SOLVED: [Vserver] IPTables and limiting inter-vserver communication

2007-05-24 Thread James Miller
> -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Behalf Of > Christian Affolter > Sent: Thursday, May 24, 2007 9:18 AM > To: vserver@list.linux-vserver.org > Subject: Re: [Vserver] IPTables and limiting inter-vserver > communication > > Hello James! > > >

Re: [Vserver] IPTables and limiting inter-vserver communication

2007-05-24 Thread Baltasar Cevc
I would like to use IPTables to block the client vservers from talking to each other but since they all have the same MAC address, this becomes problematic. What is the current best practice for doing this? Have you tried blocking all traffic between local IPs except if source and destin

Re: [Vserver] IPTables and limiting inter-vserver communication

2007-05-24 Thread Christian Affolter
Hello James! > The configuration will have about 10 vserver clients running apache/php5 > talking to a mysql server. Each vserver client has a regular (routable) IP > address, but each has the same MAC address as the hosting server. I would > like to use IPTables to block the client vservers fro

[Vserver] IPTables and limiting inter-vserver communication

2007-05-24 Thread James Miller
Hello everyone, I have a Debian Etch vserver host running 2.6.18-4-xen-vserver-686 kernel, util-vserver 0.30.212-1 and vserver-debiantools 0.3.4. The configuration will have about 10 vserver clients running apache/php5 talking to a mysql server. Each vserver client has a regular (routable) IP