<div dir="ltr">Hi Daniel,<div><br></div><div>I added the option <span style="font-size:12.8px"><filterref filter='clean-traffic'/> and my VM stop to ping the gateway and the others VM's in the same host.</span></div><div><span style="font-size:12.8px">I would like to prevent that VM's in differents subnets can ping or spoof others VM's. Each subnet is related with a customer and I would like to separete the traffic like VLAN does.</span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px">Is this possible with some options in xml ?</span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px">Thank you very much.</span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px">Thiago</span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px"><br></span></div><div><span style="font-size:12.8px"><br></span></div></div><div class="gmail_extra"><br><div class="gmail_quote">2017-06-07 5:25 GMT-03:00 Daniel P. Berrange <span dir="ltr"><<a href="mailto:berrange@redhat.com" target="_blank">berrange@redhat.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">On Tue, Jun 06, 2017 at 11:37:27PM -0300, Thiago Oliveira wrote:<br>
> Daniel,<br>
><br>
> Are you talking about XML? If yes, could please show us an example?<br>
<br>
<domain><br>
  ...<br>
  <devices><br>
    ....<br>
    <interface type='bridge'><br>
      <mac address='00:16:3e:5d:c7:9e'/><br>
      <filterref filter='clean-traffic'/><br>
    </interface><br>
    ....<br>
  </devices><br>
  ...<br>
</domain><br>
<br>
There is quite alot more info here:<br>
<br>
<a href="http://libvirt.org/formatnwfilter.html" rel="noreferrer" target="_blank">http://libvirt.org/<wbr>formatnwfilter.html</a><br>
<a href="http://libvirt.org/firewall.html" rel="noreferrer" target="_blank">http://libvirt.org/firewall.<wbr>html</a><br>
<br>
<br>
Regards,<br>
Daniel<br>
<span class="HOEnZb"><font color="#888888">--<br>
|: <a href="https://berrange.com" rel="noreferrer" target="_blank">https://berrange.com</a>      -o-    <a href="https://www.flickr.com/photos/dberrange" rel="noreferrer" target="_blank">https://www.flickr.com/photos/<wbr>dberrange</a> :|<br>
|: <a href="https://libvirt.org" rel="noreferrer" target="_blank">https://libvirt.org</a>         -o-            <a href="https://fstop138.berrange.com" rel="noreferrer" target="_blank">https://fstop138.berrange.com</a> :|<br>
|: <a href="https://entangle-photo.org" rel="noreferrer" target="_blank">https://entangle-photo.org</a>    -o-    <a href="https://www.instagram.com/dberrange" rel="noreferrer" target="_blank">https://www.instagram.com/<wbr>dberrange</a> :|<br>
</font></span></blockquote></div><br></div>