[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] multiple nic's with vlan -> bridge or bridge -> vlan



On Thursday 14 September 2006 4:14 am, Molle Bestefich wrote:
> thomas.vonsteiger@xxxxxxxxxx wrote:
> > eth0 – vlan's – bridge's – domU's
> > eth1 – vlan's – bridge's – domU's
> >
> > or
> >
> > eth0 - bridge – vlan's –domU's
> > eth1 - bridge – vlan's –domU's
>
> Assuming from your ASCII drawing that you terminate your VLANs inside
> the domu's in the second configuration, I'd go with the first
> configuration from a security point of view.

apart from termination worries, the second setup usually has problems.  mainly 
because it's better to put the physical eth's MTU to 1504, but the bridges 
usually choke with MTUs bigger than 1500

-- 
Javier

Attachment: pgpU1Q9UcayIS.pgp
Description: PGP signature

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users

 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.