[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-devel] [PATCH] Re: network-bridge script breaks networkconnectivity

Luciano Miguel Ferreira Rocha <strange@xxxxxxxxxxxxx> wrote:
>> The interaction with host firewall rules has always been a bit icky, not
>> least because the xen network scripts typically run after the host's
>> firewall scripts (and rename the network device). I've never understood
>> what happens to the firewall rules - do they stay with the old eth0 (now
>> peth0) or do they now apply to the new device name?
> IIRC, interface names in iptables rules are symbolic, so eth0 means what
> currently stands for eth0.

Correct.  Only the interface name is compared.

Visit Openswan at http://www.openswan.org/
Email: Herbert Xu ~{PmV>HI~} <herbert@xxxxxxxxxxxxxxxxxxx>
Home Page: http://gondor.apana.org.au/~herbert/
PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt

Xen-devel mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.