Commit bbceb53
cmd/containerboot: add route to table 52 for egress Service destinations
Tailscale Services are not WireGuard peers, so tailscaled doesn't add
routes for them to routing table 52. This caused egress traffic to
Service IPs to be routed via the default gateway (eth0) instead of
tailscale0, resulting in connection timeouts.
This fix adds a route for the egress destination IP to table 52 via
tailscale0 in installEgressForwardingRule(). The route addition is
non-fatal (logs a warning) since for regular Tailscale peers, tailscaled
already manages routes.
🤖 Generated with [Claude Code](https://claude.com/claude-code)
Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>1 parent 2bfef27 commit bbceb53
1 file changed
Lines changed: 37 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| 18 | + | |
| 19 | + | |
18 | 20 | | |
19 | 21 | | |
20 | 22 | | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
21 | 28 | | |
22 | 29 | | |
23 | 30 | | |
| |||
123 | 130 | | |
124 | 131 | | |
125 | 132 | | |
| 133 | + | |
| 134 | + | |
| 135 | + | |
| 136 | + | |
| 137 | + | |
| 138 | + | |
| 139 | + | |
| 140 | + | |
| 141 | + | |
| 142 | + | |
| 143 | + | |
| 144 | + | |
| 145 | + | |
| 146 | + | |
| 147 | + | |
| 148 | + | |
| 149 | + | |
| 150 | + | |
| 151 | + | |
| 152 | + | |
| 153 | + | |
| 154 | + | |
| 155 | + | |
| 156 | + | |
| 157 | + | |
| 158 | + | |
| 159 | + | |
| 160 | + | |
| 161 | + | |
| 162 | + | |
126 | 163 | | |
127 | 164 | | |
128 | 165 | | |
| |||
0 commit comments