> By the way, any reason to use shorewall instead iptables directly ?
> 

I simply do not have the know-how.

> I'm reading openstack and cloustack firewall code, implementation is not too
> difficult

My feeling is that we can avoid many problems using shorewall, because that
code is known to be stable for more than 10 years.

But feel free to try with iptables directly if you think that is easier.
_______________________________________________
pve-devel mailing list
pve-devel@pve.proxmox.com
http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to