[pve-devel] venet firewall broken?

Dietmar Maurer dietmar at proxmox.com
Mon May 12 06:28:11 CEST 2014


> so, it wasn't work at all before ?

I am quite sure that worked.
 
> I see this iptables traffic:
> FORWARD: IN=venet0 OUT=venet0 SRC=10.3.94.204 DST=10.3.94.203 LEN=84
> TOS=0x00 PREC=0x00 TTL=64 ID=25368 PROTO=ICMP TYPE=0 CODE=0
> ID=1751 SEQ=1
> 
> Maybe with some magic routing rule, is it possible to split to have to lines.
> I'll check that today.

Just use RETURN instead of ACCEPT should solve the problem?


More information about the pve-devel mailing list