OpenVZ Forum


Home » General » Support » Trigger scripts?
Re: Trigger scripts? [message #33542 is a reply to message #33539] Mon, 20 October 2008 20:07 Go to previous message
locutius is currently offline  locutius
Messages: 125
Registered: August 2007
Senior Member
it is a function of the firewall that ships with the paid product but it is not present in openVZ

apf installed on the HN can be configured with unique iptables rules on an IP basis, very flexible solution http://kb.parallels.com/article_130_875_en.html (note the IFACE and MONKERN settings are the same for HN as they are for CT)

here is a reference in the Wiki just for info about firewalls and openVZ http://wiki.openvz.org/Setting_up_an_iptables_firewall#Setti ng_up_a_firewall_that_allows_per-container_configuration

caution: not all iptables modules are available for openVZ kernel and what there is happens to be bugggy e.g. configure your conntrak settings with vz STOPPED or you get a kernel oops. the solution above for apf inside a CT does not work on the latest kernel and latest version of vz (at least i cant get it to work ... i have it working on older kernels and vz versions)
 
Read Message
Read Message
Read Message
Read Message
Previous Topic: How it supports networking?
Next Topic: ipTables - SSH
Goto Forum:
  


Current Time: Sun Aug 24 01:24:46 GMT 2025

Total time taken to generate the page: 0.11979 seconds