Re: [Shorewall-users] Multiple ISP / USE_DEFAULT_ROUTE issue

2012-01-17 Thread Tom Eastep
On Jan 17, 2012, at 11:22 AM, Lee Brown wrote:On Tue, Jan 17, 2012 at 10:29 AM, Tom Eastep wrote: On 01/17/2012 08:25 AM, Lee Brown wrote: > Hi Tom, > > With USE_DEFAULT_RT=Yes, I tried explicitly putting loose into the > providers file (and removing duplicate field) which d

[Shorewall-users] virtual serveres

2012-01-17 Thread Richard B. Pyne
I am in the process of building a new machine to replace several older servers. I am considering running several virtual servers on one box, all linux for host and virtual machines using VirtualBox. Is it possible/advisable to configure shorewall on the host to act as a firewall for the virtual ma

Re: [Shorewall-users] virtual serveres

2012-01-17 Thread Tom Eastep
On 01/17/2012 04:39 PM, Richard B. Pyne wrote: > I am in the process of building a new machine to replace several older > servers. I am considering running several virtual servers on one box, > all linux for host and virtual machines using VirtualBox. > > Is it possible/advisable to configure shor

Re: [Shorewall-users] virtual serveres

2012-01-17 Thread Christ Schlacta
It's not a bad idea if it works with your virtualization technology. There are several guides in the documentation section of the Shorewall site dealing with various networking technologies. You should identify the one that's closest to how your virtualization technology works (with regard to

Re: [Shorewall-users] virtual serveres

2012-01-17 Thread Simon Hobson
Christ Schlacta wrote: >You may end up with simply a bridge firewall. I recently did the >same thing, and am of a mind that for my purposes, an individual >firewall on each vm is preferable. That's the solution I came up with as well. On my hosts I run a very basic set of iptables rules on th