[libvirt] FYI: a short guide to libvirt & network filtering iptables/ebtables use

Stefan Berger stefanb at linux.vnet.ibm.com
Thu Jul 1 10:57:21 UTC 2010


On 06/30/2010 11:04 AM, Daniel P. Berrange wrote:
>
> One thing in looking at this that you may notice is that if there
> are many guests all using the same filters, we will be duplicating
> the iptables rules over&  over for each guest. This is merely a
>    
One comment here: An optimization would be (easier, if at all) 
implementable if there was no priority field in the rules that allows 
the rules of different filters to be interleaved with each other.

    Stefan




More information about the libvir-list mailing list