[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Xen-users] If Dom0 was compramised


  • To: "Fajar A. Nugraha" <fajar@xxxxxxxxx>
  • From: "Ian Tobin" <itobin@xxxxxxxxxxxxx>
  • Date: Thu, 20 May 2010 12:29:22 +0100
  • Cc: Xen User-List <xen-users@xxxxxxxxxxxxxxxxxxx>
  • Delivery-date: Thu, 20 May 2010 04:30:53 -0700
  • List-id: Xen user discussion <xen-users.lists.xensource.com>
  • Thread-index: Acr4BmWD6Tw4B8yMR/aswp5gwvjjowACSrgQ
  • Thread-topic: [Xen-users] If Dom0 was compramised

Ok I see.

Do you have a sample script that blocks all traffic other than ssh and
pings? Or a similar script?

Ian


-----Original Message-----
From: Fajar A. Nugraha [mailto:fajar@xxxxxxxxx] 
Sent: 20 May 2010 11:23
To: Ian Tobin
Cc: Xen User-List
Subject: Re: [Xen-users] If Dom0 was compramised

On Thu, May 20, 2010 at 5:13 PM, Ian Tobin <itobin@xxxxxxxxxxxxx> wrote:
> Yes im using bridged.
>
> Odd, so you can create any ip tables rules and it should not affect
> domUs?

A more accurate term would be it could be setup to only affect dom0
and routed traffic, not bridged traffic.

-- 
Fajar



_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.