7,540
edits
Changes
→IPtables modifications
The bridge '''virbrDocker''' can send packages anywhere (first line) and can receive packages back if the connections was previously established (second line)<br>
<pre>
-A FORWARD -s 192.168.123.0/24 -i virbrDocker -j ACCEPT
-A FORWARD -d 192.168.123.0/24 -o virbrDocker -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT
</pre>
<br>