slackhq/nebula
Documented errors, page 5 of 5. Back to slackhq/nebula
| Code / Message | Type | Severity | Tags |
|---|---|---|---|
| rule # ; local_cidr did not parse; | validation | error | firewall, configuration, cidr, networking |
| %s: %w | validation | error | certificate, pki, ca-pool |
| error creating IP | error_code | error | netstack, gvisor, ip-address |
| static_map.network must be one of ip, ip4, or ip6 | validation | error | configuration, static-map, validation |
| unable to read crt | console | error | go, cli, file-read, certificate |
| unable to read pki.cert file | exception | error | filesystem, certificate, config, file-not-found |
| encoded Subnets should be in pairs, an odd number was found | exception | error | certificate, protobuf, subnets, validation |
| entry .mtu in tun.routes is below 500 | validation | error | config, validation |
| failed to create /dev/net/tun | exception | error | linux, tun, mknod, container, permissions |
| no networks encoded in certificate | validation | error | pki, certificate, config |
| v1 certificate already found in pki.cert | validation | error | certificate, config, duplicate, pki |
| gso_size is zero | exception | error | network, tso, gso, tcp, segmentation |
| invalid mask (type %T) | validation | error | nebula, config, type-error, yaml, calculated-remotes |
| error while generating ed25519 keys | error_code | error | crypto, ed25519, entropy, cli |
| no certificate | validation | error | certificate, nil-check, ca-pool |
| error while unmarshaling pki.key | validation | error | pki, filesystem, config |
| no pki.ca path or PEM data provided | validation | critical | pki, ca, nebula, config |
| unsupported curve | validation | error | config, curve, noise, validation |
ErrInitiateAlreadyCalled initiate already called | error_code | error | handshake, state-machine, retry |
| encoded IPs should be in pairs, an odd number was found | exception | error | certificate, protobuf, ips, validation |
ErrInitiateOnResponder initiate called on responder | error_code | error | handshake, state-machine, misuse |
| groups specified as , but host=any will match any host… | validation | error | go, firewall, config, host |
| config ` .interfaces` has invalid key | validation | error | config, regex, interfaces, allowlist |
| entry .via in tun.unsafe_routes is not present | validation | error | |
ErrIPv4PacketTooShort ipv4 packet is too short | error_code | warning | ipv4, packet-parsing, short-packet |
| entry .route in tun.unsafe_routes failed to parse | validation | error | |
| could not create netstack NIC | error_code | error | netstack, gvisor, nic |
| lighthouse does not have a static_host_map entry | validation | error | configuration, lighthouse, yaml |
| unable to read pki.ca file | validation | error | pki, ca, file-io, config |
| no inside interface (tun) | validation | critical | network, config, tun, nebula, startup |
| unknown certificate version | validation | error | pki, certificate, version |
| failed to set ip interface | exception | error | windows, routing, mtu, winipcfg |
| tun.unsafe_routes is not an array | validation | error | |
| error while parsing encrypted ca-key | console | error | |
| unknown protocol | validation | error | firewall, configuration, validation |
| config ` ` contains both true and false rules, but no… | validation | error | config, firewall, allowlist, ipv6 |
| /dev/net/tun doesn't exist, failed to mkdir -p /dev/net | exception | error | linux, tun, devfs, container, permissions |
| entry .mtu in tun.unsafe_routes is below 500 | validation | error | |
| certificate contained a group not present on the signing ca | validation | error | certificate, groups, ca-constraints |
| entry .mtu in tun.routes is not present | validation | error | config, validation |
| entry .route in tun.unsafe_routes is not present | validation | error | |
| failed to bring the tun device up | exception | error | network, tun, linux, permissions |
| pkcs11 module gave us a nil or empty CKA_EC_POINT | exception | error | pkcs11, hsm, empty-attribute |
| ca certificate is expired | console | error | |
| cidr specified as , but host=any will match any host… | validation | error | go, firewall, config, cidr |
| Argon2Parameters Memory must be be greater than 0 and no… | exception | error | crypto, argon2, memory, bounds-check |
| config ` ` has invalid CIDR | validation | error | nebula, config, cidr, validation, calculated-remotes |
ErrHeaderTooShort header is too short | error_code | warning | packet-parsing, header, udp |
ErrNoPayload provided payload was empty | error_code | error | handshake, payload, nil-argument |
| entry .metric in tun.unsafe_routes is not in range (0- ) | validation | error | |
| entry .metric in tun.unsafe_routes is not an integer | validation | error | |
| entry in tun.unsafe_routes is invalid | validation | error | |
ErrHostNotKnown host not known | error_code | error | network, lighthouse, discovery, nebula |
| entry .via in tun.unsafe_routes failed to parse address | validation | error | |
ErrNotSelfSigned certificate is not self-signed | error_code | error | certificate, signature, ca-pool |
| entry .weight in tun.unsafe_routes | validation | error | |
| pki: use of is not allowed in FIPS 140-only mode | validation | error | fips, certificate, curve, compliance |
| can not use pki.initiating_version 1 without a v1… | validation | error | pki, config, handshake |
| entry in tun.unsafe_routes[ ].via is invalid | validation | error | |
| groups spec [ ] contains the group '"any". This rule will… | validation | error | go, firewall, config, cidr |
| private key is not a pair with public key in nebula cert | validation | critical | pki, keypair, certificate |
| error while parsing in-pub | console | error | |
| unknown log format ` `. possible formats | validation | error | logging, configuration, validation |
| Argon2Parameters Parallelism must be be greater than 0 and… | exception | error | crypto, argon2, parallelism, bounds-check |
| no firewall rules | validation | critical | config, firewall, nebula, startup |
| rule # ; only one of port or code should be provided | validation | error | firewall, configuration, validation |