[lxc-users] unpriv container - dynamic veth.pair name and ovs

Benoit GEORGELIN - Association Web4all benoit.georgelin at web4all.fr
Fri Aug 21 13:50:07 UTC 2015


Hi, 

do you think veth.pair name option in a unprivileged container can remain the same ? 
As for security purpose, veth.pair name cannot be defined in the config file, every boot time a new one is created. Is there any plan to keep the same one based on the MAC address for example if exist in the config file ? 

Creation of the veth.pair works well with an openvwsitch bridge but the veth.pair is never deleted after a shutdown of the container . 

Also, veth.pair name only exist when container is UP witch make things harder to create Flows in openvswitch based on the "in_port=" because it will change at every boot time. 

Thanks for you help. 

Cordialement, 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.linuxcontainers.org/pipermail/lxc-users/attachments/20150821/573d799d/attachment.html>


More information about the lxc-users mailing list