libvirt/tests/nwfilterxml2firewalldata/ipt-no-macspoof.xml
Daniel P. Berrange 3ba789ccd5 Add a test suite for nwfilter ebiptables tech driver
Create a nwfilterxml2firewalltest to exercise the
ebiptables_driver.applyNewRules method with a variety of
different XML input files. The XML input files are taken
from the libvirt-tck nwfilter tests. While the nwfilter
tests verify the final state of the iptables chains, this
test verifies the set of commands invoked to create the
chains.

Signed-off-by: Daniel P. Berrange <berrange@redhat.com>
2014-04-25 15:44:10 +01:00

15 lines
472 B
XML

<filter name='tck-testcase'>
<uuid>5c6d49af-b071-6127-b4ec-6f8ed4b55335</uuid>
<rule action='drop' direction='inout'>
<!-- should use $MAC for MAC address, but tests would depend on VM's
MAC address -->
<all match='no' srcmacaddr='12:34:56:78:9a:bc'/>
</rule>
<rule action='drop' direction='in'>
<!-- not accepting incoming traffic from a certain MAC address -->
<all match='no' srcmacaddr='aa:aa:aa:aa:aa:aa'/>
</rule>
</filter>