#1124369 auto-apt-proxy: Connection to IPv6 avahi-reported apt-proxy fails but is still set as proxy

#1124369#5
Date:
2025-12-31 11:28:33 UTC
From:
To:
Dear Maintainer,

   * What led up to the situation?

     Installed `apt-cacher-ng` and `avahi-daemon` on Debian 13 which by default
     broadcasts an IPv4 and IPv6 address for an apt-proxy. *NB* IPv6
     routing is disabled in my network router.

     Installed `auto-apt-proxy` and `avahi-utils` on different Debian 13
     LXC. Running `auto-apt-proxy` returns the IPv6 proxy address, but
     `apt update` fails with

     `Cannot initiate the connection to fe80::be24:11ff:fe1f:d527:3142
     (fe80::be24:11ff:fe1f:d527). - connect (22: Invalid argument)`

   * What exactly did you do (or not do) that was effective (or
     ineffective)?

     Turning off IPv6 in the avahi-daemon on the apt-cacher-ng machine
     results in the IPv4 proxy correctly being used -> proxy itself is
     functional.

     Opened `/usr/bin/auto-apt-proxy` to debug, the `hit` check also
     returns the same error, but this is not picked up in the grep
     statement -> auto-apt-proxy incorrectly thinks the IPv6 proxy is
     working

     Also tested on Debian sid, logic is the same -> still a problem in
     unstable

   * What was the outcome of this action?

     see above

   * What outcome did you expect instead?

     If the IPv6 does not connect, use the IPv4 address. This requires 2
     changes: 1) Fix the check to included additional connection errors, and 2) loop over
     the avahi-browse results, currently only the first result is
     checked (which in my case is the IPv6), and return the first one
     that works.

     Happy to help with further debugging/testing.

#1124369#10
Date:
2026-08-12 21:14:31 UTC
From:
To:
Hi,

Thanks for your bug report.

Would you be able to grab the binary package from
https://salsa.debian.org/debian/auto-apt-proxy/-/jobs/10124837/artifacts/file/debian/output/auto-apt-proxy_17.1+salsaci+20260812+59_all.deb
and test whether it fixes it for you? If you prefer to look at the
source, you can grab the auto-apt-proxy script from the
'avahi-check-all' branch at
https://salsa.debian.org/debian/auto-apt-proxy/-/tree/avahi-check-all

#1124369#15
Date:
2026-08-12 23:16:41 UTC
From:
To:
Sorry this build is actually broken. Try this one instead (or the source
from git branch avahi-check-all):

https://salsa.debian.org/debian/auto-apt-proxy/-/jobs/10125266/artifacts/file/debian/output/auto-apt-proxy_17.1+salsaci+20260812+61_all.deb

#1124369#20
Date:
2026-08-18 14:23:13 UTC
From:
To:
We believe that the bug you reported is fixed in the latest version of
auto-apt-proxy, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1124369@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Antonio Terceiro <terceiro@debian.org> (supplier of updated auto-apt-proxy package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)
Format: 1.8
Date: Tue, 18 Aug 2026 11:05:20 -0300
Source: auto-apt-proxy
Architecture: source
Version: 18
Distribution: unstable
Urgency: medium
Maintainer: Antonio Terceiro <terceiro@debian.org>
Changed-By: Antonio Terceiro <terceiro@debian.org>
Closes: 1120071 1124369 1128058 1142542
Changes:
 auto-apt-proxy (18) unstable; urgency=medium
 .
   [ Paride Legovini ]
   * Revert "autopkgtest: drop test for squid-deb-proxy"
 .
   [ Antonio Terceiro ]
   * Log a message when default gateway can't be looked up
   * hit(): prevent apt-helper call from recursing into auto-apt-proxy
     (Closes: #1142542)
   * detect_squid_deb_proxy: fix log message
   * Give higher precedence to squid-deb-proxy
   * auto-apt-proxy.conf: drop unused auto-apt-proxy::Debug "setting"
   * wait for network to be online
   * Add ability to lookup default gateway with networkctl
   * Use a unique output directory per run
   * avahi: iterate over all address broadcast as potential proxies
   * avahi: handle unrouteable addresss (Closes: #1124369)
 .
   [ Tj ]
   * use legal SRV name (Closes: #1128058)
   * Rename AUTO_APT_PROXY_AVAHI_NAME to AUTO_APT_PROXY_MDNS_NAME
   * Add systemd-resolved mDNS support
 .
   [ Kirt Runolfson ]
   * Restore DNS hostname resolution for apt-proxy (Closes: #1120071)
Checksums-Sha1:
 d3ab241f9cf08257bf07bbe35959d703a2294e59 1843 auto-apt-proxy_18.dsc
 cb9f8feb0c3e963b6507be1fe0977b363938dc55 23628 auto-apt-proxy_18.tar.xz
 e2bafcea92ab83445f052c39aaf85f9fb805bf95 6553 auto-apt-proxy_18_source.buildinfo
Checksums-Sha256:
 4fe629bf4e3c65fb2df756355a6952958a5e9a5a2f063415268e169658a93ddc 1843 auto-apt-proxy_18.dsc
 1507d3b22c5f12d610fa92158538f4351b5a983410913894e053450e21b3be59 23628 auto-apt-proxy_18.tar.xz
 78fab503fd96aadc774603b2e448096c1762f3d8fe96141cc9a8eae6052f5808 6553 auto-apt-proxy_18_source.buildinfo
Files:
 af04d510b8eea0b939ea90a80073058e 1843 net optional auto-apt-proxy_18.dsc
 738b4cb180fe1edbcddc2aec2ddc1cf6 23628 net optional auto-apt-proxy_18.tar.xz
 a26e952e63d7ff03c3e23971b94df9b7 6553 net optional auto-apt-proxy_18_source.buildinfo
-----BEGIN PGP SIGNATURE-----
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=ew+U
-----END PGP SIGNATURE-----