[crossbow-discuss] Crossbow virtual router and firewall

2009-04-17 Thread Gary Bainbridge
I want to run a non-global zone as a virtual router and run ipnat inside the 
non-global zone, however, when I try to enable routing it can't find 
route:default or network/ipfilter.  I'm using exclusive IP inside the zones and 
using OpenSolaris 2008.11 build 110.

I've tried sparse root and whole root zones without success. I've read blogs 
and posts and documentation where it states you can run a virtual router in a 
non-global zone and run ipnat inside the non-global zone but when I run 
'routeadm -u -e ipv4-forwarding' I get an error that it can't find 
route:default.  When Itry to enable ipfilter it doesn't exist, which is true, 
it doesn't exist in an svcs list. 

All of the detailed posts on vnics, etherstubs, and virtual networking use the 
global zone as a firewall which I can get to work, but I want my 
firewall/router in a non-global zone. 

Has anyone successfully enabled routing and ipfilter in a non-global zone and 
used it as a firewall/router and what did you do to get it working?
-- 
This message posted from opensolaris.org



[crossbow-discuss] Crossbow virtual router and firewall

2009-04-17 Thread Gary Bainbridge
Thanks.  I'll try SXCE.  

Do you know why it would work in SXCE but not Indiana?
-- 
This message posted from opensolaris.org