[libvirt] libvirt modifying iptables rules

David Lutterkort lutter at redhat.com
Fri Mar 12 19:25:22 UTC 2010


On Mon, 2010-03-08 at 23:02 +0100, Felix Schwarz wrote:
> Am 07.03.2010 15:09, schrieb Varrun Ramani:
> > I am right now undertaking a project which deals with verification of
> > firewall rules. I wish to know which applications/libraries modify/query
> > firewall rules. I came to know that libvirt modifies iptables rules. Can
> > anyone let me know for what purposes/how libvirt modifies the rules?
> 
> I suggest you look through the archives, the topic comes up pretty regularly.
> 
> Bottom line:
> - It should 'just work' for most users.
> - iptables modification are considered safe, more complex setups are out of
>    scope for libvirt.

How do you define 'safe' in this context ?

David





More information about the libvir-list mailing list