Hi Aidan,

sorry for replying a bit late.

> On my system, as of yesterday, firejails with a separate network
> namespace are unable to reach any external hosts.  For example,

Unfortunately I was not yet able to reproduce this behavior.

> $ w3m google.com
> w3m: Can't load google.com.

The same error occurs when only DNS is not working.
Can you please try pinging your default gateway?

> The only possibly relevant changes to my system that I can think of
> (even after
> consulting system logs) is that this occurred after I removed the package
> iptables-persistent, but reinstalling this did not resolve the problem.

iptables is only necessary if you use --netfilter.

> firejail with network namespaces work as expected for several minutes
> immediately after a cold boot, but then even *already running* firejails
> lose the ability to reach the outside world.

Are you using any network managers? Could you please list the processes
running on the host?

Thanks!

Regards,
  Reiner

Attachment: signature.asc
Description: Digital signature

Reply via email to