podman/cni
Brent Baude a86f3e88d0 disable generation of cni firewall plugin
it turns out that when the firewall plugin is not provided as part of the configuration, then the firewall cni plugin will dynamically figure out if it should use firewalld or iptables.

also removing this from the default configuration file

Signed-off-by: Brent Baude <bbaude@redhat.com>
2020-02-21 13:06:58 -06:00
..
87-podman-bridge.conflist disable generation of cni firewall plugin 2020-02-21 13:06:58 -06:00
README.md Update cni config instructions 2019-08-22 19:39:07 -04:00

README.md

cni

There are a wide variety of different CNI network configurations. This directory just contains an example configuration that can be used as the basis for your own configuration.

To use this configuration, place it in /etc/cni/net.d (or the directory specified by cni_config_dir in your libpod.conf).

For example a basic network configuration can be achieved with:

sudo mkdir -p /etc/cni/net.d
curl -qsSL https://raw.githubusercontent.com/containers/libpod/master/cni/87-podman-bridge.conflist | sudo tee /etc/cni/net.d/87-podman-bridge.conf

Dependent upon your CNI configuration, you will need to install as a minimum the port and bridge CNI plugins into /opt/cni/bin (or the directory specified by cni_plugin_dir in libpod.conf). Please refer to the CNI project page in GitHub for more information.