Re: [libvirt] [PATCH] network: allow DHCP/DNS/TFTP explicitly in OUTPUT rules

2019-09-28 Thread Michal Prívozník
On 9/27/19 6:16 PM, Daniel P. Berrangé wrote: > From: Malina Salina > > While the default iptables setup used by Fedora/RHEL distros > only restricts traffic on the INPUT and/or FORWARD rules, > some users might have custom firewalls that restrict the > OUTPUT rules too. > > These can prevent DH

[libvirt] [PATCH] network: allow DHCP/DNS/TFTP explicitly in OUTPUT rules

2019-09-27 Thread Daniel P . Berrangé
From: Malina Salina While the default iptables setup used by Fedora/RHEL distros only restricts traffic on the INPUT and/or FORWARD rules, some users might have custom firewalls that restrict the OUTPUT rules too. These can prevent DHCP/DNS/TFTP responses from dnsmasq from reaching the guest VMs