[fedora-virt] bridge network with iptables running on host?

Mark McLoughlin markmc at redhat.com
Wed Sep 2 16:20:47 UTC 2009


On Wed, 2009-09-02 at 11:45 -0400, Gene Czarcinski wrote:
> Just what is and is not filtered?  Is nothing filtered on the host.

Not sure I understand all your questions, but with
bridge-nf-call-iptables = 1 the iptables FORWARD filter chain is applied
to all frames forwarded across bridges.

Cheers,
Mark.




More information about the Fedora-virt mailing list