Client separation on bridge level

Hello everyone, is there a way to seperate the traffic between VMs on the same bridge on one oVirt-node with built-in tools from ovirt? We have VMs using the same bridge which should never be able to talk to each other. We are currently using ebtables for that, but its not working very good anymore now that we upgraded to 4.3 with firewalld. Any suggestions would be greatly appreciated. Best regards, Hendrik

This article helped me with the same issue. https://access.redhat.com/documentation/en-us/red_hat_virtualization/4.2/htm... Eric Evans Digital Data Services LLC. 304.660.9080 -----Original Message----- From: Hendrik Peyerl <hpeyerl@plusline.net> Sent: Monday, March 16, 2020 5:25 AM To: users@ovirt.org Subject: [ovirt-users] Client separation on bridge level Hello everyone, is there a way to seperate the traffic between VMs on the same bridge on one oVirt-node with built-in tools from ovirt? We have VMs using the same bridge which should never be able to talk to each other. We are currently using ebtables for that, but its not working very good anymore now that we upgraded to 4.3 with firewalld. Any suggestions would be greatly appreciated. Best regards, Hendrik _______________________________________________ Users mailing list -- users@ovirt.org To unsubscribe send an email to users-leave@ovirt.org Privacy Statement: https://www.ovirt.org/privacy-policy.html oVirt Code of Conduct: https://www.ovirt.org/community/about/community-guidelines/ List Archives: https://lists.ovirt.org/archives/list/users@ovirt.org/message/Z54FEL45UJ5ONB...

Can't you put then on separate VLANs? Regards, Paul S. ________________________________ From: Hendrik Peyerl <hpeyerl@plusline.net> Sent: 16 March 2020 09:24 To: users@ovirt.org <users@ovirt.org> Subject: [ovirt-users] Client separation on bridge level Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe. Hello everyone, is there a way to seperate the traffic between VMs on the same bridge on one oVirt-node with built-in tools from ovirt? We have VMs using the same bridge which should never be able to talk to each other. We are currently using ebtables for that, but its not working very good anymore now that we upgraded to 4.3 with firewalld. Any suggestions would be greatly appreciated. Best regards, Hendrik _______________________________________________ Users mailing list -- users@ovirt.org To unsubscribe send an email to users-leave@ovirt.org Privacy Statement: https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ovirt.... oVirt Code of Conduct: https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ovirt.... List Archives: https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Flists.ovir... To view the terms under which this email is distributed, please go to:- http://leedsbeckett.ac.uk/disclaimer/email/
participants (3)
-
eevans@digitaldatatechs.com
-
Hendrik Peyerl
-
Staniforth, Paul