[pve-devel] linux bridge new features presentation

Alexandre DERUMIER aderumier at odiso.com
Sun Jul 26 14:10:55 CEST 2015


>>Thanks, interesting read. So we should disable learning/flooding on tap devices?

I think this could replace "mac filtering" from pve-firewall. (better than iptables, and no need to implement ebtables?)

I haved tested it, seem to works fine.



----- Mail original -----
De: "dietmar" <dietmar at proxmox.com>
À: "aderumier" <aderumier at odiso.com>, "pve-devel" <pve-devel at pve.proxmox.com>
Envoyé: Dimanche 26 Juillet 2015 12:28:08
Objet: Re: [pve-devel] linux bridge new features presentation

> I have found a very good presentation of new linux bridge features 
> 
> https://www.netdev01.org/docs/netdev_tutorial_bridge_makita_150213.pdf 
> 
> including vlan filtering, qinq, mac address filtering (Learning / flooding 
> control),... 

Thanks, interesting read. So we should disable learning/flooding on tap devices? 




More information about the pve-devel mailing list