> > ovs 2.5 support conntrack and openstack have commited their ovs firewall (no
> > iptables, no bridge on top of ovs)
> 
> Oh, that is based on openflow - means we would need to 
> have 2 totally different firewall implementations?

And I still wonder it it would be possible to add NF_HOOKS
to tun and veth devices directly? Or is that a bad idea?

_______________________________________________
pve-devel mailing list
pve-devel@pve.proxmox.com
http://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to