Hide Forgot
Description of problem: As default vdsm should enable nwfilter. All virtual machines will be started with no-arp-spoofing/no-ip-spoofing/no-mac-spoofing. However, it's also required to support communication with RHEVM about this feature, to give a chance to disable/enable (might impact performance or these rules can prevent valid operations to run).
Since RHEL 6.3 External Beta has begun, and this bug remains unresolved, it has been rejected as it is not proposed as exception or blocker. Red Hat invites you to ask your support representative to propose this request, if appropriate and relevant, in the next release of Red Hat Enterprise Linux.
(In reply to comment #0) > Description of problem: > > As default vdsm should enable nwfilter. All virtual machines will be > started with no-arp-spoofing/no-ip-spoofing/no-mac-spoofing. However, Just note that no-ip-spoofing should not be implemented at this stage.
Suggested patch: http://gerrit.ovirt.org/#/c/7354/
Verified on vdsm-4.9.6-34.0.el6_3.x86_64
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. http://rhn.redhat.com/errata/RHSA-2012-1508.html
FYI, You cant run Redhat 7 LXC with mac filtering on, it stops the guests at the bridge. Prob needs to be in the ERRATA also.