1.在真机上(使真机作为第二层路由器,虚拟机通过真机做地址转换从而可以上网)
[root@foundation78 ~]# ping www.baidu.com # 保证真机可以上网,ping通就代表可以上网
[root@foundation78 ~]# systemctl start firewalld # 因为libvirt服务开启影响了火墙的开启
^C
[root@foundation78 ~]# systemctl stop libvirtd.service
[root@foundation78 ~]# systemctl start firewalld
[root@foundation78 ~]# systemctl start libvirtd.service
# 查看路由功能是否开启
[root@foundation78 ~]# firewall-cmd --list-all # 查看到防火墙masquerade 策略关闭,即路由功能没开启
[root@foundation78 ~]# firewall-cmd --add-masquerade # 打开路由功能
success
[root@foundation78 ~]# firewall-cmd --list-all