<div dir="ltr"><div class="gmail_extra"><div class="gmail_quote">On Fri, May 23, 2014 at 4:50 PM, Abhijit Taware <span dir="ltr"><<a href="mailto:abhijit.taware@coriolis.co.in" target="_blank">abhijit.taware@coriolis.co.in</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left-width:1px;border-left-color:rgb(204,204,204);border-left-style:solid;padding-left:1ex"><div dir="ltr">I am using lxc to create around 1000 containers.<div>
I could get IP allocated to first 254 containers and not after that.</div><div>I changed IP mask of 'lxcbr0' and made appropriate changes in /etc/default/lxc-net</div>
<div><br></div><div>USE_LXC_BRIDGE="true"<br></div><div><div>LXC_BRIDGE="lxcbr0"</div><div>LXC_ADDR="10.0.3.1"</div><div>LXC_NETMASK="255.255.0.0"</div><div>LXC_NETWORK="<a href="http://10.0.3.0/16" target="_blank">10.0.3.0/16</a>"</div>
<div><div>LXC_DHCP_RANGE="10.0.3.2,10.0.255.254"</div><div>LXC_DHCP_MAX="65000"</div></div><div><br></div><div><br></div><div><br></div><div>Now I am not able to ping outside world from inside container, which was possible with "255.255.255.0" netmask.</div>
<div>Can somebody help me with this.<br></div></div></div></blockquote><div><br></div><div><br></div><div>Are you familiar with TCP/IP basic, e.g. <a href="http://en.wikipedia.org/wiki/Subnetwork">http://en.wikipedia.org/wiki/Subnetwork</a> ? If not, you should spend some time learning it.</div>
<div><br></div><div>At first glance, this should work</div><div><br></div><div><br></div><div><div>LXC_ADDR="10.0.0.1"<br></div><div><div>LXC_NETMASK="255.255.0.0"</div><div>LXC_NETWORK="<a href="http://10.0.0.0/16">10.0.0.0/16</a>"</div>
<div><div>LXC_DHCP_RANGE="10.0.0.2,10.0.255.254"</div><div><br></div></div></div></div><div>Your setup probably broke iptables script since <a href="http://10.0.3.0/16">10.0.3.0/16</a> is not a valid network.</div>
<div><br></div><div>-- </div><div>Fajar</div></div></div></div>