juanfont/headscale
Documented errors, page 2 of 7. Back to juanfont/headscale
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
| expected clients, got | exception | error | integration-test, node-registration, retry, timing |
| refreshing NodeStore after IP backfill | http | error | state, database, backfill, startup, go |
| : ip( ) not in prefix( ) | exception | warning | ip-allocation, invariant, cidr, defensive-check |
| invalid alias | validation | warning | policy, acl, testing, configuration, go |
| parsing prefix from config | validation | error | config, networking, cidr, validation, go |
| removing test container | console | warning | docker, container-removal, teardown, integration-tests |
| converting private key to string for saving | console | error | crypto-keys, internal, startup, unreachable-in-practice |
| node name is not unique | http | error | headscale, node, naming, conflict, api |
| auth ID has invalid length | validation | error | headscale, auth, registration, validation |
| autogroup not supported for ACL sources | validation | error | policy, autogroup, acl, validation |
| clearing user_id on tagged nodes | exception | critical | database, migration, tags, nullable, bulk-update |
ErrNoAuthSession Invalid auth_id | http | warning | ssh, auth-cache, session-expiry, retry |
| renaming node | http | error | state, node-store, rename, go |
| headscale exited | console | error | dev-tooling, process, runtime-crash, supervision |
| update is disabled for modes other than 'database' | http | error | policy, acl, api, config |
| failed to parse ApiKey | exception | error | api-key, authentication, validation, headscale, go |
| serializing merged tags for node | exception | error | database, migration, json, memory, unreachable-path |
| writing config | console | error | dev-tooling, filesystem, config, environment |
| requested tags | http | error | headscale, tags, policy, acl, registration |
ErrPreAuthKeyACLTagInvalid : ' ' did not begin with 'tag | validation | error | go, preauth-key, acl, validation, tags |
| invalid capability version | http | warning | http, validation, capability-version, headscale |
| dropping index | exception | critical | database, migration, index, postgres, locking |
| handling existing node | exception | error | authentication, logout, database, registration |
| invalid oauth client secret | validation | error | go, oauth, authentication, argon2, credentials |
| : key too short, expected at least chars after prefix, got | validation | error | preauth-key, validation, key-format |
| adding user_id to api_keys | exception | critical | database, migration, api-keys, gorm, ddl |
| migration failed | exception | critical | database, migration, startup, gorm |
| username must be at least 2 characters long | validation | warning | validation, username, dns, users |
| test destination must be a single host, not a CIDR range | validation | error | policy, tests, cidr, hosts, validation |
| removing old socket file | console | critical | unix-socket, filesystem, startup, permissions |
| confirm form: unterminated action attribute | exception | error | html-parsing, integration, registration, headscale |
| generating registration ID | exception | error | authentication, registration, entropy, containers, unreachable-in-practice |
| invalid auth key | validation | error | preauth-key, authentication, bcrypt |
| nodeAttrs uses a feature headscale does not yet support | validation | error | headscale, policy, nodeattrs, funnel, unsupported-feature |
| test entry must have at least one of "accept" or "deny" | validation | error | policy, tests, validation |
| unmarshalling user JSON | console | error | json, cli, dev-tooling, go |
| autogroup not supported for SSH sources | validation | error | policy, autogroup, ssh, validation |
| parsing pre-auth key | console | error | dev-tooling, json, parsing, version-skew |
| parsing user | console | error | dev-tooling, json, parsing, version-skew |
| starting headscale container | exception | error | integration-test, docker-build, diagnostics |
| username must start with a letter | validation | warning | validation, username, dns, users |
| nodeAttrs ipPool requires the IP allocator… | validation | error | headscale, policy, nodeattrs, ippool, unsupported-feature |
| oidc state parameter is too short | http | warning | oidc, auth, http, headscale |
| changing socket permission | console | critical | unix-socket, filesystem, permissions, startup, race-condition |
| creating temp dir | console | error | dev-tooling, filesystem, temp-dir, environment |
| building trusted_proxies middleware | console | critical | configuration, http-middleware, network, startup, cidr |
| pulling image | exception | error | docker, image-pull, rate-limit, network, retry |
| autogroup not supported for ACL destinations | validation | error | policy, autogroup, acl, validation |
| pkce.method must be either 'plain' or 'S256' | validation | error | headscale, config, oidc, pkce, validation |
| adding column types.Node | exception | critical | database, migration, ddl, routes, sqlite |
| multiple users found | validation | error | headscale, policy, users, ambiguity, oidc |
| renaming table to %s_old | exception | critical | database, sqlite, migration, ddl, locking |
| setting up unix socket | console | critical | unix-socket, filesystem, startup, permissions, containers |
| adding hash column | exception | critical | database, migration, gorm, bcrypt, startup |
| loading users for RequestTags migration | exception | critical | database, migration, users, policy, schema-drift |
| request body too large | http | warning | derp, http, body-limit, dos-protection |
| autogroup not supported in headscale | validation | info | policy, autogroup, dead-code, sentinel |
| ssh action: cached binding does not match request src/dst | http | error | ssh, security, auth, headscale |
| username must contain @ | validation | error | headscale, policy, username, acl, validation |
| autogroup:self requires per-node resolution and cannot be… | validation | error | policy, autogroup, config, headscale |
| cannot use autogroup:danger-all as a dst | validation | error | policy, autogroup, acl, security, validation |
| loading database policy on startup | exception | error | integration-test, policy, database, hujson |
| marshalling machine key | console | error | crypto, key-generation, unreachable-defensive, go |
| port number out of range | validation | error | policy, acl, parsing, ports |
| pruning networks | console | error | docker, networks, cleanup, integration-tests |
| server_url cannot use the same domain as base_domain in a… | validation | error | headscale, config, dns, magicdns, networking |
| unmarshalling records, content | console | error | dns, json, config, validation |
| creating oauth_access_tokens table | exception | critical | database, migration, oauth, ddl, create-table |
| reading private key file | console | critical | crypto-keys, filesystem, permissions, startup |
| dropping routes table | exception | critical | database, migration, sqlite, ddl, locking |
| tag not found | validation | error | policy, tags, validation, acl, headscale |
| ensuring private key directory | console | critical | filesystem, permissions, crypto-keys, startup |
ErrSSHMachineKeyMismatch machine key does not match dst node | http | error | ssh, security, authentication, machine-key |
| executing command, stdout | exception | warning | integration-test, assertion, container, exec |
| invalid autogroup | validation | error | headscale, policy, autogroup, acl, validation |
| listing nodes to backfill IPs | exception | error | go, database, sqlite, postgresql, transaction |
| renaming node in database | exception | error | go, database, gorm, race-condition, naming |
| resolving | validation | warning | policy, acl, testing, resolution, go |
| confirm form: no input tag for CSRF | exception | error | html-parsing, integration, csrf |
| trusted_proxies[ ] | validation | error | config, network, proxy, startup |
| version check | console | critical | database, migration, versioning, startup |
| "autogroup:self" not valid on the src side of a rule | validation | error | policy, autogroup, acl, validation |
| checking local image availability | exception | error | docker, image-inspect, readiness, daemon |
| reading pull output | exception | error | docker, image-pull, streaming, network |
| tag owner is not an Alias | validation | error | policy, internal, invariant, headscale |
| auto approver is not an alias | validation | error | policy, internal, invariant, autoapprovers, go |
| deleting api key | console | error | network, http-client, cli, go |
| getting container logs | exception | error | docker, container-logs, streaming, hi-runner |
| wildcard (*) is not supported as SSH destination | validation | error | policy, ssh, validation, config, headscale |
| checking health | console | error | network, healthcheck, cli, go |
| clearing zero-time node expiry | exception | critical | database, migration, expiry, nullable, data-normalization |
| configuration error | console | error | configuration, yaml, cli, startup, go |
| listing containers | exception | warning | docker, container-list, finalization, hi-runner |
| oidc_client_secret and oidc_client_secret_path are mutually… | validation | error | headscale, config, oidc, secrets |
| creating container | exception | error | docker, container-create, hi-runner, integration-tests |
| empty auth key in response | console | warning | http, debug, form-parsing, payload-limit |
| invalid config | validation | error | sqlite, config, validation, connection-string |
| %w: %s | validation | error | dns, config, filesystem, validation |
| creating logs directory | exception | error | filesystem, permissions, logs, integration-tests |
| pre-flight checks failed | exception | error | hi-runner, pre-flight, docker, integration-tests |