qemu-devel.nongnu.org archive mirror
 help / color / mirror / Atom feed
* Re: [Qemu-devel] IPTABLES howto?
@ 2004-07-28 17:22 Thomas Munn
  0 siblings, 0 replies; 2+ messages in thread
From: Thomas Munn @ 2004-07-28 17:22 UTC (permalink / raw)
  To: qemu-devel

I should add that I meant a GUEST os!    
 
 
>>>munntj@shands.ufl.edu 07/28 10:13 am >>> 

I posted once before, so I will try again.  My thought is that it is
simply impossible to iptables a host operating system with qemu. 
Iptables rules on input,output chains of both natted, and non-natted ips
don't seem to block any packets.  I tried all possible combinations. 
Hopefully someone is smarter than me and can post a suggestion, if such
a thing is even possible. 
 
THomas
 
--------------------------- 
Thomas  Munn CISSP 
Security Analyst 
Shands Hospital 
munntj@shands.ufl.edu

^ permalink raw reply	[flat|nested] 2+ messages in thread
* [Qemu-devel] IPTABLES howto?
@ 2004-07-28 14:13 Thomas Munn
  0 siblings, 0 replies; 2+ messages in thread
From: Thomas Munn @ 2004-07-28 14:13 UTC (permalink / raw)
  To: qemu-devel

[-- Attachment #1: Type: text/plain, Size: 490 bytes --]

I posted once before, so I will try again.  My thought is that it is
simply impossible to iptables a host operating system with qemu. 
Iptables rules on input,output chains of both natted, and non-natted ips
don't seem to block any packets.  I tried all possible combinations. 
Hopefully someone is smarter than me and can post a suggestion, if such
a thing is even possible. 
 
THomas
 
---------------------------
Thomas  Munn CISSP
Security Analyst
Shands Hospital
munntj@shands.ufl.edu

[-- Attachment #2: HTML --]
[-- Type: text/html, Size: 863 bytes --]

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2004-07-28 17:27 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-07-28 17:22 [Qemu-devel] IPTABLES howto? Thomas Munn
  -- strict thread matches above, loose matches on Subject: below --
2004-07-28 14:13 Thomas Munn

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).