|
|
|
|
|
|
|
|
|
|
xen-users
Re: [Xen-users] [SECURITY] preventing Hwaddr spoofing on bridge
On Sat, Nov 24, 2007 at 05:12:25PM +0200, Igor Chubin wrote:
> On Fri, Nov 23, 2007 at 04:02:46AM +0100, Stefan de Konink wrote:
> > -----BEGIN PGP SIGNED MESSAGE-----
> > Hash: SHA512
> >
> > Is there a way to prevent hwaddr/mac address spoofing between DomU's?
> >
> >
> > So in a way 'binding' a mac-address on boot time with a virtual
> > interface? (with something like ebtables/arptables/etc?)
>
>
> As far as I understand,
> you can solve your task with ebtables you have mentioned.
>
Additional note.
You can modify vif-bridge script
to automagically add ebtables root
when domain U is started (and itc interfaces are created).
--
WBR, i.m.chubin
_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users
|
|
|
|
|