[lxc-users] LXC - Best way to avoid networking changes in a container

Benoit GEORGELIN - Association Web4all benoit.georgelin at web4all.fr
Fri Jun 26 03:59:04 UTC 2015


Hi, 

I'm looking to avoid network changes in an LXC container with root access while the system is up and running. 

Let's say I have two containers running. 

A: 192.168.0.100/24 
B: 192.168.0.200/24 

They are both on the same private network but it can be a public network too. 
How can I prevent root user from container B to change his IP address and user the IP address of container A ? 

Container network is built on top of Ovs Switch . Maybe there is a way to restrict MAC Address and IP for a specific port ? I did not see any option. 

Thanks for you advises ! 

Cordialement, 
Benoit G 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.linuxcontainers.org/pipermail/lxc-users/attachments/20150626/7363c92f/attachment.html>


More information about the lxc-users mailing list