通过链接本地地址超时的AWS EC2 userdata WGET

时间:2017-11-17 20:41:26

标签: amazon-web-services amazon-ec2 amazon-vpc cloud-init link-local

AWS EC2实例使用链接本地地址(169.254.169.254)来分发用户数据。因此,我启动了一个Linux实例,用一些初始网络设置脚本进行实验,以获取数据。以下是我请求提取信息之前的设置。

iptable: 
Chain INPUT (policy ACCEPT)
target prot opt source destination 
Chain FORWARD (policy ACCEPT)
target prot opt source destination 
Chain OUTPUT (policy ACCEPT) 
target prot opt source destination 

eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether 06:43:0f:bf:cd:6c brd ff:ff:ff:ff:ff:ff
inet 169.254.169.15/16 brd 169.254.255.255 scope global eth0
 valid_lft forever preferred_lft forever 
inet6 fe80::443:fff:febf:cd6c/64 scope link 
 valid_lft forever preferred_lft forever 

route
169.254.0.0/16 dev eth0 proto kernel scope link src 169.254.169.15

要求:wget http://169.254.169.254 请求超时

tcpdump 
00:00:00.000000 ARP, Request who-has 169.254.169.254 tell 169.254.169.15, length 28
00:00:00.000115 ARP, Reply 169.254.169.254 is-at <MAC REMOVED>, length 42
00:00:00.000119 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525905560 ecr 0,nop,wscale 7], length 0 
00:00:01.048018 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525906608 ecr 0,nop,wscale 7], length 0 
00:00:03.096020 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525908656 ecr 0,nop,wscale 7], length 0 
00:00:07.128021 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525912688 ecr 0,nop,wscale 7], length 0 
00:00:15.192051 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525920752 ecr 0,nop,wscale 7], length 0 
00:00:31.576027 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525937136 ecr 0,nop,wscale 7], length 0 
00:00:36.696009 ARP, Request who-has 169.254.169.254 tell 169.254.169.15, length 28 
00:00:36.696189 ARP, Reply 169.254.169.254 is-at <MAC REMOVED>, length 42 
00:01:03.832035 IP 169.254.169.15.60712 > 169.254.169.254.80: Flags [S], seq 2929127779, win 29200, options [mss 1460,sackOK,TS val 2525969392 ecr 0,nop,wscale 7], length 0 
00:01:08.952026 ARP, Request who-has 169.254.169.254 tell 169.254.169.15, length 28 
00:01:08.952182 ARP, Reply 169.254.169.254 is-at <MAC REMOVED>, length 42

阻止确认数据包的东西。我错过了什么?请指教!

如果您需要任何其他信息,请告诉我们!

0 个答案:

没有答案