Thanks for the feedback @jlehtone
Tried your suggestion and found an interesting result…
Below is bridge link and nmcli result
$ bridge link
3: ens224: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 master br242 state forwarding priority 32 cost 2
4: vlan-242@ens224: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 master br242 state forwarding priority 32 cost 100
7: vnet0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 master br242 state forwarding priority 32 cost 100
9: vnet2: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 master br242 state forwarding priority 32 cost 100
$ nmcli
ens192: connected to ens192
"VMware VMXNET3"
ethernet (vmxnet3), 00:50:56:AD:C7:50, hw, mtu 1500
ip4 default
inet4 10.10.10.74/24
route4 10.10.10.0/24 metric 100
route4 default via 10.10.10.1 metric 100
inet6 fe80::250:56ff:fead:c750/64
route6 fe80::/64 metric 1024
br242: connected to bridge-242
"br242"
bridge, 00:50:56:AD:76:AD, sw, mtu 1500
ens224: connected to ens224
"VMware VMXNET3"
ethernet (vmxnet3), 00:50:56:AD:76:AD, hw, mtu 1500
vlan-242: connected to vlan-242
"vlan-242"
vlan, 00:50:56:AD:76:AD, sw, mtu 1500
controller br242
lo: connected (externally) to lo
"lo"
loopback (unknown), 00:00:00:00:00:00, sw, mtu 65536
inet4 127.0.0.1/8
inet6 ::1/128
route6 ::1/128 metric 256
virbr0: connected (externally) to virbr0
"virbr0"
bridge, 52:54:00:1C:0F:CD, sw, mtu 1500
inet4 192.168.122.1/24
route4 192.168.122.0/24 metric 0
vnet0: connected (externally) to vnet0
"vnet0"
tun, FE:54:00:C8:D3:05, sw, mtu 1500
controller br242
inet6 fe80::fc54:ff:fec8:d305/64
route6 fe80::/64 metric 256
vnet2: connected (externally) to vnet2
"vnet2"
tun, FE:54:00:23:BA:76, sw, mtu 1500
controller br242
inet6 fe80::fc54:ff:fe23:ba76/64
route6 fe80::/64 metric 256
DNS configuration:
servers: 10.10.10.170
domains: ml.local
interface: ens192
Use "nmcli device show" to get complete information about known devices and
"nmcli connection show" to get an overview on active connection profiles.
Consult nmcli(1) and nmcli-examples(7) manual pages for complete usage details.
In addition i did install another VM#2 in the KVM with IP 192.168.119.73.
VM#1 192.168.119.74
VM#2 192.168.119.73
Both of them can ping each other
I believe they are communicating via the bridge-242 (br242)
And i tried to ping the VM#1 (192.168.119.74) from other devices that are outside the AlmaLinux. An interesting result was discovered.
PC#A: 192.168.119.11 (able to ping both VM#1 and VM#2)
PC#B: 192.168.119.9 (fail to ping both VM#1 and VM#2)
In tcpdump (both ens224 and br242), i can see the ICMP packet REQUEST from both source address PC#A and PC#B
but VM#1 and VM#2 only REPLY to PC#A, but not PC#B
- (Success case) If ping from VM#1 to PC#A, tcpdump (both ens224 and br242), shows the ICMP request and reply packet
- (Failed case) If ping from VM#1 to PC#B, tcpdump (Both ens224 and br242), no ICMP packet was found from VM#1 to PC#B.
In addition, i don’t see any record by using the virsh net-list --all and virsh list --all
So, i am thinking is there any other configure/control could draw this outcome.
Seems like the packet is already arrived ens224 and br242, but VM#1 and VM#2 are replied selectively