Hi Everyone,<div><br></div><div>I am looking for a very simple firewall or method that would prevent containers being able to ping each other or the mother node. Reason for this is so that other container or the mother node doesn't come under attack if one of the containers is confiscated.</div>
<div><br></div><div>Currently, I am using pfSense to provide private IP subnet to all container and containers are either using Veth or Venet. However, using both methods I am still able to ping other containers and mother node. I am not looking to involve another firewall than I currently have and if I have to do anything on mother, I prefer it to be simple changes as management becomes a nightmare if I have to do iptables.</div>
<div><br></div><div>Please advise as to what my options are.</div><div><br></div><div>Much appreciated,</div><div>Bruce</div>