2015-02-03 15:47:05 +01:00
|
|
|
## Global parameters
|
|
|
|
VIRTUOZZO=yes
|
|
|
|
LOCKDIR=/var/lib/vz/lock
|
|
|
|
DUMPDIR=/var/lib/vz/dump
|
|
|
|
VE0CPUUNITS=1000
|
|
|
|
|
|
|
|
## Logging parameters
|
|
|
|
LOGGING=yes
|
|
|
|
LOGFILE=/var/log/vzctl.log
|
|
|
|
LOG_LEVEL=0
|
|
|
|
VERBOSE=0
|
|
|
|
|
|
|
|
## Disk quota parameters
|
|
|
|
DISK_QUOTA=yes
|
|
|
|
VZFASTBOOT=no
|
|
|
|
|
|
|
|
# Disable module loading. If set, vz initscript does not load any modules.
|
|
|
|
#MODULES_DISABLED=yes
|
|
|
|
|
|
|
|
# The name of the device whose IP address will be used as source IP for CT.
|
|
|
|
# By default automatically assigned.
|
|
|
|
#VE_ROUTE_SRC_DEV="eth0"
|
|
|
|
|
|
|
|
# Controls which interfaces to send ARP requests and modify ARP tables on.
|
|
|
|
NEIGHBOUR_DEVS=detect
|
|
|
|
|
|
|
|
## Fail if there is another machine in the network with the same IP
|
|
|
|
ERROR_ON_ARPFAIL="no"
|
|
|
|
|
|
|
|
## Template parameters
|
|
|
|
TEMPLATE=/var/lib/vz/template
|
|
|
|
|
|
|
|
## Defaults for containers
|
|
|
|
VE_ROOT=/var/lib/vz/root/$VEID
|
|
|
|
VE_PRIVATE=/var/lib/vz/private/$VEID
|
|
|
|
|
|
|
|
## Filesystem layout for new CTs: either simfs (default) or ploop
|
|
|
|
#VE_LAYOUT=ploop
|
|
|
|
|
|
|
|
## Load vzwdog module
|
|
|
|
VZWDOG="no"
|
|
|
|
|
|
|
|
## IPv4 iptables kernel modules to be enabled in CTs by default
|
2015-02-03 16:28:07 +01:00
|
|
|
<% if scope.lookupvar('proxmox::hypervisor::vz_iptables_modules') == true -%>
|
2015-02-03 15:47:05 +01:00
|
|
|
IPTABLES="ipt_REJECT ipt_recent ipt_owner ipt_REDIRECT ipt_tos ipt_TOS ipt_LOG ip_conntrack ipt_limit ipt_multiport iptable_filter iptable_mangle ipt_TCPMSS ipt_tcpmss ipt_ttl ipt_length ipt_state iptable_nat ip_nat_ftp"
|
2015-02-03 16:28:07 +01:00
|
|
|
<% else -%>
|
|
|
|
IPTABLES=""
|
|
|
|
<% end -%>
|
2015-02-03 15:47:05 +01:00
|
|
|
## IPv4 iptables kernel modules to be loaded by init.d/vz script
|
|
|
|
IPTABLES_MODULES="$IPTABLES"
|
|
|
|
|
|
|
|
## Enable IPv6
|
|
|
|
IPV6="yes"
|
|
|
|
|
|
|
|
## IPv6 ip6tables kernel modules
|
|
|
|
IP6TABLES="ip6_tables ip6table_filter ip6table_mangle ip6t_REJECT"
|