Re: macvtap direct and ip spoofing

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



That's bad. So, no way to protect network from vm's ip spoofing using macvtap? 

On Tue, Nov 19, 2013 at 2:21 PM, Laine Stump <laine@xxxxxxxxx> wrote:

The kernel macvtap packet processing bypasses both iptables and
ebtables, so libvirt's filters are ineffective for guest interfaces
using a macvtap connection.


_______________________________________________
libvirt-users mailing list
libvirt-users@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/libvirt-users

[Index of Archives]     [Virt Tools]     [Lib OS Info]     [Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Yosemite News]     [KDE Users]

  Powered by Linux