On Mon, Aug 15, 2005 at 08:01:01AM +0200, Dirk H. Schulz wrote:
> There is one more reason to put the firewall into a guest system: The 
> guests use the smaller kernels (without hardware support etc.), so there 
> is less possibility of kernel bugs that can be used to crack the 
> firewall. It is more of a statistic perspective but with firewalling 
> everything should be used to avoid leaks, I think.

However, the parts of the kernel that an attacker has leverage on (the
TCP/IP stack and netfilter) are the same whether dom0 or domU.  I'll
grant you the NIC driver, but I refuse to worry greatly about it.  :-)

