Firewall settings unworkable

Richard W.M. Jones rjones at redhat.com
Fri Oct 1 20:36:22 UTC 2010


On Fri, Oct 01, 2010 at 02:00:46PM +0100, Tim Waugh wrote:
> In system-config-printer I try to get it to modify the firewall to allow
> in the various network query responses that we expect, [...]

I should note, although it's not your fault, that this breaks
libvirt networking.

libvirt needs to add its own firewall rules too, and restarting the
firewall breaks these rules until you restart the libvirt network and
all your VMs.

The root problem here is that our firewall rules aren't composable.
As you can tell by the bug #, this issue has been around for quite a
long time ...

https://bugzilla.redhat.com/show_bug.cgi?id=227011

Rich.

-- 
Richard Jones, Virtualization Group, Red Hat http://people.redhat.com/~rjones
virt-df lists disk usage of guests without needing to install any
software inside the virtual machine.  Supports Linux and Windows.
http://et.redhat.com/~rjones/virt-df/


More information about the devel mailing list