Search

Search for:
Language:  


Available article translations:

How do I enable firewall in a Container?

Article ID: 746 
Created On: Oct 5, 2008
Last Review: Nov 11, 2012
Views:
Was this article helpful?
No Yes
APPLIES TO:
  • Parallels Virtuozzo Containers for Linux 4.6
  • Parallels Virtuozzo Containers for Linux 4.0
  • Virtuozzo for Linux 3.x

Resolution

This article describes how to configure firewall service provided by iptables inside a container.

First of all, the required modules should be loaded on the node itself. It can be done either by means of host operating system or by Parallels Virtuozzo Containers service:
 
By means of host OS:

 
By means of PVC service:


These modules will be available to all containers.

To restrict iptables modlues to the list of particular modules and forbid the others even though they are loaded on the node, use --iptables option of vzctl.

Example: to enable only ip_table, iptable_filter, ip_conntrack, iptable_nat, and iptable_mangle modules and restrict others run the following command:
~# vzctl set 101 --save --iptables ip_table --iptables iptable_filter --iptables ip_conntrack --iptables iptable_nat --iptables iptable_mangle

These changes will be applied after the container restart.

Also it might be required to increase numiptent barrier value to be able to add more iptables rules:
~# vzctl set 101 --save --numiptent 400


For more information refer to Parallels Virtuozzo Containers for linux User's guide, page 309.



64d8d09669cff87d685a09b84f40c490 9bccb04d0396d587d8123e5e12b4740e 909d99074e442b52ce54cc7b31cf065d eb0ea3b827d18de2329b6477e24c1d59 9b9439294978ca011521bd467a069524 219be54dff19e220f37105b0000118f4 2897d76d56d2010f4e3a28f864d69223

Was this article helpful?
No Yes
 
 
 
 
 
 
For Home
For Hosters
For SaaS
For IaaS
 
Desktop Virtualization
- Parallels Desktop 8 for Mac
- Parallels Transporter
- Parallels Mobile
- Parallels Desktop Switch to Mac Edition
- Parallels Desktop for Mac Enterprise Edition
- Parallels Management-Mac for Microsoft SCCM
Server Virtualization
- Parallels Cloud Server
- Parallels Virtuozzo Containers
Automation
- Parallels Automation
- Parallels Automation for Cloud Infrastructure
- Parallels Business Automation Standard
- Parallels Virtual Automation
- Parallels Plesk Panel Suite
- Web Presence Builder
- Parallels Plesk Automation
- Parallels Small Business Panel
- Parallels Domain/SSL Reseller Program
- Value-added Services for Hosters
- Parallels Partner Storefront