[pve-devel] pvefw: using ctmark to associacte connections to VMs

Alexandre DERUMIER aderumier at odiso.com
Sat Mar 1 14:04:49 CET 2014


>>So that we can parse /proc/net/nf_conntrack to list open connections for a VM.

I'm not sure, but I think you don't have interfaces listed in nf_conntrack, only ip src,ip dst.


----- Mail original ----- 

De: "Dietmar Maurer" <dietmar at proxmox.com> 
À: pve-devel at pve.proxmox.com, "Alexandre DERUMIER (aderumier at odiso.com)" <aderumier at odiso.com> 
Envoyé: Vendredi 28 Février 2014 18:46:54 
Objet: pvefw: using ctmark to associacte connections to VMs 



I wonder if we can use ctmark to associate connections with VMs? 

So that we can parse /proc/net/nf_conntrack to list open connections for a VM. 

Is that reasonable, or are there some hidden disadvantages? Or are there other 
ways to do that? 



More information about the pve-devel mailing list