Skip to content

fix(mxc): allow explicit sandbox-local TCP loopback - #4228

Open
araza008 wants to merge 1 commit into
NVIDIA:windowsfrom
araza008:akberr/loopback_connectivity
Open

araza008 wants to merge 1 commit into
NVIDIA:windowsfrom
araza008:akberr/loopback_connectivity

Conversation

@araza008

@araza008 araza008 commented Oct 6, 2026

Copy link
Copy Markdown
Contributor

Summary

Adds pc_allow_loopback to enable sandbox-local TCP without unrelated network rules, fixing the WebSocket demo’s WSAEACCES failures while keeping host-loopback and private-network ingress denied. It checks permission when forwarding is requested, allows sandbox creation without the grant, and updates the demo, regression tests, and documentation.

Changes

  • Add pc_allow_loopback without enabling host-loopback or private-network ingress.
  • Check effective loopback permission when forwarding, while allowing sandbox creation.
  • Update the WebSocket demo configuration and listener readiness checks.
  • Add driver and native regression coverage and document the network grants.

Testing

  • Checks appropriate to the affected code and behavior pass
  • Unit tests added/updated (if applicable)
  • E2E tests added/updated (if applicable)

Checklist

  • Follows Conventional Commits
  • Commits are signed off (DCO)
  • Architecture docs updated (if applicable)

- Add pc_allow_loopback without enabling host-loopback or private-network ingress.
- Check effective loopback permission when forwarding, while allowing sandbox creation.
- Update the WebSocket demo configuration and listener readiness checks.
- Add driver and native regression coverage and document the network grants.

Signed-off-by: Akber Raza <akberr@nvidia.com>
@copy-pr-bot

copy-pr-bot Bot commented Oct 6, 2026

Copy link
Copy Markdown

This pull request requires additional validation before any workflows can run on NVIDIA's runners.

Pull request vetters can view their responsibilities here.

Contributors can view more details about this message here.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant