[CentOS-virt] Writing iptables for inbound connections with libvirt

Wed Sep 16 07:56:41 UTC 2009
carlopmart <carlopmart at gmail.com>

Hi all,

  I have installed a CentOS 5.3 x86_64 server with kvm and libvirt to do 
some tests for future virtualized deployments.

My environment:

eth0 --> ("public" host ip)
virbr0 ---> (natted interface installed by libvirt)
virbr1 ---> (internal virtualized network, whithout 
physical interface binded)

  Between network and network I have 
installed a virtual firewall. So to reach network, all 
connections needs to come from network.

  I need to insert some iptables rules to allow access to some services 
installed on network like smtp,http,ftp, etc.

  How can I configure libvirt to forward and nat these services coming 
from network to a specific IP under 
network?? Or do I need to use /etc/sysconfig/iptables configuration?? 
Some examples, please??.

  Many thanks.

CL Martinez
carlopmart {at} gmail {d0t} com