11
 edits
Changes
m
→Simple firewall configuration independent to IP addresses: vzfirewall
You must then run ''vzfirewall -a'' on your hardware node to apply changes made in *.conf.
Note that it is recommended to use hostnames instead of IP addresses here, so the configuration is persistent fore for VE movements to different IP-address: you just need to run ''vzfirewall -a'' again after movement. It is also reboot-safe, because applied to /etc/sysconfig/iptables (at RHEL systems).
Vzfirewall and its documentation are available at [http://en.dklab.ru/lib/dklab_vzfirewall/ http://en.dklab.ru/lib/dklab_vzfirewall/].