Kaynağa Gözat

vm/iptables: do not MASQUERADE packets on lo (#416)

Masquerading packets on lo actually drops them when there is no default route.
This causes problems with commutication between ntpd processes (ntp main
daemon and resolver). And perhaps many more...
Marek Marczykowski 12 yıl önce
ebeveyn
işleme
b5fff2564f
1 değiştirilmiş dosya ile 1 ekleme ve 0 silme
  1. 1 0
      network/iptables

+ 1 - 0
network/iptables

@@ -6,6 +6,7 @@
 :PR-QBS - [0:0]
 -A PREROUTING -j PR-QBS
 -A POSTROUTING -o vif+ -j ACCEPT
+-A POSTROUTING -o lo -j ACCEPT
 -A POSTROUTING -j MASQUERADE
 COMMIT
 # Completed on Mon Sep  6 08:57:46 2010