>>106525480
>libvirt they automatically add that sysctl option
literally why when I have only host-only network configured? also I just checked firewall rules it adds, what did they mean by allowing any/any/any as the first sub-chain in the forwarding chain?
Chain FORWARD (policy ACCEPT)
target prot opt source destination
LIBVIRT_FWX all -- anywhere anywhere
LIBVIRT_FWI all -- anywhere anywhere
LIBVIRT_FWO all -- anywhere anywhere
Chain LIBVIRT_FWI (1 references)
target prot opt source destination
REJECT all -- anywhere anywhere reject-with icmp-port-unreachable
Chain LIBVIRT_FWO (1 references)
target prot opt source destination
REJECT all -- anywhere anywhere reject-with icmp-port-unreachable
Comment too long. Click here to view the full text.