Gilou's latest activity

  • G
    Gilou replied to the thread Generic Compliance Questions.
    I know you're not in France, because you missed HDS and SecNumCloud hahaha... Generally, as pointed out, assume this is a Linux system, and apply whatever recommendations that are required, but basically, there's is not much that Proxmox...
  • G
    Hi, from a quick look, the "Retransmit" messages may be a symptom of network stability issues (e.g. lost packets, increased latency etc) that are more likely to occur if corosync shares a physical network with other traffic types -- I'd expect...
  • G
    You can also set it up as ZFS if you plan on using replication at some point, but if you plan on staying on a single node.. Thin LVM is the way to go!
  • G
    So, easiest is indeed set up a LVM PV/VG on that raid6 device (it should appear in the Disks section of the Host settings), and create a Thin LV on top of it, and enjoy thin provisioning, snapshots, and all.
  • G
    I'm guessing you run a single node setup then, with the RAID6 on it ? Just make the RAID6 a LVM pv, to host a lvmthin volume for your VMs if so, I guess you could even do it fully in the UI :P
  • G
    Heh, well, if that works.. then, problem solved :P I'm surprised it sees the boot option but doesn't allow you to set it.. OVH had some servers that would reset the boot order also without asking.. anyway, now you know a bit more about UEFI and...
  • G
    Wow I totally forgot to send and answer yesterday. What I wanted to send is: No I can't. I added pics after I already sent my post, showing the entries I have in the setup menu. But your second suggestion worked. I googled some more and asked...
  • G
    Gilou replied to the thread MAC prefix for each vnet.
    Aw, I thought you meant the MAC for the VM/CT on the vnet, not the bridge itself, sorry.. and it could be interesting for any type of bridge then no?
  • G
    If curl can access it, and not your browser, your browser is at fault. Are you sure you try to reach https and not using http? I hate those browsers hiding the scheme by default in the URL.. you can also display the details of the request to...
  • G
    Then you're good, hit https://192.168.2.2:8006 in your browser :P
  • G
    Try what @Onslow says. check the layer 1, cable, WiFi.. then make sure you don't have a VLAN set on the switch, and that you can reach your router from the PC. Does the PC has a firewall? :P probably seeing ip a ; ip r ; ip n on the PC will tell...
  • G
    Hi everyone, I’d like to share an issue I encountered after upgrading from Proxmox VE 8 to PVE 9, which took me nearly a full day to troubleshoot. Hopefully this helps someone else in the future. The Situation After upgrading from PVE 8 to...
  • G
    Gilou replied to the thread Questions about how to use storage.
    This is confusing.. and probably not in the good part of the forum. Why would you want to use the ssd from your home computer? Proxmox VE can use both your disks, the system itself is quite small (you could give it 50 GB in your setup), then use...
  • G
    I'm not sure why you go for dual boot there, and not just use a different VMs, imaged with each OS? To have a single FOG procedure for users? In the physical world, that may make sense to avoid redeploying to switch between OS, but on a VM...
  • G
    Can't you actually set the proxmox option there in the Setup? You can maybe change the entry, or just map BOOTX64.EFI to grubx64.efi in proxmox.. maybe proxmox-boot-tool (and its --grub option) can do it for you..
  • G
    I really think we need either generally allowing disabling link-local on an interface, or simply deny any IP configuration on the SDN bridges.. or a bit nicer, being able mark it for VM traffic only. This bug is not good on default setup btw...
  • G
    I agree the Proxmox Firewall will help with the host having a LL on those bridges/interfaces, but from a security audit point of view, they may say that's not enough . I think for now I'll go for the sysctl option. Then if needed I can prove the...
  • G
    The firewall way works for the underlying bridge.. but it seems that by default vnets allow that traffic (set up using SDN), which to me, is a bug, I'll investigate.. EDIT: Yes.. damned. I'll open a bug but if you have firewall on, on a host...
  • G
    There is a bug discussion here, that do not fix it but discusses options: https://bugzilla.proxmox.com/show_bug.cgi?id=1251 Another one, with mostly opinions, and the same idea I gave, use ifupdown2 and an up script...
  • G
    You can use the firewall to restrict those access to the host as it is, no code, no edit :P But it's true it could be disabled using ifupdown2, so that interfaces with something like "enable (or disable) link local v6" have the appropriate...