> I'm wondering how to setup a firewall for Dom0 when all traffic for the DomUs
> go 'through' it.
as we do commercial VPS hosting with xen and our own open source
management interface, we have designed a small anti-DoS firewall to
setup in your dom0. It does nothing spectacular, but it helps against
ssh dictionary attacks, and other very common flood types that might
hurt your server: ping, syn, etc.
I'd be happy to have contributions in this small script that is by the
way very simple to extend (just add few functions for yourself and
share, then anybody can enable/disable them with ease.
P.S: For further discovery of the projects see here the bellow URLs:
Xen-users mailing list