Hello,
i have a big problem with our configuration. I hope the community can help me.
We have 45 AccessPoints installed in our hospital for our patient. The goal is to route the devices from the patient direct to the internet. On the network are no critical datas ;-) This year, there is no money for new switches that supports isolate ports. We have had the idea to configure for each AP a vlan. Thats not the best solution but better then nothing. On the Proxmox we have installed kvm with a dhcp server for the clients. The 45 VLANs we have bridged on vmbr1000
Now we have the problem, that each client reach the other that we didn´t want. The switches are not the problem, that we have checked. If we shutdown vmbr1000 on the proxmox the communication between the clients stops. So now i think the vmbr1000 ist not right configured. I have 2 days searched the internet, how to configure the kvm to trunk the vlans directly to the dhcp server without the clients can communicate together. I didn´t can assign 45 network devices to the VM. How can i do a trunk port that all vlans routet to the dhcp server?
I know that i configure a FW on the dhcp to stop communicate between the clients there.
Regards, Valle
All APs hat the option to isolate Members. On the tests, i see that a Member
i have a big problem with our configuration. I hope the community can help me.
We have 45 AccessPoints installed in our hospital for our patient. The goal is to route the devices from the patient direct to the internet. On the network are no critical datas ;-) This year, there is no money for new switches that supports isolate ports. We have had the idea to configure for each AP a vlan. Thats not the best solution but better then nothing. On the Proxmox we have installed kvm with a dhcp server for the clients. The 45 VLANs we have bridged on vmbr1000
Code:
auto bond0
iface bond0 inet manual
slaves eth0 eth1 eth2 eth3
bond_miimon 100
bond_mode 802.3ad
auto vmbr1000
iface vmbr1000 inet manual
bridge_ports bond0.1000 bond0.111 bond0.112 bond0.113 bond0.114 bond0.115 bond0.116 bond0.121 bond0.122 bond0.123 bond0.124 bond0.125 bond0.126 bond0.131 bond0.132 bond0.133 bond0.134 bond0.135 bond0.136 bond0.141 bond0.142 bond0.143 bond0.144 bond0.145 bond0.146 bond0.151 bond0.152 bond0.153 bond0.154 bond0.155 bond0.156 bond0.161 bond0.162 bond0.163 bond0.164 bond0.165 bond0.166 bond0.171 bond0.172 bond0.173 bond0.174 bond0.175 bond0.176
bridge_stp off
bridge_fd 0
Now we have the problem, that each client reach the other that we didn´t want. The switches are not the problem, that we have checked. If we shutdown vmbr1000 on the proxmox the communication between the clients stops. So now i think the vmbr1000 ist not right configured. I have 2 days searched the internet, how to configure the kvm to trunk the vlans directly to the dhcp server without the clients can communicate together. I didn´t can assign 45 network devices to the VM. How can i do a trunk port that all vlans routet to the dhcp server?
I know that i configure a FW on the dhcp to stop communicate between the clients there.
Regards, Valle
All APs hat the option to isolate Members. On the tests, i see that a Member
Last edited: