[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] Binding a nic to an interface in domU


  • To: Richard Heycock <rgh@xxxxxxxxxxxxxxx>
  • From: Steven Howe <howe.steven@xxxxxxxxx>
  • Date: Mon, 05 Dec 2005 07:56:57 -0800
  • Cc: xen-users@xxxxxxxxxxxxxxxxxxx
  • Delivery-date: Mon, 05 Dec 2005 17:59:52 +0000
  • Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:subject:from:to:cc:in-reply-to:references:content-type:date:message-id:mime-version:x-mailer; b=lT1/9xXnsLgD4GeQlLeR597Hb10TejMRSvaqX8FbxbqEiKTSaL3m5ei7IgqvK9hkwYUz2MG7oNKygdOMy1UNJgyhi0L86NFNQDuecf+Oy8vTRqYtODY4KLGpVX2TCK3gsUl8yk7q5aIAEsMTnQ5xjkom3BUb3dZQ1qC0011WIRM=
  • List-id: Xen user discussion <xen-users.lists.xensource.com>

Seems like overkill. IPTABLES has filter properties on a per route and per device basis. Why not
just learn how to use IPTABLES first, then you wouldn't need three doms.

Steven

On Mon, 2005-12-05 at 22:56 +1100, Richard Heycock wrote:
Hi,

I would like to set up a machine which has two domU vms so they can both
be used as firewall machines -- we are getting two different internet
connections and I want to firewall both of them using one machine.

What I would like to do is bind one interface in each of the domUs to
the nic and the second to a bridged device and then use iptables to
firewall each vm.

a) does anyone know if this is possible and b) does it sound like the
correct way to do this?!

rgh

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.