Re: [Xen-devel] Network filtering setup
On 22/12/06 2:25 pm, "Jacob Gorm Hansen" <jacobg@xxxxxxx> wrote:
> Does anyone have the perfect setup (list of iptables commands I suppose)
> for this, preferable without bridging at the Ethernet layer?
> NAT/Masquerading is not an option, as I prefer not to have any state
> kept in dom0.
What you're asking for is different to what was done in Xen 1.x which, as I
recall, did Ethernel-level bridging with IP-level firewalling. The closest
match in Xen 3.x would be etherbridge + etherbridge hooks into ip tables.
-- Keir
Xen-devel mailing list