bmcgonag,
We're currently reviewing our open issues and would like to verify if this problem still exists in the latest NetBird version.
Could you please confirm if the issue is still there?
We may close this issue temporarily if we don't hear back from you within 2 weeks, but feel free to reopen it with updated information.
Thanks for your contribution to improving the project!
@rhinot commented on GitHub (Apr 28, 2025):
@nazarewk I know you asked @bmcgonag. Just sharing that this was still an issue for me last time I used netbird. Unfortunately, the inability to resolve this issue caused me to stop using netbird and switch to another service.
@raffitzz commented on GitHub (Aug 27, 2025):
I'm just now testing netbird and I believe I'm facing a somewhat similar challenge. I set up netbird following various videos on youtube and the setup seems fine.
I configured 2 peers, 1 in a rapberry pi with ubuntu headless server and another one on my windows PC
From the windows PC I can ping the netbird IP for the ubuntu server but I can't do it the other way around, pinging my windows pc from the ubuntu.
I don't know if you have any idea what this might be. I've never had tailscale installed whatsoever so I don't think that could be the issue