these 55 derivations will be built: /nix/store/z4canbzsr3xkgdv34rczjn6kyvxjn3zx-system-path.drv /nix/store/l9a050lf20anh4c736syandjnsyza09s-dbus-1.drv /nix/store/mxs4wcvw4j40wvdk45488mv3y4j7l8nl-X-Restart-Triggers-dbus-broker.drv /nix/store/0dz7fz5wrk0lbfizxkbiwp8c4jll6xr6-unit-dbus-broker.service.drv /nix/store/29g57j4916apwx7frl8qp4c3bl2mqrc2-nix.conf.drv /nix/store/1kz08h9mpp1pwd77i13rf6529cmpqapc-X-Restart-Triggers-nix-daemon.drv /nix/store/807603xp8mv16mgg213n0i9iwajjs9lp-system-path.drv /nix/store/5vznanh73l4maxf4bwpkfi4vc12ws76v-string-hosts.drv /nix/store/p82a94vpprwbv7n0lax51q8sn0j23kv1-extra-hosts.drv /nix/store/5vvain32v3whhzndkb2r6m6mx41lqzyg-hosts.drv /nix/store/m8abqc4l40im36wi1k8kys22klll33qn-dbus-1.drv /nix/store/sflhz3ci1qrigjldg1qawmx8wzy33k99-X-Restart-Triggers-dbus-broker.drv /nix/store/hkiiga7vn1rh56avd8mah6adqfh3yihs-unit-dbus-broker.service.drv /nix/store/5x6cifk325wp0p9w7h73w6q9wyf46k0v-user-units.drv /nix/store/cymzywy2f8clfymyr5mm2h077d4r6yrl-nginx.conf.drv /nix/store/3pnacy9c4b7q7g1w7l3i4m9nbn46shnp-unit-nix-daemon.service.drv /nix/store/hsb145w9p41mb1381ks35vay1cvyib6q-firewall-start.drv /nix/store/sslm3kg3w2w4xv3nd78aippqkvj0sqs8-firewall-stop.drv /nix/store/4rcjblqa8g96816j0093i519jihjx27r-firewall-reload.drv /nix/store/hzfvbyc0bqi0c4kc3q6010nnrj58815z-unit-firewall.service.drv /nix/store/dxla9x9xkhvixvnd0ym6dv4adlr4b6vx-unit-script-setup-wg0-interface-start.drv /nix/store/najx12xkv2y5s41xrxarxamrzi4sbfd2-unit-setup-wg0-interface.service.drv /nix/store/ga9a5pi7jhj8rfljfcj27ax95qjd56f6-unit-script-nginx-pre-start.drv /nix/store/pfcby6syyzpkmdzmzijfcsflvyz1ljxs-unit-nginx.service.drv /nix/store/x5qkgv4966gw4dfppfa88j22p5fkgkr9-unit-dbus-broker.service.drv /nix/store/xsng54ms8rgk8y812wdfs1152d108h0d-unit-network-addresses-eth1.service.drv /nix/store/zg175msvja64028qmlh9jv16f6bmpkws-system-units.drv /nix/store/g7zf4j3cmdw587fqgy6dl9zkra9bnq2q-etc.drv /nix/store/rgb6l4nnwr51dk0shr3khdgxy3daygr0-users-groups.json.drv /nix/store/waxjpxcvg7265qzdbv2h0s7xs2cqc72a-dry-activate.drv /nix/store/zjiclqad26s92zwx6zqal0xkpj523jfr-activate.drv /nix/store/2n9433myx5dpkqlhv8mx7n1zymdvbcg3-nixos-system-machine-test.drv /nix/store/cfr0lqw6jwgzhhqkgkikgqy8zx3ccc8b-X-Reload-Triggers-systemd-networkd.drv /nix/store/382fbgsrjgjailswigc9is5ps3hg1b2q-unit-systemd-networkd.service.drv /nix/store/gz7pqmzzprvz2c8xif4wn13azyg7lhf3-unit-systemd-networkd-wait-online.service.drv /nix/store/fx8f0rnc05q1vnm2k3plrr18k4ahg570-nginx.conf.drv /nix/store/sr8ajfzslgck95kx3id6p5hmj7il4bmn-unit-script-nginx-pre-start.drv /nix/store/v9f7qfsw2adwl96ka9m9y23xxli82mn7-unit-nginx.service.drv /nix/store/wv7bcxh7w7kmmxj3a218r0mkym39qi6j-unit-dbus-broker.service.drv /nix/store/4h2yy05r72jb8jy59xaq0v88w22896i0-system-units.drv /nix/store/7h92jlxw2wz02q0hjcsa4fylj9v2cn6j-string-hosts.drv /nix/store/5nzx4g4l4sb653wz32jspybks6gp1cq3-hosts.drv /nix/store/d4v05yyasjs136dwnjw9dg6w1v9wmybp-etc-hostname.drv /nix/store/w8sbnv1hqdjv388w1akx70v1nd44klaw-user-units.drv /nix/store/2p64gsiwc2w1fg1lwysyffq1yhdbzj5g-etc.drv /nix/store/7x2b650rl8mprxfygk4m8zlfmkh4yd3f-users-groups.json.drv /nix/store/b3avn16lam8w9x2arwqsa5v7mj3zfd7b-dry-activate.drv /nix/store/qfrddvdgilc8kdib1vyfz9aq7fbwclm7-activate.drv /nix/store/52r7wkkzm822n7pck7yb67ibxy6m3gfb-nixos-system-router-test.drv /nix/store/bhhrff7zysl1bcc9bvv4in2mbcmak6yh-test-script.drv /nix/store/lz9zf4hbf5cjk05yk71zlygdfszs937x-run-machine-nspawn.drv /nix/store/z981bzsl6y5w8b724sxvaxylvhk8wbf1-run-router-nspawn.drv /nix/store/74zdx3b6j1dg2h934hibyw2q4swkfw0f-driverConfiguration.json.drv /nix/store/p8ai16w5rw6zyr64n1r17w3sflb33sbg-nixos-test-driver-user-firewall-iptables.drv /nix/store/8vy2w835841ikicjypa4fhpm1jj3i27s-container-test-run-user-firewall-iptables.drv this path will be fetched (127.1 KiB download, 629.2 KiB unpacked): /nix/store/fv4yr9c0f9kyrfc00100i4rlshiiidbd-nixos-test-driver-1.1 building '/nix/store/bhhrff7zysl1bcc9bvv4in2mbcmak6yh-test-script.drv' building '/nix/store/807603xp8mv16mgg213n0i9iwajjs9lp-system-path.drv' building '/nix/store/z4canbzsr3xkgdv34rczjn6kyvxjn3zx-system-path.drv' building '/nix/store/d4v05yyasjs136dwnjw9dg6w1v9wmybp-etc-hostname.drv' building '/nix/store/cymzywy2f8clfymyr5mm2h077d4r6yrl-nginx.conf.drv' building '/nix/store/fx8f0rnc05q1vnm2k3plrr18k4ahg570-nginx.conf.drv' building '/nix/store/29g57j4916apwx7frl8qp4c3bl2mqrc2-nix.conf.drv' building '/nix/store/p82a94vpprwbv7n0lax51q8sn0j23kv1-extra-hosts.drv' building '/nix/store/5vznanh73l4maxf4bwpkfi4vc12ws76v-string-hosts.drv' building '/nix/store/7h92jlxw2wz02q0hjcsa4fylj9v2cn6j-string-hosts.drv' nginx.conf> structuredAttrs is enabled nginx.conf> structuredAttrs is enabled nix.conf> Validating generated nix.conf system-path> structuredAttrs is enabled system-path> created 1660 symlinks in user environment system-path> structuredAttrs is enabled system-path> created 1566 symlinks in user environment building '/nix/store/hsb145w9p41mb1381ks35vay1cvyib6q-firewall-start.drv' building '/nix/store/sslm3kg3w2w4xv3nd78aippqkvj0sqs8-firewall-stop.drv' building '/nix/store/dxla9x9xkhvixvnd0ym6dv4adlr4b6vx-unit-script-setup-wg0-interface-start.drv' building '/nix/store/cfr0lqw6jwgzhhqkgkikgqy8zx3ccc8b-X-Reload-Triggers-systemd-networkd.drv' building '/nix/store/xsng54ms8rgk8y812wdfs1152d108h0d-unit-network-addresses-eth1.service.drv' building '/nix/store/gz7pqmzzprvz2c8xif4wn13azyg7lhf3-unit-systemd-networkd-wait-online.service.drv' building '/nix/store/1kz08h9mpp1pwd77i13rf6529cmpqapc-X-Restart-Triggers-nix-daemon.drv' nginx.conf> nginx.conf> ==================== Results =================== nginx.conf> No issues found. nginx.conf> nginx.conf> ==================== Summary =================== nginx.conf> Total issues: nginx.conf> Unspecified: 0 nginx.conf> Low: 0 nginx.conf> Medium: 0 nginx.conf> High: 0 nginx.conf> nginx.conf> nginx.conf> ==================== Results =================== nginx.conf> No issues found. nginx.conf> nginx.conf> ==================== Summary =================== nginx.conf> Total issues: nginx.conf> Unspecified: 0 nginx.conf> Low: 0 nginx.conf> Medium: 0 nginx.conf> High: 0 nginx.conf> unit-network-addresses-eth1.service> structuredAttrs is enabled unit-systemd-networkd-wait-online.service> structuredAttrs is enabled building '/nix/store/m8abqc4l40im36wi1k8kys22klll33qn-dbus-1.drv' building '/nix/store/5nzx4g4l4sb653wz32jspybks6gp1cq3-hosts.drv' building '/nix/store/5vvain32v3whhzndkb2r6m6mx41lqzyg-hosts.drv' building '/nix/store/l9a050lf20anh4c736syandjnsyza09s-dbus-1.drv' building '/nix/store/4rcjblqa8g96816j0093i519jihjx27r-firewall-reload.drv' building '/nix/store/najx12xkv2y5s41xrxarxamrzi4sbfd2-unit-setup-wg0-interface.service.drv' building '/nix/store/382fbgsrjgjailswigc9is5ps3hg1b2q-unit-systemd-networkd.service.drv' building '/nix/store/7x2b650rl8mprxfygk4m8zlfmkh4yd3f-users-groups.json.drv' building '/nix/store/rgb6l4nnwr51dk0shr3khdgxy3daygr0-users-groups.json.drv' building '/nix/store/sflhz3ci1qrigjldg1qawmx8wzy33k99-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/3pnacy9c4b7q7g1w7l3i4m9nbn46shnp-unit-nix-daemon.service.drv' building '/nix/store/ga9a5pi7jhj8rfljfcj27ax95qjd56f6-unit-script-nginx-pre-start.drv' building '/nix/store/sr8ajfzslgck95kx3id6p5hmj7il4bmn-unit-script-nginx-pre-start.drv' unit-nix-daemon.service> structuredAttrs is enabled unit-setup-wg0-interface.service> structuredAttrs is enabled unit-systemd-networkd.service> structuredAttrs is enabled building '/nix/store/mxs4wcvw4j40wvdk45488mv3y4j7l8nl-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/b3avn16lam8w9x2arwqsa5v7mj3zfd7b-dry-activate.drv' building '/nix/store/waxjpxcvg7265qzdbv2h0s7xs2cqc72a-dry-activate.drv' building '/nix/store/hzfvbyc0bqi0c4kc3q6010nnrj58815z-unit-firewall.service.drv' building '/nix/store/0dz7fz5wrk0lbfizxkbiwp8c4jll6xr6-unit-dbus-broker.service.drv' building '/nix/store/hkiiga7vn1rh56avd8mah6adqfh3yihs-unit-dbus-broker.service.drv' building '/nix/store/wv7bcxh7w7kmmxj3a218r0mkym39qi6j-unit-dbus-broker.service.drv' building '/nix/store/x5qkgv4966gw4dfppfa88j22p5fkgkr9-unit-dbus-broker.service.drv' building '/nix/store/pfcby6syyzpkmdzmzijfcsflvyz1ljxs-unit-nginx.service.drv' building '/nix/store/v9f7qfsw2adwl96ka9m9y23xxli82mn7-unit-nginx.service.drv' unit-dbus-broker.service> structuredAttrs is enabled unit-dbus-broker.service> structuredAttrs is enabled unit-dbus-broker.service> structuredAttrs is enabled unit-dbus-broker.service> structuredAttrs is enabled unit-firewall.service> structuredAttrs is enabled unit-nginx.service> structuredAttrs is enabled unit-nginx.service> structuredAttrs is enabled building '/nix/store/zg175msvja64028qmlh9jv16f6bmpkws-system-units.drv' building '/nix/store/5x6cifk325wp0p9w7h73w6q9wyf46k0v-user-units.drv' building '/nix/store/w8sbnv1hqdjv388w1akx70v1nd44klaw-user-units.drv' building '/nix/store/4h2yy05r72jb8jy59xaq0v88w22896i0-system-units.drv' building '/nix/store/g7zf4j3cmdw587fqgy6dl9zkra9bnq2q-etc.drv' building '/nix/store/2p64gsiwc2w1fg1lwysyffq1yhdbzj5g-etc.drv' building '/nix/store/zjiclqad26s92zwx6zqal0xkpj523jfr-activate.drv' building '/nix/store/qfrddvdgilc8kdib1vyfz9aq7fbwclm7-activate.drv' building '/nix/store/2n9433myx5dpkqlhv8mx7n1zymdvbcg3-nixos-system-machine-test.drv' nixos-system-machine-test> structuredAttrs is enabled building '/nix/store/52r7wkkzm822n7pck7yb67ibxy6m3gfb-nixos-system-router-test.drv' building '/nix/store/lz9zf4hbf5cjk05yk71zlygdfszs937x-run-machine-nspawn.drv' nixos-system-router-test> structuredAttrs is enabled building '/nix/store/z981bzsl6y5w8b724sxvaxylvhk8wbf1-run-router-nspawn.drv' building '/nix/store/74zdx3b6j1dg2h934hibyw2q4swkfw0f-driverConfiguration.json.drv' driverConfiguration.json> structuredAttrs is enabled building '/nix/store/p8ai16w5rw6zyr64n1r17w3sflb33sbg-nixos-test-driver-user-firewall-iptables.drv' nixos-test-driver-user-firewall-iptables> Running type check (enable/disable: config.skipTypeCheck) nixos-test-driver-user-firewall-iptables> See https://nixos.org/manual/nixos/stable/#test-opt-skipTypeCheck nixos-test-driver-user-firewall-iptables> All checks passed! nixos-test-driver-user-firewall-iptables> Linting test script (enable/disable: config.skipLint) nixos-test-driver-user-firewall-iptables> See https://nixos.org/manual/nixos/stable/#test-opt-skipLint nixos-test-driver-user-firewall-iptables> All checks passed! building '/nix/store/8vy2w835841ikicjypa4fhpm1jj3i27s-container-test-run-user-firewall-iptables.drv' on 'ssh-ng://builder@build-x86-01.clan.lol' building '/nix/store/8vy2w835841ikicjypa4fhpm1jj3i27s-container-test-run-user-firewall-iptables.drv' container-test-run-user-firewall-iptables> Machine state will be reset. To keep it, pass --keep-machine-state container-test-run-user-firewall-iptables> start all VLans container-test-run-user-firewall-iptables> (finished: start all VLans, in 0.00 seconds) container-test-run-user-firewall-iptables> container-test-run-user-firewall-iptables> Test will time out and terminate in 3600.0 seconds container-test-run-user-firewall-iptables> run the VM test script container-test-run-user-firewall-iptables> additionally exposed symbols: container-test-run-user-firewall-iptables> machine, router, container-test-run-user-firewall-iptables> vlan1, container-test-run-user-firewall-iptables> start_all, test_script, machines, machines_qemu, machines_nspawn, vlans, driver, log, os, create_machine, subtest, run_tests, join_all, retry, serial_stdout_off, serial_stdout_on, polling_condition, BaseMachine, QemuMachine, NspawnMachine, t, debug, dump_machine_ssh container-test-run-user-firewall-iptables> start all VMs container-test-run-user-firewall-iptables> machine: systemd-nspawn running (pid 52) container-test-run-user-firewall-iptables> router: systemd-nspawn running (pid 53) container-test-run-user-firewall-iptables> router: Waiting for journal at /build/vm-state-router/var/log/journal... container-test-run-user-firewall-iptables> machine: Waiting for journal at /build/vm-state-machine/var/log/journal... container-test-run-user-firewall-iptables> (finished: start all VMs, in 0.00 seconds) container-test-run-user-firewall-iptables> router: waiting for unit multi-user.target container-test-run-user-firewall-iptables> nixos-nspawn(machine): TAP vde-tap1 not found; container will be isolated from VDE container-test-run-user-firewall-iptables> nixos-nspawn(machine): A common reason for this is that /dev/net is not available in the Nix sandbox. Try adding /dev/net to extra-sandbox-paths. container-test-run-user-firewall-iptables> nixos-nspawn(router): TAP vde-tap1 not found; container will be isolated from VDE container-test-run-user-firewall-iptables> nixos-nspawn(router): A common reason for this is that /dev/net is not available in the Nix sandbox. Try adding /dev/net to extra-sandbox-paths. container-test-run-user-firewall-iptables> Note: in a future version of systemd-nspawn the default set of permitted socket address families will be restricted to AF_INET, AF_INET6 and AF_UNIX. Use --restrict-address-families= to configure the set of permitted socket address families, or set RestrictAddressFamilies= in a .nspawn file. container-test-run-user-firewall-iptables> Note: in a future version of systemd-nspawn the default set of permitted socket address families will be restricted to AF_INET, AF_INET6 and AF_UNIX. Use --restrict-address-families= to configure the set of permitted socket address families, or set RestrictAddressFamilies= in a .nspawn file. container-test-run-user-firewall-iptables> ░ Spawning container machine on /build/vm-state-machine. container-test-run-user-firewall-iptables> ░ Spawning container router on /build/vm-state-router. container-test-run-user-firewall-iptables> machine # [8190538.188751] machine systemd-journald[54]: Journal started container-test-run-user-firewall-iptables> machine # [8190538.188781] machine systemd-journald[54]: Runtime Journal (/run/log/journal/9fb1b9e45e314e9fbbcb7d777d9822b3) is 8M, max 3.7G, 3.7G free. container-test-run-user-firewall-iptables> machine # [8190538.192325] machine systemd[1]: Starting Flush Journal to Persistent Storage... container-test-run-user-firewall-iptables> machine # [8190538.192618] machine systemd[1]: Starting Create Static Device Nodes in /dev... container-test-run-user-firewall-iptables> machine # [8190538.197716] machine systemd-journald[54]: Time spent on flushing to /var/log/journal/9fb1b9e45e314e9fbbcb7d777d9822b3 is 1.028ms for 4 entries. container-test-run-user-firewall-iptables> machine # [8190538.197716] machine systemd-journald[54]: System Journal (/var/log/journal/9fb1b9e45e314e9fbbcb7d777d9822b3) is 8M, max 4G, 3.9G free. container-test-run-user-firewall-iptables> machine # [8190538.200152] machine systemd[1]: Finished Create Static Device Nodes in /dev. container-test-run-user-firewall-iptables> machine # [8190538.200286] machine systemd[1]: Reached target Preparation for Local File Systems. container-test-run-user-firewall-iptables> machine # [8190538.200328] machine systemd[1]: Reached target Local File Systems. container-test-run-user-firewall-iptables> machine # [8190538.200723] machine systemd[1]: Listening on Boot Loader Control Service Socket. container-test-run-user-firewall-iptables> machine # [8190538.200748] machine systemd[1]: Update Boot Loader Random Seed skipped, unmet condition check ConditionVirtualization=!container container-test-run-user-firewall-iptables> machine # [8190538.201193] machine systemd[1]: Starting Save Transient machine-id to Disk... container-test-run-user-firewall-iptables> machine # [8190538.201210] machine systemd[1]: Rule-based Manager for Device Events and Files skipped, unmet condition check ConditionPathIsReadWrite=/sys container-test-run-user-firewall-iptables> machine # [8190538.204627] machine systemd[1]: Finished Flush Journal to Persistent Storage. container-test-run-user-firewall-iptables> machine # [8190538.205063] machine systemd[1]: Starting Create System Files and Directories... container-test-run-user-firewall-iptables> machine # [8190538.222993] machine systemd-tmpfiles[92]: Cannot set file attributes for '/var/empty', value=0x00000010, mask=0x00000010, ignoring: Operation not permitted container-test-run-user-firewall-iptables> machine # [8190538.223197] machine systemd-tmpfiles[92]: fchmod() of /var/log/journal failed: Operation not permitted container-test-run-user-firewall-iptables> machine # [8190538.223323] machine systemd-tmpfiles[92]: fchmod() of /var/log/journal/9fb1b9e45e314e9fbbcb7d777d9822b3 failed: Operation not permitted container-test-run-user-firewall-iptables> machine # [8190538.223491] machine systemd-tmpfiles[92]: fchmod() of /run/log/journal failed: Operation not permitted container-test-run-user-firewall-iptables> machine # [8190538.224342] machine systemd[1]: Finished Create System Files and Directories. container-test-run-user-firewall-iptables> machine # [8190538.224854] machine systemd[1]: Starting Rebuild Journal Catalog... container-test-run-user-firewall-iptables> machine # [8190538.225191] machine systemd[1]: Starting Record System Boot/Shutdown in UTMP... container-test-run-user-firewall-iptables> machine # [8190538.231816] machine systemd[1]: Finished Record System Boot/Shutdown in UTMP. container-test-run-user-firewall-iptables> machine # [8190538.236832] machine systemd[1]: Finished Rebuild Journal Catalog. container-test-run-user-firewall-iptables> machine # [8190538.237412] machine systemd[1]: Starting Update is Completed... container-test-run-user-firewall-iptables> machine # [8190538.243261] machine systemd[1]: Finished Update is Completed. container-test-run-user-firewall-iptables> machine # [8190538.243360] machine systemd[1]: Reached target System Initialization. container-test-run-user-firewall-iptables> machine # [8190538.243402] machine systemd[1]: Discard unused filesystem blocks once a week skipped, unmet condition check ConditionVirtualization=!container container-test-run-user-firewall-iptables> machine # [8190538.243418] machine systemd[1]: Started Daily Cleanup of Temporary Directories. container-test-run-user-firewall-iptables> machine # [8190538.243430] machine systemd[1]: Reached target Timer Units. container-test-run-user-firewall-iptables> machine # [8190538.243495] machine systemd[1]: Listening on D-Bus System Message Bus Socket. container-test-run-user-firewall-iptables> machine # [8190538.243558] machine systemd[1]: Listening on Nix Daemon Socket. container-test-run-user-firewall-iptables> machine # [8190538.243626] machine systemd[1]: Listening on Virtual Machine and Container Registration Service Socket. container-test-run-user-firewall-iptables> machine # [8190538.243637] machine systemd[1]: Reached target Socket Units. container-test-run-user-firewall-iptables> machine # [8190538.243656] machine systemd[1]: Reached target Basic System. container-test-run-user-firewall-iptables> machine # [8190538.244168] machine systemd[1]: Starting Import lastlog data into lastlog2 database... container-test-run-user-firewall-iptables> machine # [8190538.244572] machine systemd[1]: Starting Name Service Cache Daemon (nsncd)... container-test-run-user-firewall-iptables> machine # [8190538.254563] machine systemd[1]: Finished Import lastlog data into lastlog2 database. container-test-run-user-firewall-iptables> machine # [8190538.290797] machine nsncd[138]: Sep 03 05:09:55.656 INFO started, config: Config { ignored_request_types: {}, worker_count: 8, handoff_timeout: 10s }, path: "/var/run/nscd/socket" container-test-run-user-firewall-iptables> machine # [8190538.290831] machine systemd[1]: Started Name Service Cache Daemon (nsncd). container-test-run-user-firewall-iptables> machine # [8190538.290856] machine systemd[1]: Reached target Host and Network Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.290883] machine systemd[1]: Reached target User and Group Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.291407] machine systemd[1]: Starting User Login Management... container-test-run-user-firewall-iptables> machine # [8190538.315429] machine systemd[1]: Finished Firewall. container-test-run-user-firewall-iptables> machine # [8190538.315632] machine systemd[1]: Reached target Preparation for Network. container-test-run-user-firewall-iptables> machine # [8190538.316250] machine systemd[1]: Starting Address configuration of eth1... container-test-run-user-firewall-iptables> machine # [8190538.316676] machine systemd[1]: Starting Extra networking commands.... container-test-run-user-firewall-iptables> machine # [8190538.316994] machine systemd[1]: Starting Setup wg0 dummy interface... container-test-run-user-firewall-iptables> machine # [8190538.327475] machine systemd[1]: Finished Setup wg0 dummy interface. container-test-run-user-firewall-iptables> machine # [8190538.328114] machine network-addresses-eth1-start[225]: adding address 192.168.1.1/24... done container-test-run-user-firewall-iptables> machine # [8190538.329988] machine network-addresses-eth1-start[225]: adding address 2001:db8:1::1/64... done container-test-run-user-firewall-iptables> machine # [8190538.332083] machine systemd[1]: Finished Address configuration of eth1. container-test-run-user-firewall-iptables> machine # [8190538.347283] machine systemd[1]: Stopped target Host and Network Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.347313] machine systemd[1]: Stopping Host and Network Name Lookups... container-test-run-user-firewall-iptables> machine # [8190538.347331] machine systemd[1]: Stopped target User and Group Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.347347] machine systemd[1]: Stopping User and Group Name Lookups... container-test-run-user-firewall-iptables> machine # [8190538.347444] machine systemd[1]: Stopping Name Service Cache Daemon (nsncd)... container-test-run-user-firewall-iptables> machine # [8190538.348541] machine systemd[1]: nscd.service: Deactivated successfully. container-test-run-user-firewall-iptables> machine # [8190538.348630] machine systemd[1]: Stopped Name Service Cache Daemon (nsncd). container-test-run-user-firewall-iptables> machine # [8190538.350022] machine systemd[1]: Starting Name Service Cache Daemon (nsncd)... container-test-run-user-firewall-iptables> machine # [8190538.353861] machine systemd[1]: Finished Extra networking commands.. container-test-run-user-firewall-iptables> machine # [8190538.353946] machine systemd[1]: Reached target Network. container-test-run-user-firewall-iptables> machine # [8190538.354372] machine systemd[1]: Starting Nginx Web Server... container-test-run-user-firewall-iptables> machine # [8190538.403281] machine nsncd[292]: Sep 03 05:09:55.768 INFO started, config: Config { ignored_request_types: {}, worker_count: 8, handoff_timeout: 10s }, path: "/var/run/nscd/socket" container-test-run-user-firewall-iptables> machine # [8190538.403340] machine systemd[1]: Started Name Service Cache Daemon (nsncd). container-test-run-user-firewall-iptables> machine # [8190538.403387] machine systemd[1]: Reached target Host and Network Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.403432] machine systemd[1]: Reached target User and Group Name Lookups. container-test-run-user-firewall-iptables> machine # [8190538.404008] machine systemd[1]: Starting Permit User Sessions... container-test-run-user-firewall-iptables> machine # [8190538.430543] machine systemd[1]: Finished Permit User Sessions. container-test-run-user-firewall-iptables> machine # [8190538.431048] machine systemd[1]: Started Console Getty. container-test-run-user-firewall-iptables> machine # [8190538.431065] machine systemd[1]: Getty on tty1 skipped, unmet condition check ConditionPathExists=/dev/tty0 container-test-run-user-firewall-iptables> machine # [8190538.431076] machine systemd[1]: Reached target Login Prompts. container-test-run-user-firewall-iptables> machine # [8190538.592308] machine systemd-logind[200]: New seat seat0. container-test-run-user-firewall-iptables> machine # [8190538.593025] machine systemd[1]: Starting D-Bus System Message Bus... container-test-run-user-firewall-iptables> machine # [8190538.593094] machine systemd[1]: Started User Login Management. container-test-run-user-firewall-iptables> machine # [8190538.593502] machine systemd[1]: Starting linger-users.service... container-test-run-user-firewall-iptables> machine # [8190538.623549] machine systemd[1]: linger-users.service: Deactivated successfully. container-test-run-user-firewall-iptables> machine # [8190538.623649] machine systemd[1]: Finished linger-users.service. container-test-run-user-firewall-iptables> machine # [8190538.688524] machine nginx-pre-start[322]: nginx: the configuration file /nix/store/nab27hs6g89nbpznazwahydcl8gxyqk9-nginx.conf syntax is ok container-test-run-user-firewall-iptables> machine # [8190538.688798] machine nginx-pre-start[322]: nginx: configuration file /nix/store/nab27hs6g89nbpznazwahydcl8gxyqk9-nginx.conf test is successful container-test-run-user-firewall-iptables> machine # [8190538.691837] machine systemd[1]: Started Nginx Web Server. container-test-run-user-firewall-iptables> machine # [8190538.691969] machine systemd[1]: Reached target Multi-User System. container-test-run-user-firewall-iptables> router # [8190538.193886] router systemd-journald[54]: Journal started container-test-run-user-firewall-iptables> router # [8190538.193916] router systemd-journald[54]: Runtime Journal (/run/log/journal/b341e424c8a54a538576546b53b094eb) is 8M, max 3.7G, 3.7G free. container-test-run-user-firewall-iptables> router # [8190538.197831] router systemd[1]: Starting Flush Journal to Persistent Storage... container-test-run-user-firewall-iptables> router # [8190538.198195] router systemd[1]: Starting Network Name Resolution... container-test-run-user-firewall-iptables> router # [8190538.198477] router systemd[1]: Starting Create Static Device Nodes in /dev... container-test-run-user-firewall-iptables> router # [8190538.203144] router systemd-journald[54]: Time spent on flushing to /var/log/journal/b341e424c8a54a538576546b53b094eb is 1.013ms for 5 entries. container-test-run-user-firewall-iptables> router # [8190538.203144] router systemd-journald[54]: System Journal (/var/log/journal/b341e424c8a54a538576546b53b094eb) is 8M, max 4G, 3.9G free. container-test-run-user-firewall-iptables> router # [8190538.221363] router systemd[1]: Finished Create Static Device Nodes in /dev. container-test-run-user-firewall-iptables> router # [8190538.221516] router systemd[1]: Finished Flush Journal to Persistent Storage. container-test-run-user-firewall-iptables> router # [8190538.222167] router systemd[1]: Reached target Preparation for Local File Systems. container-test-run-user-firewall-iptables> router # [8190538.222212] router systemd[1]: Reached target Local File Systems. container-test-run-user-firewall-iptables> router # [8190538.222640] router systemd[1]: Listening on Boot Loader Control Service Socket. container-test-run-user-firewall-iptables> router # [8190538.222665] router systemd[1]: Update Boot Loader Random Seed skipped, unmet condition check ConditionVirtualization=!container container-test-run-user-firewall-iptables> router # [8190538.223102] router systemd[1]: Starting Save Transient machine-id to Disk... container-test-run-user-firewall-iptables> router # [8190538.223388] router systemd[1]: Starting Create System Files and Directories... container-test-run-user-firewall-iptables> router # [8190538.223402] router systemd[1]: Rule-based Manager for Device Events and Files skipped, unmet condition check ConditionPathIsReadWrite=/sys container-test-run-user-firewall-iptables> router # [8190538.223841] router systemd[1]: Starting Network Management... container-test-run-user-firewall-iptables> router # [8190538.233239] router systemd-tmpfiles[68]: Cannot set file attributes for '/var/empty', value=0x00000010, mask=0x00000010, ignoring: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.233391] router systemd-tmpfiles[68]: fchmod() of /var/log/journal failed: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.233500] router systemd-tmpfiles[68]: fchmod() of /var/log/journal/b341e424c8a54a538576546b53b094eb failed: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.233655] router systemd-tmpfiles[68]: fchmod() of /run/log/journal failed: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.234614] router systemd[1]: Finished Create System Files and Directories. container-test-run-user-firewall-iptables> router # [8190538.235197] router systemd[1]: Starting Rebuild Journal Catalog... container-test-run-user-firewall-iptables> router # [8190538.235553] router systemd[1]: Starting Record System Boot/Shutdown in UTMP... container-test-run-user-firewall-iptables> router # [8190538.242699] router systemd[1]: Finished Record System Boot/Shutdown in UTMP. container-test-run-user-firewall-iptables> router # [8190538.247608] router systemd[1]: Finished Rebuild Journal Catalog. container-test-run-user-firewall-iptables> router # [8190538.248158] router systemd[1]: Starting Update is Completed... container-test-run-user-firewall-iptables> router # [8190538.253162] router systemd[1]: Finished Update is Completed. container-test-run-user-firewall-iptables> router # [8190538.477230] router systemd-networkd[69]: Failed to increase receive buffer size for general netlink socket, ignoring: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.477306] router systemd-networkd[69]: Failed to increase receive buffer size for nftables netlink socket, ignoring: Operation not permitted container-test-run-user-firewall-iptables> router # [8190538.482773] router systemd-networkd[69]: lo: Link UP container-test-run-user-firewall-iptables> router # [8190538.482778] router systemd-networkd[69]: lo: Gained carrier container-test-run-user-firewall-iptables> router # [8190538.482930] router systemd-networkd[69]: eth1: Configuring with /etc/systemd/network/40-eth1.network. container-test-run-user-firewall-iptables> router # [8190538.483233] router systemd[1]: Started Network Management. container-test-run-user-firewall-iptables> router # [8190538.483337] router systemd-networkd[69]: eth1: Link UP container-test-run-user-firewall-iptables> router # [8190538.483342] router systemd-networkd[69]: eth1: Gained carrier container-test-run-user-firewall-iptables> router # [8190538.483835] router systemd[1]: Starting Enable Persistent Storage in systemd-networkd... container-test-run-user-firewall-iptables> router # [8190538.512158] router systemd[1]: Finished Enable Persistent Storage in systemd-networkd. container-test-run-user-firewall-iptables> router # [8190538.688101] router systemd-resolved[61]: Positive Trust Anchors: container-test-run-user-firewall-iptables> router # [8190538.688107] router systemd-resolved[61]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d container-test-run-user-firewall-iptables> router # [8190538.688112] router systemd-resolved[61]: . IN DS 38696 8 2 683d2d0acb8c9b712a1948b27f741219298d0a450d612c483af444a4c0fb2b16 container-test-run-user-firewall-iptables> router # [8190538.688126] router systemd-resolved[61]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 170.0.0.192.in-addr.arpa 171.0.0.192.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa ipv4only.arpa resolver.arpa corp home internal intranet lan local private test container-test-run-user-firewall-iptables> router # [8190538.699091] router systemd-resolved[61]: Using system hostname 'router'. container-test-run-user-firewall-iptables> router # [8190538.699963] router systemd[1]: Started Network Name Resolution. container-test-run-user-firewall-iptables> router # [8190538.700036] router systemd[1]: Reached target Network. container-test-run-user-firewall-iptables> router # [8190538.700090] router systemd[1]: Reached target System Initialization. container-test-run-user-firewall-iptables> router # [8190538.700146] router systemd[1]: Discard unused filesystem blocks once a week skipped, unmet condition check ConditionVirtualization=!container container-test-run-user-firewall-iptables> router # [8190538.700174] router systemd[1]: Started Daily Cleanup of Temporary Directories. container-test-run-user-firewall-iptables> router # [8190538.700193] router systemd[1]: Reached target Timer Units. container-test-run-user-firewall-iptables> router # [8190538.700289] router systemd[1]: Listening on D-Bus System Message Bus Socket. container-test-run-user-firewall-iptables> router # [8190538.700374] router systemd[1]: Listening on Nix Daemon Socket. container-test-run-user-firewall-iptables> router # [8190538.700486] router systemd[1]: Listening on Virtual Machine and Container Registration Service Socket. container-test-run-user-firewall-iptables> router # [8190538.700500] router systemd[1]: Reached target Socket Units. container-test-run-user-firewall-iptables> router # [8190538.700524] router systemd[1]: Reached target Basic System. container-test-run-user-firewall-iptables> router # [8190538.714368] router systemd[1]: Starting Import lastlog data into lastlog2 database... container-test-run-user-firewall-iptables> router # [8190538.714815] router systemd[1]: Starting Nginx Web Server... container-test-run-user-firewall-iptables> router # [8190538.715194] router systemd[1]: Starting Name Service Cache Daemon (nsncd)... container-test-run-user-firewall-iptables> router # [8190538.715832] router systemd[1]: Starting D-Bus System Message Bus... container-test-run-user-firewall-iptables> router # [8190538.724672] router systemd[1]: Finished Import lastlog data into lastlog2 database. container-test-run-user-firewall-iptables> machine # [8190538.752195] machine dbus-broker-launch[318]: Looking up NSS user entry for 'systemd-timesync'... container-test-run-user-firewall-iptables> machine # [8190538.752510] machine dbus-broker-launch[318]: NSS returned no entry for 'systemd-timesync' container-test-run-user-firewall-iptables> machine # [8190538.752510] machine dbus-broker-launch[318]: Invalid user-name in /nix/store/4kx1hyx2iymh1pcsxj6mkbqjvgm466m7-system-path/share/dbus-1/system.d/org.freedesktop.timesync1.conf +16: user="systemd-timesync" container-test-run-user-firewall-iptables> machine # [8190538.752757] machine systemd[1]: Started D-Bus System Message Bus. container-test-run-user-firewall-iptables> machine # [8190538.756369] machine dbus-broker-launch[318]: Ready container-test-run-user-firewall-iptables> router # [8190538.782719] router nsncd[83]: Sep 03 05:09:56.148 INFO started, config: Config { ignored_request_types: {}, worker_count: 8, handoff_timeout: 10s }, path: "/var/run/nscd/socket" container-test-run-user-firewall-iptables> router # [8190538.782763] router systemd[1]: Started Name Service Cache Daemon (nsncd). container-test-run-user-firewall-iptables> router # [8190538.782793] router systemd[1]: Reached target Host and Network Name Lookups. container-test-run-user-firewall-iptables> router # [8190538.782823] router systemd[1]: Reached target User and Group Name Lookups. container-test-run-user-firewall-iptables> router # [8190538.783349] router systemd[1]: Starting User Login Management... container-test-run-user-firewall-iptables> router # [8190538.783665] router systemd[1]: Starting Permit User Sessions... container-test-run-user-firewall-iptables> router # [8190538.808442] router systemd[1]: Finished Permit User Sessions. container-test-run-user-firewall-iptables> router # [8190538.809291] router systemd[1]: Started Console Getty. container-test-run-user-firewall-iptables> router # [8190538.809326] router systemd[1]: Getty on tty1 skipped, unmet condition check ConditionPathExists=/dev/tty0 container-test-run-user-firewall-iptables> router # [8190538.809339] router systemd[1]: Reached target Login Prompts. container-test-run-user-firewall-iptables> router # [8190538.831502] router dbus-broker-launch[84]: Looking up NSS user entry for 'systemd-timesync'... container-test-run-user-firewall-iptables> router # [8190538.831881] router dbus-broker-launch[84]: NSS returned no entry for 'systemd-timesync' container-test-run-user-firewall-iptables> router # [8190538.831881] router dbus-broker-launch[84]: Invalid user-name in /nix/store/xjqr1rr6dvby76rk5bqpdpxpi2kcc01c-system-path/share/dbus-1/system.d/org.freedesktop.timesync1.conf +16: user="systemd-timesync" container-test-run-user-firewall-iptables> router # [8190538.832092] router systemd[1]: Started D-Bus System Message Bus. container-test-run-user-firewall-iptables> router # [8190538.835329] router dbus-broker-launch[84]: Ready container-test-run-user-firewall-iptables> router: (finished: waiting for unit multi-user.target, in 1.64 seconds) container-test-run-user-firewall-iptables> router: waiting for unit nginx.service container-test-run-user-firewall-iptables> router: (finished: waiting for unit nginx.service, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: waiting for unit multi-user.target container-test-run-user-firewall-iptables> router # [8190539.058130] router nginx-pre-start[113]: nginx: the configuration file /nix/store/71hhfgrwyrzhk6nl99gi547ikq9ndgpg-nginx.conf syntax is ok container-test-run-user-firewall-iptables> router # [8190539.058361] router nginx-pre-start[113]: nginx: configuration file /nix/store/71hhfgrwyrzhk6nl99gi547ikq9ndgpg-nginx.conf test is successful container-test-run-user-firewall-iptables> router # [8190539.060255] router systemd[1]: Started Nginx Web Server. container-test-run-user-firewall-iptables> router # [8190539.113602] router systemd-logind[102]: New seat seat0. container-test-run-user-firewall-iptables> router # [8190539.113693] router systemd[1]: Started User Login Management. container-test-run-user-firewall-iptables> router # [8190539.114376] router systemd[1]: Starting linger-users.service... container-test-run-user-firewall-iptables> router # [8190539.142579] router systemd[1]: linger-users.service: Deactivated successfully. container-test-run-user-firewall-iptables> router # [8190539.142682] router systemd[1]: Finished linger-users.service. container-test-run-user-firewall-iptables> router # [8190539.142877] router systemd[1]: Reached target Multi-User System. container-test-run-user-firewall-iptables> router # [8190539.263333] router systemd[1]: etc-machine\x2did.mount: Deactivated successfully. container-test-run-user-firewall-iptables> router # [8190539.263964] router systemd[1]: Finished Save Transient machine-id to Disk. container-test-run-user-firewall-iptables> router # [8190539.264090] router systemd[1]: Startup finished in 1.291s. container-test-run-user-firewall-iptables> machine: (finished: waiting for unit multi-user.target, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: waiting for unit nginx.service container-test-run-user-firewall-iptables> machine: (finished: waiting for unit nginx.service, in 0.01 seconds) container-test-run-user-firewall-iptables> router: must succeed: ip -4 addr show eth1 | grep -oP '(?<=inet\s)\d+(\.\d+){3}' container-test-run-user-firewall-iptables> router: (finished: must succeed: ip -4 addr show eth1 | grep -oP '(?<=inet\s)\d+(\.\d+){3}', in 0.00 seconds) container-test-run-user-firewall-iptables> router: must succeed: ip -6 addr show eth1 | grep -oP '(?<=inet6\s)[0-9a-f:]+' | grep -v '^fe80' | head -1 container-test-run-user-firewall-iptables> router: (finished: must succeed: ip -6 addr show eth1 | grep -oP '(?<=inet6\s)[0-9a-f:]+' | grep -v '^fe80' | head -1, in 0.00 seconds) container-test-run-user-firewall-iptables> Router IPv4: 192.168.1.2 container-test-run-user-firewall-iptables> Router IPv6: 2001:db8:1::2 container-test-run-user-firewall-iptables> machine: must succeed: systemctl restart firewall container-test-run-user-firewall-iptables> machine # [8190539.263246] machine systemd[1]: etc-machine\x2did.mount: Deactivated successfully. container-test-run-user-firewall-iptables> machine # [8190539.263952] machine systemd[1]: Finished Save Transient machine-id to Disk. container-test-run-user-firewall-iptables> machine # [8190539.268051] machine systemd[1]: Startup finished in 1.296s. container-test-run-user-firewall-iptables> machine # [8190539.417782] machine systemd[1]: Stopping Firewall... container-test-run-user-firewall-iptables> machine # [8190539.634297] machine systemd[1]: firewall.service: Deactivated successfully. container-test-run-user-firewall-iptables> machine # [8190539.634460] machine systemd[1]: Stopped Firewall. container-test-run-user-firewall-iptables> machine # [8190539.635509] machine systemd[1]: Starting Firewall... container-test-run-user-firewall-iptables> machine: (finished: must succeed: systemctl restart firewall, in 0.74 seconds) container-test-run-user-firewall-iptables> machine: waiting for unit firewall.service container-test-run-user-firewall-iptables> machine: (finished: waiting for unit firewall.service, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: iptables -L user-firewall-output >&2 container-test-run-user-firewall-iptables> Chain user-firewall-output (1 references) container-test-run-user-firewall-iptables> target prot opt source destination container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> REJECT all -- anywhere anywhere owner UID match bob reject-with icmp-port-unreachable container-test-run-user-firewall-iptables> RETURN all -- anywhere anywhere container-test-run-user-firewall-iptables> machine: (finished: must succeed: iptables -L user-firewall-output >&2, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: waiting for success: runuser -u alice -- curl -s http://127.0.0.1:8080 container-test-run-user-firewall-iptables> machine: (finished: waiting for success: runuser -u alice -- curl -s http://127.0.0.1:8080, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u alice -- curl -s http://192.168.1.2 container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u alice -- curl -s http://192.168.1.2, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u alice -- curl -s http://[2001:db8:1::2] container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u alice -- curl -s http://[2001:db8:1::2], in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u bob -- curl -s http://127.0.0.1:8080 container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u bob -- curl -s http://127.0.0.1:8080, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u bob -- curl -s --connect-timeout 2 http://192.168.1.2 2>&1 || echo 'EXIT_CODE='$? container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u bob -- curl -s --connect-timeout 2 http://192.168.1.2 2>&1 || echo 'EXIT_CODE='$?, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u bob -- curl -s --connect-timeout 2 http://[2001:db8:1::2] 2>&1 || echo 'EXIT_CODE='$? container-test-run-user-firewall-iptables> machine # [8190540.151917] machine systemd[1]: Finished Firewall. container-test-run-user-firewall-iptables> machine # [8190540.168974] machine runuser[482]: pam_unix(runuser:session): session opened for user alice(uid=1001) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190540.174263] machine runuser[482]: pam_unix(runuser:session): session closed for user alice container-test-run-user-firewall-iptables> machine # [8190540.178988] machine runuser[484]: pam_unix(runuser:session): session opened for user alice(uid=1001) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190540.184880] machine runuser[484]: pam_unix(runuser:session): session closed for user alice container-test-run-user-firewall-iptables> machine # [8190540.189823] machine runuser[486]: pam_unix(runuser:session): session opened for user alice(uid=1001) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190540.194407] machine runuser[486]: pam_unix(runuser:session): session closed for user alice container-test-run-user-firewall-iptables> machine # [8190540.199174] machine runuser[488]: pam_unix(runuser:session): session opened for user bob(uid=1002) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190540.204189] machine runuser[488]: pam_unix(runuser:session): session closed for user bob container-test-run-user-firewall-iptables> machine # [8190540.209116] machine runuser[491]: pam_unix(runuser:session): session opened for user bob(uid=1002) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190540.213483] machine runuser[491]: pam_unix(runuser:session): session closed for user bob container-test-run-user-firewall-iptables> machine # [8190540.218330] machine runuser[494]: pam_unix(runuser:session): session opened for user bob(uid=1002) by (uid=0) container-test-run-user-firewall-iptables> router # [8190540.286122] router systemd-networkd[69]: eth1: Gained IPv6LL container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u bob -- curl -s --connect-timeout 2 http://[2001:db8:1::2] 2>&1 || echo 'EXIT_CODE='$?, in 1.03 seconds) container-test-run-user-firewall-iptables> machine: must succeed: iptables -L user-firewall-output -n -v container-test-run-user-firewall-iptables> machine: (finished: must succeed: iptables -L user-firewall-output -n -v, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: must succeed: ip6tables -L user-firewall-output -n -v container-test-run-user-firewall-iptables> machine: (finished: must succeed: ip6tables -L user-firewall-output -n -v, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: waiting for unit setup-wg0-interface.service container-test-run-user-firewall-iptables> machine: (finished: waiting for unit setup-wg0-interface.service, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: waiting for unit nginx.service container-test-run-user-firewall-iptables> machine: (finished: waiting for unit nginx.service, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: waiting for TCP port 8081 on 10.100.0.2 container-test-run-user-firewall-iptables> Connection to 10.100.0.2 8081 port [tcp/sunproxyadmin] succeeded! container-test-run-user-firewall-iptables> machine: (finished: waiting for TCP port 8081 on 10.100.0.2, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: must succeed: ip link show wg0 container-test-run-user-firewall-iptables> machine: (finished: must succeed: ip link show wg0, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: must succeed: ip addr show wg0 container-test-run-user-firewall-iptables> machine: (finished: must succeed: ip addr show wg0, in 0.00 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u alice -- curl -s --interface wg0 http://10.100.0.2:8081/ container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u alice -- curl -s --interface wg0 http://10.100.0.2:8081/, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u alice -- curl -s --interface wg0 http://[fd00::2]:8081/ container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u alice -- curl -s --interface wg0 http://[fd00::2]:8081/, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u bob -- curl -s --interface wg0 http://10.100.0.2:8081/ container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u bob -- curl -s --interface wg0 http://10.100.0.2:8081/, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: runuser -u bob -- curl -s --interface wg0 http://[fd00::2]:8081/ container-test-run-user-firewall-iptables> machine: (finished: must succeed: runuser -u bob -- curl -s --interface wg0 http://[fd00::2]:8081/, in 0.01 seconds) container-test-run-user-firewall-iptables> machine: must succeed: iptables -L user-firewall-output -n -v | grep -E 'wg0|wg\+' >&2 container-test-run-user-firewall-iptables> 0 0 RETURN all -- * wg+ 0.0.0.0/0 0.0.0.0/0 container-test-run-user-firewall-iptables> machine: (finished: must succeed: iptables -L user-firewall-output -n -v | grep -E 'wg0|wg\+' >&2, in 0.00 seconds) container-test-run-user-firewall-iptables> (finished: run the VM test script, in 3.58 seconds) container-test-run-user-firewall-iptables> test script finished in 3.93s container-test-run-user-firewall-iptables> cleanup container-test-run-user-firewall-iptables> kill NspawnMachine (pid 52) container-test-run-user-firewall-iptables> machine # [8190541.246146] machine runuser[494]: pam_unix(runuser:session): session closed for user bob container-test-run-user-firewall-iptables> machine # [8190541.286197] machine runuser[503]: pam_unix(runuser:session): session opened for user alice(uid=1001) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190541.291536] machine runuser[503]: pam_unix(runuser:session): session closed for user alice container-test-run-user-firewall-iptables> machine # [8190541.296070] machine runuser[505]: pam_unix(runuser:session): session opened for user alice(uid=1001) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190541.300874] machine runuser[505]: pam_unix(runuser:session): session closed for user alice container-test-run-user-firewall-iptables> machine # [8190541.305090] machine runuser[507]: pam_unix(runuser:session): session opened for user bob(uid=1002) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190541.309585] machine runuser[507]: pam_unix(runuser:session): session closed for user bob container-test-run-user-firewall-iptables> machine # [8190541.313748] machine runuser[509]: pam_unix(runuser:session): session opened for user bob(uid=1002) by (uid=0) container-test-run-user-firewall-iptables> machine # [8190541.318716] machine runuser[509]: pam_unix(runuser:session): session closed for user bob container-test-run-user-firewall-iptables> kill NspawnMachine (pid 53) container-test-run-user-firewall-iptables> Container machine terminated by signal KILL. container-test-run-user-firewall-iptables> (finished: cleanup, in 0.18 seconds) container-test-run-user-firewall-iptables> Container router terminated by signal KILL. post-build step Upload to niks3: ok time=2026-09-03T05:09:59.530Z level=INFO msg="Uploading 0 paths to niks3.clan.lol (1 already cached)" time=2026-09-03T05:09:59.996Z level=INFO msg="Uploading 1 narinfos" time=2026-09-03T05:10:00.103Z level=INFO msg="Upload complete. (664ms)"