[pve-devel] pve-firewall : iptables V2

Dietmar Maurer dietmar at proxmox.com
Fri Feb 14 08:34:12 CET 2014


> >>another way, we can list of all the tap,group,bridge with firewall
> >>enabled,
> 
> I think it can be done fast, listing /sys/class/net/vmbrX/brif/tapX

No sure if we need that.

> so we can find in iptables-save if stale tap chains exist

We can old and new ruleset, so there is no need to list /sys/class/net/vmbrX/brif/tapX


More information about the pve-devel mailing list