slackhq/nebula
Documented errors, page 2 of 5. Back to slackhq/nebula
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
ErrInvalidIPv6RemoteForSocket listener is IPv4, but writing to IPv6 remote | error_code | error | nebula, udp, ipv6, socket, network |
| unable to read cert; | console | error | filesystem, file-read, nebula-cert |
| certificate expires after signing certificate | validation | error | certificate, validity, ca-constraints |
| error while writing out-key | console | error | filesystem, private-key, io-error, nebula |
| unknown address type | exception | error | freebsd, tun, address-family, config-validation, netip |
ErrInvalidRemoteIndex peer sent an invalid index in handshake payload | error_code | error | handshake, protocol, index |
| failed to create shutdown pipe | exception | error | freebsd, tun, pipe, file-descriptor, shutdown |
| INetworkConnection.GetAdapterId | exception | error | windows, com, winapi, adapter |
| build noise state | exception | error | handshake, noise, key-material |
| error while writing out-qr | console | error | filesystem, file-write, qrcode, nebula-cert |
| no pki.key path or PEM data provided | validation | critical | pki, config, nebula, missing-key |
| unable to open socket | exception | critical | udp, linux, syscall, socket-creation, file-descriptors |
| FwpmFilterAdd0: 0x | exception | error | wfp, windows, firewall, filter, network-interface |
| INetwork.GetCategory | exception | error | windows, com, winapi, network-category |
| sshd.listen must be provided | validation | error | ssh, configuration, startup, missing-config |
| end of checksum offset | exception | error | |
| config ` ` has invalid type: %T | validation | error | nebula, config, type-error, yaml, calculated-remotes |
| entry .route in tun.unsafe_routes is contained within the… | validation | error | |
| newTunFromFd not supported in openbsd | exception | error | openbsd, tun, unsupported, platform |
| error while signing | error_code | error | signing, crypto, cli |
| invalid version | console | error | pki, certificate-version, unreachable, nebula |
| SYS_CONNECT | exception | error | macos, darwin, utun, connect, interface-in-use |
| unknown cert version | error_code | error | pki, certificate, versioning |
| verify cert | exception | error | handshake, certificate, verification, expired-cert |
| invalid mask: for cidr | validation | error | nebula, config, ipv4, ipv6, calculated-remotes |
| FwpmSubLayerAdd0: 0x | exception | error | wfp, windows, sublayer, bfe, firewall |
| key was not 64 bytes, is invalid ed25519 private key | validation | error | certificate, private-key, ed25519, key-length |
| SO_REUSEPORT failed | exception | error | android, udp, socket-options, kernel, nebula |
| %sout of range [0,65535]; | validation | error | config, firewall, port-range |
| bytes did not contain a proper private key banner | error_code | error | pem, private-key, key-banner, wrong-key-type |
errPacketTooShort packet too short | error_code | warning | linux, virtio, tso, packet-parsing, network |
| failed to retrieve tun name | exception | error | macos, darwin, utun, getsockopt, race-condition |
ErrInvalidPEMX25519PublicKeyBanner bytes did not contain a proper X25519 public key banner | error_code | error | |
| Error creating interface | exception | error | |
| error while marshalling cert to PEM | console | error | encoding, pem, qrcode, nebula-cert |
| failed to find private key for deriving | exception | error | pkcs11, hsm, key-not-found |
| config ` ` contains both true and false rules, but no… | validation | error | config, firewall, allowlist, ipv4 |
| calculated_remotes entry | validation | error | nebula, config, error-wrapping, calculated-remotes |
| error while generating ecdsa keys | error_code | error | crypto, ecdsa, p256, entropy, cli |
ErrUnknownVersion certificate version unrecognized | error_code | error | |
ErrLocalIndexCollision local index collision | error_code | error | handshake, hostmap, index-collision |
| salt must be set in argon2Parameters | exception | error | encryption, argon2, kdf, salt |
| unknown public key type: %T | exception | error | pkcs11, hsm, ecdsa, key-type |
| bytes did not contain a proper Ed25519/ECDSA private key… | error_code | error | pem, signing-key, key-banner, wrong-key-type |
| certificate curve does not match expected | validation | error | certificate, curve, mismatch, ecdsa |
ErrInvalidPrivateKey invalid private key | error_code | error | private-key, keypair, validation |
| pki: use of Curve25519 is not allowed in FIPS 140-only mode | validation | error | fips, crypto, curve25519, noise, pki |
| config ` ` has invalid value (type %T) | validation | error | config, validation, firewall, allowlist |
| error while verifying certificate v | exception | error | |
| certificate contained a network assignment outside the… | validation | error | certificate, network, ca-constraints, netip |
| error CreateRequestQueue | exception | error | windows, udp, rio, network |
| error while adding sshd.host_key | error_code | error | ssh, configuration, host-key, key-format |
| failed to cast command | exception | error | nebula, sshd, type-assertion, go |
| udp header len mismatch | exception | error | |
| unknown public key for | error_code | error | ssh, authentication, public-key, nebula |
| could not calculate fingerprint to verify | validation | error | certificate, fingerprint, verification, ca-pool |
| Read failed | error_code | error | |
| rule # ; | validation | error | firewall, yaml, configuration |
| unable to find host | error_code | error | network, relay, hostmap, nebula |
| error reading password | console | error | password, stdin, encryption, ca-key, nebula-cert |
| error while converting ecdsa key | error_code | error | crypto, ecdsa, ecdh, p256 |
| header len exceeds max | exception | error | network, tcp, segmentation, header-length, packet-parsing |
| unknown mode | console | error | cli, usage, nebula-cert |
| key was not bytes, is invalid private key | error_code | error | pem, private-key, key-length, corruption |
| unable to unmarshal private key | exception | error | go, noise-protocol, ecdh, key-parsing |
| a device name in the format of /dev/tunN must be specified | validation | error | openbsd, tun, config, missing-config |
| SetNonblock | exception | error | macos, darwin, utun, file-descriptor, nonblocking |
| could not calculate fingerprint for provided CA; error | exception | error | certificate, fingerprint, ca-pool |
| failed to generate unique localIndexId | exception | error | relay, hostmap, index-exhaustion, nebula |
| failed to get tun flags | exception | error | macos, darwin, ioctl, interface-flags, permissions |
| unable to marshal network | exception | warning | certificate, marshalling, network |
ErrMessageCounterExhausted message counter exhausted | error_code | error | noise, nonce, rekey, replay-protection |
| newTun not supported in Android | exception | error | android, tun-device, unsupported-platform |
| unknown network type | validation | error | network, gvisor, netstack, invalid-argument |
| failed to set tun address | exception | error | openbsd, tun, ioctl, ipv4, address-assignment |
| invalid port | validation | error | network, gvisor, netstack, listen, invalid-port |
| bad cpulist range | validation | error | cpu, configuration, parsing |
ErrMissingDetails certificate did not contain details | error_code | error | certificate, fingerprint, uninitialized |
| error while generating qr code | error_code | error | qrcode, cli, ca |
| pkcs11 module gave us a nil CKA_PUBLIC_KEY_INFO, and… | exception | error | pkcs11, hsm, public-key, attribute-missing |
| v2 certificate already found in pki.cert | validation | error | pki, certificate, config |
| Write failed | error_code | error | |
| only one of group or groups should be defined, both provided | validation | error | go, firewall, config, validation |
| queue set already closed | exception | error | linux, network, gso, lifecycle, concurrency |
| could not initialize winrio | exception | error | nebula, windows, winrio, udp, platform |
ErrInvalidPEMCertificateBanner bytes did not contain a proper certificate banner | error_code | error | |
| error computing issuer | error_code | error | pki, certificate, fingerprint |
| out-key must be encrypted interactively | error_code | error | cli, tty, passphrase |
| error marshalling v1 certificate for handshake | error_code | error | pki, certificate, serialization |
| error while signing | console | error | pki, certificate-signing, signing-failure, nebula |
| GenerateGUID for sublayer | exception | error | wfp, windows, guid, com |
| invalid AES-256 key length | exception | error | encryption, aes, internal |
| groups spec [ ] contains the group '"any". This rule will… | validation | error | go, firewall, config, groups |
| INetworkConnection.GetNetwork | exception | error | windows, com, winapi, network-list-manager |
| invalid port (type %T) | validation | error | config, yaml, type-error, port |
| system socket | exception | error | macos, darwin, utun, socket, syscall |
| bytes did not contain a proper public key banner | exception | error | pem, banner-mismatch, public-key, key-agreement, go |
| noise ReadMessage | exception | warning | handshake, noise, decryption, udp |
| pki: use of ChaChaPoly is not allowed in FIPS 140-only mode | validation | error | fips, crypto, chacha20-poly1305, noise, pki |
| cannot parse private key as P256 | exception | error | certificate, p256, ecdh, key-format |