[pve-devel] openflow firewall

Dietmar Maurer dietmar at proxmox.com
Sat Dec 28 16:12:09 CET 2013


I have done some research now, and it seem the we can only implement
a stateless firewall with openflow. Some recent OVS addition allows at least
to match tcp_flags, but this is not comparable with real (iptables) connection
tracking. I will do further tests.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://pve.proxmox.com/pipermail/pve-devel/attachments/20131228/96d14034/attachment.html>


More information about the pve-devel mailing list