Skip to content

默认写入fw3配置文件导致冲突的bug还在 #199

@woshichenghaibo

Description

@woshichenghaibo

问题描述

使用 dockerman 时遇到的问题,默认使用bridge网络,启动时自动添加iptables规则,与现在的openwrt默认的fw4的nftables规则冲突导致防火墙设置失效。

使用命令行
同样的操作使用命令行的结果一样的

版本信息:
root@OpenWrt:~# cat /etc/banner
.___ __ .__
| | _____ _____ / | | |
| |/ \ / \ / _ _ __ \ __ \ | |
| | Y Y \ Y Y ( <
> ) | /| | / __ | |
|
||_| /|| /_/|| |__| (____ /____/
/ / BE FREE AND UNAFRAID /

ImmortalWrt SNAPSHOT, r27121-ab66d7ebcc

root@OpenWrt:# cat /etc/openwrt_release
DISTRIB_ID='ImmortalWrt'
DISTRIB_RELEASE='SNAPSHOT'
DISTRIB_REVISION='r27121-ab66d7ebcc'
DISTRIB_TARGET='msm89xx/msm8916'
DISTRIB_ARCH='aarch64_generic'
DISTRIB_DESCRIPTION='ImmortalWrt SNAPSHOT r27121-ab66d7ebcc'
DISTRIB_TAINTS='no-all'
root@OpenWrt:
# cat /proc/version
Linux version 6.1.38 (suxiaoliang@instance-20230322-1545) (aarch64-openwrt-linux-musl-gcc (OpenWrt GCC 12.3.0 r27121-ab66d7ebcc) 12.3.0, GNU ld (GNU Binutils) 2.40.0) #0 SMP PREEMPT Thu Jul 13 07:24:09 2023
root@OpenWrt:# uname -a
Linux OpenWrt 6.1.38 #0 SMP PREEMPT Thu Jul 13 07:24:09 2023 aarch64 GNU/Linux
root@OpenWrt:
# opkg --version
opkg version d038e5b6d155784575f62a66a8bb7e874173e92e (2022-02-24)
root@OpenWrt:# opkg list-installed | grep luci
liblucihttp-lua - 2023-03-15-9b5b683f-1
liblucihttp-ucode - 2023-03-15-9b5b683f-1
liblucihttp0 - 2023-03-15-9b5b683f-1
luci - git-25.222.75657-7ce34fe
luci-app-alist - 1.0.10
luci-app-cpufreq - git-23.211.62656-6e6cd77
luci-app-diskman - 0.2.11
luci-app-dockerman - v0.5.25
luci-app-firewall - git-25.222.75657-7ce34fe
luci-app-mmconfig - 0.0.5-3
luci-app-opkg - git-25.222.75657-7ce34fe
luci-app-ttyd - git-23.211.62656-6e6cd77
luci-base - git-25.222.75657-7ce34fe
luci-compat - git-25.222.75657-7ce34fe
luci-i18n-alist-zh-cn - git-23.212.05038-c1861cf
luci-i18n-base-zh-cn - git-25.222.75657-7ce34fe
luci-i18n-cpufreq-zh-cn - git-23.211.62656-6e6cd77
luci-i18n-diskman-zh-cn - git-23.211.62656-6e6cd77
luci-i18n-dockerman-zh-cn - git-25.222.75657-7ce34fe
luci-i18n-firewall-en - git-23.090.62029-650e6d2
luci-i18n-firewall-zh-cn - git-25.222.75657-7ce34fe
luci-i18n-mmconfig-zh-cn - git-23.212.14199-fe1c05b
luci-i18n-opkg-zh-cn - git-25.222.75657-7ce34fe
luci-i18n-ttyd-zh-cn - git-25.222.75657-7ce34fe
luci-lib-base - git-25.222.75657-7ce34fe
luci-lib-docker - git-25.222.75657-7ce34fe
luci-lib-iform - 1.1.1
luci-lib-ip - git-25.222.75657-7ce34fe
luci-lib-jsonc - git-23.211.62656-6e6cd77
luci-lib-nixio - git-23.211.62656-6e6cd77
luci-lib-taskd - 1.0.17
luci-lib-xterm - 4.18.0
luci-light - git-23.211.62656-6e6cd77
luci-lua-runtime - git-25.222.75657-7ce34fe
luci-mod-admin-full - git-25.222.75657-7ce34fe
luci-mod-network - git-25.222.75657-7ce34fe
luci-mod-status - git-25.222.75657-7ce34fe
luci-mod-system - git-25.222.75657-7ce34fe
luci-proto-ipv6 - git-23.211.62656-6e6cd77
luci-proto-modemmanager - git-25.222.75657-7ce34fe
luci-proto-ppp - git-23.211.62656-6e6cd77
luci-theme-argon - 2.3.1
luci-theme-bootstrap - git-23.211.62656-6e6cd77
rpcd-mod-luci - 20230123-1
root@OpenWrt:
# docker version
Client:
Version: 27.3.1
API version: 1.47
Go version: go1.21.13
Git commit: ce12230
Built: Fri Sep 12 05:50:54 2025
OS/Arch: linux/arm64
Context: default

Server:
Engine:
Version: 27.3.1
API version: 1.47 (minimum version 1.24)
Go version: go1.21.13
Git commit: 41ca978
Built: Fri Sep 12 05:50:54 2025
OS/Arch: linux/arm64
Experimental: false
containerd:
Version: 1.7.22
GitCommit:
runc:
Version: 1.1.7
GitCommit:
docker-init:
Version: 0.19.0
GitCommit: de40ad0
root@OpenWrt:# opkg list-installed | grep dockerman
luci-app-dockerman - v0.5.25
luci-i18n-dockerman-zh-cn - git-25.222.75657-7ce34fe
root@OpenWrt:
#
以上为版本信息

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions