It seems to be present all the way back to 6.0.0-0ubuntu2 which isas far as i 
could find in an old changelog... is it possible im not rolling the proper 
packages back?
I have been rolling back these debs:

libvirt0_6.0.0-0ubuntu2_amd64.deb
libvirt-daemon-driver-qemu_6.0.0-0ubuntu2_amd64.deb
libvirt-daemon-system-systemd_6.0.0-0ubuntu2_amd64.deb
libvirt-clients_6.0.0-0ubuntu2_amd64.deb
libvirt-daemon-driver-storage-rbd_6.0.0-0ubuntu2_amd64.deb
libvirt-dev_6.0.0-0ubuntu2_amd64.deb
libvirt-daemon_6.0.0-0ubuntu2_amd64.deb
libvirt-daemon-system_6.0.0-0ubuntu2_amd64.deb


(staging) root@server:~$ iptables-save|grep -i virt
(staging) root@server:~$ service libvirtd restart
(staging) root@server:~$ iptables-save|grep -i virt
:LIBVIRT_FWI - [0:0]
:LIBVIRT_FWO - [0:0]
:LIBVIRT_FWX - [0:0]
:LIBVIRT_INP - [0:0]
:LIBVIRT_OUT - [0:0]
-A INPUT -j LIBVIRT_INP
-A FORWARD -j LIBVIRT_FWX
-A FORWARD -j LIBVIRT_FWI
-A FORWARD -j LIBVIRT_FWO
-A OUTPUT -j LIBVIRT_OUT
-A LIBVIRT_FWI -o virbr0 -j REJECT --reject-with icmp-port-unreachable
-A LIBVIRT_FWO -i virbr0 -j REJECT --reject-with icmp-port-unreachable
-A LIBVIRT_FWX -i virbr0 -o virbr0 -j ACCEPT
-A LIBVIRT_INP -i virbr0 -p udp -m udp --dport 53 -j ACCEPT
-A LIBVIRT_INP -i virbr0 -p tcp -m tcp --dport 53 -j ACCEPT
-A LIBVIRT_INP -i virbr0 -p udp -m udp --dport 67 -j ACCEPT
-A LIBVIRT_INP -i virbr0 -p tcp -m tcp --dport 67 -j ACCEPT
-A LIBVIRT_OUT -o virbr0 -p udp -m udp --dport 53 -j ACCEPT
-A LIBVIRT_OUT -o virbr0 -p tcp -m tcp --dport 53 -j ACCEPT
-A LIBVIRT_OUT -o virbr0 -p udp -m udp --dport 68 -j ACCEPT
-A LIBVIRT_OUT -o virbr0 -p tcp -m tcp --dport 68 -j ACCEPT
:LIBVIRT_PRT - [0:0]
-A POSTROUTING -j LIBVIRT_PRT
:LIBVIRT_PRT - [0:0]
-A POSTROUTING -j LIBVIRT_PRT
-A LIBVIRT_PRT -o virbr0 -p udp -m udp --dport 68 -j CHECKSUM --checksum-fill
(staging) root@server:~$ iptables-restore < /etc/iptables/rules.v4
(staging) root@server:~$  dpkg -l | grep libvirt
ii  libvirt-clients                       6.0.0-0ubuntu2                        
amd64        Programs for the libvirt library
ii  libvirt-daemon                        6.0.0-0ubuntu2                        
amd64        Virtualization daemon
ii  libvirt-daemon-driver-qemu            6.0.0-0ubuntu2                        
amd64        Virtualization daemon QEMU connection driver
ii  libvirt-daemon-driver-storage-rbd     6.0.0-0ubuntu2                        
amd64        Virtualization daemon RBD storage driver
ii  libvirt-daemon-system                 6.0.0-0ubuntu2                        
amd64        Libvirt daemon configuration files
ii  libvirt-daemon-system-systemd         6.0.0-0ubuntu2                        
amd64        Libvirt daemon configuration files (systemd)
ii  libvirt-dev:amd64                     6.0.0-0ubuntu2                        
amd64        development files for the libvirt library
ii  libvirt-glib-1.0-0:amd64              3.0.0-1                               
amd64        libvirt GLib and GObject mapping library
ii  libvirt0:amd64                        6.0.0-0ubuntu2                        
amd64        library for interfacing with different virtualization systems
ii  python3-libvirt                       6.1.0-1                               
amd64        libvirt Python 3 bindings
(staging) root@server:~$

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1971619

Title:
  forward mode open is adding libvirt iptables rules

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1971619/+subscriptions


-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to