OpenVZ Forum


Home » General » Support » firewall into VE and isolating eth's from the host
firewall into VE and isolating eth's from the host [message #5029] Tue, 08 August 2006 23:38 Go to next message
baldomero is currently offline  baldomero
Messages: 1
Registered: August 2006
Junior Member
Hello, this is my first post.

I want to install both, firewall and server on the same machine, and so, I would like to make one VE the firewall/router, and other VE's to the servers. The ideal situation is where the firewall has absolute control over the wan network interface, and the host is isolated from it for security reasons.

Is there anything similar to this posible with openvz?
Re: firewall into VE and isolating eth's from the host [message #5036 is a reply to message #5029] Wed, 09 August 2006 06:31 Go to previous message
Vasily Tarasov is currently offline  Vasily Tarasov
Messages: 1345
Registered: January 2006
Senior Member
You can dedicate your physycal interface to the VE (--netdev_add).
After that it isn't available on Host. Then adjust firewall/routing in this VE. HOST node will be available through interface venet.

HTH,
vass.
Previous Topic: *SOLVED* Sharing /home between vps, nfs/bind mount not working?
Next Topic: *SOLVED* NAT doesn't seem to work
Goto Forum:
  


Current Time: Fri Oct 24 20:31:42 GMT 2025

Total time taken to generate the page: 0.10935 seconds