On Wed, Nov 30, 2011 at 1:25 AM, Kurt Bauer <[email protected]> wrote: > > Hi again, > > I rephrase my question or rather broaden it: > > How do you do firewalling in conjunction with openvswitch? > > *) central firewalling at Dom0. How? > *) central firewalling in front of the Dom0. > *) firewalling per DomU.
You can use the ovs-ofctl command to add OpenFlow flows that act as firewall rules. Both dom 0 and doms U are represented as switch ports so the same mechanism works for both. Central firewalling can be done by wildcarding the input port, otherwise you can provide a specific one. _______________________________________________ discuss mailing list [email protected] http://openvswitch.org/mailman/listinfo/discuss
