
12 Mar
2010
12 Mar
'10
2:25 p.m.
On Mon, 2010-03-08 at 23:02 +0100, Felix Schwarz wrote:
Am 07.03.2010 15:09, schrieb Varrun Ramani:
I am right now undertaking a project which deals with verification of firewall rules. I wish to know which applications/libraries modify/query firewall rules. I came to know that libvirt modifies iptables rules. Can anyone let me know for what purposes/how libvirt modifies the rules?
I suggest you look through the archives, the topic comes up pretty regularly.
Bottom line: - It should 'just work' for most users. - iptables modification are considered safe, more complex setups are out of scope for libvirt.
How do you define 'safe' in this context ? David