OpenVZ Forum


Home » General » Support » iptables in vps or on the host node
Re: iptables in vps or on the host node [message #2041 is a reply to message #2038] Thu, 16 March 2006 08:17 Go to previous messageGo to previous message
kir is currently offline  kir
Messages: 1645
Registered: August 2005
Location: Moscow, Russia
Senior Member

You can actually do it both ways. If you want to close some ports for all the VPSs, the best place to do that would be on hardware node itself for obvious reasons (less rules).

If you want to set some VPS-specific rules, you can do it either on the host node or from within a VPS. The major difference here in the second case VPS owner can modify those rules.

Also note that you can not use all of the iptables modules inside a VPS, just some of them which are virtualized. man vzctl should tell you which ones are possible.


Kir Kolyshkin
http://static.openvz.org/userbars/openvz-developer.png
 
Read Message
Read Message
Read Message
Read Message
Previous Topic: using network aliases
Next Topic: OpenVZ on CentOS 4.2
Goto Forum:
  


Current Time: Sun Aug 11 10:21:28 GMT 2024

Total time taken to generate the page: 0.02996 seconds