From: Jared <list-virt@legroom.net>
To: netfilter@vger.kernel.org
Subject: Re: enabling firewalling of bridged interfaces
Date: Sun, 22 Jul 2012 17:38:19 -0500 [thread overview]
Message-ID: <500C80DB.60105@legroom.net> (raw)
In-Reply-To: <500C6F6B.7090908@legroom.net>
On 07/22/2012 04:23 PM, Jared wrote:
> What do I need to do to enable iptables support for bridged interfaces? I'm
> setting up a Gentoo/KVM VM host, and iptables will handle all traffic
> to/from the host system, but not any of the guests. I seem to be missing
> some key kernel config option for this (specifically, whatever provides
> net.bridge.bridge-nf-call-iptables), but can't figure out what (more details
> below). Is there a specific list of options I should enable, or perhaps a
> reference guide for this somewhere?
Well, nevermind. Rebooting fixed the problem. I was certain I had already
configured all of the necessary bridging settings before my last reboot, so
I didn't bother trying that before sending this e-mail. After wasting
another hour and still having no luck, though, I figured what the hell...
and sure enough it worked.
So, I'm good now. Sorry for the noise. :-)
--
Jared
prev parent reply other threads:[~2012-07-22 22:38 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2012-07-22 21:23 enabling firewalling of bridged interfaces Jared
2012-07-22 22:38 ` Jared [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=500C80DB.60105@legroom.net \
--to=list-virt@legroom.net \
--cc=netfilter@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.