SSH(ACCEPT) $ZVMBR0VM100:tap100i0 all
-Unresolved problems
+Problems
===================
Inbound rules with source IP does not work, because shorewall
SSH(ACCEPT) all:IP_ADDRESS $ZVMBR0VM100:tap100i0
-As workaroud, we can create such rule for each BP zone:
+As workaroud, we create one rule for each BP zone on the same
+bridge:
- SSH(ACCEPT) $ZVMBR0EXT:IP_ADDRESS $ZVMBR0VM100:tap100i0
+ SSH(ACCEPT) $ZVMBR0:IP_ADDRESS $ZVMBR0VM100:tap100i0
+ SSH(ACCEPT) $ZVMBR0VM777:IP_ADDRESS $ZVMBR0VM100:tap100i0
+ SSH(ACCEPT) $ZVMBR0EXT:IP_ADDRESS $ZVMBR0VM100:tap100i0