Networking problem with firewall and KVM

Lorenzo Milesi maxxer at
Thu Dec 13 15:50:38 UTC 2012

> So I guess your guest works because its tap0, bridged into br1,
> gets an address from the WAN's dhcp server.  br1 itself doesn't
> get an address nor does eth2, so host can't directly access the
> WAN.

br1 doesn't need an ip address, because the default gw for the phy host is, the firewall LAN interface.
Once the packet reaches is routed by the firewall to the WAN interface of the guest, which is then physical br1.

Lorenzo Milesi - lorenzo.milesi at

GPG/PGP Key-Id: 0xE704E230 -

More information about the ubuntu-server mailing list