Hello community, I have been trying to get this working for three weeks and I no longer know how to do it, the frustration is such that I am about to install Windows and use its Hypervisor.
I have a PVE 8.1.3 instance with a single public IP without DHCP on /30. This is given to me by the supplier.Through SDP, create two VLans (192 and 172), I want to understand or be told what I should do so that the VM on 192.168.1.20, for example, can expose 80 of its NGINX.This is the configuration I have:
This configuration, as I present it to you, works perfectly to go out to the Internet and work within the VM. But when exposing a port I stay in Offside.
So:
- How can I open ports or which of all the Fw do I have to touch so that I can open ports of this VM?
- Where or what do I have to touch so that when I invoke the public IP 111.111.111.111:80 it goes to the VM 192.168.1.20:80?
For this reason, thanks in advance.
I have a PVE 8.1.3 instance with a single public IP without DHCP on /30. This is given to me by the supplier.Through SDP, create two VLans (192 and 172), I want to understand or be told what I should do so that the VM on 192.168.1.20, for example, can expose 80 of its NGINX.This is the configuration I have:
Code:
auto vmbr0
iface vmbr0 inet static
address 111.111.111.111/30
gateway 122.122.122.122
bridge-ports enp1s0
bridge-stp off
bridge-fd 0
bridge-vlan-aware yes
bridge-vids 2-4049
#PublicIP
auto LAN172
iface LAN172
address 172.0.0.1/24
bridge_ports none
bridge_stp off
bridge_fd 0
ip-forward on
#Intranet
auto LAN192
iface LAN192
address 192.168.1.1/24
post-up iptables -t nat -A POSTROUTING -s '192.168.1.1/24' -o vmbr0 -j SNAT --to-source 179.43.118.110
post-down iptables -t nat -D POSTROUTING -s '192.168.1.1/24' -o vmbr0 -j SNAT --to-source 179.43.118.110
post-up iptables -t raw -I PREROUTING -i fwbr+ -j CT --zone 1
post-down iptables -t raw -D PREROUTING -i fwbr+ -j CT --zone 1
bridge_ports none
bridge_stp off
bridge_fd 0
ip-forward on
#InternetLAN
This configuration, as I present it to you, works perfectly to go out to the Internet and work within the VM. But when exposing a port I stay in Offside.
So:
- How can I open ports or which of all the Fw do I have to touch so that I can open ports of this VM?
- Where or what do I have to touch so that when I invoke the public IP 111.111.111.111:80 it goes to the VM 192.168.1.20:80?
For this reason, thanks in advance.
Last edited: