OpenVZ Forum


Home » General » Support » Iptables problem - when enabled, can't access VPSes
Re: Iptables problem - when enabled, can't access VPSes [message #20245 is a reply to message #20244] Fri, 14 September 2007 02:40 Go to previous messageGo to previous message
ugob is currently offline  ugob
Messages: 271
Registered: March 2007
Senior Member
Yes, OpenVZ needs to use the FORWARD table for iptables so that traffic from/to the VEs are routed through the HN.

I think the person in the Lxlabs forum did a great job to minimize any potential security risk associated with the use of the FORWARD table. However, you must use iptables to firewall your VE's afterward, either using FORWARD rules on the HN, or using iptables inside the VEs.

Ugo


Please read the manual before asking questions:
http://download.openvz.org/doc/OpenVZ-Users-Guide.pdf

Please have a look at the wiki before asking questions:
http://wiki.openvz.org/Main_Page
 
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: help me
Next Topic: Trouble compiling kernel
Goto Forum:
  


Current Time: Mon Aug 11 02:12:24 GMT 2025

Total time taken to generate the page: 0.41820 seconds