WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

Re: [Xen-users] PROBLEM WITH DOMU and DOM0 has no IPTABLES

To: xen-users@xxxxxxxxxxxxxxxxxxx
Subject: Re: [Xen-users] PROBLEM WITH DOMU and DOM0 has no IPTABLES
From: Sean Reilly <sean@xxxxxxxxxxxxxxxx>
Date: Tue, 09 Jan 2007 19:00:07 +1030
Delivery-date: Tue, 09 Jan 2007 00:28:04 -0800
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
In-reply-to: <aa23b141bee865eb613463deb6317a76@xxxxxxxxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Organization: Groundhog Software
References: <aa23b141bee865eb613463deb6317a76@xxxxxxxxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
User-agent: Debian Thunderbird 1.0.2 (X11/20060724)
Hi Guys

I need some help please I cant get iptables to work as a module or as statically built into xen- kernels.

I tried building the dom0 and domU kernels:
I used menuconfig to set the .config file.
I tried both as Modules and as Static

>cd xen-3.0.3_0-src
>make linux-2.6-xen0-config CONFIGMODE=menuconfig KERNELS=linux-2.6-xen0

--> initally I set these as modules [M] I then repeated the whole process this time Statically[*]

File systems --> [*] Quota support <M> Old quota format support <M> Quota format v2 support

Device Drivers ---> Network device support ---> <M> Dummy net driver support

Networking ---> Networking options ---> [*] Network packet filtering (replaces ipchains) ---> Core Netfilter Configuration ---> <M> Netfilter Xtables support (required for ip_tables)

Networking ---> Networking options ---> [*] Network packet filtering (replaces ipchains) ---> IP: Netfilter Configuration ---> <M> IP tables support (required for filtering/masq/NAT)



>make linux-2.6-xen0-build
>make linux-2.6-xen0-install
>depmod 2.6.16.29-xen0

when I (RE)BOOT into xen0 I find iptables still doesn't work.

# iptables -L
FATAL: Module ip_tables not found.
iptables v1.2.11: can't initialize iptables table `filter': Table does not exist (do you need to insmod?)
Perhaps iptables or your kernel needs to be upgraded.

I find the same result with xenU(DOMU). when I log into the xen-guest
>xm console   xenu-1

NOTE: the linux-2.6-xen kernel does have support for iptables.

What am I missing ?

Thanks in advance for any help

Sean

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users