[pve-devel] pve-firewall : basic bridge iptables implementation

Dietmar Maurer dietmar at proxmox.com
Fri Jan 31 16:13:07 CET 2014


> Maybe it's better to handle atomically chain and rules creation ?
> (and avoid need to rollback if 1 iptables command fail )

looks better, yes. Did you already check how shorewall handles that?


More information about the pve-devel mailing list