A container with network: host was skipped when the mesh injects its <node>.internal names, on the belief it "shares the machine's hosts file already". It does not: docker run --network host still gives the container its own /etc/hosts (localhost + its own id only), so every internal name the mesh wrote is invisible inside it, and a client that dials one gets EAI_AGAIN.
Surfaced by the first host-network consumer to dial a provider by the .internal address the mesh hands it as ${bound:...:at} (the model-usage store reaching its postgres). The remedy is the same --add-host every other container already gets — the runtime accepts it with --network host (verified against Docker), and mesh-host emits it for any network mode. The names_test case that asserted the skip is inverted to assert the injection.
A container with `network: host` was skipped when the mesh injects its `<node>.internal` names, on the belief it "shares the machine's hosts file already". It does not: `docker run --network host` still gives the container its own `/etc/hosts` (localhost + its own id only), so every internal name the mesh wrote is invisible inside it, and a client that dials one gets `EAI_AGAIN`.
Surfaced by the first host-network consumer to dial a provider by the `.internal` address the mesh hands it as `${bound:...:at}` (the model-usage store reaching its postgres). The remedy is the same `--add-host` every other container already gets — the runtime accepts it with `--network host` (verified against Docker), and mesh-host emits it for any network mode. The names_test case that asserted the skip is inverted to assert the injection.
A container with `network: host` was skipped when the mesh injects its
`<node>.internal` names, on the belief it "shares the machine's hosts file
already". It does not: `docker run --network host` still gives the container
its own /etc/hosts (localhost and its own id only), so every internal name the
mesh wrote is invisible inside it, and a client that dials one gets EAI_AGAIN.
This surfaced with the first host-network consumer to dial a provider by the
`.internal` address the mesh hands it as `${bound:...:at}` (the model-usage
store reaching its postgres). The remedy is the same `--add-host` every other
container already gets — the runtime accepts it with `--network host`
(verified against Docker) and mesh-host emits it for any network mode.
Claude-Session: https://claude.ai/code/session_01LrgweAeERJYBg88c5cKDzF
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
A container with
network: hostwas skipped when the mesh injects its<node>.internalnames, on the belief it "shares the machine's hosts file already". It does not:docker run --network hoststill gives the container its own/etc/hosts(localhost + its own id only), so every internal name the mesh wrote is invisible inside it, and a client that dials one getsEAI_AGAIN.Surfaced by the first host-network consumer to dial a provider by the
.internaladdress the mesh hands it as${bound:...:at}(the model-usage store reaching its postgres). The remedy is the same--add-hostevery other container already gets — the runtime accepts it with--network host(verified against Docker), and mesh-host emits it for any network mode. The names_test case that asserted the skip is inverted to assert the injection.A container with `network: host` was skipped when the mesh injects its `<node>.internal` names, on the belief it "shares the machine's hosts file already". It does not: `docker run --network host` still gives the container its own /etc/hosts (localhost and its own id only), so every internal name the mesh wrote is invisible inside it, and a client that dials one gets EAI_AGAIN. This surfaced with the first host-network consumer to dial a provider by the `.internal` address the mesh hands it as `${bound:...:at}` (the model-usage store reaching its postgres). The remedy is the same `--add-host` every other container already gets — the runtime accepts it with `--network host` (verified against Docker) and mesh-host emits it for any network mode. Claude-Session: https://claude.ai/code/session_01LrgweAeERJYBg88c5cKDzF