>>AFAIK iptables support interface wildcards, so you can use 'tap100i+' to >>match all interfaces for VM 100. >>Would that help to optimize things further?
I'm not sure, because you can have tap interfaces from same vm on differents bridge. ----- Mail original ----- De: "Dietmar Maurer" <[email protected]> À: "Alexandre DERUMIER" <[email protected]>, [email protected] Envoyé: Jeudi 13 Février 2014 12:05:34 Objet: RE: [pve-devel] pve-firewall : iptables V2 > any comments for theses patches ? AFAIK iptables support interface wildcards, so you can use 'tap100i+' to match all interfaces for VM 100. Would that help to optimize things further? _______________________________________________ pve-devel mailing list [email protected] http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel
