Actions
Bug #5871
openips/af-packet: doesn't work between 2 virtio devices
Description
The scenario is a libvirt VM with 2 network interfaces using virtio and using Suricata to bridge between them. Things like ping work, but DNS doesn't. Changing the interfaces to e1000 in virt-manager allows the Suricata to bridge to work.
As the stock Linux bridge works between 2 virtio interfaces, Suricata likely should as well.
Updated by Jason Ish over 1 year ago
So a known issue, from our forums at least: https://forum.suricata.io/t/ip-packet-handling-issues-in-virtio-net-on-certain-os-kernel-versions-on-kvm-vm/2688
Actions