From d8245c22231c14fc909597fd172cd9efb4d593d7 Mon Sep 17 00:00:00 2001 From: toby Date: Wed, 30 Jan 2019 11:36:56 -0800 Subject: [PATCH] limiting lldp to only mgmt interfaces and avoid VMs to see lldp neigh requests --- debian/wit-network-config.displace | 1 + debian/wit-network-config.install | 1 + files/lldpd.wit | 1 + 3 files changed, 3 insertions(+) create mode 100644 files/lldpd.wit diff --git a/debian/wit-network-config.displace b/debian/wit-network-config.displace index c3349e0..afcdc27 100644 --- a/debian/wit-network-config.displace +++ b/debian/wit-network-config.displace @@ -2,3 +2,4 @@ /etc/ipsec.conf.wit /etc/qemu-ifdown.wit /etc/qemu-ifup.wit +/etc/default/lldpd.wit diff --git a/debian/wit-network-config.install b/debian/wit-network-config.install index a51034a..996480b 100644 --- a/debian/wit-network-config.install +++ b/debian/wit-network-config.install @@ -15,3 +15,4 @@ files/ipsec.conf.wit etc files/ips.issue etc/issue.d files/wit-logging.conf etc/strongswan.d files/wit-swanctl.conf etc/swanctl/conf.d +files/lldpd.wit /etc/default diff --git a/files/lldpd.wit b/files/lldpd.wit new file mode 100644 index 0000000..9db8f17 --- /dev/null +++ b/files/lldpd.wit @@ -0,0 +1 @@ +DAEMON_ARGS="-I feth*,mgmt*,ipmi*"