WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

Re:Re: [Xen-users] DomU runnirng a firewall for Dom0 and ot.

To: pavel@xxxxxxxxxxxx, xen-users@xxxxxxxxxxxxxxxxxxx, bugone82@xxxxxxxxxxx
Subject: Re:Re: [Xen-users] DomU runnirng a firewall for Dom0 and ot.
From: "Mathias Diehl" <md@xxxxxxxxxxxxx>
Date: Wed, 1 Mar 2006 12:42:18 +0000
Delivery-date: Wed, 01 Mar 2006 10:32:43 +0000
Envelope-to: www-data@xxxxxxxxxxxxxxxxxxx
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
Hi there,


>I`m using a similar setup - export both netwrk interfaces to DomU and run 
>iptables on that domU (thus no direct inet access is allowed to the dom0, its 
>a good idea to have serial console in case the firewall domU fails).


I test since a couple of weeks exactly the setup as described... Everything is 
running very weel - but there's still a small problem I could not solve by now.

As I will have no serial acess when moving my server to my hosting provider I 
tried to setup a link between my firewall domU and my dom0, without any sucess 
by now.

The interal netwrok between my domU's run's great. Is there someone who can 
help me with a redundant solution for the serial console?

cheers,

Mat


>
>
>On Wednesday 01 March 2006 11:55, bugone82@xxxxxxxxxxx wrote:
>> Hi, someone knows if is it possible to run iptables rules on one DomU,
>> filtering and forwarding many services to other DomUs and Dom0?
>> I know it is possible to run rules on Dom0, but i would like to have an
>> independent firewall (DomU) filtering also what  happens on Dom0.
>> Any suggestion?
>>
>> thanks,
>> Enrico
>>
>> _______________________________________________
>> Xen-users mailing list
>> Xen-users@xxxxxxxxxxxxxxxxxxx
>> http://lists.xensource.com/xen-users
>
>_______________________________________________
>Xen-users mailing list
>Xen-users@xxxxxxxxxxxxxxxxxxx
>http://lists.xensource.com/xen-users

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

<Prev in Thread] Current Thread [Next in Thread>
  • Re:Re: [Xen-users] DomU runnirng a firewall for Dom0 and ot., Mathias Diehl <=