diff options
author | Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> | 2014-06-19 21:13:56 -0400 |
---|---|---|
committer | Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> | 2014-06-19 21:14:07 -0400 |
commit | 71418295125c542d3edd1e7251bb0701ef1af89b (patch) | |
tree | 2265dc9f23d86266927c0ad98959a49c690601cf | |
parent | 7284335adbb8cb2bc9c11f9e102906da1bf71145 (diff) |
man: also describe an udev rule for bridge sysctl
-rw-r--r-- | man/sysctl.d.xml | 19 |
1 files changed, 18 insertions, 1 deletions
diff --git a/man/sysctl.d.xml b/man/sysctl.d.xml index 78c4e80b8c..ed9e997f8a 100644 --- a/man/sysctl.d.xml +++ b/man/sysctl.d.xml @@ -154,7 +154,24 @@ </example> <example> - <title>Disable packet filter on the bridge</title> + <title>Disable packet filter on the bridge (method one)</title> + <para><filename>/etc/udev/rules.d/99-bridge.conf</filename>: + </para> + + <programlisting>ACTION=="add", SUBSYSTEM=="module", KERNEL=="bridge", RUN+="/usr/lib/systemd/systemd-sysctl --prefix=/proc/sys/net/bridge" +</programlisting> + + <para><filename>/etc/sysctl.d/bridge.conf</filename>: + </para> + + <programlisting>net.bridge.bridge-nf-call-ip6tables = 0 +net.bridge.bridge-nf-call-iptables = 0 +net.bridge.bridge-nf-call-arptables = 0 +</programlisting> + </example> + + <example> + <title>Disable packet filter on the bridge (method two)</title> <para><filename>/etc/modules-load.d/bridge.conf</filename>: </para> |