>>AFAIK iptables support interface wildcards, so you can use 'tap100i+' to 
>>match all interfaces for VM 100. 
>>Would that help to optimize things further?

I'm not sure, because you can have tap interfaces from same vm on differents 
bridge.


----- Mail original ----- 

De: "Dietmar Maurer" <[email protected]> 
À: "Alexandre DERUMIER" <[email protected]>, [email protected] 
Envoyé: Jeudi 13 Février 2014 12:05:34 
Objet: RE: [pve-devel] pve-firewall : iptables V2 

> any comments for theses patches ? 

AFAIK iptables support interface wildcards, so you can use 'tap100i+' to match 
all interfaces for VM 100. 
Would that help to optimize things further? 
_______________________________________________
pve-devel mailing list
[email protected]
http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to