Global zone should be able to manage NGZ ipf state
This adds command line options to the ipf tooling and the follow up work inside of the kernel to allow the global zone to observe and modify the firewall rule sets of the non-global zone.
Updated by Electric Monk almost 6 years ago
- Status changed from New to Closed
commit 94bdecd9e84ae1042607002db3e64a6849da5874 Author: Rob Gulewich <email@example.com> Date: 2014-12-11T02:00:29.000Z 5198 Want alternate global zone rule set for each ipf netstack 5197 Global zone should be able to manage NGZ ipf state Reviewed by: Jerry Jelinek <firstname.lastname@example.org> Reviewed by: Robert Mustacchi <email@example.com> Reviewed by: Dan McDonald <firstname.lastname@example.org> Reviewed by: Darren Reed <email@example.com> Approved by: Richard Lowe <firstname.lastname@example.org>