[pve-devel] [PATCH] linux bridge and ovs new model implementation v6

Dietmar Maurer dietmar at proxmox.com
Tue May 6 10:17:37 CEST 2014


> Well, it's not mandatory, but if you have firewall enabled
> 
> vmbr<--fwbr<---tap
> 
> then you disable firewall rules through iptables,
> 
> it'll work but
> 
> you'll need to test each tapchain rules and do the ACCEPT at the end.
> (in my firewall patches, I have a iptables -A forward ! -i fwbr+  at the begin)
> 
> 
> What is the main problem to use PVE::Firewall in Network.pm ?

cyclic dependency:

Depends: libc6 (>= 2.7), libglib2.0-0 (>= 2.31.18), libnetfilter-log1 (>= 0.0.15), libnfnetlink0 (>= 1.0.0), perl, libpve-common-perl, pve-cluster, libpve-access-control




More information about the pve-devel mailing list