Sean Reilly
2007-Feb-08  07:57 UTC
Re: [Xen-users] PROBLEM WITH DOMU and DOM0 has no IPTABLES **SOLUTION**
I finally worked out why I had no support for IPTABLES.
 Following the instructions is a bit incomplete:
 Networking ---> Networking options ---> [*] Network packet filtering 
(replaces ipchains) ---> IP: Netfilter Configuration ---> <M> IP
tables
support (required for filtering/masq/NAT)
*you need to do one more step:*
 turning on <M> IP tables support (required for filtering/masq/NAT) 
isn''t enough
 you have to actually enable the type of IPtables support you want
 I don''t know what I need so turned most on (*or <M> as module*)
eg.
         
   <M>IP range match 
support
   <M>   Multiple port match 
support
   <M>   TOS match 
support
   <M>   recent match 
support
   <M>   ECN match 
support
   <M>   DSCP match support        
Perhaps this is obvious to people more skilled in customising/compiling 
their own kernels.
But to me it wasn''t and I assume from the number of similar questions 
not to alot of people either.
So I hope this saves somebody a bit of pain.
Luke S. Crawford wrote:
> On Thu, 11 Jan 2007, Sean Reilly wrote:
>
>> only 2.6.16.29-xen seems to have all the modules.
>> actually it seems to be a xen0 as I can run guest xenU inside of it.
>
>
> in you xenU xm config file set
>
> kernel=/path/to/2.6.16.29-xen
>
> then reboot yoru xenU and you should be able to load the 2.6.16.29-xen 
> modules.
>
> (you can use a Xen0 kernel in a XenU with no problems; it''s just 
> slightly larger)
>
>
-- 
_____________________________
Sean Reilly - System Administrator & Engineer
sean@groundhog.com.au
Groundhog Software
Level 4, 139 Frome Street
Adelaide SA 5000, Australia
Direct	: +61 8 8412 4459
Office	: +61 8 8412 4444
Fax	   : +61 8 8232 4355
http://www.groundhog.com.au
_____________________________ 
_______________________________________________
Xen-users mailing list
Xen-users@lists.xensource.com
http://lists.xensource.com/xen-users