Recent content by hvisage

  1. H

    Proxmox on OVH

    just don't mix linux bond and OpenVSwitch ;) Glad you got it working!
  2. H

    bridgeless network for QEMU? (ie. only TAP, and manual/hookscript connections to host/other VMs)

    Those VMs are the Provider Edge (PE) routers (the rest of the links are PCIe passthrough/SRIOV) and that is the way to get to/from the PVE. I'll spin up a few others that would be the iBGP route reflectors and then the PVEs would connect to those. Then the PVEs are my meshed network and...
  3. H

    Proxmox on OVH

    YEs, the RISE/kimsufi/soyu(?) are on different networks vs. the OVH Advance/Scale/Infra servers.... Might need to double the linux bridge and network settings on this server. But yes, there could've been a network config issue to address
  4. H

    bridgeless network for QEMU? (ie. only TAP, and manual/hookscript connections to host/other VMs)

    I'm looking for a solution to drop the need for intermediate bridges for a corner/edge case where I need the VMs to have "direct" P2P links ONLY, and typically to the host too. Reason: I want to use OpenFabric as a IGP, and it requires P2P links only , ie, only 2 parties to a link. As I add...
  5. H

    Proxmox on OVH

    Hi @mikos , I've been runngin VLANs using OpenVswitch over OVH's vRacks without issues (other than when I tried to "map" an IP/vMAC from a public interface to another host via the Vrack interface using VLAN trickety). Currently 2x separate ProxMox clusters deployed with OpenVSwitch that...
  6. H

    [TUTORIAL] Enabling SR-IOV for Intel NIC (X550-T2) on Proxmox 6

    Yeah, THIS should be set as a variable of sorts, or point people to the right place to find that value, especially as the Intel Vendor code is 8086: and is used for everything else, so for Intel based NICs you need to specify the device code otherwise yu'll also see the CPU etc. etc. on a Intel...
  7. H

    [TUTORIAL] Enabling SR-IOV for Intel NIC (X550-T2) on Proxmox 6

    It allows for more than one VM (or multiple VMs and the host) to have "raw"/direct access to the network interface. Not that bandwidth between the VMs and host that uses this NIC's VFs, will be limited/constraint to the PCIe bandwidth going to and from that interface. This also means that the VM...
  8. H

    [TUTORIAL] Enabling SR-IOV for Intel NIC (X550-T2) on Proxmox 6

    I've found that the write to `sriov_numvfs` can only be done once, and if you want less or more vf entries, you'll have to reboot... unless I missed a removal step to reset the VFs
  9. H

    Kanidm and LDAP InvalidAttribute

    Good day, Trying to get LDAP from kanidm https://kanidm.github.io/kanidm/master/integrations/ldap.html and seems that it doesn't have - lastname - firstname - enable - expire - comment as I'm getting (various times) these when trying to sync: TASK ERROR: ldap user search error...
  10. H

    OpenID Connect default group

    busy with getting SSO across multiple PVE clusters, single nodes and several distributed PBS... and the first advice was keycloak, ie. OIDC, but now hitting this lack of "auto-group" from OIDC.
  11. H

    apt-get dist-upgrade udev not configured yet

    Ran into this problem with a "new" 8.3 installation on a SuperMicro X11DPH-T that got problems with an `apt dist-upgrade` before I disabled the enterprise and enable the no-subscription version. It *seemed* to be relted to a ZFS import that takes AGES to setup/clear (loads of spinning rust)f...
  12. H

    [SOLVED] re-encrypt backups

    Good day, I have a case where the encryption keys had been compromised (failed partnership), and there are a specific set of backups I'd like to re-encrypt with a new encryption key. ie. decrypt the current backup sets, en re-write then with a new backup encryption key. Q1: That is not an...
  13. H

    Very flaky network with Intel X710

    @dignus you have a link to that disabling procedure?
  14. H

    Deploying multiple proxmox host easily?

    I am busy with a process to add the needed bootstrap (in my case FRR & zerotier) on the SuperMicro X10DRT-PS (Yes, it's the old I use in test/home going to the DC but using the current H12 AMD versions in prod too) -> the biggest pain with this device is the lack of a SHARED port between the...