[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Xen-users] traffic sniff problem

  • To: "Jingyun He" <jingyun.ho@xxxxxxxxx>, <xen-users@xxxxxxxxxxxxxxxxxxx>
  • From: "Jonathan Tripathy" <jonnyt@xxxxxxxxxxx>
  • Date: Fri, 18 Jun 2010 14:39:19 +0100
  • Cc:
  • Delivery-date: Fri, 18 Jun 2010 06:43:08 -0700
  • List-id: Xen user discussion <xen-users.lists.xensource.com>
  • Thread-index: AcsO5k0sSHb4MPsqRZG4n76+vS4E3wABVnih
  • Thread-topic: [Xen-users] traffic sniff problem

I'm not sure if I've got the syntax correct, however I think you would add something like this to your vif script:
ebtables -I FORWARD -o $(vif) -d $(mac) -j ACCEPT
Of course you would have to have a default police of DROP first:
ebtables -P FORWARD DROP
Please someone correct me if i'm wrong

From: xen-users-bounces@xxxxxxxxxxxxxxxxxxx on behalf of Jingyun He
Sent: Fri 18/06/2010 13:51
To: xen-users@xxxxxxxxxxxxxxxxxxx
Subject: [Xen-users] traffic sniff problem

I have xen node, it has a few VPSes, it used bridge network mode, and
we noticed that if one vps is restarted or a new vps is started, the
bridge will send all traffic to all interface during a few seconds,
and I did run a sniff program in one vps, it successful restrived some
password with these traffic.

Any solution?


Xen-users mailing list

Xen-users mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.