[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] Xen and IPtables



Are you using bridging or PCI passthrough?

James Clemence wrote:
> Hi, just a brief question regarding iptables and Dom0. I am wondering
> how I can apply IPtables rules purely to the traffic to the Dom0,
> without blocking that going to the domUs.
>
> I have tried using -d <dom0 IP> with drop rules except SSH.
>
> However, if this is done on the INPUT chain it blocks off the traffic
> going to the DomUs too... Just wondering whether I can have any
> pointers to get this sort of solution:
>
> Iptables <block all except ssh to dom0>
> but allow domU traffic through which I am handling in per-domU chains
> on FORWARD.
>
> Have been slightly confused with this one, any help would be great,
> cheers,
>
> J

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.