From: Erik Smit (smite_at_zylon.net)
Date: Mon 12 May 2003 - 11:04:58 BST
On Mon, May 12, 2003 at 10:47:59AM +0200, Tor Rune Skoglund wrote:
> Hi List,
> E.g to prevent a vserver from accessing the host, and the
> vserver has it's own IP address, would it be correct and safe
> to DROP all packet from specific vserver to the host, by
> iptables -A INPUT -p tcp -s <vserver-local-IP> -j DROP
> in the host iptables config?
No, local traffic isn't ran through iptables as far as I'm aware.