OpenVZ Forum


Home » General » Support » Bridging inside the CT, snort in-line?!
Re: Bridging inside the CT, snort in-line?! [message #34770 is a reply to message #34752] Mon, 02 February 2009 09:15 Go to previous messageGo to previous message
maratrus is currently offline  maratrus
Messages: 1495
Registered: August 2007
Location: Moscow
Senior Member
Hello,

I've never used snort in-line so my questions might look silly but I really don't understand why do you need bridge interface inside CT. Could you possibly explain in more detail why it's so important?

As far as I understand your scheme the bridge on the HN unites physical eth* and virtual veth* interfaces. And what do you want to unite into bridge inside CT?


Quote:


The real problem is to let the traffic flowing into the VM, bridging inside and allowing iptable queue to grab it



Why it is so important if a packet passed bridge interface?

Thank you.
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: Second NIC
Next Topic: Suspending VE, breaks Oracle
Goto Forum:
  


Current Time: Tue Nov 05 11:58:33 GMT 2024

Total time taken to generate the page: 0.05013 seconds