[pve-devel] pve-firewall ipset update problem

Alexandre DERUMIER aderumier at odiso.com
Sun Nov 30 10:22:10 CET 2014


>>I just tried sent a patch to avoid ipset list chains. Please can you review?

Thanks, I'll test it tomorrow

>>I was quite easy to implement, so maybe I miss something? What exactly was the reason
>>to introduce those list chains?

I think it was related to security groups, which could have a rule with ipset and ipv6.

(we could have security group, apply both on iptables and ip6tables)

I'll do more tests next week
----- Mail original ----- 

De: "Dietmar Maurer" <dietmar at proxmox.com> 
À: "Alexandre DERUMIER" <aderumier at odiso.com> 
Cc: pve-devel at pve.proxmox.com 
Envoyé: Samedi 29 Novembre 2014 08:48:52 
Objet: RE: pve-firewall ipset update problem 

> Great, I think it should work fine! 

I just tried sent a patch to avoid ipset list chains. Please can you review? 
I was quite easy to implement, so maybe I miss something? What exactly was the reason 
to introduce those list chains? 



More information about the pve-devel mailing list