[Devel] [PATCH 0/3] criu: restore iptables in VE#0

Dmitry Safonov dsafonov at virtuozzo.com
Fri Jul 21 17:42:36 MSK 2017


On 07/21/2017 10:41 AM, Stanislav Kinsburskiy wrote:
> This is needed to support restore of a container with disabled netfilter.
> Note: With latest kernel patches netfilter is always enabled, but hidden in
> CT, if netfilter is off. While it's always accessible in VE#0.
> 
> https://jira.sw.ru/browse/PSBM-58574
> 
> The following series implements...
> 
> ---
> 
> Stanislav Kinsburskiy (3):
>        criu: export join_ve helper
>        net: iptables_tool_{dump,restore} helpers introduced
>        net: do iptables restore in ve0
> 
> 
>   criu/cr-restore.c      |    2 +-
>   criu/include/crtools.h |    2 ++
>   criu/net.c             |   42 ++++++++++++++++++++++++++++++++++++++----
>   3 files changed, 41 insertions(+), 5 deletions(-)
>
Applied to vz-criu, released in criu-3.0.0.25-1.vz7

-- 
              Dmitry


More information about the Devel mailing list